vrrp配置
拓扑图如下:
58.57.10.120/28
Gi 2/5
cisco6509
Si
Gi 0/9:192.168.50.1Gi 0/10:192.168.51.1
AREA0Gi 0/11:192.168.50.2Gi 0/11:192.168.51.2
ForceBForceAGi0/4Gi0/4V10:192.168.10.252V10:192.168.10.253Gi0/5Gi0/5V20:192.168.20.252V20:192.168.20.253SiSiV30:192.168.30.252V30:192.168.30.253V40:192.168.40.252V40:192.168.40.253Gi0/23Gi0/19Gi0/23虚拟地址均为:254虚拟地址均为:254Gi0/19
Gi 1/2/1Gi 1/2/2Gi 1/2/2Gi 1/2/1
H3C -BH3C-A
VLAN30VLAN10
VLAN40VLAN20
ForceA 和 ForceB 之间起vrrp
协议
离婚协议模板下载合伙人协议 下载渠道分销协议免费下载敬业协议下载授课协议下载
,和6509之间起ospf 路由协议。
配置步骤如下:
第一步:A和B之间做trunk链路,并测试连通性
ForceA: ForceA(conf)#Interface port-channel 1
ForceA(conf-if-po-1)#switchport
ForceA(conf-if-po-1)#channel-member gi0/4-5
ForceA(conf-if-po-1)#no shutdown
定义vlan0 ,将port-channel 1加入vlan10
ForceA(conf)#Interface vlan10
ForceA(conf-if-vl-10)#ip address 192.168.10.252/24
ForceA(conf-if-vl-10)#tagged port-channel 1
ForceA(conf-if-vl-10)#no shutdown
定义vlan20,将port-channel 1加入vlan20
ForceA(conf)#interface vlan20
ForceA(conf-if-vl-20)#ip address 192.168.20.252/24
ForceA(conf-if-vl-20)#tagged port-channel 1
ForceA(conf-if-vl-20)#no shutdown 定义vlan30 ,将port-channel 1加入vlan30
ForceA(conf)#Interface vlan30
ForceA(conf-if-vl-10)#ip address 192.168.30.252/24
ForceA(conf-if-vl-10)#tagged port-channel 1
ForceA(conf-if-vl-10)#no shutdown 定义vlan40 ,将port-channel 1加入vlan40
ForceA(conf)#Interface vlan40
ForceA(conf-if-vl-10)#ip address 192.168.40.252/24
ForceA(conf-if-vl-10)#tagged port-channel 1
ForceA(conf-if-vl-10)#no shutdown
ForceB:ForceB(conf)#Interface port-channel 1
ForceB(conf-if-po-1)#switchport
ForceB(conf-if-po-1)#channel-member gi0/4-5
ForceB(conf-if-po-1)#no shutdown
an0 ,将port-channel 1加入vlan10 定义vl
ForceB(conf)#Interface vlan10
ForceB(conf-if-vl-10)#ip address 192.168.10.253/24
ForceB(conf-if-vl-10)#tagged port-channel 1
ForceB(conf-if-vl-10)#no shutdown
定义vlan20,将port-channel 1加入vlan20
ForceB(conf)#interface vlan20
ForceB(conf-if-vl-20)#ip address 192.168.20.253/24
ForceB(conf-if-vl-20)#tagged port-channel 1
ForceB(conf-if-vl-20)#no shutdown
定义vlan30 ,将port-channel 1加入vlan30
ForceA(conf)#Interface vlan30
ForceA(conf-if-vl-10)#ip address 192.168.30.253/24
ForceA(conf-if-vl-10)#tagged port-channel 1
ForceA(conf-if-vl-10)#no shutdown
定义vlan40 ,将port-channel 1加入vlan40
ForceA(conf)#Interface vlan40
ForceA(conf-if-vl-10)#ip address 192.168.40.253/24
ForceA(conf-if-vl-10)#tagged port-channel 1
ForceA(conf-if-vl-10)#no shutdown
