第8章案例一故障配置V23.docx

上传人:b****6 文档编号:4390623 上传时间:2022-12-01 格式:DOCX 页数:19 大小:18.07KB
下载 相关 举报
第8章案例一故障配置V23.docx_第1页
第1页 / 共19页
第8章案例一故障配置V23.docx_第2页
第2页 / 共19页
第8章案例一故障配置V23.docx_第3页
第3页 / 共19页
第8章案例一故障配置V23.docx_第4页
第4页 / 共19页
第8章案例一故障配置V23.docx_第5页
第5页 / 共19页
点击查看更多>>
下载资源
资源描述

第8章案例一故障配置V23.docx

《第8章案例一故障配置V23.docx》由会员分享,可在线阅读,更多相关《第8章案例一故障配置V23.docx(19页珍藏版)》请在冰豆网上搜索。

第8章案例一故障配置V23.docx

第8章案例一故障配置V23

8.1.1参考配置

错误配置

正确配置

#

sysnameRT1

#

routerid10.10.10.1

#

ipunreachablesenable

#

ipttl-expiresenable

#

aclnumber3001

rule0permitipsource69.1.1.10destination69.1.1.20

#

ikepeer123

pre-shared-keysimple123

remote-address69.1.1.1

#

ipsecproposal1

#

ipsecpolicy11isakmp

securityacl3001

ike-peer123

proposal1

#

interfaceEthernet5/0

portlink-moderoute

ospfauthentication-modemd51plainh3c

ipaddress10.2.1.9255.255.255.252

#

interfaceEthernet5/1

portlink-moderoute

ospfauthentication-modemd51plainh3c

ipaddress69.1.1.1255.255.255.252

#

interfaceLoopBack0

ipaddress10.10.10.1255.255.255.255

#

interfaceGigabitEthernet0/0

portlink-moderoute

ipaddress10.1.1.9255.255.255.252

#

interfaceGigabitEthernet0/1

portlink-moderoute

ospfauthentication-modemd51plainh3c

ipaddress10.2.1.1255.255.255.252

#

interfaceTunnel0

ipaddress10.2.1.13255.255.255.252

source69.1.1.1

destination69.1.1.2

keepalive103

ipsecpolicy1

#

bgp65131

router-id10.10.10.1

import-routeospf10

undosynchronization

groupininternal

peerinconnect-interfaceLoopBack0

peer10.10.10.3groupin

peer10.10.10.4groupin

peer10.10.10.2groupin

#

ospf1

area0.0.0.0

authentication-modemd5

network10.2.1.00.0.0.3

network10.2.1.80.0.0.3

network10.2.1.120.0.0.3

network10.10.10.10.0.0.0

#

ospf10

area0.0.0.0

network10.1.1.80.0.0.3

#

sysnameRT2

#

routerid10.10.10.2

#

ipunreachablesenable

#

ipttl-expiresenable

#

aclnumber2001

rule0permitsource192.1.0.00.0.255.255

rule5permitsource172.1.1.00.0.0.255

#

local-userrt2

passwordsimpleh3c

service-typeppp

#

interfaceEthernet5/0

portlink-moderoute

ipaddress10.3.1.6255.255.255.252

#

interfaceSerial6/0

link-protocolppp

pppauthentication-modechap

pppchapuserrt2

pppmpMp-group0

#

interfaceSerial6/1

link-protocolppp

pppauthentication-modechap

pppchapuserrt2

pppmpMp-group0

#

interfaceMp-group0

ipaddress10.2.1.5255.255.255.252

ospfauthentication-modemd51plainh3c

#

interfaceLoopBack0

ipaddress10.10.10.2255.255.255.255

#

interfaceGigabitEthernet0/0

portlink-moderoute

ipaddress10.1.1.5255.255.255.252

#

interfaceGigabitEthernet0/1

portlink-moderoute

ipaddress10.2.1.2255.255.255.252

ospfauthentication-modemd51plainh3c

#

bgp65131

router-id10.10.10.2

import-routeospf10

undosynchronization

peer10.3.1.5as-number65132

peer10.3.1.5route-policy1export

groupininternal

peerinnext-hop-local

peerinconnect-interfaceLoopBack0

peer10.10.10.3groupin

peer10.10.10.1groupin

#

ospf1

area0.0.0.0

authentication-modemd5

network10.2.1.00.0.0.3

network10.10.10.20.0.0.0

network10.2.1.40.0.0.3

#

ospf10

area0.0.0.0

network10.1.1.40.0.0.3

#

route-policy1permitnode10

if-matchacl2001

#

#

sysnameRT3

#

routerid10.10.10.3

#

ipunreachablesenable

#

ipttl-expiresenable

#

local-userrt3

