软考中级网络工程师--ensp 实验(一)

3A实现telnet远程连接认证配置

在这里插入图片描述

AR1配置

<Huawei>system-view
Enter system view, return user view with Ctrl+Z.
[Huawei]sysname AR1
[AR1]int g0/0/0
[AR1-GigabitEthernet0/0/0]ip address 192.168.100.1 24
Aug 10 2024 15:41:10-08:00 AR1 %%01IFNET/4/LINK_STATE(l)[1]:The line protocol IP
 on the interface GigabitEthernet0/0/0 has entered the UP state. 
[AR1-GigabitEthernet0/0/0]quit

aaa 用户管理

[AR1]aaa
[AR1-aaa]local-user admin password cipher 123456  #创建用户设置密码  cipher表示密码经过加密
[AR1-aaa]local-user admin privilege level 15      #用户级别为15,最高级别
[AR1-aaa]local-user admin service-type telnet     #用户通过 telnet 服务类型进行登录
[AR1-aaa]quit

VTY用户配置

[AR1]user-interface vty 0 4                      #VTY用户界面的配置模式,并指定了终端线路范围从0[AR1-ui-vty0-4]authenttication-mode aaa          #VTY终端线路的身份验证模式设置为AAA

AR2配置

<Huawei>system-view
Enter system view, return user view with Ctrl+Z.
[Huawei]sysname AR2
[AR2]int g0/0/0
[AR2-GigabitEthernet0/0/0]ip address 192.168.100.2 24
[AR2-GigabitEthernet0/0/0]quit



telnet 服务链接

<AR2>telnet 192.168.100.1  
  Press CTRL_] to quit telnet mode
  Trying 192.168.100.1 ...
  Connected to 192.168.100.1 ...

Login authentication


Username:admin
Password:
<AR1>

基于接口划分vlan

在这里插入图片描述
同一vlan 下同一网段能互相通信
交换机1配置

<Huawei>system-view #进入系统视图
Enter system view, return user view with Ctrl+Z.
[Huawei]sysname l1 #交换机重命名
Info: Information center is disabled.
[l1]vlan batch 10 20 #批量添加vlan 10,vlan 20
Info: This operation may take a few seconds. Please wait for a moment...done..
[l1]interface g0/0/2
[l1-GigabitEthernet0/0/2]port link-type access # 配置接口链路类型为access 
[l1-GigabitEthernet0/0/2]port default vlan 10  # 配置接口划分到vlan 10
[l1-GigabitEthernet0/0/2]quit
[l1]interface g0/0/3
[l1-GigabitEthernet0/0/3]port link-type access
[l1-GigabitEthernet0/0/3]port default vlan 20
[l1-GigabitEthernet0/0/3]quit
[l1]interface g0/0/1
[l1-GigabitEthernet0/0/1]port link-type trunk  # 配置接口链路类型为trunk 
[l1-GigabitEthernet0/0/1]port trunk allow vlan 10 20  #配置允许通过 vlan10 ,vlan20
[l1-GigabitEthernet0/0/1]quit
[l1]quit
<l1>save

交换机2配置

<Huawei>system-view
Enter system view, return user view with Ctrl+Z.
[Huawei]sysname l2
[l2]un info en
Info: Information center is disabled.
[l2]vlan batch 10 20
Info: This operation may take a few seconds. Please wait for a moment...done.
[l2]interface g0/0/2
[l2-GigabitEthernet0/0/2]port link-type access
[l2-GigabitEthernet0/0/2]port default vlan 10
[l2-GigabitEthernet0/0/2]quit
[l2]interface g0/0/3
[l2-GigabitEthernet0/0/3]port link-type access
[l2-GigabitEthernet0/0/3]port default vlan 20
[l2-GigabitEthernet0/0/3]quit
[l2]interface g0/0/1
[l2-GigabitEthernet0/0/1]port link-type trunk
[l2-GigabitEthernet0/0/1]port trunk allow-pass vlan 10 20
[l2-GigabitEthernet0/0/1]quit
[l2]quit
<l2>save

单臂路由划分vlan

同一个路由器下不同vlan 通信
容易出现单点故障
在这里插入图片描述
交换机配置

<Huawei>system-view
Enter system view, return user view with Ctrl+Z.
[Huawei]sysname l
[l]un info en
Info: Information center is disabled.
[l]vlan batch 10 20
Info: This operation may take a few seconds. Please wait for a moment...done.
[l]interface g0/0/1
[l-GigabitEthernet0/0/1]port link-type trunk
[l-GigabitEthernet0/0/1]port trunk allow-pass vlan 10 20
[l-GigabitEthernet0/0/1]quit
[l]interface g0/0/2
[l-GigabitEthernet0/0/2]port link-type access
[l-GigabitEthernet0/0/2]port default vlan 10
[l-GigabitEthernet0/0/2]quit
[l]interface g0/0/3
[l-GigabitEthernet0/0/3]port link-type access
[l-GigabitEthernet0/0/3]port default vlan 20
[l-GigabitEthernet0/0/3]quit

路由器配置

<Huawei>system-view
Enter system view, return user view with Ctrl+Z.
[Huawei]un info en
Info: Information center is disabled.
[Huawei]sysname R1
[R1]interface g0/0/0.10            #创建子接口
[R1-GigabitEthernet0/0/0.10]dot1q termination vid 10 #配置子接口vid 是10
[R1-GigabitEthernet0/0/0.10]ip address 192.168.100.254 24 #配置接口IP地址是192.168.100.254 配置接口子网掩码是255.255.255.0
[R1-GigabitEthernet0/0/0.10]arp broadcast enable  #开启arp 广播功能
[R1-GigabitEthernet0/0/0.10]quit
[R1]interface g0/0/0.20
[R1-GigabitEthernet0/0/0.20]dot1q termination vid 20
[R1-GigabitEthernet0/0/0.20]ip address 192.168.200.254 24
[R1-GigabitEthernet0/0/0.20]arp b	
[R1-GigabitEthernet0/0/0.20]arp broadcast enable
[R1-GigabitEthernet0/0/0.20]quit

三层交换机vlanif配置

实现不同vlan之间通信

<Huawei>system-view
Enter system view, return user view with Ctrl+Z.
[Huawei]sysname l
[l]un info en
Info: Information center is disabled.
[l]vlan batch 10 20
Info: This operation may take a few seconds. Please wait for a moment...done.
[l]interface g0/0/1
[l-GigabitEthernet0/0/1]port link-type trunk
[l-GigabitEthernet0/0/1]port trunk allow-pass vlan 10 20
[l-GigabitEthernet0/0/1]quit
[l]interface g0/0
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值