实验时间:
20090406
|
|
实验人:
|
|
实验名称:
PPP协议
|
|||
实验任务和目标:
1.为两台路由器上IP地址
RouterA S0/0
192.168.1.1/30
loopback 0
10.0.0.1/8 (模拟出一个局域网段)
loopback 1
11.0.0.1/8
RouterB S0/0
192.168.1.2/30
loopback 0
12.0.0.1/8 (模拟出一个局域网段)
loopback 1
13.0.0.1/8
2.PPP的PAP认证
RouterA (被认证端)
interface serial 0/0
encapsulation ppp
ppp pap sent-username RouterA password 0 benet
no shut
RouterB(主认证端)
username RouterA password 0 benet /被认证端的用户名和密码
interface serial 0/0
clock rate 64000
encapsulation ppp
ppp authentication pap
no shut
打开DEBUG PPP PACKET来查看结果
3.PPP的CHAP认证 (接上个实验继续做)
注意:先NO掉两台路由器上含有PAP的设置命令,再进行CHAP的设置
RouterA:
username RouterB password 0 benet
RouterB:
username RouterA password 0 benet
(技巧: 在主认证端的USERNAME=BEI 在被认证端的USERNAME=ZHU)
RouterA:
interface serial0/0
ppp authentication chap
RouterB:
同路由器A设置方法一样.
打开DEBUG PPP PACKET来查看结果
4.设置静态路由,使两个局域网能够互通
routerA :
ip route 0.0.0.0 0.0.0.0 192.168.1.2
routerB:
ip route 0.0.0.0 0.0.0.0 192.168.1.1
用show ip route验证
5.设置RIP动态路由,使两个局域网能够互通
routerA:
router rip
network 192.168.1.0
netwrok 10.0.0.0
network 11.0.0.0
routerB:
Router rip
network 192.168.1.0
netowrk 12.0.0.0
network 13.0.0.0
用show ip route 验证
6.设置OSPF动态路由,使两个局域网能够互通 (单区域OSPF)
RouterA:
router ospf 1
network 0.0.0.0 255.255.255.255 area 0
RouterB:
router ospf 1
network 0.0.0.0 255.255.255.255 area 0
用show ip route 验证
|
|||
|
|||
实验拓扑及网络规划:
|
|||
实验操作过程及配置说明:
在被认证端:PAP
Router(config)#hostname ra
ra(config)#interface serial 0/0
ra(config-if)#encapsulation ppp
ra(config-if)#ppp pap sent-username ra password 0 benet
ra(config-if)#no shutdown
00:09:17: %LINEPROTO-5-UPDOWN: Line protocol on Interface Serial0/0, changed state to up
ra#ping 192.168.1.2
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 192.168.1.2, timeout is 2 seconds:
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 28/72/96 ms
在主认证端:PAP:
Router(config)#hostname rb
rb(config)#
00:07:12: %LINEPROTO-5-UPDOWN: Line protocol on Interface Serial0/0, changed state to down
rb(config)#username ra password 0 benet
rb(config)#in
rb(config)#interface s
rb(config)#interface serial 0/0
rb(config-if)#cl
rb(config-if)#clock rate 64000
rb(config-if)#encapsulation ppp
00:09:13: %LINEPROTO-5-UPDOWN: Line protocol on Interface Serial0/0, changed state to upp
rb(config-if)#ppp authentication pap
rb(config-if)#no shutdown
rb#ping 192.168.1.1
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 192.168.1.1, timeout is 2 seconds:
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 48/63/76 ms
在被认证端CHAP:
ra(config)#interface serial 0/0
ra(config-if)#no ppp pap sent-username ra password 0 benet
ra(config)#username rb password 0 benet
ra(config)#interface serial 0/0
在主认证端:CHAP:
rb(config)#interface serial 0/0
rb(config-if)#no ppp authentication pap
rb(config)#username ra password 0 benet
rb(config)#interface serial 0/0
rb(config-if)#ppp authentication chap
(只需在主认证端上配置)
|
|||
实验结果(可以是截屏图片):
注释:rb为主 ra为被
ra的路由表:
rb的路由表:
|
|||
总结和分析:
|