您好,欢迎访问三七文档
当前位置:首页 > 行业资料 > 其它行业文档 > 某大型网络的配置实例
某大型网络的配置实例说明:这是一个比较综合的实例,从拓扑图上可以看出,它所包含的设备和技术。以下对这个例子作些说明希望能够和各位网友交流。1.对于内部局域网,选用Cisco的Catalyst6506作为中心交换机,二级交换采用Catalyst3500,同时为了说明Trunk,又加了一个Catalyst2900作为三级交换,对于终端连接用了Catalyst1900交换机,这样就可以在Catalyst6506与Catalyst3500之间以及Catalyst3500与Catalyst2900之间建立Trunk,实现跨交换机的VLAN。注:Catalyst2900系列如果要实现Trunk,软件必须是企业版的,关于类似疑问可以至疑难杂谈栏目。2.对于外连上,主要是专线连接和拨号访问,当然种类比较多.包括了DDN、ISDN、FrameRelay、E1线路等。3.本例给出设备的基本配置。4.对于多设备的连接问题,值得注意的是路由问题,本实例外连部分采用静态路由而内部局域网采用动态路由.5.在本例的帧中继配置中,运用了IPUnnumbered,可以节省地址资源,有兴趣可以注意一下在网关有关*作说明讲行很多,但很少有实例,这个配置例我想对于许多入门的朋友启发不少,我也希望这么的帖子与大家共享和交流一下!配置实例VLAN划分问题:对于交换设备本例中划到VLAN1中,而对于外连设备的所有以太网端口,均划到VLAN2中,下面给出各VLAN的名称和网关地址,本例划分8个VLAN.VLANIDVLANNameGatewayVLAN1Bluestudy110.1.0.1/16VLAN2Bluestudy210.2.0.1/16VLAN3Bluestudy310.3.0.1/16VLAN4Bluestudy410.4.0.1/16VLAN5Bluestudy510.5.0.1/16VLAN6Bluestudy610.6.0.1/16VLAN7Bluestudy710.7.0.1/16VLAN8Bluestudy810.8.0.1/16Catalyst6506的配置Enterpassword:enableEnterpassword:configtsetsystemnameBluestudysettime10/30/20009:30:00setpasswordsetenablepasssetinterfacesc010.1.0.2/16setiproutedefault10.1.0.1setipdnsserver10.1.0.100setipdnsdomainbluestudy.comsetipdnsenablesetvtpdomainbluestudymodeserversetvlan1nameBluestudy1setvlan2nameBluestudy2setvlan3nameBluestudy3setvlan4nameBluestudy4setvlan5nameBluestudy5setvlan6nameBluestudy6setvlan7nameBluestudy7setvlan8nameBluestudy8setportnegotiation2/1-8enablesetportname2/1-8GEC802.1QTrunksettrunk2/1-8desirabledot1qsetportspeed2/1-81000setvlan13/1-48对于6506的交换机方面的配置只需做出Trunk即可,因为要实现跨交换机之间的虚网,下面配置6506的路由模块,因为6506的路由模块现在与管理引擎模块集成在了一起,所以,默认命令是:Session15详情请见6506路由设置.Catalyst6506RSM模块的配置(enable)session15TryingRouter-15...ConnectedtoRouter-15.Escapecharacteris'^]'.enableconfigureterminalhostnamebluestudyenablepasswordpasswordlinevty06passwordsecret_wordipdomain-namebluestudy.comipname-server10.1.0.100interfacevlan1ipaddress10.1.0.1255.255.0.0noshutdowninterfacevlan2ipaddress10.2.0.1255.255.0.0noshutdowninterfacevlan3ipaddress10.3.0.1255.255.0.0noshutdowninterfacevlan4ipaddress10.4.0.1255.255.0.0noshutdowninterfacevlan5ipaddress10.5.0.1255.255.0.0noshutdowninterfacevlan6ipaddress10.6.0.1255.255.0.0noshutdowninterfacevlan7ipaddress10.7.0.1255.255.0.0noshutdowninterfacevlan8ipaddress10.8.0.1255.255.0.0noshutdownrouterripversion2network10.0.0.0iproute0.0.0.00.0.0.010.2.0.12iproute192.168.2.0255.255.255.010.2.0.13iproute192.168.3.0255.255.255.24010.2.0.11iproute192.168.4.0255.255.255.010.2.0.11iproute192.168.5.0255.255.255.010.2.0.11iproute192.168.6.0255.255.255.010.2.0.11copyrunning-configstartup-configBuildingconfiguration...