H3CNE技术考核

H3CNE技术考核

实验拓扑图

在这里插入图片描述

实验需求

1.按照图示配置IP地址
2.在SW1和SW2之间配置链路聚合增加链路带宽,提高可靠性
3.PC5和PC6属于VLAN10, PC7和PC8属于VLAN20
4.SW1和SW2属于二层交换机,SW3为三层交换机(VLAN100用于对接R4),在交换机之间相连的链路
放行相关VLAN(不允许放行所有VLAN)
5.SW3作为DHCP服务器,配置两个地址池,分别为192.168.1.0/24网段和192.168.2.0/24网段网关分
别为192.168.1.254和192.168.2.254,dns统一为114.114.114.114;分别排除地址段192.168.1.1
192.168.10和192.168.2.1-192.168.2.10
6.在R4上配置静态路由,使其有到达各个部门的路由,在R3上配置默认路由,使其全网互通
7.在R4上配置Telnet服务使两个部门都能登录到R4

实验步骤

1.按照图示配置IP地址

在R4
[R4]int lo0
[R4-LoopBack0]ip add 1.1.1.1 32
[R4-LoopBack0]int g0/0
[R4-GigabitEthernet0/0]ip add 172.16.1.1 30
在SW3
[SW3]vlan 10
[SW3-vlan10]vlan 20
[SW3-vlan20]vlan 100
[SW3-vlan100]int vlan 10
[SW3-Vlan-interface10]ip add 192.168.1.254 24
[SW3-Vlan-interface10]int vlan 20
[SW3-Vlan-interface20]ip add 192.168.2.254 24
[SW3-Vlan-interface20]int vlan 100
[SW3-Vlan-interface100]ip add 172.16.1.2 24

2.在SW1和SW2之间配置链路聚合增加链路带宽,提高可靠性

在SW1
[SW1]interface Bridge-Aggregation 1
[SW1-Bridge-Aggregation1]link-aggregation mode dynamic 
[SW1-Bridge-Aggregation1]qu
[SW1]interface range g1/0/3 to g1/0/4
[SW1-if-range]port link-aggregation group 1
在sw2
[SW2]interface Bridge-Aggregation 1
[SW2-Bridge-Aggregation1]link-aggregation mode dynamic 
[SW2]interface range g1/0/3 to g1/0/4
[SW2-if-range]port link-aggregation group 1

3.PC5和PC6属于VLAN10, PC7和PC8属于VLAN20

在SW1
[SW1]vlan 10
[SW1-vlan10]port g1/0/1
[SW1-vlan10]port g1/0/2
[SW1]vlan 20
在SW2
[SW2]vlan 20
[SW2-vlan20]port g1/0/1
[SW2-vlan20]port g1/0/2
[SW2-vlan20]qu
[SW2]vlan 10

4.SW1和SW2属于二层交换机,SW3为三层交换机(VLAN100用于对接R4),在交换机之间相连的链路
放行相关VLAN(不允许放行所有VLAN)

分析 用trunk类型放行vlan10 20 每个接口都要放行

在sw1
[SW1]int g1/0/5
[SW1-GigabitEthernet1/0/5]port link-type trunk 
[SW1-GigabitEthernet1/0/5]port trunk permit vlan 10 20
[SW1-GigabitEthernet1/0/5]
[SW1]int Bridge-Aggregation 1
[SW1-Bridge-Aggregation1]port link-type trunk 
Configuring GigabitEthernet1/0/3 done.
Configuring GigabitEthernet1/0/4 done.
[SW1-Bridge-Aggregation1]port trunk permit vlan 10 20
Configuring GigabitEthernet1/0/3 done.
Configuring GigabitEthernet1/0/4 done.
在SW2
[SW2]int g1/0/5
[SW2-GigabitEthernet1/0/5]port link-type trunk 
[SW2-GigabitEthernet1/0/5]port trunk permit vlan 10 20
[SW2-GigabitEthernet1/0/5]qu
[SW2]interface Bridge-Aggregation 1
[SW2-Bridge-Aggregation1]port link-type trunk 
Configuring GigabitEthernet1/0/3 done.
Configuring GigabitEthernet1/0/4 done.
[SW2-Bridge-Aggregation1]port trunk permit vlan 10 20
Configuring GigabitEthernet1/0/3 done.
Configuring GigabitEthernet1/0/4 done.
在sw3
[SW3]vlan 100
[SW3-vlan100]port g1/0/3