ForceB#ping 192.168.20.252 测试通过,然后进行下一步操作
第二步:C150和H3C交换机之间做trunk 并测试连通性
ForceA:ForceA(conf)#Interface gig 0/19
ForceA(conf-if-gi-0/19)# sw
ForceA(conf-if-gi-0/19)#no shutdown
ForceA(conf-if-gi-0/19)# int vlan 30
ForceA(conf-if-vl-30)#tagged gi0/19
ForceA(conf-if- vl-30)# int vlan 40
ForceA(conf-if-vl-40)#tagged gi0/19
ForceA(conf)#Interface gig 0/23
ForceA(conf-if-gi-0/23)# sw
ForceA(conf-if-gi-0/23)#no shutdown
ForceA(conf-if-gi-0/23)# int vlan 10
ForceA(conf-if-vl-10)#tagged gi0/23
ForceA(conf-if-vl-10)# int vlan 20
ForceA(conf-if-vl-20)#tagged gi0/23
ForceB:ForceB(conf)#Interface gig 0/19
ForceB(conf-if-gi-0/19)# sw
ForceB(conf-if-gi-0/19)#no shutdown
ForceB(conf-if-gig 0/19)# int vlan 30
ForceB(conf-if-vl-30)#tagged gi0/19
ForceB(conf-if-vl-30)# int vlan 40
ForceB(conf-if-vl-40)#tagged gi0/19
ForceB(conf)#Interface gig 0/23
ForceB(conf-if-gi0/23)# sw
ForceB(conf-if-gi0/23)# no shutdown
ForceB(conf-if-gi-0/23)# int vlan 10
ForceB(conf-if-vl-10)#tagged gi0/23
ForceB(conf-if-vl-10)# int vlan 20
ForceB(conf-if-vl-20)#tagged gi0/23
H3C-A: [H3C-A]inter gi1/2/1
[H3C-A-SER-gi1/2/1]port link-type trunk
[H3C-A-SER-gi1/2/1]port trunk permit vlan all
[H3C-A]inter gi1/2/2
[H3C-A-SER-gi1/2/2]port link-type trunk
[H3C-A-SER-gi1/2/2]port trunk permit vlan all
[H3C-A]vlan 10
[H3C-A-vlan10]port Ethernet 1/0/1
[H3C-A]vlan 20
[H3C-A-vlan20]port Ethernet 1/0/2
H3C-B: [H3C-B]inter gi1/2/1
[H3C-B-SER-gi1/2/1]port link-type trunk
[H3C-B-SER-gi1/2/1]port trunk permit vlan all
[H3C-B]inter gi1/2/2
[H3C-B-SER-gi1/2/2]port link-type trunk
[H3C-B-SER-gi1/2/2]port trunk permit vlan all
[H3C-B]vlan 30
[H3C-B-vlan10]port Ethernet 1/0/1
[H3C-B]vlan 40
[H3C-B-vlan20]port Ethernet 1/0/2
第三步:配置MSTP
ForceA:ForceA(conf)# inter vlan 10
ForceA(conf-if-vl-10)#vrrp-group 10
ForceA(conf-if-vl-10-vrid-10)#virtual-address 192.168.10.254
ForceA(conf-if-vl-10-vrid-10)#priority 105 设置优先级为105
ForceA(conf-if-vl-10-vrid-10)#preempt 设置为抢占模式
ForceA(conf-if-vl-10-vrid-10)#track gi0/11 监控gi0/11端口,断掉后自
(默认为10) 动优先级值自动减去10
ForceA(conf)# inter vlan 20
ForceA(conf-if-vl-20)#vrrp-group 20
ForceA(conf-if-vl-20-vrid-20)#virtual-address 192.168.20.254
-vrid-20)#priority 105 设置优先级为105 ForceA(conf-if-vl-20
ForceA(conf-if-vl-20-vrid-20)#preempt
ForceA(conf-if-vl-20-vrid-20)#track gi0/11
ForceA(conf)# inter vlan 30
ForceA(conf-if-vl-30)#vrrp-group 30
ForceA(conf-if-vl-30-vrid-30)#virtual-address 192.168.30.254
ForceA(conf-if-vl-30-vrid-30)#preempt 设置为抢占模式
