网络拓扑实战1
添加4臺s3700交換機,5臺主機做真實服務(wù)器集群用
1.為每臺交換機配置vlan 10 20 30 40
[Huawei]vlan ?batch ?10 20 30 40[Huawei]display ? vlan ? #查看配置的vlan是否成功建議修改交換機的名字,方便識別四臺交換機名字分別改為sw1 sw2 ?sw3 sw4[Huawei]system ?sw1[Huawei]system ?sw2[Huawei]system ?sw3[Huawei]system ?sw42.將pc對應(yīng)交換機的接口加入相關(guān)vlan
pc1----->vlan10,pc2------->vlan 20
pc3------>vlan 30,pc4,5----->vlan 40
sw1:[sw1]interface ?ethernet0/0/1 ?[sw1-Ethernet0/0/1]port link-type ?access[sw1-Ethernet0/0/1]port default ?vlan 10sw2:[sw2]interface ?ethernet0/0/1 ?[sw2-Ethernet0/0/1]port link-type ?access[sw2-Ethernet0/0/1]port default ?vlan 20sw3:[sw3]interface ?ethernet0/0/1 ?[sw3-Ethernet0/0/1]port link-type ?access[sw3-Ethernet0/0/1]port default ?vlan 30sw4:[sw4]interface ?ethernet0/0/1 ?[sw4-Ethernet0/0/1]port link-type ?access[sw4-Ethernet0/0/1]port default ?vlan 40[sw4]interface ?ethernet0/0/2[sw4-Ethernet0/0/1]port link-type ?access[sw4-Ethernet0/0/1]port default ?vlan 403.sw1到sw3配置2-3接口為中繼鏈路trunk
? ?sw4配置3-4接口為中繼鏈路trunk
sw1:[sw1] port-group 1[sw1-port-group-1]group-member e0/0/2 ?e0/0/3[sw1-port-group-1]port link-type trunk[sw1-port-group-1]port trunk allow-pass ?vlan allsw2:[sw2] port-group 1[sw2-port-group-1]group-member e0/0/2 ?e0/0/3[sw2-port-group-1]port link-type trunk[sw2-port-group-1]port trunk allow-pass ?vlan allsw3:[sw3] port-group 1[sw3-port-group-1]group-member e0/0/2 ?e0/0/3[sw3-port-group-1]port link-type trunk[sw3-port-group-1]port trunk allow-pass ?vlan allsw4:[sw4] port-group 1[sw4-port-group-1]group-member e0/0/3? e0/0/4[sw4-port-group-1]port link-type trunk[sw4-port-group-1]port trunk allow-pass ?vlan all****配置完成后用display ? vlan檢查配置是否正確4.添加兩個s5700三層交換機,分別創(chuàng)建之前的4個vlan
sw5:[Huawei]sy sw5[sw5]vlan batch ?10 20 30 40sw6:[Huawei]sy sw6[sw6]vlan batch ?10 20 30 405.在三層交換機做中繼鏈路trunk(1-5接口設(shè)置trunk)
sw5:[sw5]port-group 1[sw5-port-group-1]group-member ?g0/0/1 to g0/0/5[sw5-port-group-1]port link-type trunk[sw5-port-group-1]port trunk allow-pass ?vlan allsw6:[sw6]port-group 1[sw6-port-group-1]group-member ?g0/0/1 to g0/0/5[sw6-port-group-1]port link-type trunk[sw6-port-group-1]port trunk allow-pass ?vlan all6.配置三層交換機的網(wǎng)關(guān)地址
? ?sw5 ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? sw6
? ?vlan 10:192.168.10.252/24 ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ???vlan 10:192.168.10.253/24
? ?vlan 20:192.168.20.252/24 ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ?vlan 20:192.168.20.253/24
? ?vlan 30:192.168.30.252/24 ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ???vlan 30:192.168.30.253/24
? ?vlan 40:192.168.40.252/24 ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ??vlan 40:192.168.40.253/24
