实践八某企业工程实施配置验证.doc_第1页
实践八某企业工程实施配置验证.doc_第2页
实践八某企业工程实施配置验证.doc_第3页
实践八某企业工程实施配置验证.doc_第4页
实践八某企业工程实施配置验证.doc_第5页
已阅读5页,还剩42页未读 继续免费阅读

下载本文档

版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领

文档简介

某企业网络工程项目(工程实施配置验证实训)目 录实训说明3【实践目的】4【实践内容与步骤】4一、网络拓扑图4二、网络信息51.交换机管理IP地址信息52.VLAN与IP地址信息63.路由器IP分配信息7三、各网络设备具体配置71.路由器(R2501+)配置72.中心交换机(RG-S6506)配置93.网管中心S2150G配置144.办公楼S2150G的配置195.办公楼S2126S的配置266.销售部的S2126S的配置297机房1的S2126S的配置408.机房3的S2126S的配置44【验证结果】47【拓展】47实训说明1.所有设备采用锐捷产品;2. 实验验证在虚拟实验室平台进行;3.登录账号为学生号,密码为学号;4.本次实训为8个学时。【实践目的】掌握网络工程中全网配置的整体连通性和方法,掌握验证的方法和技术。【实践内容与步骤】一、网络拓扑图图1.1 网络结构拓扑图拓扑说明1.网管中心采用一台2150G;2.办公楼采用一台2150G和一台2126S,其间由千兆电口连接;3.销售部、产品开发部和计划部大楼13均采用4台2126S堆叠;4.机房1采用一台2126S,下挂1926G+一台,通过2126S的24口和1926G+的24口级连,同时1926G+下挂18系列交换机;5.机房2采用一台1926G+交换机,通过光纤与机房1的2126S的模块2相连,同时下挂18系列交换机;机房3采用一台2126S,下挂1926G+一台,通过2126S的24口和1926G+的24口级连,同时1926G+下挂18系列交换机;6.机房4采用一台1926G+交换机,通过光纤与机房3的2126S的模块2相连,同时下挂18系列交换机。7.Web服务器地址设置为00(对内),对外为07。二、网络信息1.交换机管理IP地址信息具体如表1.1所示。表1.1 交换机管理IP地址分配表设备型号设备安装位置设备管理IP管理VLAN备注S6506中心机房15S2150G网管中心1519(vlan1)1016(vlan12)1748(vlan11)S2150G办公楼15113(vlan5)1429(vlan2)3038(vlan4)3948(vlan3)S2126S办公楼124(vlan3)S2126S堆叠4台一号销售部1513(vlan12)414(vlan3)1596(vlan6)S2126S堆叠4台二号产品开发部1513(vlan12)414(vlan3)1596(vlan6)S2126S堆叠4台三号计划部1513(vlan12)414(vlan3)1596(vlan6)S2126S机房一15119(vlan11)2023(vlan7)S1926G+机房一15vlan7S1926G+机房二015vlan8S2126S机房三115122(vlan11)23(vlan9)S1926G+机房三215vlan9S1926G+机房四315vlan102.VLAN与IP地址信息 表1.2 VLAN与地址分配表IP网段网关VLAN IDVLAN说明1网管中心2领导3办公区4财务室5研发中心6车间7机房18机房29机房310机房411实验室12休息室13阅览室14食堂15交换机管理16其他17服务器网段18路由网段3.路由器IP分配信息表. 路由器IP地址分配表端口IP地址下一跳IP地址说明F00605接外网F1接内网三、各网络设备具体配置1.路由器(R2501+)配置 2501#sh runBuilding configuration.Current configuration:hostname 2501enable secret 5 $1$Cj6c$ZnWfjCDWA4YwysggWIede1ip subnet-zero!interface FastEthernet0 ip address 06 48 ip access-group 100 in ip nat outside!interface FastEthernet1 ip address ip nat inside! interface Serial0 no ip address shutdown!interface Serial1 no ip address shutdown!ip nat inside source list 1 interface FastEthernet0 overloadip nat inside source static tcp 07 80 00 80ip classlessip route FastEthernet0 05ip route access-list 1 permit anyaccess-list 100 deny tcp any any eq 135access-list 100 deny tcp any any eq 136access-list 100 deny tcp any any eq 137access-list 100 deny tcp any any eq 138access-list 100 deny tcp any any eq 139access-list 100 deny tcp any any eq 445access-list 100 deny udp any any eq 135access-list 100 deny udp any any eq 136access-list 100 deny udp any any eq 139access-list 100 deny udp any any eq 445access-list 100 deny tcp any any eq 4444access-list 100 deny udp any any eq 1434access-list 100 permit ip any any!line con 0line aux 0line vty 0 4 password nmc6680906403 login!end2.中心交换机(RG-S6506)配置(1)VLAN端口对照表表1.4 交换机Vlan端口分配表端口号说 明G4/1连接办公楼2150GG4/2连接1号销售部2126SG4/3连接2号产品开发部2126SG4/4连接3号计划部2126SG4/5连接机房1的2126SG4/6连接机房2的2126SG4/7连接电子阅览室G4/8连接食堂G4/9连接网管中心2150G(千兆电口)G4/10连接路由器F1口G4/11连接服务器G4/12连接web服务器(服务器对内地址00,对外地址为07sh runBuilding configuration.Current configuration : 2974 bytes!version 1.0install 4 12sfp/gtip routing algorithm CRC32_UPPER!hostname S6506enable secret level 0 5 -vyppK*vpsBxvNq&#ZSptOrJ%(enable secret level 15 5 -vyp8U0Spt1u_;C!ip access-list extended 101 deny udp any any eq 1434 deny udp any any eq 135 deny udp any any eq tftp deny