ForceA(conf)# inter vlan 40
ForceA(conf-if-vl-40)#vrrp-group 40
ForceA(conf-if-vl-40-vrid-40)#virtual-address 192.168.40.254
ForceA(conf-if-vl-40-vrid-40)#preempt
以上为vrrp配置,下面进行mstp配置:
ForceA(conf)#protocol spanning-tree mstp
ForceA(conf-mstp)#no disable 使生成树起作用
ForceA(conf-mstp)#msti 1 vlan 10,20
ForceA(conf-mstp)#msti 2 vlan 30,40
ForceA(conf-mstp)#msti 1 bridge-priority 4096
ForceB:ForceB(conf)#Interface vlan10
ForceB(conf-if-vl-10)#vrrp-group 10
ForceB(conf-if-vl-10-vrid-10)#virtual-address 192.168.10.254
ForceB(conf-if-vl-10-vrid-10)#preempt 设置为抢占模式
ForceB(conf)# inter vlan 20
ForceB(conf-if-vl-20)#vrrp-group 20
ForceB(conf-if-vl-20-vrid-20)#virtual-address 192.168.20.254
ForceB(conf-if-vl-20-vrid-20)# preempt
ForceB(conf)# inter vlan 30
ForceB(conf-if-vl-30)#vrrp-group 30
ForceB(conf-if-vl-30-vrid-30)#virtual-address 192.168.30.254
ForceB(conf-if-vl-30-vrid-30)#priority 105 设置优先级为105
ForceB(conf-if-vl-30-vrid-30)# preempt
ForceB(conf-if-vl-30-vrid-30)# track gi0/11
ForceB(conf)# inter vlan 40
ForceB(conf-if-vl-40)#vrrp-group 40
ForceB(conf-if-vl-40-vrid-40)#virtual-address 192.168.40.254
ForceB(conf-if-vl-40-vrid-40)#priority 105 设置优先级为105
ForceB(conf-if-vl-40-vrid-40)# preempt
ForceB(conf-if-vl-40-vrid-40)# track gi0/11
以上为vrrp配置,下面进行mstp配置:
ForceB(conf)#protocol spanning-tree mstp
ForceB(conf-mstp)#no disable
ForceB(conf-mstp)#msti 1 vlan 10,20
ForceB(conf-mstp)#msti 2 vlan 30,40
ForceB(conf-mstp)#msti 2 bridge-priority 4096
H3C-A:
[H3C-A]stp region-configuration
[H3C-A-SER-mst-region]active region-configuration
[H3C-A-SER-mst-region]instance 1 vlan 10 to vlan 20 创建实例1,包含
vlan10,20
[H3C-A-SER-mst-region]quit
[H3C-A-]stp mode mstp
[H3C-A]stp enable
H3C-B: [H3C-B] stp region-configuration
[H3C-B-SER-mst-region]active region-configuration
[H3C-B-SER-mst-region]instance 2 vlan 30 to vlan 40 创建实例2,包含
vlan30,40
[H3C-B-SER-mst-region]active region-configuration
[H3C-B-SER-mst-region]quit
[H3C-B-]stp mode mstp
[H3C-A]stp enable
第四步:C150 和cisco6509交换机之间起ospf动态路由
ForceA:ForceA(conf)#interface gi0/11
ForceA(conf-if-gi-0/11)#ip add 192.168.51.2/24
ForceA(conf-if-gi-0/11)#no shutdown
ForceA(conf)#router ospf 1
ForceA(conf-router-ospf)#network 192.168.51.0/24 area 0
ForceA(conf-router-ospf)#network 192.168.10.0/24 area 0
ForceA(conf-router-ospf)#network 192.168.20.0/24 area 0
ForceA(conf-router-ospf)#network 192.168.30.0/24 area 0
ForceA(conf-router-ospf)#network 192.168.40.0/24 area 0
