1.实验内容
安装与配置好的Windows 98/2000 PC机2~4台;制作好的UTP网络连接线(双端均有RJ-45头)若干条,Cisco二层交换机2~4台,Cisco三层交换机1台。可按照4.5.1节给出的图4.25网络拓扑组网。
安装与配置Windows 98/2000 PC机的网卡,将PC机与二层交换机端口连接;安装与配置二层交换机的VLAN,将二层交换机连接PC机的端口设置VLAN ID;安装与配置三层交换机的VLAN,将三层交换机与二层交换机连接,分别在相连交换机的端口设置VTP干道协议802.1Q,并将端口设置为trunk模式。在PC机用Ping命令测试VLAN间的连通性。 实验步骤
按照4.8.6给出的命令操作示例,进行网络组建实验。(需提供网络拓扑结构图)
写出各交换机的配置命令和配置过程。 2950-24Switch3的配置命令:
Switch>enable Switch#conf t
Enter configuration commands, one per line. End with CNTL/Z. Switch(config)#hostname SW1 SW1(config)#vlan 10
SW1(config-vlan)#name vlan10 SW1(config-vlan)#exit SW1(config)#int f0/2
SW1(config-if)#switch
SW1(config-if)#switchport mode access SW1(config-if)#switchport access vlan 10 SW1(config-if)#exit
SW1(config)#vlan 20
SW1(config-vlan)#name vlan20 SW1(config-vlan)#exit
SW1(config)#int f0/3
SW1(config-if)#switchport mode access SW1(config-if)#switchport access vlan 20 SW1(config-if)#exit
SW1(config)#vlan 30
SW1(config-vlan)#name vlan30 SW1(config-vlan)#exit
SW1(config)#int f0/4
SW1(config-if)#switchport mode access SW1(config-if)#switchport access vlan 30 SW1(config-if)#exit SW1(config)#int f0/1
SW1(config-if)#switchport mode trunk 2950-24Switch5的配置命令: Switch>enable Switch#conf t
Enter configuration commands, one per line. End with CNTL/Z. Switch(config)#hostname SW2 SW2(config)#vlan 10
SW2(config-vlan)#name vlan10 SW2(config-vlan)#exit
SW2(config)#int f0/2
SW2(config-if)#switchport mode access SW2(config-if)#switchport access vlan 10 SW2(config-if)#exit SW2(config)#vlan 20
SW2(config-vlan)#name vlan20 SW2(config-vlan)#exit
SW2(config)#int f0/3
SW2(config-if)#switchport mode access SW2(config-if)#switchport access vlan 20 SW2(config-if)#exit
SW2(config)#vlan 30
SW2(config-vlan)#name vlan30 SW2(config-vlan)#exit SW2(config)#int f0/4
SW2(config-if)#switchport mode access SW2(config-if)#switchport access vlan 30 SW2(config-if)#exit
SW2(config)#int f0/1
SW2(config-if)#switchport mode trunk 2950-24Switch6的配置命令: Switch>enable Switch#conf t
Enter configuration commands, one per line. End with CNTL/Z. Switch(config)#hostname SW3 SW3(config)#vlan 10
SW3(config-vlan)#name vlan10 SW3(config-vlan)#exit SW3(config)#int f0/2
SW3(config-if)#switchport mode access
SW3(config-if)#switchport access vlan 10 SW3(config-if)#exit SW3(config)#vlan 20
SW3(config-vlan)#name vlan20 SW3(config-vlan)#exit SW3(config)#int f0/3
SW3(config-if)#switchport mode access SW3(config-if)#switchport access vlan 20 SW3(config-if)#exit SW3(config)#vlan 30
SW3(config-vlan)#name vlan30 SW3(config-vlan)#exit
SW3(config)#int f0/4
SW3(config-if)#switchport mode access SW3(config-if)#switchport access vlan 30 SW3(config-if)#exit
SW3(config)#int f0/1
SW3(config-if)#switchport mode trunk
3560-24PS Multilayer Switch0的配置命令: Switch>enable Switch#conf t
