实验需求:
1、配置IP地址;
2、SW1和SW2之间配置静态链路聚合;
3、公司内部业务网段为VLAN10和VLAN20;VLAN10是市场部,VLAN20是技术部,对VLAN进行命名以识别;PC1属于VLAN10,PC2属于VLAN20,VLAN30用于SW1和SW2建立OSPF邻居;VLAN100为R1与R2的互联VLAN;
4、所有交换机相连的端口配置为trunk,允许相关流量通过;
5、交换机连接PC的端口配置为边缘端口;
6、在SW1上配置DHCP服务,为VLAN10和VLAN20的PC动态分配IP地址、网关、DNS地址;要求VLAN10的网关为192.168.1.254,VLAN20的网关为192.168.2.254;
7、按照图示分区域配置OSPF,实现公司内部网络全网通,ABR的环回口宣告进骨干区域;业务网段不允许出现协议报文(配置静默接口即可);
8、R1上配置默认路由指向互联网,并引入到OSPF;
9、R1通过双线连接到互联网,配置PPP-MP,并配置chap双向验证;
10、配置EASY IP,只有业务网段192.168.1.0/24和192.168.2.0/24的数据可以通过R1访问互联网;
11、R1开启telnet远程管理,使用用户h3c登录,密码为abc123123!,只允许技术部远程登陆管理R1。
1.配置IP接口略;
2.sw1和sw2之间配置静态链路聚合
[sw2]interface Bridge-Aggregation 1 ^
[sw2-Bridge-Aggregation1]quit
[sw2]int GigabitEthernet 1/0/2
[sw2-GigabitEthernet1/0/2]port link-aggregation group 1
Sw1和sw2一样
3.3、公司内部业务网段为VLAN10和VLAN20;VLAN10是市场部,VLAN20是技术部,对VLAN进行命名以识别;PC1属于VLAN10,PC2属于VLAN20
[sw3]vlan 10
[sw3-vlan10]name shichangbu
[sw3-vlan10]vlan 20
[sw3-vlan20]name jishubu
[sw3-vlan20]qu
[sw3]int g1/0/1
[sw3-GigabitEthernet1/0/1]port link-type access
[sw3-GigabitEthernet1/0/1]port access vlan 10
[sw3-GigabitEthernet1/0/1]int g1/0/2
[sw3-GigabitEthernet1/0/2]port link-type access
[sw3-GigabitEthernet1/0/2]port access vlan 20
[sw1]interface Vlan-interface 20
[sw1-Vlan-interface20]ip add 192.168.2.252 24
[sw1-Vlan-interface20]qu
[sw1]interface Vlan-interface 10
[sw1-Vlan-interface10]ip add 192.168.1.252 24
[sw1-Vlan-interface10]qu
[sw2]int Vlan-interface 10
[sw2-Vlan-interface10]ip add 192.168.1.253 24
[sw2-Vlan-interface10]qu
[sw2]int vlan-int 20
[sw2-Vlan-interface20]ip add 192.168.2.253 24
[sw2-Vlan-interface20]qu
VLAN30用于SW1和SW2建立OSPF邻居;VLAN100为R1与R2的互联VLAN;
[sw1-Vlan-interface100]ip add 10.1.1.1 24
[sw1-Vlan-interface100]qu
[sw1]int g1/0/4
[sw1-GigabitEthernet1/0/4]port access vlan 100
[sw2-Vlan-interface100]ip add 10.3.3.1 24
[sw2]int g1/0/4
[sw2-GigabitEthernet1/0/4]port access vlan 100
[sw2-GigabitEthernet1/0/4]qu
4.所有交换机相连的端口配置为trunk,允许相关流量通过;
[sw2]int g1/0/1
[sw2-GigabitEthernet1/0/1]port link-type trunk
[sw2-GigabitEthernet1/0/1]port trunk permit vlan all
[sw1]int g1/0/1
[sw1-GigabitEthernet1/0/1]port link-type trunk
[sw1-GigabitEthernet1/0/1]port trunk permit vlan all
5.交换机连接PC的端口配置为边缘端口;
[sw3]stp global enable
[sw3]int g1/0/1
[sw3-GigabitEthernet1/0/1]stp edged-port
[sw3-GigabitEthernet1/0/1]int g1/0/2
[sw3-GigabitEthernet1/0/2]stp edged-port
6、在SW1上配置DHCP服务,为VLAN10和VLAN20的PC动态分配IP地址、网关、DNS地址;要求VLAN10的网关为192.168.1.254,VLAN20的网关为192.168.2.254
;
7、按照图示分区域配置OSPF,实现公司内部网络全网通,ABR的环回口宣告进骨干区域;业务网段不允许出现协议报文(配置静默接口即可);
静默接口配置命令:
- SW1:
[SW1-ospf-1]silent-interface Vlan 10
[SW1-ospf-1]silent-interface Vlan 20
② SW2:
[SW2-ospf-1]silent-interface vlan 10
[SW2-ospf-1]silent-interface vlan 20
③ R3:
[R3-ospf-1]silent-interface g0/2
8、R1上配置默认路由指向互联网,并引入到OSPF;
默认路由引入命令:
[R1]ospf
[R1-ospf-1]default-route-advertise
[r1]ip route-static 0.0.0.0 0 200.1.1.1
9.R1通过双线连接到互联网,配置PPP-MP,并配置chap双向验证;
[r1]interface MP-group 1
[r1-MP-group1]qu
[r1]interface range s1/0 s2/0
[r1-if-range]ppp mp MP-group 1
[r1-if-range]qu
[r1]int MP-group 1
[r1-MP-group1]ip add 200.1.1.2 24
[r1-MP-group1]qu
[internet]int MP-group 1
[internet-MP-group1]qu
[internet]int r s1/0 s2/0
[internet-if-range]ppp mp MP-group 1
[internet-if-range]qu
[internet]int MP-group 1
[internet-MP-group1]ip add 200.1.1.1 24
R1
Internet
R1(chap)
Internet(chap)
配置EASY IP,只有业务网段192.168.1.0/24,192.168.2.0/24网段的数据可以通过R1访问互联网;
[r1]acl basic 2000
[r1-acl-ipv4-basic-2000]rule permit source 192.168.1.0 0.0.0.255
[r1-acl-ipv4-basic-2000]rule permit source 192.168.2.0 0.0.0.255
[r1-acl-ipv4-basic-2000]int g0/0
[r1-GigabitEthernet0/0]nat inbound 2000
11、R1开启telnet远程管理,使用用户h3c登录,密码为abc123123!,只允许技术部远程登陆管理R1。
[r1]telnet server enable
[r1-luser-manage-h3c]password simple abc123123!
[r1-luser-manage-h3c]service-type telnet
[r1-luser-manage-h3c]authorization-attribute user-role level-15
[r1-luser-manage-h3c]qu
[r1]line vty 0 2
[r1-line-vty0-2]authentication-mode scheme
[r1-line-vty0-2]qu文章来源:https://www.toymoban.com/news/detail-843554.html
文章来源地址https://www.toymoban.com/news/detail-843554.html
到了这里,关于H3C:OSPF,VLAN,DHCP,PPP-MP,EASY-IP,TELNET实验的文章就介绍完了。如果您还想了解更多内容,请在右上角搜索TOY模板网以前的文章或继续浏览下面的相关文章,希望大家以后多多支持TOY模板网!