静态综合实验

该配置描述了如何进行子网划分以满足7个路由器的需求,每个路由器都有环回接口,并通过DHCP为PC分配IP。设置了默认路由以实现全网可达,并使用NAT进行公网和私网通信。同时,通过特定路由条目防止环路,并配置了远程访问的Telnet服务。

摘要生成于 C知道 ,由 DeepSeek-R1 满血版支持, 前往体验 >

1.首先进行子网划分

基于192.168.1.0 24划分

一共7个路由器需要7个网段还有7个主干网

192.168.1.0/24 ----用于骨干

192.168.1.32/27 ----R1环回 192.168.1.32/28 192.168.1.48/28

192.168.1.64/27 --- R2环回 192.168.1.64/28 192.168.1.80/28

192.168.1.96 /27 ----R3环回192.168.1.96/28 192.168.1.112/28

192.168.1.128 /27 ----R4环回 192.168.1.128/28 192.168.1.144/28

192.168.1.160/27----R5环回 192.168.1.160/27

192.168.1.192 /27

192.168.1.224 /27

骨干网络划分:

由于骨干网络总共6个网段,需要把192.168.1.0/27划分为192.168.1.0/30等8个网段

192.168.1.0/27 借3位

192.168.1.0 /30

192.168.1.4 /30

192.168.1.8 /30

192.168.1.12 /30

192.168.1.16/30

192.168.1.20/30

192.168.1.24/30 

192.168.1.1.28/30


2.所有路由上环回

[r1]interface GigabitEthernet 0/0/0
[r1-GigabitEthernet0/0/0]ip address 192.168.1.1 30
[r1-GigabitEthernet0/0/0]q
[r1]interface GigabitEthernet 0/0/1
[r1-GigabitEthernet0/0/1]ip address 192.168.1.9 30
[r1]interface LoopBack 0
[r1-LoopBack0]ip address 192.168.1.33 28
[r1-LoopBack0]q
[r1]interface LoopBack 1
[r1-LoopBack1]ip address 192.168.1.49 28
[r2]interface GigabitEthernet 0/0/0
[r2-GigabitEthernet0/0/0]ip address 192.168.1.2 30
[r2-GigabitEthernet0/0/0]q
[r2]interface GigabitEthernet 0/0/1
[r2-GigabitEthernet0/0/1]ip address 192.168.1.5 30
[r2]interface LoopBack 0
[r2-LoopBack0]ip address 192.168.1.65 28
[r2-LoopBack0]q
[r2]interface LoopBack 1
[r2-LoopBack1]ip address 192.168.1.81 28
[r3]interface GigabitEthernet 0/0/0
[r3-GigabitEthernet0/0/0]ip address 192.168.1.10 30
[r3-GigabitEthernet0/0/0]q
[r3]interface GigabitEthernet 0/0/1
[r3-GigabitEthernet0/0/1]ip address 192.168.1.13 30
[r3]interface GigabitEthernet 0/0/2
[r3-GigabitEthernet0/0/2]ip address 192.168.1.97 27
[r4]interface GigabitEthernet 0/0/0
[r4-GigabitEthernet0/0/0]ip address 192.168.1.14 30
[r4-GigabitEthernet0/0/0]int gi 0/0/1
[r4-GigabitEthernet0/0/1]ip add 192.168.1.6 30
[r4-GigabitEthernet0/0/1]int gi 0/0/2
[r4-GigabitEthernet0/0/2]ip address 192.168.1.17 30
[r4-GigabitEthernet0/0/2]int gi 4/0/0
[r4-GigabitEthernet4/0/0]ip add 192.168.1.21 30
[r4]interface LoopBack 0
[r4-LoopBack0]IP address 192.168.1.129 28
[r4]interface LoopBack 1
[r4-LoopBack1]ip address 192.168.1.145 28
[r5-GigabitEthernet0/0/0]ip address 192.168.1.22 30
[r5]interface GigabitEthernet 0/0/1
[r5-GigabitEthernet0/0/1]ip address 192.168.1.26 30
[r5]interface GigabitEthernet 0/0/2
[r5-GigabitEthernet0/0/2]ip address 192.168.1.29 30
[r5-GigabitEthernet0/0/2]ip address  56.1.1.1 24
[r5]interface LoopBack 0	
[r5-LoopBack0]ip address 192.168.1.161 27

[r6-GigabitEthernet0/0/0]ip address 56.1.1.2 24
[r6]interface LoopBack 0
[r6-LoopBack0]ip address 6.6.6.6 24

