eNSP實驗操作分析_第1頁
eNSP實驗操作分析_第2頁
eNSP實驗操作分析_第3頁
eNSP實驗操作分析_第4頁
eNSP實驗操作分析_第5頁
已閱讀5頁,還剩1頁未讀 繼續免費閱讀

下載本文檔

版權說明:本文檔由用戶提供并上傳,收益歸屬內容提供方,若內容存在侵權,請進行舉報或認領

文檔簡介

1、目錄 尾頁目錄基本操作2路由器2動態路由3RIP3OSPF3VLAN3鏈路聚合4Vlan間路由4DHCP4STP5ACL5基本ACL5高級ACL5調用ACL5NAT5靜態NAT5END5eNSP實驗操作基本操作修改時間<Huawei>clock datetime 16:29:30 2016 01-20<Huawei>保存<Huawei>saveThe current configuration will be written to the device.Are you sure to continue?Y/Ny登陸為管理員賬戶<Huawei>sy

2、s或<Huawei>system viewEnter system view, return user view with Ctrl+Z.Huawei重啟<Huawei>reboot修改名稱Huaweisysname R1R1配置console(管理)密碼Huaweiuser-interface console 0Huawei-ui-console0authentication-mode passwordHuawei-ui-console0set authentication password cipher 123456PingHuaweiping a 192.168.

3、1.1 12.1.1.1路由器修改網關Huaweiinterface GigabitEthernet 0/0/0ip address 192.168.1.1 255.255.255.0Huaweiinterface GigabitEthernet 0/0/1或Huawei-GigabitEthernet0/0/0int g 0/0/1查看路由器信息Huaweidisplay this若查看全部信息則Huaweidisplay current-configuration查看端口信息Huaweidisplay ip interface brief開關端口HuaweishutdownHuaweiun

4、do shutdown反向操作undo路由器Telnet遠程控制<Huawei>telnet 192.168.1.2設置Telnet(vty)接口密碼Huaweiuser-interface vty 0 4Huawei-ui-vty0-4set authentication passwprd ?Cipher 密文顯示Simple 明文顯示提升用戶權限用戶等級用戶等級命令等級名稱00訪問級10 and 1監控級20 , 1 and 2配置級3-150 , 1 , 2 and 3管理級Huawei-ui-vty0-4user privilege level 3抓包右鍵設配->數據

5、抓包查看路由表Huaweidisplay ip routing-table增加路由表Huaweiip route-static 目的網絡 子網掩碼 出接口/下一跳Huaweiip route-static 192.168.2.0 24 12.1.1.2查看ARP表項Huaweiarp -a提高路由優先級Huaweiip route-static 192.168.2.0 24 12.1.1.2 preference 50動態路由RIP配置RIP(更新至v2)HuaweiripHuaweiversion 2Huaweinetwork 192.168.1.0Huaweinetwork 12.0.0.

6、0RIP(v2)認證Huaweiinterface GigabitEthernet 0/0/0Huaweirip authentication-mode md5/simple 123456md5密文simple明文更改RIP跳數Huaweiinterface GigabitEthernet 0/0/0Huaweirip metricout 5抑制RIPHuaweiripHuaweisilent interfaceOSPF配置OSPFHuaweiospfHuaweiarea 0 Huaweinetwork 192.168.1.0 0.0.0.255Huaweiarea 1Huaweinetwor

7、k 12.1.1.0 0.0.0.255重置OSPF進程<Huawei>reset ospf process查看OSPF鄰居Huaweidisplay ospf peer brief修改routeIDHuaweiospf router-id 1.1.1.1OSPF認證接口Huaweiinterface GigabitEthernet 0/0/0Huaweiospf authentication-mode ?hmac-md5keychain密文認證md5null空認證simple明文認證Huaweiospf authentication-mode md5 123456修改DR優先級

8、Huaweiinterface GigabitEthernet 0/0/0Huaweiospf dr-priority 0VLAN查看vlanHuaweidisplay vlan查看關口vlanHuaweidisplay port vlan創建vlanHuaweivlan 10Huaweivlan batch 30 40 50Huaweivlan batch 30 to 40配置設置PC-S鏈路類型Huaweiinterface Eth0/0/1Huawei-Ethernet0/0/1port link-type access設置PC-S所屬vlanHuaweiinterface Eth0/0

