第一步、配置VLAN
SW1
interface GigabitEthernet0/0/2
port link-type access
port default vlan 2
interface GigabitEthernet0/0/3
port hybrid pvid vlan 3
port hybrid untagged vlan 2 to 6
interface GigabitEthernet0/0/4
port link-type trunk
port trunk allow-pass vlan 2 to 6
interface GigabitEthernet0/0/1
port hybrid tagged vlan 2
port hybrid untagged vlan 3 to 6
SW2
interface GigabitEthernet0/0/1
port link-type trunk
port trunk allow-pass vlan 2 to 6
interface GigabitEthernet0/0/2
port link-type access
port default vlan 2
interface GigabitEthernet0/0/3
port hybrid pvid vlan 4
port hybrid untagged vlan 2 to 5interface GigabitEthernet0/0/4
port link-type trunk
port trunk allow-pass vlan 2 to 6
SW3
interface GigabitEthernet0/0/1
port link-type trunk
port trunk allow-pass vlan 2 to 6
interface GigabitEthernet0/0/2
port hybrid pvid vlan 5
port hybrid untagged vlan 2 to 5
interface GigabitEthernet0/0/3
port hybrid pvid vlan 6
port hybrid untagged vlan 2 to 3 6
R1
interface GigabitEthernet0/0/0.1
dot1q termination vid 2
ip address 192.168.1.1 255.255.255.0
arp broadcast enable
第二步、创建池塘
aa
ip pool aa
gateway-list 192.168.1.1
network 192.168.1.0 mask 255.255.255.0bb
ip pool bb
gateway-list 192.168.2.1
network 192.168.2.0 mask 255.255.255.0开启
dhcp select globa
第三步、验证
PC1(192.168.1.0 网段获取的地址)
PC4(192.168.2.0 网段获取的地址)
PC4可以访问PC5,不能访问PC6
PC5不能访问PC6