园区网配置简谈

简介:

 昨天上论坛看到有人发了个图,我看了下这个图基本包涵了na np的交换配置,一时手痒就配置了下,我配的只是简要的,有的细节没有配置大家看时想想要自己应该怎么配?

我们把tftp省略了,其他的照旧

 

电信:interface Loopback0

 ip address 1.1.1.1 255.255.255.0

!

interface Serial0/0

 ip address 172.16.1.1 255.255.255.0

 serial restart-delay 0

 no fair-queue

网通;interface Loopback0

 ip address 2.2.2.2 255.255.255.0

!

interface Serial0/0

 ip address 172.16.2.2 255.255.255.0

 serial restart-delay 0

 no fair-queue

r1;

 

interface Loopback0

 ip address 3.3.3.3 255.255.255.0

!

interface Serial0/0

 ip address 172.16.1.3 255.255.255.0

 

interface Ethernet1/0

 ip address 192.168.1.3 255.255.255.0

 half-duplex

!

interface Ethernet1/1

 ip address 192.168.2.3 255.255.255.0

 half-duplex

!         

interface Ethernet1/2

 ip address 192.168.3.3 255.255.255.0

 

interface Ethernet1/3

 ip address 192.168.4.3 255.255.255.0

 

router ospf 10

 router-id 3.3.3.3

 log-adjacency-changes

 network 3.3.3.3 0.0.0.0 area 0

 network 172.16.1.0 0.0.0.255 area 0

 network 192.168.1.0 0.0.0.255 area 0

 network 192.168.2.0 0.0.0.255 area 0

 network 192.168.3.0 0.0.0.255 area 0

 network 192.168.4.0 0.0.0.255 area 0

 

ip route 0.0.0.0 0.0.0.0 172.16.1.1

ip nat pool NAT 172.16.1.10 172.16.1.80 netmask 255.255.255.0

ip nat pool vlan10 172.16.1.80 172.16.1.100 netmask 255.255.0.0

ip nat pool vlan20 172.16.1.110 172.16.1.120 netmask 255.255.255.0

ip nat inside source list 1 pool NAT

ip nat inside source list 2 pool NAT

ip nat inside source list 3 pool vlan10 overload

ip nat inside source list 4 pool vlan20 overload

access-list 1 permit 192.168.10.0 0.0.0.255

access-list 2 permit 192.168.20.0 0.0.0.255

access-list 3 permit any

access-list 4 permit any

r2;interface Loopback0

 ip address 4.4.4.4 255.255.255.0

!

interface Serial0/0

 ip address 172.16.2.4 255.255.255.0

 

interface Ethernet1/0

 ip address 192.168.1.4 255.255.255.0

 half-duplex

!

interface Ethernet1/1

 ip address 192.168.2.4 255.255.255.0

 half-duplex

!

interface Ethernet1/2

 ip address 192.168.5.4 255.255.255.0

 half-duplex

!

interface Ethernet1/3

 ip address 192.168.6.4 255.255.255.0

 

router ospf 10

 router-id 4.4.4.4

 log-adjacency-changes

 network 4.4.4.4 0.0.0.0 area 0

 network 192.168.1.0 0.0.0.255 area 0

 network 192.168.2.0 0.0.0.255 area 0

 network 192.168.5.0 0.0.0.255 area 0

 network 192.168.6.0 0.0.0.255 area 0

 default-information originate

!

ip http server

ip route 0.0.0.0 0.0.0.0 172.16.2.2

ip route 172.16.0.0 255.255.0.0 172.16.1.1

ip route 172.16.0.0 255.255.0.0 172.16.2.2

!

!

ip nat pool NATT 172.16.2.10 172.16.2.50 netmask 255.255.255.0

ip nat pool vlan20 172.16.2.89 172.16.2.123 netmask 255.255.0.0

ip nat inside source list 1 pool NATT

ip nat inside source list 2 pool NATT

ip nat inside source list 3 pool vlan20 overload

!

access-list 1 permit 192.168.10.0 0.0.0.255

access-list 2 permit 192.168.20.0 0.0.0.255

access-list 3 permit 192.168.6.0 0.0.0.255

access-list 3 permit any

sw1:

 

spanning-tree uplinkfast

spanning-tree backbonefast

spanning-tree vlan 10 priority 8192

spanning-tree vlan 20 priority 16384

spanning-tree vlan 30 priority 8192

spanning-tree vlan 40 priority 16384

 

interface Loopback0

 ip address 5.5.5.5 255.255.255.0

!

interface Port-channel1

 switchport mode trunk

!

interface FastEthernet0/0

 ip address 192.168.3.5 255.255.255.0

 duplex auto

 speed auto

!

