一问
r6
[r6]int l0
[r6-LoopBack0]ip address 6.6.6.6 24
[r6-LoopBack0]int g0/0/0
[r6-GigabitEthernet0/0/0]ip address 12.0.0.2 24
二问
5个用户网段 6个骨干
需要6个子网
将192.168.1.0/24划分 借3位
192.168.1.0/27 骨干
192.168.1.0/30 192.168.1.4/30 192.168.1.8/30 192.168.1.12/30 192.168.1.16/30 192.168.1.20/30 192.168.1.24/30 192/168.1.28/30(备用)
192.168.1.32/27 R1 环回: 192.168.1.32/28 192.168.1.48/28
192.168.1.64/27 R2 环回: 192.168.1.64/28 192.168.1.80/28
192.168.1.96/27 R3
192.168.1.128/27 R4 环回: 192.168.1.128/28 192.168.1.144/28
192.168.1.160/27 R5
192.168.1.192/27 192.168.1.224/27(备用)
三、六问
R1
配置环回
[r1]int l0
[r1-LoopBack0]ip ad 192.168.1.33 28
[r1-LoopBack0]int l1
[r1-LoopBack1]ip ad 192.168.1.49 28
配置接口
[r1]int g0/0/0
[r1-GigabitEthernet0/0/0]ip ad 192.168.1.1 30
[r1-GigabitEthernet0/0/0]int g0/0/1
[r1-GigabitEthernet0/0/1]ip ad 192.168.1.5 30
[r1-GigabitEthernet0/0/1]
R2
配置环回
[r2]int l0
[r2-LoopBack0]ip ad 192.168.1.65 28
[r2-LoopBack0]int l1
[r2-LoopBack1]ip ad 192.168.1.81 28
配置接口
[r2]int g0/0/0
[r2-GigabitEthernet0/0/0]ip ad 192.168.1.2 30
[r2-GigabitEthernet0/0/0]int g0/0/1
[r2-GigabitEthernet0/0/1]ip ad 192.168.1.9 30
R3
配置接口
[r3]int g0/0/0
[r3-GigabitEthernet0/0/0]ip ad 192.168.1.6 30
[r3-GigabitEthernet0/0/0]int g0/0/1
[r3-GigabitEthernet0/0/1]ip ad 192.168.1.13 30
R4
配置环回
[r4]int l0
[r4-LoopBack0]ip ad 192.168.1.129 28
[r4-LoopBack0]int l1
[r4-LoopBack1]ip ad 192.168.1.145 28
配置接口
[r4]int g0/0/0
[r4-GigabitEthernet0/0/0]ip ad 192.168.1.10 30
[r4-GigabitEthernet0/0/0]int g0/0/1
[r4-GigabitEthernet0/0/1]ip ad 192.168.1.14 30
[r4-GigabitEthernet0/0/1]int g0/0/2
[r4-GigabitEthernet0/0/2]ip ad 192.168.1.17 30
[r4-GigabitEthernet0/0/2]int g4/0/0
[r4-GigabitEthernet4/0/0]ip ad 192.168.1.21 30
R5
配置环回
[r5]int l0
[r5-LoopBack0]ip ad 192.168.1.161 27
[r5-LoopBack0]
配置接口
[r5]int g0/0/0
[r5-GigabitEthernet0/0/0]ip ad 192.168.1.18 30
[r5-GigabitEthernet0/0/2]int g0/0/2
[r5-GigabitEthernet0/0/2]ip ad 192.168.1.22 30
[r5-GigabitEthernet0/0/2]int g0/0/1
[r5-GigabitEthernet0/0/1]ip ad 12.0.0.1 24
r1-r5要到r6,可以写缺省(假设g4/0/0 不能用)
[r5]ip route-static 0.0.0.0 0 12.0.0.2
[r4]ip route-static 0.0.0.0 0 192.168.1.18
[r3]ip route-static 0.0.0.0 0 192.168.1.14
[r2]ip route-static 0.0.0.0 0 192.168.1.10
[r1]ip route-static 0.0.0.0 0 192.168.1.2
[r1]ip route-static 0.0.0.0 0 192.168.1.6
但是存在缺省负载均衡不合理
要手写路由
R1
[r1]ip route-static 192.168.1.64 27 192.167.1.2
[r1]ip route-static 192.168.1.8 30 192.167.1.2
[r1]ip route-static 192.168.1.96 27 192.168.1.6
[r1]ip route-static 192.168.1.12 30 192.168.1.6