3.r3下两台pc自动获取ip

[r3]dhcp enable
Info: The operation may take a few seconds. Please wait for a moment.done.
[r3]ip pool r3
Info: It's successful to create an IP address pool.
[r3-ip-pool-r3]network 192.168.1.96 mask 27
[r3-ip-pool-r3]gateway-list 192.168.1.97
[r3-ip-pool-r3]dns-list 144.144.144.144 8.8.8.8
[r3-ip-pool-r3]int g 0/0/2
[r3-GigabitEthernet0/0/2]dhcp select global 

4.缺省路由

[r5]ip route-static 0.0.0.0 0 56.1.1.2

[r4]ip route-static 0.0.0.0 0 192.168.1.18
[r4]ip route-static 0.0.0.0 0 192.168.1.22 preference 61

[r3]ip route-static 0.0.0.0 0 192.168.1.14

[r2]ip route-static 0.0.0.0 0 192.168.1.6

[r1]ip route-static 0.0.0.0 0 192.168.1.2
[r1]ip route-static 0.0.0.0 0 192.168.1.10

5全网可达



[r1]ip route-static 192.168.1.64 27 192.168.1.2
[r1]ip route-static 192.168.1.4 30 192.168.1.2
[r1]ip route-static 192.168.1.12 30 192.168.1.10
[r1]ip route-static 192.168.1.96 27 192.168.1.10



[r2]ip route-static 192.168.1.32 27 192.168.1.1
[r2]ip route-static 192.168.1.96 27 192.168.1.1
[r2]ip route-static 192.168.1.96 27 192.168.1.6
[r2]ip route-static 192.168.1.8 30 192.168.1.1
[r2]ip route-static 192.168.1.12 30 192.168.1.6


[r3]ip route-static 192.168.1.32 27 192.168.1.9
[r3]ip route-static 192.168.1.64 27 192.168.1.9
[r3]ip route-static 192.168.1.64 27 192.168.1.14
[r3]ip route-static 192.168.1.0 30  192.168.1.9
[r3]ip route-static 192.168.1.4 30 192.168.1.14

[r4]ip route-static 192.168.1.0 30 192.168.1.5
[r4]ip route-static 192.168.1.64 27 192.168.1.5
[r4]ip route-static 192.168.1.96 27 192.168.1.13
[r4]ip route-static 192.168.1.32 27 192.168.1.13
[r4]ip route-static 192.168.1.32 27 192.168.1.5
[r4]ip route-static 192.168.1.8 30 192.168.1.13

[r5]ip route-static 192.168.1.128 27 192.168.1.17
[r5]ip route-static 192.168.1.64 27 192.168.1.17
[r5]ip route-static 192.168.1.96 27 192.168.1.17
[r5]ip route-static 192.168.1.32 27 192.168.1.17
[r5]ip route-static 192.168.1.0 30 192.168.1.17
[r5]ip route-static 192.168.1.4 30 192.168.1.17
[r5]ip route-static 192.168.1.8 30 192.168.1.17
[r5]ip route-static 192.168.1.12 30 192.168.1.17

[r5]ip route-static 192.168.1.128 27 192.168.1.21 p 61
[r5]ip route-static 192.168.1.64 27 192.168.1.21 p 61
[r5]ip route-static 192.168.1.96 27 192.168.1.21 p 61
[r5]ip route-static 192.168.1.32 27 192.168.1.21 p 61
[r5]ip route-static 192.168.1.0 30 192.168.1.21 p 61
[r5]ip route-static 192.168.1.4 30 192.168.1.21 p 61
[r5]ip route-static 192.168.1.8 30 192.168.1.21 p 61



要实现r1-r5的环回可以访问r6的环回要是用nat技术实现公网和私有网络的连通

[r5]acl 2000
[r5-acl-basic-2000]rule permit source 192.168.1.0 0.0.0.255

[r5-acl-basic-2000]int g 0/0/2
[r5-GigabitEthernet0/0/2]nat outbound 2000

6.防止环路

[r1]ip route-static 192.168.1.32 27 NULL 0

[r2]ip route-static 192.168.1.64 27 NULL 0

[r4]ip route-static 192.168.1.128 27 NULL 0

7.实现



 首先在r1上开启telnet功能并且创建用户账号密码:

[r1]aaa
[r1-aaa]local-user yps privilege level 15 password  cipher 123456
Info: Add a new user.
[r1-aaa]local-user yps service-type telnet

[r1]user-interface vty 0 4
[r1-ui-vty0-4]authentication-mode aaa

然后在r5上做一个端口映射到r1的talnet

[r5-GigabitEthernet0/0/2]nat server protocol tcp global current-interface 23 ins
ide 192.168.1.33 23
Warning:The port 23 is well-known port. If you continue it may cause function fa
ilure.
Are you sure to continue?[Y/N]:y

测试

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值