需求:
启动所有机器
ip地址192.168.1.2
子网掩码 255.255.255.0
网关192.168.1.1
ip地址192.168.2.2
子网掩码 255.255.255.0
网关192.168.2.1
<H3C>sys
[H3C]sysname SW1
[SW1]vlan 2
[SW1-vlan2]quit
[SW1]vlan 3
[SW1-vlan3]quit
pvst是对每个vlan生成一颗独立的生成树
[SW1]stp mode pvst
//设置vlan2,3优先级
[SW1]stp vlan 2 priority 0
[SW1]stp vlan 3 priority 0
trunk类型的接口可以转发数据包,从而从其他交换机获取数据
[SW1]int range g1/0/8 g1/0/9
[SW1-if-range]port link-type trunk
[SW1-if-range]port trunk permit vlan all
[SW1-if-range]quit
聚合链路将多条连接同一设备的交换机合并为理论上的同一条线路,当某一条物理线路出现问题时可以不间断继续运行,提高稳定性
[SW1]int Bridge-Aggregation 10
[SW1-Bridge-Aggregation10]quit
//将物理接口g1/0/6 g1/0/7加入聚合链路10
[SW1]int range g1/0/6 g1/0/7
[SW1-if-range]port link-aggregation group 10
[SW1-if-range]quit
trunk接口默认只允许vlan1通过,当有多个vlan 需要通过时就需要进行设置trunk转发规则
[SW1]int Bridge-Aggregation 10
[SW1-Bridge-Aggregation10]port link-type trunk
[SW1-Bridge-Aggregation10]port trunk permit vlan all
三层交换机是可以对vlan进行配置虚拟接口(前提必须是vlan存在)并且虚拟接口在对应vlan下是可以ping到的,可以作为网关地址进行转发数据
[SW1]int Vlan-interface 2
[SW1-Vlan-interface2]ip address 192.168.1.1 24
[SW1-Vlan-interface2]quit
[SW1]int Vlan-interface 3
[SW1-Vlan-interface3]ip address 192.168.2.1 24
[SW1-Vlan-interface3]quit
[SW1]int g1/0/9
[SW1-GigabitEthernet1/0/9]port link-mode route
[SW1-GigabitEthernet1/0/9]ip address 192.168.4.1 24
[SW1-GigabitEthernet1/0/9]quit
路由转发规则是先检查直连路由或静态路由(根据品牌会有先后差别)最后检查动态路由表
例:当配置了两条静态路由192.168.0.0/16 与192.168 .1.0/24 时
当接收到目的地址为192.168.2.1时,则会选择192.168.0.0做为路由(此时192.168.1.0/24不匹配地址)
当接收到目的地址为192.138.1.1时,则会选则192.168.1.0作为路由(此时192.168.0.0/16与192.168.1.0/24都匹配,但是192.168.1.0/24的子网掩码比192.168.0.0/16长,所有会选择192.168.1.0作为路由)
[SW1]ip route-static 0.0.0.0 0.0.0.0 192.168.4.2
<H3C>sys
[H3C]sysname SW2
[SW2]vlan 2
[SW2-vlan2]quit
[SW2]vlan 3
[SW2-vlan3]quit
[SW2]stp mode pvst
[SW2]stp global enable
[SW2]stp vlan 2 priority 4096
[SW2]stp vlan 3 priority 4096
[SW2]int Bridge-Aggregation 10
[SW2-Bridge-Aggregation10]quit
[SW2]int range g1/0/6 g1/0/7
[SW2-if-range]port link-aggregation group 10
[SW2-if-range]quit
//设置聚合链路工作模式
[SW2]int Bridge-Aggregation 10
[SW2-Bridge-Aggregation10]port link-type trunk
[SW2-Bridge-Aggregation10]port trunk permit vlan all
[SW2-Bridge-Aggregation10]quit
[SW2]int g1/0/9
[SW2-GigabitEthernet1/0/9]port link-type trunk
[SW2-GigabitEthernet1/0/9]port trunk permit vlan all
<H3C>sys
[H3C]sysname SW3
[SW3]vlan 2
[SW3-vlan2]quit
[SW3]vlan 3
[SW3-vlan3]quit
[SW3]stp mode pvst
[SW3]stp global enable
[SW3]stp vlan 2 priority 40960
[SW3]stp vlan 3 priority 40960
[SW3]int range g1/0/8 g1/0/9
[SW3-if-range]port link-type trunk
[SW3-if-range]port trunk permit vlan all
[SW3-if-range]quit
[SW3]int g1/0/1
[SW3-GigabitEthernet1/0/1]port access vlan 2
[SW3-GigabitEthernet1/0/1]quit
[SW3]int g1/0/2
[SW3-GigabitEthernet1/0/2]port access vlan 3
[SW3-GigabitEthernet1/0/2]quit
<H3C>sys
[H3C]sysname R1
[R1]int g0/0
[R1-GigabitEthernet0/0]ip address 192.168.4.2 24
[R1-GigabitEthernet0/0]quit
[R1]int g0/1
[R1-GigabitEthernet0/1]ip address 200.1.1.1 24
[R1-GigabitEthernet0/1]quit
[R1]ip route-static 192.168.1.1 24 192.168.4.1
[R1]ip route-static 192.168.2.1 24 192.168.4.1
[R1]ip route-static 0.0.0.0 0.0.0.0 200.1.1.2
配置三条规则
[R1]acl basic 2000
[R1-acl-ipve-basic-2000]rule permit source 192.168.1.0 0.0.0.255
[R1-acl-ipve-basic-2000]rule permit source 192.168.2.0 0.0.0.255
[R1-acl-ipve-basic-2000]rule permit source 192.168.4.0 0.0.0.255
[R1-acl-ipv4-basic-2000]quit
[R1]interface g0/1
[R1-GigabitEthernet0/1]nat outbound 2000
<H3C>sys
[H3C]sysname R2
[R2]int g0/1
[R2-GigabitEthernet0/1]ip address 200.1.1.2 24
[R2-GigabitEthernet0/1]quit
并为其配置地址
[R2]interface loopback 0
[R2-LoopBack0]ip address 2.2.2.2 32
[R2-LoopBack0]quit
本文地址:https://blog.csdn.net/weixin_44019654/article/details/107212637
如对本文有疑问, 点击进行留言回复!!
第三次学JAVA再学不好就吃翔(part88)--ArrayList嵌套ArrayList
使用ffmpeg视频切片并加密和视频AES-128加密后播放
JAVA程序设计:最长重复子串(LeetCode:1044)
LiveGBS国标GB/T28181云端录像分布式录像存储自动清理时移回看录像下载播放
网友评论