本文共 5028 字,大约阅读时间需要 16 分钟。
·
sw4(config)#int f1/1sw4(config-if)#sw mo tsw4(config-if)#sw t en dosw4(config-if)#int f1/2sw4(config-if)#sw mo tsw4(config-if)#sw t en dosw4(config)#int f1/0sw4(config-if)#sw mo acsw4(config-if)#sw ac vl 20Vlan10,20 ip配置
sw1(config)#int vlan 10sw1(config-if)#ip add 192.168.1.2 255.255.255.0sw1(config-if)#no shsw1(config-if)#int vlan 20sw1(config-if)#ip add 192.168.2.2 255.255.255.0sw1(config-if)#no sh·sw2(config)#int vlan 10sw2(config-if)#ip add 192.168.1.3 255.255.255.0sw2(config-if)#no shsw2(config-if)#int vlan 20sw2(config-if)#ip add 192.168.2.3 255.255.255.0sw2(config-if)#no shVlan10,20虚拟网关配置sw1(config)#int vlan 10sw1(config-if)#standby 10 ip 192.168.1.254sw1(config-if)#standby 10 priority 200sw1(config-if)#standby 10 preemptsw1(config-if)#standby 10 track f1/1 100sw1(config)#int vlan 20sw1(config-if)#standby 20 ip 192.168.2.254sw1(config-if)#standby 20 priority 150sw1(config-if)#standby 20 preempt·sw2(config)#int vlan 10sw2(config-if)#standby 10 ip 192.168.1.254sw2(config-if)#standby 10 priority 150sw2(config-if)#standby 10 preemptsw2(config)#int vlan 20sw2(config-if)#standby 20 ip 192.168.2.254sw2(config-if)#standby 20 priority 200sw2(config-if)#standby 20 preemptsw2(config-if)#standby 20 track f1/1 100负载均衡配置sw1(config)#spanning-tree vlan 10 root primarysw1(config)#spanning-tree vlan 20 root secondary·sw2(config)#spanning-tree vlan 10 root secondarysw2(config)#spanning-tree vlan 20 root primaryDHCP配置sw1(config)#ip dhcp pool zzzsw1(dhcp-config)#network 192.168.1.0 255.255.255.0sw1(dhcp-config)#default-router 192.168.1.254sw1(dhcp-config)#dns-server 1.1.1.1·sw2(config)#ip dhcp pool xxxsw2(dhcp-config)#network 192.168.2.0 255.255.255.0sw2(dhcp-config)#default-router 192.168.2.254sw2(dhcp-config)#dns-server 2.2.2.2R1上配ip。R1,SW1,SW2做路由R1(config)#int f0/0R1(config-if)#ip add 192.168.3.2 255.255.255.0R1(config-if)#no shR1(config-if)#int f0/1R1(config-if)#ip add 192.168.4.2 255.255.255.0R1(config-if)#no shR1(config-if)#int f1/0R1(config-if)#no switchportR1(config-if)#ip add 12.0.0.1 255.0.0.0R1(config-if)#no sh·R1(config)#router ospf 1R1(config-router)#router-id 5.5.5.5R1(config-router)#network 192.168.3.0 0.0.0.255 area 0R1(config-router)#network 192.168.4.0 0.0.0.255 area 0R1(config-router)#network 12.0.0.0 0.255.255.255 area 0·sw1(config)#router ospf 1sw1(config-router)#router-id 3.3.3.3sw1(config-router)#network 192.168.1.0 0.0.0.255 area 0sw1(config-router)#network 192.168.2.0 0.0.0.255 area 0sw1(config-router)#network 192.168.3.0 0.0.0.255 area 0·sw2(config)#router ospf 1sw2(config-router)#router-id 4.4.4.4sw2(config-router)#network 192.168.1.0 0.0.0.255 area 0sw2(config-router)#network 192.168.2.0 0.0.0.255 area 0sw2(config-router)#network 192.168.4.0 0.0.0.255 area 0·C1pingc3C2pingc3C1pingc2配置远程登录sw1(config)#line vty 0 4sw1(config-line)#password abcsw1(config-line)#login·sw2(config)#line vty 0 4sw2(config-line)#password abcsw2(config-line)#login·sw3(config)#line vty 0 4sw3(config-line)#password abcsw3(config-line)#login·sw4(config)#line vty 0 4sw4(config-line)#password abcsw4(config-line)#loginACl配置sw1(config)#ip access-list extended abcsw1(config-ext-nacl)#permit tcp host 192.168.1.5 host 12.0.0.22 eq wwwsw1(config-ext-nacl)#permit ip host 192.168.1.5 host 192.168.2.5sw1(config-ext-nacl)#deny ip host 192.168.1.5 anysw1(config-ext-nacl)#permit ip any anysw1(config)#int f1/1sw1(config-if)#ip access-group abc in·sw2(config)#ip access-list extended abcdsw2(config-ext-nacl)#permit tcp host 192.168.2.5 host 12.0.0.22 eq ftpsw2(config-ext-nacl)#permit ip host 192.168.2.5 host 192.168.1.2sw1(config-ext-nacl)#deny ip host 192.168.1.5 anysw2(config-ext-nacl)#permit ip any anysw2(config)#int f1/1sw2(config-if)#ip access-group abcd inNAT配置R1(config-if)#ip nat pool abc 12.0.0.2 12.0.0.2 netmask 255.0.0.0R1(config)#ip nat inside source list abc pool abc overloadR1(config-if)#int f1/0R1(config-if)#ip nat insideR1(config-if)#int f0/1R1(config-if)#ip nat insideR1(config-if)#int f1/0R1(config-if)#ip nat outside转载于:https://blog.51cto.com/13348945/2088113