登录站点

用户名

密码

“强势归来” ---CCNA综合实验(思科PT模拟器)1-5

4已有 2273 次阅读  2013-07-09 09:40   标签CCNA综合实验 

7,配置DHCP:

sw1(config)#ip dhcp pool vlan2
sw1(dhcp-config)#net 192.168.2.0 255.255.255.0
sw1(dhcp-config)#default-router 192.168.2.254
sw1(dhcp-config)#dns-server 61.177.7.1
sw1(dhcp-config)#ip dhcp pool vlan3
sw1(dhcp-config)#net 192.168.3.0 255.255.255.0
sw1(dhcp-config)#default-router 192.168.3.254
sw1(dhcp-config)#dns-server 61.177.7.1
sw1(dhcp-config)#ip dhcp pool vlan4
sw1(dhcp-config)#net 192.168.4.0 255.255.255.0
sw1(dhcp-config)#default-router 192.168.4.254
sw1(dhcp-config)#dns-server 61.177.7.1
sw1(dhcp-config)#ip dhcp pool vlan5
sw1(dhcp-config)#net 192.168.5.0 255.255.255.0
sw1(dhcp-config)#default-router 192.168.5.254
sw1(dhcp-config)#dns-server 61.177.7.1

sw1(config)#ip dhcp excluded-address 192.168.2.254
sw1(config)#ip dhcp excluded-address 192.168.2.253
sw1(config)#ip dhcp excluded-address 192.168.3.254
sw1(config)#ip dhcp excluded-address 192.168.3.253
sw1(config)#ip dhcp excluded-address 192.168.4.254
sw1(config)#ip dhcp excluded-address 192.168.4.253
sw1(config)#ip dhcp excluded-address 192.168.5.254
sw1(config)#ip dhcp excluded-address 192.168.5.253


sw2(config)#ip dhcp pool vlan2
sw2(dhcp-config)#net 192.168.2.0 255.255.255.0
sw2(dhcp-config)#default-router 192.168.2.253
sw2(dhcp-config)#dns 61.177.7.1
sw2(dhcp-config)#ip dhcp pool vlan3
sw2(dhcp-config)#net 192.168.3.0 255.255.255.0
sw2(dhcp-config)#default-router 192.168.3.253
sw2(dhcp-config)#dns 61.177.7.1
sw2(dhcp-config)#ip dhcp pool vlan4
sw2(dhcp-config)#net 192.168.4.0 255.255.255.0
sw2(dhcp-config)#default-router 192.168.4.253
sw2(dhcp-config)#dns 61.177.7.1
sw2(dhcp-config)#ip dhcp pool vlan5
sw2(dhcp-config)#net 192.168.5.0 255.255.255.0
sw2(dhcp-config)#default-router 192.168.5.253
sw2(dhcp-config)#dns 61.177.7.1

sw2(config)#ip dhcp excluded-address 192.168.2.254
sw2(config)#ip dhcp excluded-address 192.168.2.253
sw2(config)#ip dhcp excluded-address 192.168.3.254
sw2(config)#ip dhcp excluded-address 192.168.3.253
sw2(config)#ip dhcp excluded-address 192.168.4.254
sw2(config)#ip dhcp excluded-address 192.168.4.253
sw2(config)#ip dhcp excluded-address 192.168.5.254
sw2(config)#ip dhcp excluded-address 192.168.5.253




8,配置OPSF
sw1(config)#router ospf 1
sw1(config-router)#router-id 1.1.1.1
sw1(config-router)#net 192.168.0.0 0.0.255.255 area 0 
sw1(config-router)#net 30.1.1.0 0.0.0.255 area 0 
sw1(config-router)#net 40.1.1.0 0.0.0.255 area 0 

sw2(config)#router ospf 1
sw2(config-router)#router-id 2.2.2.2
sw2(config-router)#net 192.168.0.0 0.0.255.255 area 0 
sw2(config-router)#net 30.1.1.0 0.0.0.255 area 0 
sw2(config-router)#net 40.1.1.0 0.0.0.255 area 0 


r1(config)#router ospf 1
r1(config-router)#router-id 3.3.3.3
r1(config-router)#net 20.1.1.0 0.0.0.255 area 0 
r1(config-router)#net 30.1.1.0 0.0.0.255 area 0 
r1(config-router)#net 40.1.1.0 0.0.0.255 area 0 


r2(config)#router ospf 1
r2(config-router)#router-id 4.4.4.4
r2(config-router)#net 20.1.1.0 0.0.0.255 area 0 
r2(config-router)#net 10.1.1.0 0.0.0.255 area 0

注:此时全网可以通信

9,配置PPP和CHAP双向验证

r1(config)#username r2 pass ccna
r1(config)#inter s0/3/0
r1(config-if)#en ppp
r1(config-if)#ppp authentication chap 

r2(config)#username r1 pass ccna
r2(config)#inter s0/3/0
r2(config-if)#en ppp
r2(config-if)#ppp authentication chap 

10,配置ACL,使财务部独立


sw1(config)#access-list 100 deny ip any 192.168.4.0 0.0.0.255
sw1(config)#inter vlan 4
sw1(config-if)#ip access-group 100 in 

sw2配置完全同sw1


11,配置ACL,控制内外网访问权限
r1(config)#access-list 101 permit ip 192.168.5.0 0.0.0.255 host 10.1.1.2
r1(config)#access-list 101 permit icmp 192.168.2.0 0.0.0.255 host 10.1.1.2 echo
r1(config)#access-list 101 permit icmp 192.168.3.0 0.0.0.255 host 10.1.1.2 echo
r1(config)#access-list 101 permit icmp 192.168.4.0 0.0.0.255 host 10.1.1.2 echo

r1(config)#inter s0/3/0
r1(config-if)#ip access-group 101 out

12,配置ACL,控制路由器的远程访问权限

r1(config)#access-list 1 permit 192.168.3.0 0.0.0.255
r1(config)#line vty 0 15
r1(config-line)#access-class 1 in


r2配置完全同r1

分享 举报