9、/1Huawei-Ethernet0/0/1port default vlan 10 配置設置S-S鏈路類型Huaweiinterface Eth0/0/1Huawei-Ethernet0/0/1port link-type trunk設置S-S允許通過的vlanHuaweiinterface Eth0/0/1Huawei-Ethernet0/0/1port trunk allow-pass vlan 9 10修改端口PVIDHuaweiinterface Eth0/0/1Huawei-Ethernet0/0/1port trunk pvid vlan 10查看PVIDHuawei-Ether

10、net0/0/1interface Ethernet0/0/1配置設置hybrid鏈路類型Huaweiinterface Eth0/0/1Huawei-Ethernet0/0/1port link-type hybrid手工定義hybrid允許通過vlan、動作Huaweiinterface Eth0/0/1Huawei-Ethernet0/0/1port hybrid tagged vlan 10 20Huawei-Ethernet0/0/1port hybrid untagged vlan 9 10鏈路聚合創建虛擬接口Huaweiinterface Eth-Trunk 12Huawei-

11、Eth-Trunk12interface G0/0/1Huawei-GE0/0/1Eth-trunk 12Huawei-GE0/0/1interface G0/0/2Huawei-GE0/0/1Eth-trunk 12查看鏈路聚合信息Huaweidisplay interface eth-trunk 1Vlan間路由三級交換機配置對交換機Huaweivlan batch 10 20Huaweiinterface GE0/0/1Huawei-GE0/0/1port link-type trunkHuawei-GE0/0/1port trunk allow-pass vlan 10 20對路由器

12、Huaweivlan 30Huawei-vlan30 interface GigabitEthernet 0/0/1Huawei-GigabitEthernet0/0/1port link-type accessHuawei-GigabitEthernet0/0/1port default vlan 30Huaweiinterface Vlanif 30Huawei-Vlanif30ip address 192.168.3.1 24三級交換機網關Huaweiint g 0/0/1Huawei-GE0/0/1port link-type trunk Huawei-GE0/0/1port trun

13、k allow-pass vlan 10 20Huawei vlan batch 10 20Huaweiinterface Vlanif 10Huawei-Vlanif10ip address 192.168.1.1 24Huaweiinterface Vlanif 20Huawei-Vlanif20ip address 192.168.2.1 24路由器單臂路由 設置子接口Huaweiinterface g0/0/1. ?<1-4096>Huaweiinterface g0/0/1.1Huawei-G0/0/1.1dot1q termination vid 10Huawei-G0

14、/0/1.1arp broadcast enableHuawei-G0/0/1.1ip address 192.168.1.1 24DHCP基于接口地址池開啟DHCP功能Huaweidhcp enable關聯接口和接口地址池Huaweiinterface GigabitEthernet0/0/0Huawei-GEthernet0/0/0dhcp select interface設置DNSHuawei-GEthernet0/0/0dhcp server dns-list 8.8.8.8設置租期時間Huawei-GEthernet0/0/0dhcp server lease day ?Hourmi

15、nute基于全局地址池Huawei開啟功能同上Huaweiip pool Huawei設置掩碼Huawei-ip-pool-Huaweinetwork 1.1.1.0 mask 24設置網關Huawei-ip-pool-Huaweigateway-list 1.1.1.1設置DNSHuawei-GEthernet0/0/0dhcp server dns-list 8.8.8.8設置租期時間Huawei-ip-pool-Huaweilease day 10調用地址池Huaweiinterface GigabitEthernet0/0/1Huawei-GigabitEthernet0/0/1dhc

16、p select global關聯接口和接口地址池Huaweiinterface GigabitEthernet0/0/0Huawei-GEthernet0/0/0dhcp select interfaceSTP開啟STPHuaweistp mode stp改優先級Huaweistp priority 4096<0-65536> step 4096查看stp端口Huaweidisplay stp brief阻塞ALTEDiscarding丟棄正常ROOTForwardingACL基本ACLHuaweiacl 2000Huawei-acl-basic-2000rule ?<0-