Enter configuration commands, one per line. End with CNTL/Z. Switch(config)#hostname SR1 SR1(config)#vlan 10
SR1(config-vlan)#name vlan10 SR1(config-vlan)#exit SR1(config)#vlan 20
SR1(config-vlan)#name vlan20 SR1(config-vlan)#exit SR1(config)#vlan 30
SR1(config-vlan)#name vlan30 SR1(config-vlan)#exit
SR1(config)#int f0/1
SR1(config-if)#switchport trunk encap
SR1(config-if)#switchport trunk encapsulation dot1q SR1(config-if)#switchport mode trunk SR1(config-if)#exit
SR1(config)#int f0/2
SR1(config-if)#switchport trunk encap dot1q SR1(config-if)#switchport mode trunk SR1(config-if)#exit
SR1(config)#int f0/3
SR1(config-if)#switchport trunk encap dot1q SR1(config-if)#switchport mode trunk
SR1(config-if)#exit
SR1(config)#int vlan10
%LINK-5-CHANGED: Interface Vlan10, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan10, changed state to up SR1(config-if)#ip address 192.168.10.1 255.255.255.0 SR1(config-if)#no shutdown SR1(config-if)#exit SR1(config)#int vlan 20
%LINK-5-CHANGED: Interface Vlan20, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan20, changed state to up SR1(config-if)#ip address 192.168.20.1 255.255.255.0 SR1(config-if)#no shutdown SR1(config-if)#exit SR1(config)#int vlan 30
%LINK-5-CHANGED: Interface Vlan30, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan30, changed state to up SR1(config-if)#ip address 192.168.30.1 255.255.255.0 SR1(config-if)#no shutdown SR1(config-if)#exit SR1(config)#ip routing SR1(config)#exit
SR1#
%SYS-5-CONFIG_I: Configured from console by console
SR1#wr
Building configuration...
[OK]
各PC机IP地址和网关的配置:
PC0 IP地址 192.168.10.10 网关 192.168.10.1 PC1 IP地址 192.168.20.11 网关 192.168.20.1 PC2 IP地址 192.168.30.12 网关 192.168.30.1 PC3 IP地址 192.168.10.13 网关 192.168.10.1 PC4 IP地址 192.168.20.14 网关 192.168.20.1 PC5 IP地址 192.168.30.15 网关 192.168.30.1 PC6 IP地址 192.168.10.16 网关 192.168.10.1 PC7 IP地址 192.168.20.17 网关 192.168.20.1 PC8 IP地址 192.168.30.18 网关 192.168.30.1 2.实验资源、工具和准备工作。
按照5.2、5.3的配置步骤,设置路由器名称、IP地址、一般用户口令、特权用户口令、静态路由、动态路由(RIP、OSPF)。保存配置文件。重新启动路由器,调试网络,直至3台路由器互连成功。 实验步骤
按照5.2和53节给出的命令操作示例,进行网络互连的配置与调试。
写出静态路由、动态路由(RIP、OSPF)各路由器的配置命令和配置过程。 1.配置各路由器端口ip地址 R1:
Router>enable
Router#configure terminal Router (config)#hostname R1
R1(config)#interface FastEthernet0/0
R1(config-if)#ip address 192.168.1.1 255.255.255.0 R1(config-if)#no shutdown R1(config-if)#exit
R1(config)#interface Serial2/0
R1(config-if)#ip address 172.16.3.2 255.255.255.252 R1(config-if)#clock rate 64000 R1(config-if)#no shutdown R1(config-if)#exit
R1(config)#interface Serial3/0
R1(config-if)#ip address 172.16.1.1 255.255.255.252 R1(config-if)#clock rate 64000 R1(config-if)#no shutdown R1(config-if)#exit R1(config)# R2:
Router>enable
Router#configure terminal
Router(config)#hostname R2
R2(config)#interface FastEthernet0/0
R2(config-if)#ip address 192.168.2.1 255.255.255.0 R2(config-if)#no shutdown R2(config-if)#exit