passwordsimpleh3c

service-typeppp

#

interfaceSerial6/0

link-protocolppp

pppchapuserrt3

pppmpMp-group0

#

interfaceSerial6/1

link-protocolppp

pppchapuserrt3

pppmpMp-group0

#

interfaceMp-group0

ipaddress10.2.1.6255.255.255.252

ospfauthentication-modemd51plainh3c

#

interfaceLoopBack0

ipaddress10.10.10.3255.255.255.255

#

interfaceLoopBack10

ipaddress172.1.2.254255.255.255.255

#

interfaceLoopBack20

ipaddress192.1.2.254255.255.255.255

#

interfaceGigabitEthernet0/0

portlink-moderoute

ipaddress10.2.1.10255.255.255.252

ospfauthentication-modemd51plainh3c

#

bgp65131

network172.1.2.254255.255.255.255

network192.1.2.254255.255.255.255

undosynchronization

groupininternal

peerinconnect-interfaceLoopBack0

peer10.10.10.1groupin

peer10.10.10.2groupin

peer10.10.10.2route-policy10import

#

ospf1

area0.0.0.0

authentication-modemd5

network10.10.10.30.0.0.0

network10.2.1.40.0.0.0

network10.2.1.80.0.0.0

#

route-policy10permitnode10

if-matchip-prefix10

applylocal-preference200

 

#

ipip-prefix10index10permit192.1.1.024

#

#

sysnameRT4

#

routerid10.10.10.4

#

ipunreachablesenable

#

ipttl-expiresenable

#

aclnumber3001

rule0permitipsource69.1.1.20destination69.1.1.10

#

ikepeer123

pre-shared-keysimple123

remote-address69.1.1.1

local-address69.1.1.2

#

ipsecproposal1

#

ipsecpolicy11isakmp

securityacl3001

ike-peer123

proposal1

#

interfaceLoopBack0

ipaddress10.10.10.4255.255.255.255

#

interfaceLoopBack10

ipaddress172.1.3.254255.255.255.255

#

interfaceLoopBack20

ipaddress192.1.3.254255.255.255.255

#

interfaceGigabitEthernet0/0

portlink-moderoute

ospfauthentication-modemd51plainh3c

ipaddress69.1.1.2255.255.255.252

#

interfaceTunnel0

ipaddress10.2.1.14255.255.255.252

source69.1.1.2

destination69.1.1.1

keepalive103

ipsecpolicy1

#

bgp65131

router-id10.10.10.1

network172.1.3.254255.255.255.255

network192.1.3.254255.255.255.255

undosynchronization

groupininternal

peerinconnect-interfaceLoopBack0

peer10.10.10.1groupin

#

ospf1

area0.0.0.0

network10.10.10.40.0.0.0

network10.2.1.120.0.0.3

#

#

sysnameRT5

#

superpasswordlevel3simpleh3c

#

telnetserverenable

#

ipunreachablesenable

#

ipttl-expiresenable

#

interfaceLoopBack0

ipaddress20.20.20.1255.255.255.255

#

interfaceLoopBack10

ipaddress172.2.1.254255.255.255.255

#

interfaceLoopBack20

ipaddress192.2.1.254255.255.255.255

#

interfaceGigabitEthernet0/0

portlink-moderoute

ipaddress10.3.1.1255.255.255.252

#

interfaceGigabitEthernet0/1

portlink-moderoute

ipaddress10.3.1.5255.255.255.252

#

bgp65132

router-id20.20.20.1

network172.2.1.254255.255.255.255

network192.2.1.254255.255.255.255

undosynchronization

peer10.3.1.2as-number65131

peer10.3.1.6as-number65131

#

#

sysnameSW1

#

ipunreachablesenable

#

vlan1

#

vlan10

#

vlan101to102

#

 

stpenable

stpregion-configuration

instance1vlan101

instance2vlan102

activeregion-configuration

#

interfaceVlan-interface10

ipaddress10.1.1.10255.255.255.252

#

interfaceVlan-interface101

ipaddress172.1.1.1255.255.255.0

vrrpvrid1virtual-ip172.1.1.254

#

interfaceVlan-interface102

ipaddress192.1.1.1255.255.255.0

vrrpvrid2virtual-ip192.1.1.254

 