5…SW3作为DHCP服务器,配置两个地址池,分别为192.168.1.0/24网段和192.168.2.0/24网段网关分
别为192.168.1.254和192.168.2.254,dns统一为114.114.114.114;分别排除地址段192.168.1.1
192.168.10和192.168.2.1-192.168.2.10

[SW3]dhcp enable 
[SW3]dhcp server ip-pool 1
[SW3-dhcp-pool-1]network 192.168.1.0 24
[SW3-dhcp-pool-1]gateway-list 192.168.1.254
[SW3-dhcp-pool-1]dns-list 114.114.114.114
[SW3-dhcp-pool-1]qu
[SW3]dhcp server ip-pool 2
[SW3-dhcp-pool-2]network 192.168.2.0 24
[SW3-dhcp-pool-2]gateway-list 192.168.2.254
[SW3-dhcp-pool-2]dns-list 114.114.114.114
[SW3]dhcp server forbidden-ip 192.168.2.1
[SW3]dhcp server forbidden-ip 192.168.2.10

6.在R4上配置静态路由,使其有到达各个部门的路由,在R3上配置默认路由,使其全网互通

在R4
[R4]ip route-static 192.168.1.0 24 172.16.1.2
[R4]ip route-static 192.168.2.0 24 172.16.1.2
在sw3
[SW3]ip route-static 0.0.0.0 0 172.16.1.1
在pc_5测试
<H3C>ping 1.1.1.1
Ping 1.1.1.1 (1.1.1.1): 56 data bytes, press CTRL_C to break
56 bytes from 1.1.1.1: icmp_seq=0 ttl=254 time=3.152 ms
56 bytes from 1.1.1.1: icmp_seq=1 ttl=254 time=3.260 ms
56 bytes from 1.1.1.1: icmp_seq=2 ttl=254 time=5.627 ms
56 bytes from 1.1.1.1: icmp_seq=3 ttl=254 time=7.297 ms
56 bytes from 1.1.1.1: icmp_seq=4 ttl=254 time=1.672 ms

--- Ping statistics for 1.1.1.1 ---
5 packet(s) transmitted, 5 packet(s) received, 0.0% packet loss
round-trip min/avg/max/std-dev = 1.672/4.202/7.297/2.000 ms
<H3C>%Jul 15 14:48:18:216 2025 H3C PING/6/PING_STATISTICS: Ping statistics for 1.1.1.1: 5 packet(s) transmitted, 5 packet(s) received, 0.0% packet loss, round-trip min/avg/max/std-dev = 1.672/4.202/7.297/2.000 ms.

7.在R4上配置Telnet服务使两个部门都能登录到R4

[R4]telnet server enable 
[R4]local-user ssz class manage 
New local user added.
[R4-luser-manage-ssz]password simple 123456.com
[R4-luser-manage-ssz]service-type telnet 
[R4-luser-manage-ssz]authorization-attribute user-role level-15
[R4-luser-manage-ssz]qu
[R4]user-interface vty 0 4
[R4-line-vty0-4]authentication-mode scheme 
[R4-line-vty0-4]user-role level-15
在pc_5测试
<H3C>telnet 1.1.1.1
Trying 1.1.1.1 ...
Press CTRL+K to abort
Connected to 1.1.1.1 ...

******************************************************************************
* Copyright (c) 2004-2021 New H3C Technologies Co., Ltd. All rights reserved.*
* Without the owner's prior written consent,                                 *
* no decompiling or reverse-engineering shall be allowed.                    *
******************************************************************************

Login: ssz
Password: 
<R4>
~~~
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值