udp any any eq 5554 deny udp any any eq 1068 deny tcp any any eq 135 deny tcp any any eq 5554 deny tcp any any eq 1068 deny tcp any any eq 6881 deny tcp any any eq 6882 deny tcp any any eq 6666 deny tcp any any eq 6667 deny tcp any any eq 6668 permit ip any any !interface GigabitEthernet 4/1 medium-type fiberswitchport mode trunk ip access-group 101 in!interface GigabitEthernet 4/2 medium-type fiberswitchport mode trunk ip access-group 101 in!interface GigabitEthernet 4/3 medium-type fiberswitchport mode trunk ip access-group 101 in!interface GigabitEthernet 4/4 medium-type fiberswitchport mode trunk ip access-group 101 in!interface GigabitEthernet 4/5 medium-type fiberswitchport mode trunk ip access-group 101 in!interface GigabitEthernet 4/6 medium-type fiberswitchport mode trunk ip access-group 101 in!interface GigabitEthernet 4/7 switchport access vlan 13 ip access-group 101 in!interface GigabitEthernet 4/8 medium-type fiber switchport access vlan 14 ip access-group 101 in!interface GigabitEthernet 4/9switchport mode trunk ip access-group 101 in!interface GigabitEthernet 4/10 switchport access vlan 18 ip access-group 101 in!interface GigabitEthernet 4/11 switchport access vlan 6 ip access-group 101 in!interface GigabitEthernet 4/12 switchport access vlan 17 ip access-group 101 in!interface Vlan 1 ip address !interface Vlan 2 ip address !interface Vlan 3 ip address !interface Vlan 4 ip address !interface Vlan 5 ip address !interface Vlan 6 ip address !interface Vlan 7 ip address !interface Vlan 8 ip address !interface Vlan 9 ip address !interface Vlan 10 ip address !interface Vlan 11 ip address !interface Vlan 12 ip address !interface Vlan 13 ip address !interface Vlan 14 ip address !interface Vlan 15 ip address ! interface Vlan 16 ip address !interface Vlan 17 ip address !interface Vlan 18 ip address !ip route Vlan 18 1 enabledendZYZX-6506#3.网管中心S2150G配置S2150G#sh runBuilding configuration.Current configuration : 2782 bytes!version 1.0!hostname wangguanzhongxinvlan 1 name wangguan!vlan 11 name shiyanshi!vlan 12 name beikeshi!vlan 15 name jiaohuanji!enable secret level 1 5 -vypX)svvpsY*T7xvtZV/SptS(W&enable secret level 15 5 -vypR:Hvps_;C,xvU0Hvps_;C,xvU0Hvps_;C,xvU0D+Sptj9=G1enable secret level 15 5 -vypcknAvpsglowxvehISptfimLM!interface fastEthernet 0/1 switchport access vlan 3!interface fastEthernet 0/2 switchport access vlan 3interface fastEthernet 0/3 switchport access vlan 3!interface fastEthernet 0/4 switchport access vlan 3!interface fastEthernet 0/5 switchport access vlan 3!interface fastEthernet 0/6 switchport access vlan 3!interface fastEthernet 0/7 switchport access vlan 3!interface fastEthernet 0/8 switchport access vlan 3!interface fastEthernet 0/9 switchport access vlan 3interface fastEthernet 0/10 switchport access vlan 3!interface fastEthernet 0/11 switchport access vlan 3!interface fastEthernet 0/12 switchport access vlan 3!interface fastEthernet 0/13 switchport access vlan 3!interface fastEthernet 0/14 switchport access vlan 3!interface fastEthernet 0/15 switchport access vlan 3!interface fastEthernet 0/16 switchport access vlan 3interface fastEthernet 0/17 switchport access vlan 3!interface fastEthernet 0/18 switchport access vlan 3!interface fastEthernet 0/19 switchport access vlan 3!interface fastEthernet 0/20 switchport access vlan 3!interface fastEthernet 0/21 switchport access vlan 3!interface fastEthernet 0/22 switchport access vlan 3!interface fastEthernet 0/23 switchport access vlan 3interface fastEthernet 0/24 switchport access vlan 3!interface gigabitEthernet 1/1 switchport mode trunk switchport trunk native vlan 15!interface vlan 15 no shutdown ip address !ip default-gateway endbangong-2126#6.