R2(config)#interface Serial2/0
R2(config-if)#ip address 172.16.1.1 255.255.255.252 R2(config-if)#no shutdown R2(config-if)#exit
R2(config)#interface Serial3/0
R2(config-if)#ip address 172.16.2.1 255.255.255.252 R2(config-if)#clock rate 64000 R2(config-if)#no shutdown R2(config-if)#exit R2(config)# R3:
Router>enable
Router#configure terminal Router(config)#hostname R3
R3(config)#interface FastEthernet0/0
R3(config-if)#ip address 192.168.3.1 255.255.255.0 R3(config-if)#no shutdown R3(config-if)#exit
R3(config)#interface Serial2/0
R3(config-if)#ip address 172.16.3.1 255.255.255.252 R3(config-if)# no shutdown R3(config-if)#exit
R3(config)#interface Serial3/0
R3(config-if)#ip address 172.16.2.2 255.255.255.252 R3(config-if)#no shutdown R3(config-if)#exit R3(config)#
(1)
在R1上配置静态路由
R1(config)# ip route 192.168.2.0 255.255.255.0 172.16.1.2 R1(config)# ip route 172.16.2.0 255.255.255.252 172.16.1.2
R1(config)# ip route 192.168.3.0 255.255.255.0 172.16.3.1 R1(config)#exit
在R2上配置静态路由
R2(config)# ip route 192.168.1.0 255.255.255.0 172.16.1.1 R2(config)# ip route 172.16.3.0 255.255.255.252 172.16.1.1 R2(config)# ip route 192.168.3.0 255.255.255.0 172.16.2.2 R2(config)#exit
在R3上配置静态路由
R3(config)# ip route 192.168.1.0 255.255.255.0 172.16.3.2 R3(config)# ip route 172.16.1.0 255.255.255.252 172.16.3.2 R3(config)# ip route 192.168.2.0 255.255.255.0 172.16.2.1 R3(config)#exit
(2)
在R1上配置RIP协议
R1(config)#router rip
R1(config-router)#network 192.168.1.0 R1(config-router)#network 172.16.1.0 R1(config-router)#network 172.16.3.0
在R2上配置RIP协议
R1(config)#router rip
R1(config-router)#network 192.168.2.0 R1(config-router)#network 172.16.1.0 R1(config-router)#network 172.16.2.0
在R3上配置RIP协议
R1(config)#router rip
R1(config-router)#network 192.168.3.0 R1(config-router)#network 172.16.2.0 R1(config-router)#network 172.16.3.0
(3).
在R1上配置OSPF协议
R1(config)#route ospf 1
R1(config-router)#router-id 1.1.1.1
R1(config-router)#network 192.168.1.0 255.255.255.0 area 0
R1(config-router)#network 172.16.1.0 255.255.255.252 area 0 R1(config-router)#network 172.16.3.0 255.255.255.252 area 0 R1(config-router)#exit R1(config)#exit R1#wr
Building configuration... [OK]
R1#
在R2上配置OSPF协议 R2(config)#route ospf 1
R2(config-router)#router-id 2.2.2.2
R2(config-router)#network 192.168.2.0 255.255.255.0 area 0 R2(config-router)#network 172.16.1.0 255.255.255.252 area 0 R2(config-router)#network 172.16.2.0 255.255.255.252 area 0 R2(config-router)#exit R2(config)#exit R2#wr
Building configuration... [OK]
R2#
4. 在R3上配置OSPF协议
R3(config)#route ospf 1
R3(config-router)#router-id 3.3.3.3
R3(config-router)#network 192.168.3.0 0.0.0.255 area 0 R3(config-router)#network 172.16.2.0 0.0.0.3 area 0 R3(config-router)#network 172.16.3.0 0.0.0.3 area 0 R3(config-router)#exit R3(config)#exit R3#wr
Building configuration...