[sw5]in vlan 10 ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ?[sw6]in vlan 10[sw5-vlanif10]ip address 192.168.10.252 24 ? ? ? ? ? ? ? ?[sw6-vlanif10]ip address 192.168.10.253?24[sw5]in vlan 20 ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ?[sw6]in vlan 20[sw5-vlanif20]ip address 192.168.20.252 24 ? ? ? ? ? ? ? ?[sw6-vlanif20]ip address 192.168.20.253?24[sw5]in vlan 30 ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ?[sw6]in vlan 30[sw5-vlanif30]ip address 192.168.30.252 24 ? ? ? ? ? ? ? ?[sw6-vlanif30]ip address 192.168.30.253?24 ? ? ? ? ? ? ? ??[sw5]in vlan 40 ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ?[sw6]in vlan 40[sw5-vlanif40]ip address 192.168.40.252 24 ? ? ? ? ? ? ? ?[sw6-vlanif40]ip address 192.168.40.253?247. 5臺主機IP
主機1 ?192.168.10.1 ?24
主機2 ?192.168.20.1 ?24
主機3 ?192.168.30.1 ?24
主機4 ?192.168.40.1 ?24
主機5 ?192.168.40.2 ?24
8.連接線纜,使用pc測試同網(wǎng)段網(wǎng)絡(luò)
9.配置vrrp
sw5 ? vlan 10,vlan 20為主路由器,?vlan 30.vlan 40為備份路由器
sw6 ? vlan10,vlan 20為備份路由器,vlan 30 vlan 40為主路由器
[sw5] in vlan 10[sw5-vlanif10]vrrp vrid 10 ?virtual-ip 192.168.10.254[sw5-vlanif10]vrrp vrid 10 priority 105[sw5] in vlan 20[sw5-vlanif20]vrrp vrid 20 ?virtual-ip 192.168.20.254[sw5-vlanif20]vrrp vrid 10 priority 105[sw5] in vlan 30[sw5-vlanif30]vrrp vrid 30 ?virtual-ip 192.168.30.254[sw5] in vlan 40[sw5-vlanif40]vrrp vrid 40 ?virtual-ip 192.168.40.254 [sw6] in vlan 10[sw6-vlanif10]vrrp vrid 10 ?virtual-ip 192.168.10.254[sw6] in vlan 20[sw6-vlanif20]vrrp vrid 20 ?virtual-ip 192.168.20.254[sw6] in vlan 30[sw6-vlanif30]vrrp vrid 30 ?virtual-ip 192.168.30.254[sw6-vlanif30]vrrp vrid 30 priority 105[sw6] in vlan 40[sw6-vlanif40]vrrp vrid 40 ?virtual-ip 192.168.40.254[sw6-vlanif40]vrrp vrid 40 priority 105display vrrp brief #查看結(jié)果排錯思路:
1.檢查所有設(shè)備的IP地址和網(wǎng)關(guān)
2.所有交換機是否創(chuàng)建4個vlan
3.所有交換機之間的鏈路是否為trunk
4.s3700交換機連接pc的接口是否加入對應(yīng)vlan
10.添加兩臺ar2220路由器,配置路由器IP地址
首先在兩臺二層交換機中配置vlan 50 60
[sw5] vlan batch 50 60
[sw6] vlan batch 50 60
把接口加入相應(yīng)的vlan中
[sw5]in vlan 50[sw5-vlanif50]ip address 192.168.50.2 24[sw5-vlanif50] in g0/0/6[sw5-GigabatEthernet0/0/6]port link-type ?access[sw5-GigabatEthernet0/0/6]port default ?vlan 50[sw5]in vlan 60[sw5-vlanif50]ip address 192.168.60.2 24[sw5-vlanif50] in g0/0/7[sw5-GigabatEthernet0/0/7]port link-type ?access[sw5-GigabatEthernet0/0/7]port default ?vlan 60 [sw6]in vlan 70[sw6-vlanif70]ip address 192.168.70.2 24[sw6-vlanif70] in g0/0/6[sw6-GigabatEthernet0/0/6]port link-type ?access[sw6-GigabatEthernet0/0/6]port default ?vlan 70[sw6]in vlan 80[sw6-vlanif80]ip address 192.168.80.2 24[sw6-vlanif80] in g0/0/7[sw6-GigabatEthernet0/0/7]port link-type ?access[sw6-GigabatEthernet0/0/7]port default ?vlan 80在路由器上面添加IP
[r1] in g0/0/0[r1-GigabatEthernet0/0/0]ip address 192.168.50.1 24[r1] in g0/0/1[r1-GigabatEthernet0/0/1]ip address 192.168.70.1 24 [r2] in g0/0/0[r2-GigabatEthernet0/0/0]ip address 192.168.60.1 24[r2] in g0/0/1[r2-GigabatEthernet0/0/1]ip address 192.168.80.1 2411.在三層交換機與路由器配置動態(tài)路由ospf,宣告自身直連網(wǎng)絡(luò),此時真正做到內(nèi)網(wǎng)互聯(lián)全通!!!!!!!
