华为三层交换,PAT,DHCP

实验目的:

1.pc地址都是DHCP获取IP

2.C1,C3vlan10C2,C4vlan20,且实现互通;

3.pc都能访问外网;

所需设备:

使用ENSP模拟器模拟2台路由器1台三层交换机2台二层交换机4PC

实验拓扑图:


wKiom1NA2nyD_Gd5AAFq_68K7M8592.jpg

实验步骤:

1.给二层交换机划分vlan,并把每个接口加入各自的vlan和建立中继口。

LSW1:划分vlan

[Huawei]vlan 10   划分vlan 10

[Huawei-vlan10]vlan 20   划分vlan 20

把接口加入vlan

[Huawei]int e0/0/1   进接口

[Huawei-Ethernet0/0/1]port link-typeaccess  创建access

[Huawei-Ethernet0/0/1]port defaultvlan 10  把接口e0/0/1加入vlan 10

[Huawei]int e0/0/2

[Huawei-Ethernet0/0/1]port link-typeaccess

[Huawei-Ethernet0/0/1]port defaultvlan 20

[Huawei-Ethernet0/0/2]int g0/0/1

配置中继口:

[Huawei-GigabitEthernet0/0/1]portlink-type trunk   创建trunk

[Huawei-GigabitEthernet0/0/1]porttrunk allow-pass vlan 10 20 创建中继口

wKiom1NA2qGwmAA6AADIB6eeXiU854.jpg

LSW2LSW1

2.给三层交换机划分vlan,并且建立中继口和配置每个vlan的网关地址。

[Huawei]vlan 10

[Huawei-vlan10]vlan 20

wKioL1NA2njh9J8xAAB5MbrKYp0708.jpg

配置中继口:

[Huawei-Vlanif20] g0/0/1

[Huawei-GigabitEthernet0/0/1]portlink-type trunk

[Huawei-GigabitEthernet0/0/1]porttrunk allow-pass vlan 10 20

[Huawei-GigabitEthernet0/0/1] g0/0/2

[Huawei-GigabitEthernet0/0/1]portlink-type trunk

[Huawei-GigabitEthernet0/0/1]porttrunk allow-pass vlan 10 20

wKioL1NA2nnCwXixAACRdd0G_lw358.jpg

配置vlan网关地址:

[Huawei-GigabitEthernet0/0/1]intvlan 10  进入虚拟vlan接口

[Huawei-Vlanif10]ip add 192.168.10.124   配置IP和子网掩码

[Huawei-Vlanif10]un shutdown   激活端口

[Huawei-Vlanif10]intvlan 20

[Huawei-Vlanif20]ip add 192.168.20.124

[Huawei-Vlanif20]un shutdown

wKioL1NA3DzhV0H9AABB4gSR8DM097.jpg

DHCP

[Huawei]dhcp enable 激活DHCP

[Huawei]int vlan 10进入虚拟vlan接口

[Huawei-Vlanif10]dhcp select interface   开启vlan 10自动获取IP

[Huawei-Vlanif10]dhcp server dns-list 8.8.8.8   配置DNS

[Huawei-Vlanif10]int vlan 20

[Huawei-Vlanif20]dhcp select interface

[Huawei-Vlanif20]dhcp server dns-list 9.9.9.9

wKiom1NA3GTQxesiAADIBq16J7c829.jpg

验证:

wKiom1NA3GTzADIFAAKIlV2Z3ww944.jpg

3.能够让pc访问到AR1。

[Huawei]vlan 100   创建vlan100

wKioL1NA3DyStVsJAAAqTzn5-04017.jpg

[Huawei-vlan100]int g0/0/3

[Huawei-GigabitEthernet0/0/3]portlink-type access

[Huawei-GigabitEthernet0/0/3]portdefault vlan 100

wKiom1NA3GXjZb9TAABCYgEqenA587.jpg

[Huawei-Vlanif100]intvlan 100

[Huawei-Vlanif100]ip add 192.168.1.124

[Huawei-Vlanif100]un shutdown

注:三层交换机没有三层接口所以给SW1g0/0/3AR1不好配置在一个网段,只能用虚拟vlan接口来配置IP

wKioL1NA3DzxKZnNAAAt0GbTmzA012.jpg

[Huawei]iproute-static 0.0.0.0 0.0.0.0 192.168.1.2 配置三层交换机到AR1交换机的默认路由

wKiom1NA3GWhEAxvAAA7ps8TbNg815.jpg

给AR1配置IP和静态路由。

[Huawei]int g0/0/0

[Huawei-GigabitEthernet0/0/0]ip add192.168.1.2 24

[Huawei-GigabitEthernet0/0/0]unshutdown

wKioL1NA3D3DFWbhAAA4FfF-PCU674.jpg

[Huawei]ip route-static192.168.10.0 255.255.255.0 192.168.1.1  配置R110.0网段的静态路由

[Huawei]ip route-static192.168.20.0 255.255.255.0 192.168.1.1  配置R120.0网段的静态路由

wKiom1NA3QGS3LziAAGJSKeXSbo424.jpg

4.让pc用户能够访问外网。

配置交换机AR2IP

[Huawei]int g0/0/0

[Huawei-GigabitEthernet0/0/0]ip add202.106.1.2 30

[Huawei-GigabitEthernet0/0/0]unshutdown

wKioL1NA3NmhwXhuAAAvDLWwGhE432.jpg

[Huawei]int g0/0/1

[Huawei-GigabitEthernet0/0/1]ip add202.106.1.1 30

[Huawei-GigabitEthernet0/0/1]unshutdown

wKiom1NA3QHCVzOPAAAykizhLdQ654.jpg

给AR1配置PAT:

[Huawei]acl 2000  创建PAT列表

[Huawei-acl-basic-2000]rule 5 permitsource 192.168.10.0 0.0.0.255 定义10.0网段可以通过PAT转换为公网地址

[Huawei]acl 2001

[Huawei-acl-basic-2001]rule 5 permitsource 192.168.20.0 0.0.0.255

定义20.0网段可以通过PAT转换为公网地址


wKioL1NA3NmynusdAABvixbPdkM172.jpg

[Huawei-GigabitEthernet0/0/1]natoutbound 2000  开启PAT功能

wKiom1NA3QHgr1xaAABV8cpljh0249.jpg

验证:

wKiom1NA3UaSTvmSAALX-j7aonE657.jpg


你可能感兴趣的:(路由器,模拟器,交换机,拓扑图,实验目的)