[OK] R3#
实验内容
实验资源、工具和准备工作。Catalyst2811路由器4台。Windows 2000客户机2~3台,制作好的UTP网络连接线(双端均有RJ-45头)若干条。子网划分与地址分配可参考下图。
图5.1 IPv6静态路由配置
图5.2 IPv6 RIP动态路由配置
图5.3 IPv6 OSPF动态路由配置
按照7.3节的配置步骤,设置图中各台路由器名称、IP地址;基于IPv6的静态路由和RIP、OSPF动态路由。重新启动路由器,调试网络,直至多台路由器互连成功。 实验步骤
按照上图给出的拓扑结构进行绘制,进行网络互连的配置。 写出各路由器的配置命令和配置过程。 1.ipv6静态路由配置 Router>enable
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R1
R1(config)#ipv6 unicast-routing //开启IPv6路由功能 R1(config)#interface FastEthernet0/0 R1(config-if)#ipv6 add fec0:aaaa::1/64 R1(config-if)# no shutdown R1(config-if)#exit
R1(config)#interface FastEthernet0/1 R1(config-if)#ipv6 add fec0:bbbb::1/64 R1(config-if)# no shutdown R1(config-if)#exit
R1(config)#interface FastEthernet1/0 R1(config-if)#ipv6 add fec0:cccc::1/64 R1(config-if)# no shutdown
R1(config-if)#exit
R1(config)#ipv6 route fec0:dddd::/64 fec0:cccc::2 R1(config)#end
%SYS-5-CONFIG_I: Configured from console by console R1#wr
Building configuration... [OK]
Router>enable
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#hostname R2
R2(config)#ipv6 unicast-routing
R2(config)#interface FastEthernet0/0 R2(config-if)#ipv6 add fec0:dddd::1/64 R2(config-if)#no shut R2(config-if)#exit
R2(config)#interface FastEthernet0/1 R2(config-if)#ipv6 add fec0:cccc::2/64 R2(config-if)#no shut R2(config-if)#exit
R2(config)#ipv6 route fec0:aaaa::/64 fec0:cccc::1 R2(config)#ipv6 route fec0:bbbb::/64 fec0:cccc::1 R2(config)#end
%SYS-5-CONFIG_I: Configured from console by console R2#wr
Building configuration... [OK]
2.RIP动态路由配置 Router>enable
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R1 R1(config)#ipv6 unicast-routing R1(config)#ipv6 router rip cisco R1(config-rtr)#split-horizon ^
% Invalid input detected at '^' marker. R1(config-rtr)#poison-reverse ^
% Invalid input detected at '^' marker.
R1(config-rtr)#exit
R1(config)#interface FastEthernet0/0 R1(config-if)#ipv6 add fec0:1111::1/64 R1(config-if)#ipv6 rip cisco enable R1(config-if)#no shut
%LINK-5-CHANGED: Interface FastEthernet0/0, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/0, changed state to up R1(config-if)#exit
R1(config)#interface FastEthernet0/1 R1(config-if)#ipv6 add fec0:12::1/64
R1(config-if)#ipv6 rip cisco enable R1(config-if)#no shut
%LINK-5-CHANGED: Interface FastEthernet0/1, changed state to up
R1(config-if)#exit
R1(config)#end R1#
%SYS-5-CONFIG_I: Configured from console by console wr
Building configuration... [OK]
Router>enable
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R2 R2(config)#ipv6 unicast-routing R2(config)#ipv6 router rip cisco R2(config-rtr)#exit
R2(config)#interface FastEthernet0/0 R2(config-if)#ipv6 add fec0:12::2/64 R2(config-if)#ipv6 rip cisco enable R2(config-if)#no shut
%LINK-5-CHANGED: Interface FastEthernet0/0, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/0, changed state to up
R2(config-if)#exit
R2(config)#interface FastEthernet0/1 R2(config-if)#ipv6 add fec0:23::1/64 R2(config-if)#ipv6 rip cisco enable