R2
[r2]ip route-static 192.168.1.32 27 192.168.1.1
[r2]ip route-static 192.168.1.4 30 192.168.1.1
[r2]ip route-static 192.168.1.96 27 192.168.1.1
[r2]ip route-static 192.168.1.96 27 192.168.1.10
R3
[r3]ip route-static 192.168.1.32 27 192.168.1.5
[r3]ip route-static 192.168.1.0 30 192.168.1.5
[r3]ip route-static 192.168.1.64 27 192.168.1.5
[r3]ip route-static 192.168.1.64 27 192.168.1.14
R4
[r4]ip route-static 192.168.1.0 30 192.168.1.9
[r4]ip route-static 192.168.1.64 27 192.168.1.9
[r4]ip route-static 192.168.1.4 30 192.168.1.13
[r4]ip route-static 192.168.1.96 27 192.168.1.13
[r4]ip route-static 192.168.1.32 27 192.168.1.13
[r4]ip route-static 192.168.1.32 27 192.168.1.9
R5
[r5]ip route-static 192.168.1.128 27 192.168.1.17
[r5]ip route-static 192.168.1.64 27 192.168.1.17
[r5]ip route-static 192.168.1.96 27 192.168.1.17
[r5]ip route-static 192.168.1.32 27 192.168.1.17
[r5]ip route-static 192.168.1.0 30 192.168.1.17
[r5]ip route-static 192.168.1.4 30 192.168.1.17
[r5]ip route-static 192.168.1.8 30 192.168.1.17
[r5]ip route-static 192.168.1.12 30 192.168.1.17
现在有出去的路由,没有回来的路由,要做地址转换
[r5]acl 2000
[r5-acl-basic-2000]rule permit source 192.168.1.0 0.0.0.255
[r5-acl-basic-2000]int g0/0/1
[r5-GigabitEthernet0/0/1]nat outbound 2000
四问
[r3]dhcp enable
[r3]ip pool qq
[r3-ip-pool-qq]network 192.168.1.96 mask 27
[r3-ip-pool-qq]gateway-list 192.168.1.97
[r3-ip-pool-qq]dns-list 114.114.114.114 8.8.8.8
[r3-ip-pool-qq]q
[r3]int g0/0/2
[r3-GigabitEthernet0/0/2]dhcp select global
五问
避免环路,要在汇总的位置做防环
[r1]ip route-static 192.168.1.32 27 NULL 0
[r2]ip route-static 192.168.1.64 27 NULL 0
[r4]ip route-static 192.168.1.128 27 NULL 0
七问
[r1]aaa
[r1-aaa]local-user cw password cipher 12345
[r1-aaa]local-user cw service-type telnet
[r1-aaa]q
[r1]user-interface vty 0 4
[r1-ui-vty0-4]authentication-mode aaa
[r5]int g0/0/1
[r5-GigabitEthernet0/0/1]nat server protocol tcp global current-interface 23 inside 192.168.1.1 23
Are you sure to continue?[Y/N]:y
[r5-GigabitEthernet0/0/1]
八问
[r4]ip route-static 0.0.0.0 0 192.168.1.22 preference 61
[r5]ip route-static 192.168.1.128 27 192.168.1.21 pr 61
[r5]ip route-static 192.168.1.64 27 192.168.1.21 pr 61
[r5]ip route-static 192.168.1.96 27 192.168.1.21 pr 61
[r5]ip route-static 192.168.1.32 27 192.168.1.21 pr 61
[r5]ip route-static 192.168.1.0 30 192.168.1.21 pr 61
[r5]ip route-static 192.168.1.4 30 192.168.1.21 pr 61
[r5]ip route-static 192.168.1.8 30 192.168.1.21 pr 61
[r5]ip route-static 192.168.1.12 30 192.168.1.21 pr 61