拓扑:
PC1和PC2都设置成dhcp获取ip,PC1属于10网段,标记为教学区;PC2属于20网段,标记为宿舍区
LSW1作为接入交换机
LSW2作为核心交换机
AR1作为外网入口
AR2表示电信运营商的路由器
AR3表示联通运营商的路由器
基本配置:
LSW1:
[acsw]vlan batch 10 20
Info: This operation may take a few seconds. Please wait for a moment...done.
[acsw]int g0/0/1
[acsw-GigabitEthernet0/0/1]port link-type access
[acsw-GigabitEthernet0/0/1]port default vlan 10
[acsw-GigabitEthernet0/0/1]q
[acsw]int g0/0/2
[acsw-GigabitEthernet0/0/2]port link-type access
[acsw-GigabitEthernet0/0/2]port default vlan 20
[acsw-GigabitEthernet0/0/2]q
[acsw]int g0/0/3
[acsw-GigabitEthernet0/0/3]port link-type trunk
[acsw-GigabitEthernet0/0/3]port trunk allow-pass vlan all
[acsw-GigabitEthernet0/0/3]q
LSW2:
[coresw]vlan batch 10 20 30
Info: This operation may take a few seconds. Please wait for a moment...done.
[coresw]int g0/0/3
[coresw-GigabitEthernet0/0/3]port link-type trunk
[coresw-GigabitEthernet0/0/3]port trunk allow-pass vlan all
[coresw-GigabitEthernet0/0/3]q
[coresw]ip pool 10
Info:It's successful to create an IP address pool.
[coresw-ip-pool-10]network 192.168.10.0 mask 24
[coresw-ip-pool-10]gateway-list 192.168.10.254
[coresw-ip-pool-10]dns-list 8.8.8.8
[coresw-ip-pool-10]q
[coresw]ip pool 20
Info:It's successful to create an IP address pool.
[coresw-ip-pool-20]network 192.168.20.0 mask 24
[coresw-ip-pool-20]gateway-list 192.168.20.254
[coresw-ip-pool-20]dns-list 8.8.8.8
[coresw-ip-pool-20]q
[coresw]int vlanif 10
[coresw-Vlanif10]ip add 192.168.10.254 24
[coresw-Vlanif10]dhcp select global
Error: Please enable DHCP in the global view first.
[coresw-Vlanif10]q
[coresw]dhcp enable
Info: The operation may take a few seconds. Please wait for a moment.done.
[coresw]int vlanif 10
[coresw-Vlanif10]dhcp select global
[coresw-Vlanif10]q
[coresw]int vlanif 20
[coresw-Vlanif20]ip add 192.168.20.254 24
[coresw-Vlanif20]dhcp select global
[coresw-Vlanif20]q
[coresw]int vlanif 30
[coresw-Vlanif30]ip add 192.168.30.254 24
[coresw-Vlanif30]q
[coresw]int g0/0/1
[coresw-GigabitEthernet0/0/1]port link-type access
[coresw-GigabitEthernet0/0/1]port default vlan 30
[coresw-GigabitEthernet0/0/1]q
[coresw]ospf 1
[coresw-ospf-1]area 0
[coresw-ospf-1-area-0.0.0.0]network 192.168.10.0 0.0.0.255
[coresw-ospf-1-area-0.0.0.0]network 192.168.20.0 0.0.0.255
[coresw-ospf-1-area-0.0.0.0]network 192.168.30.0 0.0.0.255
[coresw-ospf-1-area-0.0.0.0]q
[coresw-ospf-1]q
AR1:
[router]int g0/0/1
[router-GigabitEthernet0/0/1]ip add 192.168.30.3 24
[router-GigabitEthernet0/0/1]q
############# 核心交换机和出口路由器之间配ospf ############
[router]ospf 1
[router-ospf-1]area 0
[router-ospf-1-area-0.0.0.0]network 192.168.30.0 0.0.0.255
[router-ospf-1-area-0.0.0.0]q
[router]int g0/0/0
[router-GigabitEthernet0/0/0]ip add 12.1.1.3 24
[router-GigabitEthernet0/0/0]q
[router]int g0/0/2
[router-GigabitEthernet0/0/2]ip add 23.1.1.3 24
[router-GigabitEthernet0/0/2]q
############## 在出口路由器上配置NAT #####################
[router]acl 2000
[router-acl-basic-2000]rule 10 permit source 192.168.10.0 0.0.0.255
[router-acl-basic-2000]rule 20 permit source 192.168.20.0 0.0.0.255
[router-acl-basic-2000]q
[router]int g0/0/0
[router-GigabitEthernet0/0/0]nat outbound 2000
[router-GigabitEthernet0/0/0]q
[router]int g0/0/2
[router-GigabitEthernet0/0/2]nat outbound 2000
[router-GigabitEthernet0/0/2]q
############## 配置策略路由,教学区走电信,宿舍区走联通 ##########
[router]acl 2010
[router-acl-basic-2010]rule 10 permit source 192.168.10.0 0.0.0.255
[router-acl-basic-2010]q
[router]acl 2020
[router-acl-basic-2020]rule 20 permit source 192.168.20.0 0.0.0.255
[router-acl-basic-2020]q
[router]traffic classifier jiaoxue
[router-classifier-jiaoxue]if-match acl 2010
[router-classifier-jiaoxue]q
[router]traffic classifier sushe
[router-classifier-sushe]if-match acl 2020
[router-classifier-sushe]q
[router]traffic behavior re-dianxin
[router-behavior-re-dianxin]redirect ip
[router-behavior-re-dianxin]redirect ip-nexthop 12.1.1.1
[router-behavior-re-dianxin]q
[router]traffic behavior re-liantong
[router-behavior-re-liantong]redirect ip-nexthop 23.1.1.2
[router-behavior-re-liantong]q
[router]traffic policy p
[router-trafficpolicy-p]classifier jiaoxue behavior re-dianxin
[router-trafficpolicy-p]classifier sushe behavior re-liantong
[router-trafficpolicy-p]q
[router]int g0/0/1
[router-GigabitEthernet0/0/1]traffic-policy p inbound
[router-GigabitEthernet0/0/1]q
AR2:
[dianxin]int g0/0/0
[dianxin-GigabitEthernet0/0/0]ip add 12.1.1.1 24
[dianxin-GigabitEthernet0/0/0]q
[dianxin]int g0/0/1
[dianxin-GigabitEthernet0/0/1]ip add 100.1.1.1 24
[dianxin-GigabitEthernet0/0/1]q
[dianxin]int lo0
[dianxin-LoopBack0]ip add 1.1.1.1 24
[dianxin-LoopBack0]q
########### 电信和联通的路由器之间配RIP ###########
[dianxin]rip
[dianxin-rip-1]version 2
[dianxin-rip-1]network 100.0.0.0
[dianxin-rip-1]network 12.0.0.0
[dianxin-rip-1]network 1.0.0.0
[dianxin-rip-1]q
AR3:
[liantong]int g0/0/1
[liantong-GigabitEthernet0/0/1]ip add 100.1.1.2 24
[liantong-GigabitEthernet0/0/1]q
[liantong]int g0/0/2
[liantong-GigabitEthernet0/0/2]ip add 23.1.1.2 24
[liantong-GigabitEthernet0/0/2]q
[liantong]int lo0
[liantong-LoopBack0]ip add 2.2.2.2 24
[liantong-LoopBack0]q
[liantong]rip
[liantong-rip-1]version 2
[liantong-rip-1]network 100.0.0.0
[liantong-rip-1]network 23.0.0.0
[liantong-rip-1]network 2.0.0.0
[liantong-rip-1]q