R2(config-if)#no shut
%LINK-5-CHANGED: Interface FastEthernet0/1, changed state to up
R2(config-if)#exit R2(config)#end
%SYS-5-CONFIG_I: Configured from console by console R2#wr
Building configuration... [OK]
Router>enable
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R3 R3(config)#ipv6 unicast-routing R3(config)#ipv6 router rip cisco
R3(config-rtr)#exit
R3(config)#interface FastEthernet0/0 R3(config-if)#ipv6 add fec0:23::2/64 R3(config-if)#ipv6 rip cisco enable R3(config-if)#no shut
%LINK-5-CHANGED: Interface FastEthernet0/0, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/0, changed state to up
R3(config-if)#exit
R3(config)#interface FastEthernet0/1 R3(config-if)#ipv6 add fec0:34::1/64 R3(config-if)#ipv6 rip cisco enable R3(config-if)#no shut
%LINK-5-CHANGED: Interface FastEthernet0/1, changed state to up
R3(config-if)#exit R3(config)#end
%SYS-5-CONFIG_I: Configured from console by console R3#wr
Building configuration... [OK]
Router>enable
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R4 R4(config)#ipv6 unicast-routing R4(config)#ipv6 router rip cisco R4(config-rtr)#exit
R4(config)#int fa0/0
R4(config-if)#ipv6 add fec0:34::2/64 R4(config-if)#ipv6 rip cisco en
R4(config-if)#ipv6 rip cisco enable R4(config-if)#no shut
%LINK-5-CHANGED: Interface FastEthernet0/0, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/0, changed state to up
R4(config-if)#exit R4(config)#int fa0/1
R4(config-if)#ipv6 add fec0:4444::1/64
R4(config-if)#ipv6 rip cisco enable R4(config-if)#no shut
%LINK-5-CHANGED: Interface FastEthernet0/1, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/1, changed state to up
R4(config-if)#exit R4(config)#end
%SYS-5-CONFIG_I: Configured from console by console R4#wr
Building configuration... [OK]
OSPF动态路由配置
Router>enable
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R1 R1(config)#ipv6 unicast-routing
R1(config)#ipv6 router ospf 100
%OSPFv3-4-NORTRID: OSPFv3 process 100 could not pick a router-id,please configure manually
R1(config-rtr)#router-id 1.1.1.1 R1(config-rtr)#exit
R1(config)#interface FastEthernet0/0 R1(config-if)#ipv6 add fec0:1111::1/64 R1(config-if)#ipv6 ospf 100 area 1 R1(config-if)#no shut
R1(config-if)#exit
R1(config)#interface FastEthernet0/1 R1(config-if)#ipv6 add fec0:12::1/64 R1(config-if)#ipv6 ospf 100 area 1 R1(config-if)#no shut R1(config-if)#exit R1(config)#end
%SYS-5-CONFIG_I: Configured from console by console R1#wr
Building configuration... [OK]
Router>enable
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z. Router(config)#hostname R2 R2(config)#ipv6 unicast-routing R2(config)#ipv6 router ospf 100
%OSPFv3-4-NORTRID: OSPFv3 process 100 could not pick a router-id,please configure manually
R2(config-rtr)#router-id 2.2.2.2 R2(config-rtr)#exit R2(config)#int fa0/0
R2(config-if)#ipv6 add fec0:12::2/64 R2(config-if)#ipv6 ospf 100 area 1