interface FastEthernet0/1

 ip address 192.168.5.5 255.255.255.0

 

interface FastEthernet1/1

 switchport mode trunk

 channel-group 1 mode on

!

interface FastEthernet1/2

 switchport mode trunk

 channel-group 1 mode on

!

interface FastEthernet1/3

 switchport mode trunk

!

interface FastEthernet1/4

 switchport mode trunk

!

interface FastEthernet1/5

 switchport mode trunk

 

interface Vlan10

 ip address 192.168.10.254 255.255.255.0

 standby 11 ip 192.168.10.1

 standby 11 priority 150

 standby 11 preempt

!

interface Vlan20

 ip address 192.168.20.254 255.255.255.0

ip default-gateway  指向汇聚层路由     实行切换 实现高可用性

 standby 12 ip 192.168.20.1

 standby 12 preempt

!

interface Vlan30

 ip address 192.168.30.254 255.255.255.0

 standby 11 ip 192.168.30.1

 standby 11 priority 150

 standby 11 preempt

!

interface Vlan40

 ip address 192.168.40.254 255.255.255.0

 standby 12 ip 192.168.40.1

 standby 12 preempt

 

router ospf 10

 router-id 5.5.5.5

 log-adjacency-changes

 network 5.5.5.5 0.0.0.0 area 1

 network 192.168.3.0 0.0.0.255 area 0

 network 192.168.5.0 0.0.0.255 area 0

 network 192.168.10.0 0.0.0.255 area 1

 network 192.168.20.0 0.0.0.255 area 1

!

ip route 0.0.0.0 0.0.0.0 172.16.1.3

ip route 0.0.0.0 0.0.0.0 3.3.3.3

ip route 0.0.0.0 0.0.0.0 192.168.3.3

ip route 172.16.0.0 255.255.0.0 172.16.1.3

sw2;spanning-tree uplinkfast

spanning-tree backbonefast

spanning-tree vlan 10 priority 16384

spanning-tree vlan 20 priority 8192

spanning-tree vlan 30 priority 16384

spanning-tree vlan 40 priority 8192

 

interface Loopback0

 ip address 6.6.6.6 255.255.255.0

!

interface Port-channel1

 switchport mode trunk

!

interface FastEthernet0/0

 ip address 192.168.4.6 255.255.255.0

 duplex auto

 speed auto

!

interface FastEthernet0/1

 ip address 192.168.6.6 255.255.255.0

 

interface FastEthernet1/1

 switchport mode trunk

 channel-group 1 mode on

!

interface FastEthernet1/2

 switchport mode trunk

 channel-group 1 mode on

!

interface FastEthernet1/3

 no switchport

 ip address 192.168.7.6 255.255.255.0

!

interface FastEthernet1/4

 switchport mode trunk

!

interface FastEthernet1/5

!

interface FastEthernet1/6

 switchport mode trunk

 

interface Vlan10

 ip address 192.168.10.252 255.255.255.0

 standby 11 ip 192.168.10.1

 standby 11 preempt

!

interface Vlan20

 ip address 192.168.20.252 255.255.255.0

 standby 12 ip 192.168.20.1

 standby 12 priority 150

 standby 12 preempt

!

interface Vlan30

 ip address 192.168.30.252 255.255.255.0

 standby 11 ip 192.168.30.1

 standby 11 preempt

!

interface Vlan40

 ip address 192.168.40.252 255.255.255.0

 standby 12 ip 192.168.40.1

 standby 12 priority 150

 standby 12 preempt

 

router ospf 10

 router-id 6.6.6.6

 log-adjacency-changes

 network 6.6.6.6 0.0.0.0 area 2

 network 192.168.4.0 0.0.0.255 area 0

 network 192.168.6.0 0.0.0.255 area 0

 network 192.168.7.0 0.0.0.255 area 3

 network 192.168.30.0 0.0.0.255 area 2

 network 192.168.40.0 0.0.0.255 area 2

!

ip route 0.0.0.0 0.0.0.0 172.16.2.2

ip route 0.0.0.0 0.0.0.0 192.168.6.4

接入层交换机1:

 

interface FastEthernet1/3

 switchport mode trunk

!

interface FastEthernet1/4

 switchport mode trunk

!

interface FastEthernet1/5

 switchport mode trunk

 

interface FastEthernet1/0

 switchport access vlan 10

 spanning-tree portfast

接入层交换机2:interface FastEthernet1/5

 switchport mode trunk

!

interface FastEthernet1/6

 switchport mode trunk

 

interface FastEthernet1/0

 switchport access vlan 20

 spanning-tree portfast

 

interface FastEthernet1/5

 switchport mode trunk

!

interface FastEthernet1/6

 switchport mode trunk

 

 

 

 

 

 注意:要在路由3 4 5 6注入默认路由否则流量不知道前往那走,

如sw5注入两条默认路由到3   4  在3 4 上做pbr 做流量均衡

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

我直接是show run  复制的,对不起大家了,有空再好好写!

