实验拓扑

实验拓扑.png
W0配置
Switch>
Switch>
Switch>en
Switch#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Switch(config)#vlan 10
Switch(config-vlan)#vlan 20
Switch(config-vlan)#vlan 30
Switch(config-vlan)#exit
Switch(config)#inte f0/2
Switch(config-if)#ip add 192.168.30.254 255.255.255.0
^
% Invalid input detected at '^' marker.
Switch(config-if)#exit
Switch(config)#inter vlan 10
Switch(config-if)#
%LINK-5-CHANGED: Interface Vlan10, changed state to up
Switch(config-if)#ip add 192.168.10.254 255.255.255.0
Switch(config-if)#ip helper-add 192.168.30.1
Switch(config-if)#inter vlan 20
Switch(config-if)#
%LINK-5-CHANGED: Interface Vlan20, changed state to up
Switch(config-if)#ip add 192.168.20.254 255.255.255.0
Switch(config-if)#ip helper-add 192.168.30.1
Switch(config-if)#inter vlan 30
Switch(config-if)#
%LINK-5-CHANGED: Interface Vlan30, changed state to up
Switch(config-if)#ip add 192.168.30.254 255.255.255.0
Switch(config-if)#exit
Switch(config)#inter f0/2
Switch(config-if)#switchport access vlan 30
Switch(config-if)#
%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan30, changed state to up
Switch(config-if)#inter f0/3
Switch(config-if)#switchport access vlan 20
Switch(config-if)#
%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan20, changed state to up
Switch(config-if)#inter f0/4
Switch(config-if)#switchport access vlan 10
Switch(config-if)#
%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan10, changed state to up
Switch(config-if)#exit
Switch(config)#inter f0/1
Switch(config-if)#no switch
Switch(config-if)#ip add 192.168.40.1 255.255.255.0
Switch(config-if)#exit
Switch(config)#ip routing
Switch(config)#router ospf 1
Switch(config-router)#network 192.168.10.0 0.0.0.255 area 0
Switch(config-router)#network 192.168.20.0 0.0.0.255 area 0
Switch(config-router)#network 192.168.30.0 0.0.0.255 area 0
Switch(config-router)#network 192.168.40.0 0.0.0.255 area 0
Switch(config-router)#
Switch(config-router)#exit
Switch(config)#access-list 102 deny tcp 192.168.20.0 0.0.0.255 192.168.30.0 0.0.0.255 eq www
Switch(config)#access-list 102 permit ip any any
Switch(config)#inter vlan30
Switch(config-if)#ip access-group 102 out
Switch(config-if)#
W3配制
Switch>
Switch>
Switch>en
Switch#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Switch(config)#inter range f0/2-3
Switch(config-if-range)#switchport trunk encap dot
Switch(config-if-range)#switchport mode trunk
Switch(config-if-range)#channel-group 1 mode on
Switch(config-if-range)#
Creating a port-channel interface Port-channel 1
%LINK-5-CHANGED: Interface Port-channel 1, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface Port-channel 1, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/2, changed state to down
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/2, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/3, changed state to down
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/3, changed state to up
Switch(config-if-range)#exit
Switch(config)#port-channel load-balance dst-ip
Switch(config)#
W4配置
Switch>
Switch>
Switch>en
Switch#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Switch(config)#inter range f0/2-3
Switch(config-if-range)#switchport trunk encap dot
Switch(config-if-range)#switchport mode trunk
Switch(config-if-range)#channel-group 1 mode on
Switch(config-if-range)#
Creating a port-channel interface Port-channel 1
%LINK-5-CHANGED: Interface Port-channel 1, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface Port-channel 1, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/2, changed state to down
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/2, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/3, changed state to down
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/3, changed state to up
Switch(config-if-range)#exit
Switch(config)#port-channel load-balance dst-ip
