
/case.php?id=181& \$ `6 i9 s* w
# U5 _8 [+ `! ~( P5 Q/ C4 @拓扑图请见链接!
$ Y$ a( m) T% _3 l% S0 Q1 R8 ~
) q& c: E6 s0 d5 P. f+ C P9 i) L5 _* K: D* k
案例描述:- [- T5 K2 Q1 `! V
/ @8 Z) v. ^/ K某公司的网络中有一个三层交换机SW1, 在公司的网络中每个部门一个VLAN、服务器一个独立的VLAN.在如图所示的环境中:' c- Q: x. ~6 ^1 B( `
◆ Server处于VLAN10中,网段为192.168.1.0/24,其中DHCP服务的IP地址为192.168.1.2
+ @) _' x" G5 ]' ^; [' [ B5 @* u◆ Sales部门处于VLAN20中,网段为192.168.2.0/24- O" ~" o7 x j
◆ HR部门处于VLAN30中,网段为192.168.3.0/246 ^$ w2 p: d1 _$ d p
6 b* r8 F4 }" z; V" t
案例目的:
3 B4 u5 Q" d6 o) k实现Sales和HR部门的所有的客户机能自动到DHCP服务上获得IP地址) X& R/ \, S7 m( P$ w- S
, n/ M! s: r( e# _4 Q6 X案例注意点:
3 q8 _2 n! z' T x# g1 I在部署环境的时候,所有的计算机使用微软的操作系统,其中 DHCP服务器使用微软的Windows Server 2008 R2操作系统;交换机使用Cisco 3560三层交换机。
9 Q0 P# ^/ ?3 w `: |+ ^. E: V1 X2 O0 k3 w
案例实现:
9 p8 M2 D" F4 J P& R- }/ `一.按照要求连接好网络设备。1 f' {/ Q% W3 x1 t. ~! M
二.网络配置! b6 V# a: J1 ^
# k5 J( J7 I- W/ f! _& n2 I$ m交换机的基本配置3 Q! q) Y5 L- B% D5 {. [
Switch>enable
1 q! ^$ {. o' Q: ~" L4 h& K& iSwitch#configure terminal 2 A$ g0 N( z8 f" ^% U9 o" t2 H% a
Enter configuration commands, one per line. End with CNTL/Z.+ |+ T) Q% E! a* T9 z
sw1(config)#hostname sw1
% h+ e, y7 K9 x7 jsw1(config)#no ip domain lookup / w. ^9 w; G: Y' G
sw1(config)#line console 0- M4 u" q6 R( r' j
sw1(config-line)#exec-timeout 0 0% u( P3 R8 G; |6 x% P! \ x& K
sw1(config-line)#logging synchronous* }, c# d7 N8 \, A- f4 ]$ O
r: p. ^( u$ Y4 ^5 X+ T! x+ _+ r
2. 创建VLAN
1 {- c! ?3 {* s k方法一:
0 r/ v! y" K0 S `* {SW1(config)#vlan 105 K" X: p, |: M4 Q: f
SW1(config-vlan)#name Server5 X& U6 l5 K0 _; a9 Z2 u
SW1(config-vlan)#vlan 20
* w( j% Y9 G2 R0 I( ^5 wSW1(config-vlan)#name Sales
! u7 v9 X6 H h' z/ J0 a" Z' c' RSW1(config-vlan)#vlan 30$ S, U8 S5 s5 W2 f
SW1(config-vlan)#name HR2 c0 `" ?8 j n
0 ^; F# i/ q+ ~. C; t
方法二:
8 M! H+ k" ]! qSW1#vlan database
, R7 w, L1 l- m% Warning: It is recommended to configure VLAN from config mode,/ [. e) y0 d7 z! L- G* A
as VLAN database mode is being deprecated. Please consult user' H E0 C& x8 \! r
documentation for configuring VTP/VLAN in config mode., H( W; }! t5 \. Z1 P
SW1(vlan)#vlan 10 name Server1 B. s4 S" d4 m/ r
VLAN 10 modified:+ @* [8 x. @$ k3 B4 j: X5 r
Name: Server
4 Z) |" q/ h: o6 @/ `SW1(vlan)#vlan 20 name Sales
, z1 T: D @0 f. [2 ~- \" aVLAN 20 modified:' K, ?$ X) x7 q0 c7 c& @- i$ N
Name: Sales8 S( u C4 D1 F0 d
SW1(vlan)#vlan 30 name HR7 g1 z* s4 f' y
VLAN 30 modified:
# g" t/ H1 Y; {" s' ]3 U9 b) O n& i Name: HR
0 k* l; D& u3 l; dSW1(vlan)#exit$ W" ]7 j' w* z
APPLY completed.& y+ V @+ I7 b$ @0 N5 n
Exiting....