销售部的S2126S的配置sh runBuilding configuration.Current configuration : 6285 bytes!version 1.0!hostname jiaoxue-2vlan 1!vlan 3 name bangongqu!vlan 6 name jiaoshi!vlan 12 name beikeshi!vlan 15 name jiaohuanji!enable secret level 1 5 -vyp-aehvpsdfixvtbckSpt7zyglenable secret level 15 5 -vypdfimvpsbcknxvzygloSptaehinterface fastEthernet 1/0/1 switchport access vlan 12!interface fastEthernet 1/0/2 switchport access vlan 12!interface fastEthernet 1/0/3 switchport access vlan 12!interface fastEthernet 1/0/4 switchport access vlan 3!interface fastEthernet 1/0/5 switchport access vlan 3!interface fastEthernet 1/0/6 switchport access vlan 3!interface fastEthernet 1/0/7 switchport access vlan 3interface fastEthernet 1/0/8 switchport access vlan 3!interface fastEthernet 1/0/9 switchport access vlan 3!interface fastEthernet 1/0/10 switchport access vlan 3!interface fastEthernet 1/0/11 switchport access vlan 3!interface fastEthernet 1/0/12 switchport access vlan 3!interface fastEthernet 1/0/13 switchport access vlan 3!interface fastEthernet 1/0/14 switchport access vlan 3interface fastEthernet 1/0/15 switchport access vlan 6!interface fastEthernet 1/0/16 switchport access vlan 6!interface fastEthernet 1/0/17 switchport access vlan 6!interface fastEthernet 1/0/18 switchport access vlan 6!interface fastEthernet 1/0/19 switchport access vlan 6!interface fastEthernet 1/0/20 switchport access vlan 6!interface fastEthernet 1/0/21 switchport access vlan 6interface fastEthernet 1/0/22 switchport access vlan 6!interface fastEthernet 1/0/23 switchport access vlan 6!interface fastEthernet 1/0/24 switchport access vlan 6!interface gigabitEthernet 1/2/1 switchport mode trunk!interface fastEthernet 2/0/1 switchport access vlan 6!interface fastEthernet 2/0/2 switchport access vlan 6!interface fastEthernet 2/0/3 switchport access vlan 6interface fastEthernet 2/0/4 switchport access vlan 6!interface fastEthernet 2/0/5 switchport access vlan 6!interface fastEthernet 2/0/6 switchport access vlan 6!interface fastEthernet 2/0/7 switchport access vlan 6!interface fastEthernet 2/0/8 switchport access vlan 6!interface fastEthernet 2/0/9 switchport access vlan 6!interface fastEthernet 2/0/10 switchport access vlan 6interface fastEthernet 2/0/11 switchport access vlan 6!interface fastEthernet 2/0/12 switchport access vlan 6!interface fastEthernet 2/0/13 switchport access vlan 6!interface fastEthernet 2/0/14 switchport access vlan 6!interface fastEthernet 2/0/15 switchport access vlan 6!interface

温馨提示

  • 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
  • 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
  • 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
  • 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
  • 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
  • 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
  • 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。

评论

0/150

提交评论