企业项目拓扑2(商拓扑空间)

网友投稿 265 2022-09-12


企业项目拓扑2(商拓扑空间)

某企业骨干网络拓扑如下图所示:

企业网络要求如下:

实验要求:1.SW1为vlan 10的主网关,vlan 20的备份网关;2.SW2为vlan 20的主网关,vlan 10的备份网关;3.DHCP服务器在vlan 66,网关在SW2上面;4.PC1、PC2自动获取ip地址且可以互相ping通;5.企业内网运行OSPF协议;6.仅允许Client1所在网络可以访问Server1服务器;7.企业内网设备仅允许被DHCP服务器远程管理;8.外网R2可以远程管理DHCP服务器。

第一步:配置基本网络;

SW1配置如下sysname SW1vlan batch 10 20 66 100interface GigabitEthernet0/0/1port link-type accessport default vlan 10interface GigabitEthernet0/0/2port link-type accessport default vlan 10interface GigabitEthernet0/0/3port link-type accessport default vlan 100interface GigabitEthernet0/0/10port link-type trunkport trunk allow-pass vlan all interface Vlanif10ip address 192.168.10.251 255.255.255.0interface Vlanif20ip address 192.168.20.251 255.255.255.0interface Vlanif100ip address 192.168.100.2 255.255.255.0SW2配置如下sysname SW2vlan batch 10 20 66 200interface GigabitEthernet0/0/1port link-type accessport default vlan 20interface GigabitEthernet0/0/3port link-type accessport default vlan 200interface GigabitEthernet0/0/10port link-type trunkport trunk allow-pass vlan allinterface GigabitEthernet0/0/11port link-type accessport default vlan 66interface Vlanif10ip address 192.168.10.252 255.255.255.0interface Vlanif20ip address 192.168.20.252 255.255.255.0interface Vlanif66ip address 192.168.66.1 255.255.255.0interface Vlanif200ip address 192.168.200.2 255.255.255.0 DHCP配置如下sysname DHCPinterface GigabitEthernet0/0/0ip address 192.168.66.2 255.255.255.0 R1配置如下sysname R1interface g0/0/0ip address 100.1.1.2 24interface g0/0/1ip address 192.168.100.1 24interface g0/0/2ip address 192.168.200.1 24R2配置如下sysname R2interface g0/0/0ip address 100.1.1.1 24interface g0/0/1ip address 200.1.1.254 24

第二步:配置企业内网OSPF;

OSPF配置:R1配置如下ip route-static 0.0.0.0 0.0.0.0 100.1.1.1ospf 1 default-route-advertise alwaysarea 0network 192.168.100.0 0.0.0.255network 192.168.200.0 0.0.0.255SW1配置如下ospf 1 area 0network 192.168.10.0 0.0.0.255network 192.168.20.0 0.0.0.255network 192.168.100.0 0.0.0.255SW2配置如下ospf 1 area 0network 192.168.10.0 0.0.0.255network 192.168.20.0 0.0.0.255network 192.168.66.0 0.0.0.255network 192.168.200.0 0.0.0.255DHCP配置如下ospf 1 area 0network 192.168.66.0 0.0.0.255

第三步:配置VRRP;

SW1配置interface Vlanif10vrrp vrid 10 virtual-ip 192.168.10.250vrrp vrid 10 priority 200interface Vlanif20vrrp vrid 20 virtual-ip 192.168.20.250SW2配置interface Vlanif10vrrp vrid 10 virtual-ip 192.168.10.250interface Vlanif20vrrp vrid 20 virtual-ip 192.168.20.250vrrp vrid 20 priority 200

第四步:DHCP配置DHCP配置dhcp enableinterface GigabitEthernet0/0/0dhcp select globalip pool p1gateway-list 192.168.10.250 network 192.168.10.0 mask 255.255.255.0 dns-list 8.8.8.8 ip pool p2gateway-list 192.168.20.250 network 192.168.20.0 mask 255.255.255.0 dns-list 8.8.8.8SW1配置dhcp enableinterface Vlanif10dhcp select relaydhcp relay server-ip 192.168.66.2interface Vlanif20dhcp select relaydhcp relay server-ip 192.168.66.2SW2配置dhcp enableinterface Vlanif10dhcp select relaydhcp relay server-ip 192.168.66.2interface Vlanif20dhcp select relaydhcp relay server-ip 192.168.66.2

第五步:配置PAT和远程管理;

R1配置如下:acl 2000rule 10 permit source 192.168.10.0 0.0.0.255quitinterface GigabitEthernet0/0/0nat outbound 2000 nat server protocol tcp global 100.1.1.2 8080 inside 192.168.66.1 telnetquitacl number 3000 rule 10 permit tcp source 192.168.66.2 0 destination-port eq telnet user-interface vty 0 4acl 3000 inboundauthentication-mode password123

最后,进行项目验证,完成!


版权声明:本文内容由网络用户投稿,版权归原作者所有,本站不拥有其著作权,亦不承担相应法律责任。如果您发现本站中有涉嫌抄袭或描述失实的内容,请联系我们jiasou666@gmail.com 处理,核实后本网站将在24小时内删除侵权内容。

上一篇:企业项目拓扑1(小型企业拓扑图)
下一篇:springMVC如何防止表单重复提交详解
相关文章

 发表评论

暂时没有评论,来抢沙发吧~