用eNSP模拟器成功地进行了一次综合性实验示例
最编程
2024-02-21 11:44:56
...
#S3配置命令
The device is running!
<Huawei>
<Huawei>system-view
Enter system view, return user view with Ctrl+Z.
#配置S3主机名称
[Huawei]sysname S3
[S3]
#创建并查看vlan 10 20 101是否创建成功
[S3]vlan batch 10 20 101
Info: This operation may take a few seconds. Please wait for a moment...done.
[S3]display vlan
The total number of vlans is : 4
--------------------------------------------------------------------------------
U: Up; D: Down; TG: Tagged; UT: Untagged;
MP: Vlan-mapping; ST: Vlan-stacking;
#: ProtocolTransparent-vlan; *: Management-vlan;
--------------------------------------------------------------------------------
VID Type Ports
--------------------------------------------------------------------------------
1 common UT:GE0/0/1(U) GE0/0/2(U) GE0/0/3(U) GE0/0/4(D)
GE0/0/5(D) GE0/0/6(D) GE0/0/7(D) GE0/0/8(D)
GE0/0/9(D) GE0/0/10(D) GE0/0/11(D) GE0/0/12(D)
GE0/0/13(D) GE0/0/14(D) GE0/0/15(D) GE0/0/16(D)
GE0/0/17(D) GE0/0/18(D) GE0/0/19(D) GE0/0/20(D)
GE0/0/21(D) GE0/0/22(D) GE0/0/23(D) GE0/0/24(D)
10 common
20 common
101 common
VID Status Property MAC-LRN Statistics Description
--------------------------------------------------------------------------------
1 enable default enable disable VLAN 0001
10 enable default enable disable VLAN 0010
20 enable default enable disable VLAN 0020
101 enable default enable disable VLAN 0101
[S3]
#配置trunk口(与二层交换机S1、S2相连接的端口GE0/0/2、GE0/0/3)
[S3]interface GigabitEthernet 0/0/2
[S3-GigabitEthernet0/0/2]port link-type trunk
[S3-GigabitEthernet0/0/2]port trunk allow-pass vlan 10 20
[S3-GigabitEthernet0/0/2]display this
#
interface GigabitEthernet0/0/2
port link-type trunk
port trunk allow-pass vlan 10 20
#
return
[S3-GigabitEthernet0/0/2]quit
#配置trunk口(与二层交换机S1、S2相连接的端口GE0/0/2、GE0/0/3)
[S3]interface GigabitEthernet 0/0/3
[S3-GigabitEthernet0/0/3]port link-type trunk
[S3-GigabitEthernet0/0/3]port trunk allow-pass vlan 10 20
[S3-GigabitEthernet0/0/3]display this
#
interface GigabitEthernet0/0/3
port link-type trunk
port trunk allow-pass vlan 10 20
#
return
[S3-GigabitEthernet0/0/3]quit
# 配置VLANIF 10接口IP地址(此地址为PC端默认的网关地址)
[S3]interface Vlanif 10
[S3-Vlanif10]ip address 192.168.10.254 24
[S3-Vlanif10]display this
#
interface Vlanif10
ip address 192.168.10.254 255.255.255.0
#
return
[S3-Vlanif10]quit
# 配置VLANIF 20接口IP地址(此地址为PC端默认的网关地址)
[S3]interface Vlanif 20
[S3-Vlanif20]ip address 192.168.20.254 24
[S3-Vlanif20]display this
#
interface Vlanif20
ip address 192.168.20.254 255.255.255.0
#
return
[S3-Vlanif20]quit
# 配置VLANIF 101接口IP地址并将GE0/0/1端口划分到VLAN 101中
[S3]interface Vlanif 101
[S3-Vlanif101]ip add
[S3-Vlanif101]ip address 10.0.1.2 24
[S3-Vlanif101]display this
#
interface Vlanif101
ip address 10.0.1.2 255.255.255.0
#
return
[S3-Vlanif101]quit
[S3]interface GigabitEthernet 0/0/1
[S3-GigabitEthernet0/0/1]port link-type access
[S3-GigabitEthernet0/0/1]port default vlan 101
[S3-GigabitEthernet0/0/1]display this
#
interface GigabitEthernet0/0/1
port link-type access
port default vlan 101
#
return
[S3-GigabitEthernet0/0/1]quit
[S3]
#S3三层交换机配置访问外网的默认路由
????????????????????????????????????????????
