網絡拓撲圖
ROS的配置
第一步:定義Ros的WAN口及LAN口
將ether1定義為WAN口,連接光貓
ether2定義為LAN口,連接三層交換機
第二步 :在Ros上添加PPPOE Client,
在Interface接口視圖下,選擇" + " 添加一個PPPOE Client
在General窗口,修改name及Interface兩項
name :PPPOE的名稱(可自定義)
Interface :選擇WAN口(WAN口)
在Dial Out窗口下,輸入user 及 password
User:PPPOE賬號
Password:PPPOE密碼
默認勾選User peer DNS(DNS服務器) 及 Add Default Route(默認路由)),勾選后,無需手動添加DNS及靜態路由,即可訪問Internet。
在IP視圖的Addresses窗口,單擊 " + " 添加 ether2-LAN的接口地址:192.168.10.1/24
第三步: 偽裝(NAT)
在IP接口視圖下,打開Firewall窗口的NAT,選擇” + “ 添加
分別需要為每個網段都設置一條NAT
為192.168.200.0/24網段添加一條偽裝
masquerade 偽裝
第四步 : 添加回程路由
在IP-Routes視圖下,
DST address(目標網段):192.168.100.0/24
Gatway(LAN口及LAN口IP),相當于下一跳地址。:LAN
需要分別為每個網段添加回程路由(否則流量無法到達該VLAN,會導致出去的包回不來哦)
H3C三層交換機配置
交換機配置如下: # version5.20,Release2222P10 # sysnameH3C # irfmac-addresspersistenttimer irfauto-updateenable undoirflink-delay # domaindefaultenablesystem # webidle-timeout30 # password-recoveryenable # vlan1 # vlan10 # vlan100 # vlan200 # domainsystem access-limitdisable stateactive idle-cutdisable self-service-urldisable # dhcpserverip-pool10 network192.168.10.0mask255.255.255.0 gateway-list192.168.10.1 # user-groupsystem group-attributeallow-guest # local-userabc passwordcipher$c$3$3O3TRePwLP0yAqW37DGX1h4rfkdIGQ== authorization-attributelevel3 service-typeftp local-useradmin passwordcipher$c$3$Zn/sUTHSf0+ria4SnwGKiPjLfdwXUt7C authorization-attributelevel3 service-typeweb local-userroot passwordcipher$c$3$4eOQFNifn3uQrpYkYQovG6LThLqFT2Rcc0VD service-typetelnet service-typeweb # vlan-groupn1 # interfaceNULL0 # interfaceVlan-interface1 ipaddress172.16.1.1255.255.255.0 undodhcpselectserverglobal-pool # interfaceVlan-interface10 ipaddress192.168.10.2255.255.255.0 # interfaceVlan-interface100 ipaddress192.168.100.1255.255.255.0 # interfaceVlan-interface200 ipaddress192.168.200.1255.255.255.0 # interfaceGigabitEthernet1/0/1 # interfaceGigabitEthernet1/0/2 # interfaceGigabitEthernet1/0/3 # interfaceGigabitEthernet1/0/4 # interfaceGigabitEthernet1/0/5 # interfaceGigabitEthernet1/0/6 # interfaceGigabitEthernet1/0/7 # interfaceGigabitEthernet1/0/8 # interfaceGigabitEthernet1/0/9 # interfaceGigabitEthernet1/0/10 # interfaceGigabitEthernet1/0/11 portaccessvlan200 # interfaceGigabitEthernet1/0/12 portaccessvlan100 # interfaceGigabitEthernet1/0/13 # interfaceGigabitEthernet1/0/14 # interfaceGigabitEthernet1/0/15 # interfaceGigabitEthernet1/0/16 # interfaceGigabitEthernet1/0/17 # interfaceGigabitEthernet1/0/18 # interfaceGigabitEthernet1/0/19 # interfaceGigabitEthernet1/0/20 portaccessvlan10 # interfaceGigabitEthernet1/0/21 # interfaceGigabitEthernet1/0/22 # interfaceGigabitEthernet1/0/23 # interfaceGigabitEthernet1/0/24 portlink-typetrunk porttrunkpermitvlanall # interfaceGigabitEthernet1/0/25 shutdown # interfaceGigabitEthernet1/0/26 shutdown # interfaceGigabitEthernet1/0/27 shutdown # interfaceGigabitEthernet1/0/28 shutdown # rip1 network192.168.101.0 network192.168.102.0 network192.168.103.0 network10.0.0.0 # iproute-static0.0.0.00.0.0.010.0.8.1 iproute-static0.0.0.00.0.0.0192.168.10.1 # dhcpenable # ftpserverenable # loadxml-configuration # user-interfaceaux0 authentication-modepassword setauthenticationpasswordcipher$c$3$KcMReVoIeZfuRWS6GZQmpte0jZycfXExsQ== user-interfacevty015 # return
最終,測試每個網段互通的問題,全部互通。
審核編輯:劉清
-
交換機
+關注
關注
21文章
2637瀏覽量
99535 -
DNS服務器
+關注
關注
0文章
21瀏覽量
8439 -
LAN
+關注
關注
0文章
227瀏覽量
37415 -
WAN接口
+關注
關注
0文章
10瀏覽量
6811 -
ROS
+關注
關注
1文章
278瀏覽量
17001
原文標題:軟路由ROS與H3C三層交換機組網配置
文章出處:【微信號:網絡技術干貨圈,微信公眾號:網絡技術干貨圈】歡迎添加關注!文章轉載請注明出處。
發布評論請先 登錄
相關推薦
評論