sw5宣告自身有10 20 30 40 50 60網(wǎng)段
sw6宣告自身有10 20 30 40 70 80網(wǎng)段
r1宣告自身有50 ?70網(wǎng)段
r2 宣告自身有60 80網(wǎng)段
[sw5]ospf[sw5-ospf-1]area 0[sw5-ospf-1-area-0.0.0.0]network 192.168.10.0 ?0.0.0.255[sw5-ospf-1-area-0.0.0.0]network 192.168.20.0 ?0.0.0.255[sw5-ospf-1-area-0.0.0.0]network 192.168.30.0 ?0.0.0.255[sw5-ospf-1-area-0.0.0.0]network 192.168.40.0 ?0.0.0.255[sw5-ospf-1-area-0.0.0.0]network 192.168.50.0 ?0.0.0.255[sw5-ospf-1-area-0.0.0.0]network 192.168.60.0 ?0.0.0.255 [sw6]ospf[sw6-ospf-1]area 0[sw6-ospf-1-area-0.0.0.0]network 192.168.10.0 ?0.0.0.255[sw6-ospf-1-area-0.0.0.0]network 192.168.20.0 ?0.0.0.255[sw6-ospf-1-area-0.0.0.0]network 192.168.30.0 ?0.0.0.255[sw6-ospf-1-area-0.0.0.0]network 192.168.40.0 ?0.0.0.255[sw6-ospf-1-area-0.0.0.0]network 192.168.70.0 ?0.0.0.255[sw6-ospf-1-area-0.0.0.0]network 192.168.80.0 ?0.0.0.255 [r1]ospf[r1-ospf-1-area-0.0.0.0]network ?192.168.50.0 ?0.0.0.255[r1-ospf-1-area-0.0.0.0]network ?192.168.70.0 ?0.0.0.255 [r2]ospf[r2-ospf-1-area-0.0.0.0]network ?192.168.60.0 ?0.0.0.255[r2-ospf-1-area-0.0.0.0]network ?192.168.80.0 ?0.0.0.25512.添加鏈路聚合技術(shù),增加帶寬,增強網(wǎng)絡(luò)可靠性
首先將sw6和sw4的4接口恢復(fù)初始默認(rèn)狀態(tài)[sw6]clear configuration ?interface ?e0/0/4 ?[sw6]in e0/0/4[sw6-Ethernet0/0/4]undo shutdown ? #開啟接口[sw6]interface Eth-trunk 1 ?#進(jìn)入并開啟鏈路聚合狀態(tài)[sw6-Eth-trunk1]trunkport ?g ? 0/0/4 ? ?0/0/8[sw6-Eth-trunk1]port link-type trunk[sw6-Eth-trunk1]port trunk allow-pass vlan all [sw4]clear configuration ?interface ?e0/0/4 ?[sw4]in e0/0/4[sw4-Ethernet0/0/4]undo shutdown ??#開啟接口[sw4]interface Eth-trunk 1 ?#進(jìn)入并開啟鏈路聚合狀態(tài)[sw4-Eth-trunk1]trunkport ?e? ?0/0/4 ???0/0/5[sw4-Eth-trunk1]port link-type trunk[sw4-Eth-trunk1]port trunk allow-pass vlan all13.添加一臺s3700交換機作為外網(wǎng)
[r1]in g0/0/2 ??[r1-GigabatEthernet0/0/2]ip address 100.0.0.1 ?8[r2]in g0/0/2 ??[r2-GigabatEthernet0/0/2]ip address 100.0.0.2? 8[sw7]in vlan 1[sw7-vlanif1]ip address 100.0.0.10 814.在路由器配置默認(rèn)路由,并進(jìn)入ospf宣告
?
配置完畢后查看三層交換機的路由表,發(fā)現(xiàn)自動產(chǎn)生默認(rèn)路由
15.在路由器配置nat實現(xiàn)內(nèi)外互通
?
最終測試,內(nèi)部所有網(wǎng)絡(luò)的主機可以ping通外部的100.0.0.10
?
?
?
?
?
?
?
?
?
總結(jié)
- 上一篇: NAT VRRP
- 下一篇: shell条件测试操作 if分支