 

Router1 S0/0 <----> Router3 S0/0 

Router2 S0/0 <----> Router4 S0/0 

 

Router3 E1/0 <----> Router4 E1/0 

Router3 E1/1 <----> Router4 E1/1 

 

Router3 E1/2 <----> Router5 F0/0 ip 

Router3 E1/3 <----> Router6 F0/0 

 

Router4 E1/2 <----> Router5 F0/1 ip

Router4 E1/3 <----> Router6 F0/1 

 

Router5 F1/1 <----> Router6 F1/1 

Router5 F1/2 <----> Router6 F1/2 trunk hrsp

 

Router5 F1/3 <----> Router8 F1/3 

Router5 F1/4 <----> Router8 F1/5 

Router5 F1/5 <----> Router9 F1/5 

 

Router6 F1/4 <----> Router8 F1/4 

Router6 F1/6 <----> Router9 F1/6 

 

Router6 F1/3 <----> Router7 F1/3  dhcp

Router8 F1/0 <----> VPCS V0/1 

VPCS V0/2 <----> Router9 F1/0 

这是接口连接表,用小凡做的

 


本文转自q狼的诱惑 51CTO博客,原文链接:http://blog.51cto.com/liangrui/420948,如需转载请自行联系原作者

相关文章
|
1天前
|
云安全 人工智能 自然语言处理
|
5天前
|
搜索推荐 编译器 Linux
一个可用于企业开发及通用跨平台的Makefile文件
一款适用于企业级开发的通用跨平台Makefile,支持C/C++混合编译、多目标输出(可执行文件、静态/动态库)、Release/Debug版本管理。配置简洁,仅需修改带`MF_CONFIGURE_`前缀的变量,支持脚本化配置与子Makefile管理,具备完善日志、错误提示和跨平台兼容性,附详细文档与示例,便于学习与集成。
314 116
|
8天前
|
数据采集 人工智能 自然语言处理
Meta SAM3开源:让图像分割,听懂你的话
Meta发布并开源SAM 3,首个支持文本或视觉提示的统一图像视频分割模型,可精准分割“红色条纹伞”等开放词汇概念,覆盖400万独特概念,性能达人类水平75%–80%,推动视觉分割新突破。
578 53
Meta SAM3开源:让图像分割,听懂你的话
|
20天前
|
域名解析 人工智能
【实操攻略】手把手教学,免费领取.CN域名
即日起至2025年12月31日,购买万小智AI建站或云·企业官网,每单可免费领1个.CN域名首年!跟我了解领取攻略吧~
|
5天前
|
人工智能 Java API
Java 正式进入 Agentic AI 时代:Spring AI Alibaba 1.1 发布背后的技术演进
Spring AI Alibaba 1.1 正式发布,提供极简方式构建企业级AI智能体。基于ReactAgent核心,支持多智能体协作、上下文工程与生产级管控,助力开发者快速打造可靠、可扩展的智能应用。
|
4天前
|
弹性计算 人工智能 Cloud Native
阿里云无门槛和有门槛优惠券解析:学生券,满减券,补贴券等优惠券领取与使用介绍
为了回馈用户与助力更多用户节省上云成本,阿里云会经常推出各种优惠券相关的活动,包括无门槛优惠券和有门槛优惠券。本文将详细介绍阿里云无门槛优惠券的领取与使用方式,同时也会概述几种常见的有门槛优惠券,帮助用户更好地利用这些优惠,降低云服务的成本。
267 132
|
8天前
|
机器学习/深度学习 人工智能 自然语言处理
AgentEvolver:让智能体系统学会「自我进化」
AgentEvolver 是一个自进化智能体系统,通过自我任务生成、经验导航与反思归因三大机制,推动AI从“被动执行”迈向“主动学习”。它显著提升强化学习效率,在更少参数下实现更强性能,助力智能体持续自我迭代。开源地址:https://github.com/modelscope/AgentEvolver
409 29
|
15天前
|
安全 Java Android开发
深度解析 Android 崩溃捕获原理及从崩溃到归因的闭环实践
崩溃堆栈全是 a.b.c?Native 错误查不到行号?本文详解 Android 崩溃采集全链路原理,教你如何把“天书”变“说明书”。RUM SDK 已支持一键接入。
723 223