[S3]ip route-static 0.0.0.0 0.0.0.0 10.0.1.1
#开启DHCP服务功能
[S3]dhcp enable
Info: The operation may take a few seconds. Please wait for a moment.done.
[S3]
#S3上创建DHCP全局地址池vlan20pool,地址池网段地址为192.168.20.0,网关为192.168.20.254
[S3]ip pool vlan20pool
Info:It's successful to create an IP address pool.
[S3-ip-pool-vlan20pool]network 192.168.20.0 mask ?
INTEGER<0-32> Length of the network's mask
X.X.X.X Network's mask
[S3-ip-pool-vlan20pool]network 192.168.20.0 mask 24
[S3-ip-pool-vlan20pool]gateway-list 192.168.20.254
[S3-ip-pool-vlan20pool]display this
#
ip pool vlan20pool
gateway-list 192.168.20.254
network 192.168.20.0 mask 255.255.255.0
#
return
[S3-ip-pool-vlan20pool]quit
#选择全局地址池给DHCP客户端使用
[S3]interface Vlanif 20
[S3-Vlanif20]dhcp select global
[S3-Vlanif20]display this
#
interface Vlanif20
ip address 192.168.20.254 255.255.255.0
dhcp select global
#
return
[S3-Vlanif20]quit
#PC2端使用ipconfig命令测试,是否自动获取到DHCP地址池提供的IP地址。
PC>ipconfig
Link local IPv6 address...........: fe80::5689:98ff:fe33:6a6d
IPv6 address......................: :: / 128
IPv6 gateway......................: ::
IPv4 address......................: 192.168.20.253
Subnet mask.......................: 255.255.255.0
Gateway...........................: 192.168.20.254
Physical address..................: 54-89-98-33-6A-6D
DNS server........................:
PC>
# 测试三层交换机是否实现VLAN间路由通信(PC2 ping PC1)
PC>ping 192.168.10.1
Ping 192.168.10.1: 32 data bytes, Press Ctrl_C to break
From 192.168.10.1: bytes=32 seq=1 ttl=127 time=125 ms
From 192.168.10.1: bytes=32 seq=2 ttl=127 time=78 ms
From 192.168.10.1: bytes=32 seq=3 ttl=127 time=79 ms
From 192.168.10.1: bytes=32 seq=4 ttl=127 time=78 ms
From 192.168.10.1: bytes=32 seq=5 ttl=127 time=93 ms
--- 192.168.10.1 ping statistics ---
5 packet(s) transmitted
5 packet(s) received
0.00% packet loss
round-trip min/avg/max = 78/90/125 ms
PC>
# 测试三层交换机是否实现VLAN间路由通信(PC1 ping PC2)
Welcome to use PC Simulator!
PC>ping 192.168.20.253
Ping 192.168.20.253: 32 data bytes, Press Ctrl_C to break
From 192.168.20.253: bytes=32 seq=1 ttl=127 time=78 ms
From 192.168.20.253: bytes=32 seq=2 ttl=127 time=78 ms
From 192.168.20.253: bytes=32 seq=3 ttl=127 time=78 ms
From 192.168.20.253: bytes=32 seq=4 ttl=127 time=78 ms
From 192.168.20.253: bytes=32 seq=5 ttl=127 time=78 ms
--- 192.168.20.253 ping statistics ---
5 packet(s) transmitted
5 packet(s) received
0.00% packet loss
round-trip min/avg/max = 78/78/78 ms
PC>
# 测试PC2能够访问外网,PC1不能访问外网,验证设置的ACL策略是否生效。
(即PC2能够ping通 PC3;PC1 ping不通 PC3)
# PC2端
PC>ping 12.1.2.1
Ping 12.1.2.1: 32 data bytes, Press Ctrl_C to break
Request timeout!
Request timeout!
From 12.1.2.1: bytes=32 seq=3 ttl=125 time=78 ms
From 12.1.2.1: bytes=32 seq=4 ttl=125 time=47 ms
From 12.1.2.1: bytes=32 seq=5 ttl=125 time=47 ms
--- 12.1.2.1 ping statistics ---
5 packet(s) transmitted
3 packet(s) received
40.00% packet loss
round-trip min/avg/max = 0/57/78 ms
PC>
#PC1端
PC>ping 12.1.2.1
Ping 12.1.2.1: 32 data bytes, Press Ctrl_C to break
Request timeout!
Request timeout!
Request timeout!
Request timeout!
Request timeout!
--- 12.1.2.1 ping statistics ---
5 packet(s) transmitted
0 packet(s) received
100.00% packet loss
PC>