Switch(config)#
R0配置
Router>en
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#inter g0/0
Router(config-if)#no shut
Router(config-if)#
%LINK-5-CHANGED: Interface GigabitEthernet0/0, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0, changed state to up
Router(config-if)#ip add 192.168.40.2 255.255.255.0
Router(config-if)#exit
Router(config)#inter g0/1
Router(config-if)#no shut
Router(config-if)#
%LINK-5-CHANGED: Interface GigabitEthernet0/1, changed state to up
Router(config-if)#ip add 10.98.10.1 255.255.255.0
Router(config-if)#no shut
Router(config-if)#exit
Router(config)#router ospf 1
Router(config-router)#network 192.168.40.0 0.0.0.255 area 0
Router(config-router)#network 10.98.10.0 0.0.0.255 area 0
Router(config-router)#exit
Router(config)#
00:16:01: %OSPF-5-ADJCHG: Process 1, Nbr 192.168.40.1 on GigabitEthernet0/0 from LOADING to FULL, Loading Done
Router(config)#
%LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/1, changed state to up
00:18:17: %OSPF-5-ADJCHG: Process 1, Nbr 192.168.60.1 on GigabitEthernet0/1 from LOADING to FULL, Loading Done
Router(config)#
Router(config)#
Router(config)#access-list 1 permit 192.168.10.0 0.0.0.255
Router(config)#access-list 1 permit 192.168.20.0 0.0.0.255
Router(config)#access-list 1 permit 192.168.30.0 0.0.0.255
Router(config)#ip nat inside source list 1 inter g0/1 overload
Router(config)#inter g0/0
Router(config-if)#ip nat inside
Router(config-if)#inter g0/1
Router(config-if)#ip nat outside
Router(config-if)#exit
Router(config)#exit
Router#
%SYS-5-CONFIG_I: Configured from console by console
Router#show ip nat tran
Router#show ip nat tran
Router#show ip nat tran
Pro Inside global Inside local Outside local Outside global
icmp 10.98.10.1:13 192.168.10.3:13 10.98.10.2:13 10.98.10.2:13
icmp 10.98.10.1:14 192.168.10.3:14 10.98.10.2:14 10.98.10.2:14
icmp 10.98.10.1:15 192.168.10.3:15 10.98.10.2:15 10.98.10.2:15
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#ip nat inside source static tcp 192.168.30.1 80 10.98.10.1 80
Router(config)#
R1配置
Router>en
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#inter g0/0
Router(config-if)#no shut
Router(config-if)#
%LINK-5-CHANGED: Interface GigabitEthernet0/0, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0, changed state to up
Router(config-if)#ip add 10.98.10.2 255.255.255.0
Router(config-if)#inter g0/1
Router(config-if)#ip add 192.168.50.1 255.255.255.0
Router(config-if)#inter g0/2
Router(config-if)#ip add 192.168.60.1 255.255.255.0
Router(config-if)#no shut
Router(config-if)#
%LINK-5-CHANGED: Interface GigabitEthernet0/2, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/2, changed state to up
Router(config-if)#inter g0/1
Router(config-if)#no shut
Router(config-if)#
%LINK-5-CHANGED: Interface GigabitEthernet0/1, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/1, changed state to up
Router(config-if)#exit
Router(config)#router ospf 1
Router(config-router)#network 10.98.10.0 0.0.0.255 area 0
Router(config-router)#
00:18:14: %OSPF-5-ADJCHG: Process 1, Nbr 192.168.40.2 on GigabitEthernet0/0 from LOADING to FULL, Loading Done
Router(config-router)#
Router(config-router)#
Router(config-router)#exit
Router(config)#access-list 1 permit 192.168.50.0 0.0.0.255
Router(config)#access-list 1 permit 192.168.60.0 0.0.0.255
Router(config)#ip nat inside source list 1 inter g0/0 overload
Router(config)#inter g0/0
Router(config-if)#ip nat outside
Router(config-if)#inter g0/1
Router(config-if)#ip nat inside
Router(config-if)#inter g0/2
Router(config-if)#ip nat inside
Router(config-if)#
dhcp服务器配置

dhcp.png

QQ截图20190609103531.png
vlan10和vlan20获取ip

获取ip.png

获取ip1.png
vlan10和vlan20相互访问

vlan20能够访问vlan10.png
vlan10能够访问服务器

vlan10能够访问服务器.png
vlan20能ping通服务器但是不能使用访问web服务

vlan20能够ping通服务器.png

vlan不能访问服务器.png
多路聚合访问内网

测试多路聚合.png
公司总部访问服务器

外网测试.png
R0和R1上的nat测试



总部nat测试.png
实验成功
网友评论