实验要求如图:
1、划分网段:
PC2、PC4、PC5、PC6网段为:192.168.1.0
PC1、PC3网段为:192.168.2.0
2、三台交换机创建vlan:
[SW1]vlan batch 2 to 5
[SW2]vlan batch 2 to 5
[SW3]vlan batch 2 to 5
3、接口划分vlan:
PC1/3使用access模式,PC2/4/5/6使用hybridcc
[SW1]int g0/0/1
[SW1-GigabitEthernet0/0/1]port link-type access
[SW1-GigabitEthernet0/0/1]port default vlan 2
[SW1-GigabitEthernet0/0/1]int g0/0/2
[SW1-GigabitEthernet0/0/2]port hybrid pvid vlan 3
[SW1-GigabitEthernet0/0/2]port hybrid untagged vlan 2 to 5
[SW2]int g0/0/1
[SW2-GigabitEthernet0/0/1]port link-type access
[SW2-GigabitEthernet0/0/1]port default vlan 2
[SW2-GigabitEthernet0/0/1]int g0/0/2
[SW2-GigabitEthernet0/0/2]port hybrid pvid vlan 4
[SW2-GigabitEthernet0/0/2]port hybrid untagged vlan 3 to 4
[SW3]int g0/0/2
[SW3-GigabitEthernet0/0/2]port hybrid pvid vlan 4
[SW3-GigabitEthernet0/0/2]port hybrid untagged vlan 2 to 4
[SW3-GigabitEthernet0/0/2]int g0/0/1
[SW3-GigabitEthernet0/0/1]port hybrid pvid vlan 5
[SW3-GigabitEthernet0/0/1]port hybrid untagged vlan 2 3 5
三台交换机中间的干道链路全部trunk,允许所有vlan通过
[SW1-GigabitEthernet0/0/2]int g0/0/3
[SW1-GigabitEthernet0/0/3]port link-type trunk
[SW1-GigabitEthernet0/0/3]port trunk allow-pass vlan all
[SW2-GigabitEthernet0/0/2]int g0/0/3
[SW2-GigabitEthernet0/0/3]port link-type trunk
[SW2-GigabitEthernet0/0/3]port trunk allow-pass vlan all
[SW2-GigabitEthernet0/0/3]int g0/0/4
[SW2-GigabitEthernet0/0/4]port link-type trunk
[SW2-GigabitEthernet0/0/4]port trunk allow-pass vlan all
[SW3-GigabitEthernet0/0/2]int g0/0/3
[SW3-GigabitEthernet0/0/3]port link-type trunk
[SW3-GigabitEthernet0/0/3]port trunk allow-pass vlan all
4、配置vlan间路由,配置dhcp:
将交换机连接路由器的交换机LSW1接口0/0/4设置hybird模式,允许vlan2携带标签转发,vlan3/4/5剥离标签转发
[SW1-GigabitEthernet0/0/3]int g0/0/4
[SW1-GigabitEthernet0/0/4]port hybrid untagged vlan 3 to 5
[SW1-GigabitEthernet0/0/4]port hybrid tagged vlan 2
[R1]dhcp enable
[R1]int g0/0/0
[R1-GigabitEthernet0/0/0]ip ad 192.168.1.1 24
[R1-GigabitEthernet0/0/0]int g0/0/0.1
[R1-GigabitEthernet0/0/0.1]dot ter vid 2
[R1-GigabitEthernet0/0/0.1]ip ad 192.168.2.1 24
[R1-GigabitEthernet0/0/0.1]arp broadcast enable
[R1]ip pool a
[R1-ip-pool-a]network 192.168.1.0 mask 24
[R1-ip-pool-a]gateway-list 192.168.1.1
[R1-ip-pool-a]dns-list 114.114.114.114 8.8.8.8
[R1]ip pool b
[R1-ip-pool-b]network 192.168.2.0 mask 24
[R1-ip-pool-b]gateway-list 192.168.2.1
[R1-ip-pool-b]dns-list 114.114.114.114 8.8.8.8
[R1]int g0/0/0
[R1-GigabitEthernet0/0/0]dhcp select global
[R1]int g0/0/0.1
[R1-GigabitEthernet0/0/0.1]dhcp select global
测试:
1、pc2可以访问pc4/5/6
2、pc4可以访问pc5不可以访问pc6
3、pc5不能访问pc6