ForceA(conf-router-ospf)#redistribute static
ForceA(conf-router-ospf)#redistribute connected
ForceA(conf)#ip route 0.0.0.0 0.0.0.0 192.168.51.1
ForceB:ForceB(conf)#interface gi0/11
ForceB(conf-if-gi-0/11)#ip add 192.168.50.2/24
ForceB(conf-if-gi-0/11)#no shutdown
ForceB(conf)#router ospf 1
ForceB(conf-router-ospf)#network 192.168.50.0/24 area 0
ForceB(conf-router-ospf)#network 192.168.10.0/24 area 0
ForceB(conf-router-ospf)#network 192.168.20.0/24 area 0
ForceB(conf-router-ospf)#network 192.168.30.0/24 area 0
ForceB(conf-router-ospf)#network 192.168.40.0/24 area 0
ForceB(conf-router-ospf)#redistribute static
ForceB(conf-router-ospf)#redistribute connected
ForceB(conf)#ip route 0.0.0.0 0.0.0.0 192.168.50.1
Cisco6509: Cisco6509(conf)#iner gi0/9
Cisco6509(conf-if)#ip add 192.168.50.1 255.255.255.0
Cisco6509(conf-if)#ip nat inside
Cisco6509(conf-if)#no sh
Cisco6509(conf)#inter gi0/10
Cisco6509(conf-if)#ip add 192.168.51.1 255.255.255.0
Cisco6509(conf-if)#ip nat inside
Cisco6509(conf-if)#no sh
Cisco6509(conf)# inter gi2/5
Cisco6509(conf-if)#ip add 58.57.10.120 255.255.255.240
Cisco6509(conf-if)#ip nat outside
Cisco6509(conf-if)#no sh
Cisco6509(conf)# router ospf 1
Cisco6509(conf-route)#network 192.168.50.0 0.0.0.255 area 0
Cisco6509(conf-route)#network 192.168.51.0 0.0.0.255 area 0
Cisco6509(conf-route)#default-information originate always
Cisco6509(conf-route)#log-adjacency-changes
Cisco6509(conf-route)#redistribute connected
Cisco6509(conf-route)#redistribute static
Cisco6509(conf)#ip route 0.0.0.0 0.0.0.0 58.57.7.145
Show ip route 查看路由
表
关于同志近三年现实表现材料材料类招标技术评分表图表与交易pdf视力表打印pdf用图表说话 pdf
信息,确认无误后进行下一步操作。
到这一步,配置已经完成,然后测试各条线路的情况,看是否运行正常。下面是
NAT转换配置。
第五步:配置NAT
Cisco6509: Cisco6509(conf)# access-list 101 permit ip 192.168.50.0 0.0.0.255 any
Cisco6509(conf)# access-list 101 permit ip 192.168.51.0 0.0.0.255 any
Cisco6509(conf)# access-list 110 permit i 192.168.10.0 0.0.0.255 any
Cisco6509(conf)# access-list 120 permit ip 192.168.20.0 0.0.0.255 any
Cisco6509(conf)# access-list 120 permit ip 192.168.30.0 0.0.0.255 any
Cisco6509(conf)# access-list 120 permit ip 192.168.40.0 0.0.0.255 any
Cisco6509(conf)#ip nat pool waiwang 58.57.10.120 58.57.10.120 255.255.255.240
Cisco6509(conf)#ip nat inside source list 101 pool waiwang overload
Cisco6509(conf)#ip nat inside source list 110 pool waiwang overload
Cisco6509(conf)#ip nat inside soutce list 120 pool waiwang overload