#

interfaceEthernet1/0/1

portlink-modebridge

portaccessvlan10

#

interfaceEthernet1/0/2

portlink-modebridge

portlink-typetrunk

porttrunkpermitvlan1101to102

#

interfaceEthernet1/0/24

portlink-modebridge

portlink-typetrunk

porttrunkpermitvlan1101to102

#

ospf10

 

area0.0.0.0

network10.1.1.80.0.0.3

network172.1.1.00.0.0.255

network192.1.1.00.0.0.255

#

sysnameSW2

#

ipunreachablesenable

#

aclnumber3000

rule0permitipsource172.2.0.00.0.255.255

#

vlan1

#

vlan10

#

vlan20

#

vlan101to102

#

 

stpenable

stpregion-configuration

instance1vlan101

instance2vlan102

activeregion-configuration

#

interfaceVlan-interface10

ipaddress10.1.1.6255.255.255.252

#

interfaceVlan-interface20

ipaddress10.3.1.2255.255.255.252

#

interfaceVlan-interface101

ipaddress172.1.1.1255.255.255.0

vrrpvrid1virtual-ip172.1.1.254

#

interfaceVlan-interface102

ipaddress192.1.1.2255.255.255.0

vrrpvrid2virtual-ip192.1.1.254

#

interfaceEthernet1/0/1

portlink-modebridge

portaccessvlan10

#

interfaceEthernet1/0/2

portlink-modebridge

portlink-typetrunk

porttrunkpermitvlan1101to102

#

interfaceEthernet1/0/3

portlink-modebridge

portaccessvlan20

#

interfaceEthernet1/0/24

portlink-modebridge

portlink-typetrunk

porttrunkpermitvlan1101to102

#

bgp65131

network172.1.1.0255.255.255.0

undosynchronization

peer10.3.1.1as-number65132

#

ospf10

 

area0.0.0.0

network10.1.1.40.0.0.3

network172.1.1.00.0.0.255

network192.1.1.00.0.0.255

#

route-policy1permitnode10

if-matchacl3000

#

sysnameSW3

#

vlan1

#

vlan101to102

#

stpenable

stpregion-configuration

instance1vlan101

instance2vlan102

activeregion-configuration

#

interfaceVlan-interface101

ipaddress172.1.1.100255.255.255.0

#

interfaceVlan-interface102

ipaddress192.1.1.100255.255.255.0

#

interfaceEthernet1/0/1

portlink-modebridge

portlink-typetrunk

porttrunkpermitvlan1101to102

#

interfaceEthernet1/0/2

portlink-modebridge

portlink-typetrunk

porttrunkpermitvlan1101to102

#

interfaceEthernet1/0/11

portlink-modebridge

portaccessvlan101

#

interfaceEthernet1/0/12

portlink-modebridge

portaccessvlan102

#

iproute-static172.0.0.0255.0.0.0172.1.1.254

iproute-static192.0.0.0255.0.0.0192.1.1.254

#

#

sysnameRT1

#

routerid10.10.10.1

#

ipunreachablesenable

#

ipttl-expiresenable

#

aclnumber3001

rule0permitipsource69.1.1.10destination69.1.1.20

#

ikepeer123

pre-shared-keysimple123

remote-address69.1.1.2

local-address69.1.1.1

#

ipsecproposal1

#

ipsecpolicy11isakmp

securityacl3001

ike-peer123

proposal1

#

interfaceEthernet5/0

portlink-moderoute

ospfauthentication-modemd51plainh3c

ipaddress10.2.1.9255.255.255.252

#

interfaceEthernet5/1

portlink-moderoute

ipaddress69.1.1.1255.255.255.252

ipsecpolicy1

#

interfaceLoopBack0

ipaddress10.10.10.1255.255.255.255

#

interfaceGigabitEthernet0/0

portlink-moderout

展开阅读全文
相关资源
猜你喜欢
相关搜索

当前位置:首页 > 高中教育 > 初中教育

copyright@ 2008-2022 冰豆网网站版权所有

经营许可证编号:鄂ICP备2022015515号-1