hcia综合实验

1.使用172.16.0.0/16划分网络

172.16.0.0/18area3

172.16.64.0/18area 1

172.16.128.0/18area 0

172.16.192.0/18area 2

2.使用ospf协议合理规划区域保证更新安全

[r1]ospf 1 router-id 1.1.1.1
[r1-ospf-1]ar	
[r1-ospf-1]area 0
[r1-ospf-1-area-0.0.0.0]net	
[r1-ospf-1-area-0.0.0.0]network 172.16.128.2 0.0.0.0
[r1-ospf-1-area-0.0.0.0]net	
[r1-ospf-1-area-0.0.0.0]network 1.1.1.1 0.0.0.0

3.加快收敛速度

r1]interface g0/0/1
[r1-GigabitEthernet0/0/1]os	
[r1-GigabitEthernet0/0/1]ospf tin	
[r1-GigabitEthernet0/0/1]ospf ti	
[r1-GigabitEthernet0/0/1]ospf timer he	
[r1-GigabitEthernet0/0/1]ospf timer hello 5

4.router1为DR没有BDR

r3]interface g0/0/0
[r3-GigabitEthernet0/0/0]os	
[r3-GigabitEthernet0/0/0]ospf dr	
[r3-GigabitEthernet0/0/0]ospf dr-priority 0





[r2]int	
[r2]interface g0/0/0
[r2-GigabitEthernet0/0/0]os	
[r2-GigabitEthernet0/0/0]ospf dr	
[r2-GigabitEthernet0/0/0]ospf dr-priority 0

5.pc234自动获取ip地址

IPv6 address......................: :: / 128
IPv6 gateway......................: ::
IPv4 address......................: 192.168.1.254
Subnet mask.......................: 255.255.255.0
Gateway...........................: 192.168.1.1
Physical address..................: 54-89-98-CE-69-9D
DNS server........................: 8.8.8.8



IPv6 address......................: :: / 128
IPv6 gateway......................: ::
IPv4 address......................: 192.168.2.254
Subnet mask.......................: 255.255.255.0
Gateway...........................: 192.168.2.1
Physical address..................: 54-89-98-94-7F-D0
DNS server........................: 8.8.8.8



IPv6 address......................: :: / 128
IPv6 gateway......................: ::
IPv4 address......................: 192.168.3.254
Subnet mask.......................: 255.255.255.0
Gateway...........................: 192.168.3.1
Physical address..................: 54-89-98-C5-3E-AE
DNS server........................: 8.8.8.8



6.router7为运营商只能配置ip地址

7.pc4可以ping通router6但不能登录router6

[r7]acl 3000
[r7-acl-adv-3000]rule deny tcp source 192.168.3.2 0.0.0.0 destination 172.16.0.1
destination-port eq 23
[r7]interface g0/0/1
[r7-GigabitEthernet0/0/1]traffic-filter inbound acl 3000
[r7-acl-adv-3000]rule deny icmp source 192.168.3.2 0.0.0.0 destination 172.16.0.1
0.0.0.0 icmp-type echo-reply

8.pc3可以ping通pc5但pc5不能ping通pc3

[r5]acl 3000
[r5-acl-adv-3000]ru	
[r5-acl-adv-3000]rule d	
[r5-acl-adv-3000]rule deny i	
[r5-acl-adv-3000]rule deny icmp s	
[r5-acl-adv-3000]rule deny icmp source 192.168.2.2 0.0.0.0 d	
[r5-acl-adv-3000]rule deny icmp source 192.168.2.2 0.0.0.0 destination 192.168.4
.2 0.0.0.0 ic	
[r5-acl-adv-3000]rule deny icmp source 192.168.2.2 0.0.0.0 destination 192.168.4
.2 0.0.0.0 icmp-type e	
[r5-acl-adv-3000]rule deny icmp source 192.168.2.2 0.0.0.0 destination 192.168.4
.2 0.0.0.0 icmp-type echo
[r5-acl-adv-3000]rule deny icmp source 192.168.2.2 0.0.0.0 destination 192.168.4
.2 0.0.0.0 icmp-type echo-reply
[r5-acl-adv-3000]quit
[r5]in	
[r5]info-center
[r5]interface g0/0/1
[r5-GigabitEthernet0/0/1]tr	
[r5-GigabitEthernet0/0/1]tracert
[r5-GigabitEthernet0/0/1]traffic-filter in	
[r5-GigabitEthernet0/0/1]traffic-filter inbound a	
[r5-GigabitEthernet0/0/1]traffic-filter inbound acl 3000

  • 0
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值