17、4294967294>Step 5deny拒絕permit允許Huawei-acl-basic-2000rule deny source 192.168.2.0 0.0.0.255高級ACLHuaweiacl 3000Huawei-acl-basic-3000rule denyIp tcp udp 。Huawei-acl-basic-3000rule deny icmp source 192.168.1.2 0 destination 192.168.3.2調用ACLHuaweiinterface g0/0/1Huawei-GEthernet0/0/1traffic-filter ?In

18、bound outboundHuawei-GE0/0/1traffic-filter outbound acl 2000NAT靜態NATHuaweiinterface GigabitEthernet0/0/1Huawei-GEthernet0/0/1ip address 192.168.1.254 24Huawei-GEthernet0/0/1interface Serial1/0/0Huawei-Serial1/0/0ip address 200.10.10.2 24Huawei-Serial1/0/0nat static global 200.1.1.100 inside 192.168.

19、1.1 netmask 255.255.255.255Huawei-Serial1/0/0nat static global 200.1.1.101 inside 192.168.1.2 netmask 255.255.255.255動態NATHuaweinat address-group 1 200.10.10.1 200.10.10.200Huaweiacl 2000Huawei-acl-basic-2000rule 5 permit source 192.168.1.0 0.0.0.255Huaweiinterface serial1/0/0Huawei-Serial1/0/0nat o

20、utbound 2000 address-group 1 no-pat簡單NATHuaweiacl 2000Huawei-acl-basic-2000rule 5 permit source 192.168.1.0 0.0.0.255Huaweiinterface serial1/0/0Huawei-Serial1/0/0nat outbound 2000幀中繼映射動態映射RTAinterface Serial 1/0/0 RTA-Serial1/0/0link-protocol fr Warning: The encapsulation protocol of the link will b

21、e changed. Continue? Y/N:y RTA-Serial1/0/0fr interface-type dteRTA-Serial1/0/0fr inarp靜態映射RTAinterface Serial 1/0/0RTA-Serial1/0/0link-protocol frWarning: The encapsulation protocol of the link will be changed. Continue? Y/N:yRTA-Serial1/0/0fr interface-type dteRTA-Serial1/0/0undo fr inarpRTA-Serial

22、1/0/0fr map ip 10.1.1.2 100HDLCHDLC基本配置RTAinterface Serial 1/0/0RTA-Serial1/0/0link-protocol hdlcWarning: The encapsulation protocol of the link will be changed. Continue? Y/N:yRTA-Serial1/0/0ip address 10.0.1.1 30HDLC接口地址借用RTAinterface Serial 1/0/0RTA-Serial1/0/0link-protocol hdlc Warning: The encapsulation protocol of the link will be changed. Continue? Y/N:y RTA-Serial1/0/0ip address unnumbered interface loopBack 0RTAip route-static 10.1.1.0 24 Serial 1/0/0 PPPPAP認證認證方:RTA

溫馨提示

  • 1. 本站所有資源如無特殊說明,都需要本地電腦安裝OFFICE2007和PDF閱讀器。圖紙軟件為CAD,CAXA,PROE,UG,SolidWorks等.壓縮文件請下載最新的WinRAR軟件解壓。
  • 2. 本站的文檔不包含任何第三方提供的附件圖紙等,如果需要附件,請聯系上傳者。文件的所有權益歸上傳用戶所有。
  • 3. 本站RAR壓縮包中若帶圖紙,網頁內容里面會有圖紙預覽,若沒有圖紙預覽就沒有圖紙。
  • 4. 未經權益所有人同意不得將文件中的內容挪作商業或盈利用途。
  • 5. 人人文庫網僅提供信息存儲空間,僅對用戶上傳內容的表現方式做保護處理,對用戶上傳分享的文檔內容本身不做任何修改或編輯,并不能對任何下載內容負責。
  • 6. 下載文件中如有侵權或不適當內容,請與我們聯系,我們立即糾正。
  • 7. 本站不保證下載資源的準確性、安全性和完整性, 同時也不承擔用戶因使用這些下載資源對自己和他人造成任何形式的傷害或損失。

評論

0/150

提交評論