+ x9 D- ]0 w7 e
5 d9 [: r7 u. } ^ D把相应的接口加入的相应VLAN中1 k a9 n! s, m& Z; D' H- c
SW1(config)#interface fastEthernet 0/4
. Q9 h5 d, E" `! {$ U* ~SW1(config-if)#switchport mode access * [+ C: j+ z: [. y
SW1(config-if)#switchport access vlan 10: ]) L4 `7 A& ~+ T8 @
SW1(config-if)#exit! |8 r& b8 x& T9 i+ j
SW1(config)#interface fastEthernet 0/5
- U4 E4 h7 z8 d2 E1 KSW1(config-if)#switchport mode access 2 u: Z. u6 g8 k
SW1(config-if)#switchport access vlan 20
" B& D* G/ m# v5 MSW1(config-if)#exit1 ` _! J# G6 u5 j
SW1(config)#interface fastEthernet 0/66 Y" [3 a; v* i1 w2 y
SW1(config-if)#switchport mode access 3 V6 N( X4 w3 s4 n/ l
SW1(config-if)#switchport access vlan 30
& V3 z' C! N6 A6 C6 i/ q* X
$ H6 E# x" H: E3 x$ T查看配置
+ q% I$ a0 m- l* R5 WSW1#sh vlan brief 7 x8 S2 _0 T2 k, W2 Z
VLAN Name Status Ports
0 w& U {% C5 K$ Z/ x9 ^---- -------------------------------- --------- -------------------------------+ S8 [" w- g8 f, V: v9 b6 M
1 default active Fa0/1, Fa0/2, Fa0/3, Fa0/76 x. L/ Y: ]6 |9 S% z1 j; \
Fa0/8, Fa0/9, Fa0/10, Fa0/11
# b, U/ }5 s8 z: o5 j/ ^" s2 M Fa0/12, Fa0/13, Fa0/14, Fa0/15
" [1 A" [( ^8 d, _ Fa0/16, Fa0/17, Fa0/18, Fa0/19
v a# ?8 `2 j& ~5 [9 t, J3 ^1 e Fa0/20, Fa0/21, Fa0/22, Fa0/23
5 ?8 l0 }0 I8 M2 D4 z- m Fa0/24
0 R+ Q: ^+ a z! L- K10 Server active Fa0/4
( D# M. S5 e2 B2 ]) P20 Sales active Fa0/5
, D: v# p0 _3 ?7 u$ @- N$ |0 S( o30 HR active Fa0/6+ X. D! j i# H& S! U7 H" V
1002 fddi-default active - z1 q5 b6 U* X) p+ I0 J) o1 ^
1003 token-ring-default active
' Y" B1 f; D- O6 M$ D% d1004 fddinet-default active
" D, l e6 ]% L7 @: \2 V5 ?% Y1005 trnet-default active " c$ ~) \2 v% \7 }2 u- L, X
+ x' l/ v: \ R- v% u Q0 y j. q. U5. 配置SVI端口
* q/ |- M: C' B6 USW1(config)#interface vlan 10
& [2 c- q( d3 Q. D0 ~$ ?1 {%LINK-5-CHANGED: Interface Vlan10, changed state to up' e1 E9 E; t- U7 ^, I8 x; [# r
SW1(config-if)#ip address 192.168.1.1 255.255.255.01 Z W- W/ R, R# o' p' C' J
SW1(config-if)#no shutdown . o6 Q9 T/ G. k
SW1(config-if)#int vlan 20
5 G5 F. W& n( @$ g%LINK-5-CHANGED: Interface Vlan20, changed state to up
/ k+ H. }1 s2 r4 C8 o2 k" T lSW1(config-if)#ip address 192.168.2.1 255.255.255.0
$ M6 Z0 n+ \) |+ B* sSW1(config-if)#int vlan 30% W2 i7 ~2 ]6 X
%LINK-5-CHANGED: Interface Vlan30, changed state to up
( b4 { z+ O3 N6 C- \0 v' mSW1(config-if)#ip add 192.168.3.1 255.255.255.01 V7 H% T+ N, _+ }% A
SW1(config-if)#no sh0 _/ Z" z- i2 o; m; d6 v/ G# Q' T' s, L
4 g7 C# T5 E! |( q$ C9 I验证
$ H7 V/ n/ |' ~1 j/ ZSW1#sh ip route
2 Z+ j; [/ R, `2 y6 u% g6 d9 z$ HCodes: C - connected, S - static, R - RIP, M - mobile, B - BGP# o% w! [8 z6 I+ {1 n& M5 H; Q
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area , Q% m8 G- U6 J) s' T+ H' B% s
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2( \. t( ^! [, |3 h) E$ U+ \& t" F
E1 - OSPF external type 1, E2 - OSPF external type 2
" X8 h2 ^$ x8 ?) @: ^ i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2. h* H" ?; P- D% ^! V
ia - IS-IS inter area, * - candidate default, U - per-user static route: r3 a2 k9 O+ T" |
o - ODR, P - periodic downloaded static route; q. T; ^* e# g4 G9 s. c
Gateway of last resort is not set
8 |8 f3 G9 D2 [) hC 192.168.1.0/24 is directly connected, Vlan10) I1 a4 J, }3 G }
C 192.168.2.0/24 is directly connected, Vlan20+ [5 c3 c) O4 @, }7 X6 X7 ^0 h
C 192.168.3.0/24 is directly connected, Vlan30
0 w: v+ t3 f/ c. i: w3 E5 c0 i% t$ O* |: g+ n
为客户机所属VLAN配置中继代理( V, R2 X6 W* h" d- p' n2 K
SW1(config)#int vlan 20
8 g0 [3 A, i' c. {) |6 OSW1(config-if)#ip helper-address 192.168.1.2
/ f5 l! R8 |/ USW1(config-if)#int vlan 30
7 u: D. ~% a, b* }+ [9 R5 {+ kSW1(config-if)#ip helper-address 192.168.1.2
& \& c9 W& x! ?0 k# |
9 W7 `7 o9 i0 p2 T# ^三.系统配置# B2 H& M1 |" y: h' Z7 Z& g$ K1 C
3 \2 s/ H8 K0 v! q S" y$ a* K# ]
四.配置完成后的测试
) _% O1 t7 |- ]/ Y- F1 k& h" S# C+ E9 Q. ^5 q& U
' d0 O& h! v/ a6 H. O
----本文档由( |
|