R2(config-if)#no shut
%LINK-5-CHANGED: Interface FastEthernet0/0, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/0, changed state to up R2(config-if)#exit
R2(config)#int fa0/1
R2(config-if)#ipv6 add fec0:23::1/64 R2(config-if)#ipv6 ospf 100 area 0 R2(config-if)#no shut
%LINK-5-CHANGED: Interface FastEthernet0/1, changed state to up
00:03:09: %OSPFv3-5-ADJCHG: Process 100, Nbr 1.1.1.1 on FastEthernet0/0 from LOADING to FULL, Loading Done R2(config-if)#exit R2(config)#end
%SYS-5-CONFIG_I: Configured from console by console R2#wr
Building configuration... [OK] R2#
R3>en
R3#conf t
Enter configuration commands, one per line. End with CNTL/Z. R3(config)#hostname R3
R3(config)#ipv6 unicast-routing R3(config)#ipv6 router ospf 100
%OSPFv3-4-NORTRID: OSPFv3 process 100 could not pick a router-id,please configure manually
R3(config-rtr)#router-id 3.3.3.3 R3(config-rtr)#exit
R3(config)#int fa0/0
R3(config-if)#ipv6 add fec0:23::2/64 R3(config-if)#ipv6 ospf 100 area 0
R3(config-if)#no shut
%LINK-5-CHANGED: Interface FastEthernet0/0, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/0, changed state to up R3(config-if)#exit R3(config)#int fa0/1
R3(config-if)#ipv6 add fec0:34::1/64 R3(config-if)#ipv6 ospf 100 area 2
R3(config-if)#no shut
00:15:36: %OSPFv3-5-ADJCHG: Process 100, Nbr 2.2.2.2 on FastEthernet0/0 from LOADING to FULL, Loading Done
%LINK-5-CHANGED: Interface FastEthernet0/1, changed state to up R3(config-if)#exit
R3(config)#end
%SYS-5-CONFIG_I: Configured from console by console R3#wr
Building configuration... [OK] R3# R4>en R4#conf t
Enter configuration commands, one per line. End with CNTL/Z. R4(config)#hostname R4
R4(config)#ipv6 unicast-routing R4(config)#ipv6 router ospf 100
%OSPFv3-4-NORTRID: OSPFv3 process 100 could not pick a router-id,please configure manually
R4(config-rtr)#router-id 4.4.4.4 R4(config-rtr)#exit R4(config)#int fa0/0
R4(config-if)#ipv6 add fec0:34::2/64 R4(config-if)#ipv6 ospf 100 area 2
R4(config-if)#no shut
%LINK-5-CHANGED: Interface FastEthernet0/0, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/0, changed state to up R4(config-if)#exit R4(config)#int fa0/1
R4(config-if)#ipv6 add fec0:4444::1/64 R4(config-if)#ipv6 ospf 100 area 2 R4(config-if)#no shut
%LINK-5-CHANGED: Interface FastEthernet0/1, changed state to up
%LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/1, changed state to up 00:18:46: %OSPFv3-5-ADJCHG: Process 100, Nbr 3.3.3.3 on FastEthernet0/0 from LOADING to FULL, Loading Done
R4(config-if)#exit
R4(config)#end
%SYS-5-CONFIG_I: Configured from console by console R4#wr
Building configuration... [OK]
R1(config)#ip route 0.0.0.0 0.0.0.0 218.26.174.113 2.1ACL配置
(1)实验资源、工具和准备工作。Catalyst2620路由器2台,Windows 2000客户机2台,Windows 2000 Server IIS服务器2台,集线器或交换机2台。制作好的UTP网络连接(双端均有RJ-45头)平行线若干条、交叉线(一端568A,另一端568B)1条。网络连接和子网地址分配可参考图8.39。
