设备学习

SW

基础配置

#修改名称
enable
conf
hostname SW

#创建vlan
vlan 10,20,30  

#vlan 配ip地址
int vlan 40
ipv6 enable
ip add 172.16.40.62 255.255.255.192

#为端口划分vlan
int e1/0/3
switchport access vlan30

trunk

interface e1/0/20                           #进入端口
switchport mode trunk                       #接口配置trunk模式,trunk默认所有vlan通过
switchport trunk allowed vlan 100,115,116  #设置仅允许的vlan通过

链路聚合

port-group 1							#新建一个port-group
interface e1/0/1-2						#进入端口
switchport mode trunk 					#接口配置trunk模式
switchport trunk allowed vlan 113,114	#设置允许通过vlan
port-group 1 mode active				#将端口1和2以active模式加入port-group 1

AC

基础配置

#修改名称
enable
conf
hostname SW

#创建vlan
vlan 10,20,30  

#vlan 配ip地址
int vlan 40
ipv6 enable
ip add 172.16.40.62 255.255.255.192

#为端口划分vlan
int e1/0/3
switchport access vlan30

trunk

interface e1/0/20                           #进入端口
switchport mode trunk                       #为接口配置trunk模式,trunk默认所有vlan通过
switchport trunk allowed vlan 100,115,116  #设置仅允许的vlan通过


#连接AP端口(一定是trunk,vlan设为native)
Interface Ethernet1/0/21
 switchport mode trunk
 switchport trunk allowed vlan 10;20;101 
 switchport trunk native vlan 101

AP

无论是AC还是SW,连接AP的端口设为trunk,vlan设为native

interface e1/0/21                           #进入端口
switchport mode trunk                       #为接口配置trunk模式,trunk默认所有vlan通过
switchport trunk allowed vlan 10,20  		#设置仅允许的vlan通过
switchport trunk native vlan 101			#将vlan设为native

ospf

SW

router ospf 10
ospf router-id 10.1.0.253
network 10.5.0.254/30 area 0
network 10.6.0.254/30 area 0
network 10.1.0.253/30 area 0
network 10.2.0.253/30 area 0

show ip ospf neighbor

AC

router ospf 10
ospf router-id 10.5.0.253
network 10.5.0.253/30 area 0
network 10.6.0.253/30 area 0

show ip ospf neighbor

FW

ip vrouter trust-vr
router ospf 10
router-id 10.1.0.254
network 10.1.0.254/30 area 0
network 10.2.0.254/30 area 0

show ip ospf neighbor

IBGP

IBGP:Internel BGP,内部边界网关协议,如果两个交换BGP报文的对等实体属于同一个自治系统,那么这两个对等实体就是IBGP对等实体

建立邻居关系

SW

router bgp 65500
 bgp router-id 10.3.0.253
 neigbor 10.3.0.254 remote-as 65500
 neigbor 10.3.0.254 remote-as 65500 
 
show ip bgp summary #查看邻居状态
show ip route   	#查看bgp路由是否学习到

FW

router bgp 65500
 router-id 10.3.0.254
 neigbor 10.3.0.253 remote-as 65500
 neigbor 10.3.0.253 remote-as 65500 
 #宣告loopback1-4
 network 10.11.0.1/24
 network 10.12.0.1/24
 network 10.13.0.1/24
 network 10.14.0.1/24
 
 show ip bgp summary 

BGP选路

AS PATH属性:数值越低,优先级越高
通过修改AS值进行选路

SW

ip prefix-list fw3 seq 5 permit 10.11.0.0/24
ip prefix-list fw3 seq 10 permit 10.12.0.0/24
ip prefix-list fw4 seq 5 permit 10.13.0.0/24
ip prefix-list fw4 seq 10 permit 10.14.0.0/24

route-map fw4 permit 5
 match ip address prefix-list fw3
 set as path perpend 65505
route-map fw4 permit 10

route-map fw3 permit 5
 match ip address prefix-list fw4
 set as path perpend 65505
route-map fw3 permit 10
posted @ 2024-05-14 10:29  L1nX  阅读(35)  评论(0)    收藏  举报