[OK]这里给出的是单纯的命令行,略去了一些默认状况的设置.Catalyst3500的配置Catalyst3500的配置!version12.0noservicepadservicetimestampsdebuguptimeservicetimestampsloguptimeservicepassword-encryption!hostnamebluestudy!enablepasswordpassword!usernamebluestudypasswordpasswordusernametestpasswordpassword!省略端口的显示!interfaceGigabitEthernet0/1switchporttrunkencapsulationdot1qswitchportmodetrunk!interfaceGigabitEthernet0/2!interfaceVLAN1ipaddress10.1.0.4255.255.0.0iphelper-address10.1.0.100ipdirected-broadcastnoiproute-cache!ipdefault-gateway10.1.0.1interfaceEthernet1/1(与2900对接)switchporttrunkencapsulationdot1qswitchportmodetrunk!interfaceEthernet1/2(与1900A对接)switchportaccessVLAN3noshut!interfaceEthernet1/3(与1900B对接)switchportaccessVLAN4noshut!snmp-serverengineIDlocal000000090200000216BE4E80snmp-servercommunitypublicROsnmp-servercommunityprivateRWsnmp-serverchassis-id0x17(打开简单的网络管理,便于以后,Cisco网管软件识别和管理)!linecon0loginlocaltransportinputnonestopbits1linevty04loginlocallinevty515login!endCatalyst2900的配置Catalyst2900的配置2900的配置与3500的相似,命令如下hostnamebluestudy!enablepasswordpassword!usernamebluestudypasswordpasswordusernametestpasswordpassword!省略端口的显示!interfaceEthernet0/1(与3500对接)switchporttrunkencapsulationdot1qswitchportmodetrunk!interfaceVLAN1ipaddress10.1.0.3255.255.0.0iphelper-address10.1.0.100ipdirected-broadcastnoiproute-cache!ipdefault-gateway10.1.0.1!interfaceEthernet0/2(与1900C对接)switchportaccessVLAN5noshut!interfaceEthernet0/3(与1900D对接)switchportaccessVLAN6noshut!snmp-serverengineIDlocal000000090200000216BE4E80snmp-servercommunitypublicROsnmp-servercommunityprivateRWsnmp-serverchassis-id0x17!linecon0loginlocaltransportinputnonestopbits1linevty04loginlocallinevty515login!endCiscoCatalyst1900的配置CiscoCatalyst1900的配置对于1900的配置就相对容易得多了只需在enable状态下键入Setup就会进入配置向导给出交换机的IP地址:10.3.0.5掩码:255.255.0.0网关:10.3.0.1就可以了,另外应该打开简单的网络管理协议SNMPsnmp-servercommunitypublicROsnmp-servercommunityprivateRW即可PIX520A的基本配置PIXVersion4.2(4)nameifethernet0outsidesecurity0nameifethernet1insidesecurity100enablepasswordpasswordencryptedpasswdpasswordencryptedhostnamepix_Afixupprotocolftp21fixupprotocolhttp80fixupprotocolsmtp25fixupprotocolh3231720fixupprotocolrsh514fixupprotocolsqlnet1521namesnofailoverfailovertimeout0:00:00failoveripaddressoutside0.0.0.0failoveripaddressinside0.0.0.0pagerlines24nologgingconsoleloggingmonitordebuggingloggingbuffereddebuggingnologgingtraploggingfacility20interfaceethernet0autointerfaceethernet1autoipaddressoutside192.168.0.1255.255.255.252ipaddressinside10.2.0.13255.255.0.0arpti
本文标题:某大型网络的配置实例
链接地址:https://www.777doc.com/doc-6493695 .html