(2)实验内容。设置图8.39中各台路由器名称、IP地址、路由协议(可自选),保存配置文件;设置WWW服务器的IP地址;设置客户机的IP地址;分别对两台路由器设置扩展访问控制列表,调试网络,使子网1的客户机只能访问子网2的Web服务80端口,使子网2的客户机只能访问子网1的Web服务80端口。
2.2 NAT配置
(1)实验资源、工具和准备工作。Catalyst2811路由器2台,Windows 2000客户机2台,Windows 2000 Server IIS服务器2台,集线器或交换机2台。制作好的UTP网络连接(双端均有RJ-45头)平行线若干条、交叉线(一端568A,另一端568B)1条。网络连接和子网地址分配可参考图8.38和表8.3。
(2)设置图8.38中各台路由器名称、IP地址、路由协议(可自选),保存配置文件;设置WWW服务器的IP地址;设置客户机的IP地址; (3)参考8.5.7节内容。 3.实验步骤
按照图8.39给出的拓扑结构进行绘制,进行网络互连的配置。 ① 配置路由器名称、IP地址、路由协议(可自选),保存配置文件。
②设置WWW服务器的IP地址。设置客户机的IP地址。
③ 设置路由器扩展访问控制列表,调试网络。使子网1的客户机只能访问子网2的Web服务80端口,使子网2的客户机只能访问子网1的Web服务80端口。
④写出各路由器的配置过程和配置命令。
按照图8.38给出的拓扑结构进行绘制,进行网络互连的配置。参考8.5.7节内容。写出各路由器的配置过程和配置命令。 完成实验报告。 4.实验结果 4.1ACL配置
(1)拓扑结构图
(2)各路由器的配置过程和配置命令 R1配置命令
Router>en Router#conf t
Router(config)#host R1 R1(config)#int f0/0
R1(config-if)#ip add 192.168.1.1 255.255.255.0 R1(config-if)#no shut R1(config-if)#exit R1(config)#int s2/0
R1(config-if)#ip add 192.168.3.1 255.255.255.252 R1(config-if)#clock rate 64000 R1(config-if)#no shut R1(config-if)#exit
R1(config)#router rip
R1(config-router)#network 192.168.1.0
R1(config-router)#network 192.168.3.0 R1(config-router)#exit
R1(config)#access-list 101 permit tcp any host 192.168.2.3 eq www R1(config)#access-list 101 permit tcp any any R1(config)#access-list 101 deny ip any any R1(config)#int se2/0
R1(config-if)#ip access-group 101 out R1(config-if)#end R1#wr
Building configuration... [OK]
R2配置命令 Router>en Router#conf t
Router(config)#host R2 R2(config)#int f0/0
R2(config-if)#ip add 192.168.2.1 255.255.255.0 R2(config-if)#no shut R2(config-if)#exit R2(config)#int s2/0
R2(config-if)#ip add 192.168.3.2 255.255.255.252 R2(config-if)#no shut R2(config-if)#exit R2(config)#router rip
R2(config-router)#network 192.168.2.0
R2(config-router)#network 192.168.3.0 R2(config-router)#exit
R2(config)#access-list 101 permit tcp any host 192.168.1.3 eq www
R2(config)#access-list 101 permit tcp any any R2(config)#access-list 101 deny ip any any R2(config)#int se2/0
R2(config-if)#ip access-group 101 out R2(config-if)#end R2#wr
Building configuration... [OK] 4.2 NAT配置 (1)拓扑结构图
R0(config)#ip route 0.0.0.0 0.0.0.0 218.26.174.114 R1配置命令
R1(config)#ip nat pool network 218.26.174.117 218.26.174.117 netmask 255.255.255.240 R1(config)#ip nat pool other 218.26.174.118 218.26.174.126 netmask 255.255.255.240 R1(config)#ip nat inside source list 1 pool network overload R1(config)#ip nat inside source list 2 pool other R1(config)#access-list 1 permit 192.168.50.0 0.0.0.127 R1(config)#access-list 2 permit 192.168.10.0 0.0.0.127 R1(config)#access-list 2 permit 192.168.20.0 0.0.0.127 R1(config)#access-list 2 permit 192.168.30.0 0.0.0.127 R1(config)#access-list 2 permit 192.168.40.0 0.0.0.127
R1(config)#ip nat inside source static tcp 192.168.100.3 80 218.26.174.116 80 R1(config)#ip nat inside source static tcp 192.168.100.2 80 218.26.174.115 25 R1(config)#ip nat inside source static tcp 192.168.100.2 80 218.26.174.115
因篇幅问题不能全部显示,请点此查看更多更全内容