第8章案例一故障配置V23.docx
- 文档编号:4390623
- 上传时间:2022-12-01
- 格式:DOCX
- 页数:19
- 大小:18.07KB
第8章案例一故障配置V23.docx
《第8章案例一故障配置V23.docx》由会员分享,可在线阅读,更多相关《第8章案例一故障配置V23.docx(19页珍藏版)》请在冰豆网上搜索。
第8章案例一故障配置V23
8.1.1参考配置
错误配置
正确配置
#
sysnameRT1
#
routerid10.10.10.1
#
ipunreachablesenable
#
ipttl-expiresenable
#
aclnumber3001
rule0permitipsource69.1.1.10destination69.1.1.20
#
ikepeer123
pre-shared-keysimple123
remote-address69.1.1.1
#
ipsecproposal1
#
ipsecpolicy11isakmp
securityacl3001
ike-peer123
proposal1
#
interfaceEthernet5/0
portlink-moderoute
ospfauthentication-modemd51plainh3c
ipaddress10.2.1.9255.255.255.252
#
interfaceEthernet5/1
portlink-moderoute
ospfauthentication-modemd51plainh3c
ipaddress69.1.1.1255.255.255.252
#
interfaceLoopBack0
ipaddress10.10.10.1255.255.255.255
#
interfaceGigabitEthernet0/0
portlink-moderoute
ipaddress10.1.1.9255.255.255.252
#
interfaceGigabitEthernet0/1
portlink-moderoute
ospfauthentication-modemd51plainh3c
ipaddress10.2.1.1255.255.255.252
#
interfaceTunnel0
ipaddress10.2.1.13255.255.255.252
source69.1.1.1
destination69.1.1.2
keepalive103
ipsecpolicy1
#
bgp65131
router-id10.10.10.1
import-routeospf10
undosynchronization
groupininternal
peerinconnect-interfaceLoopBack0
peer10.10.10.3groupin
peer10.10.10.4groupin
peer10.10.10.2groupin
#
ospf1
area0.0.0.0
authentication-modemd5
network10.2.1.00.0.0.3
network10.2.1.80.0.0.3
network10.2.1.120.0.0.3
network10.10.10.10.0.0.0
#
ospf10
area0.0.0.0
network10.1.1.80.0.0.3
#
sysnameRT2
#
routerid10.10.10.2
#
ipunreachablesenable
#
ipttl-expiresenable
#
aclnumber2001
rule0permitsource192.1.0.00.0.255.255
rule5permitsource172.1.1.00.0.0.255
#
local-userrt2
passwordsimpleh3c
service-typeppp
#
interfaceEthernet5/0
portlink-moderoute
ipaddress10.3.1.6255.255.255.252
#
interfaceSerial6/0
link-protocolppp
pppauthentication-modechap
pppchapuserrt2
pppmpMp-group0
#
interfaceSerial6/1
link-protocolppp
pppauthentication-modechap
pppchapuserrt2
pppmpMp-group0
#
interfaceMp-group0
ipaddress10.2.1.5255.255.255.252
ospfauthentication-modemd51plainh3c
#
interfaceLoopBack0
ipaddress10.10.10.2255.255.255.255
#
interfaceGigabitEthernet0/0
portlink-moderoute
ipaddress10.1.1.5255.255.255.252
#
interfaceGigabitEthernet0/1
portlink-moderoute
ipaddress10.2.1.2255.255.255.252
ospfauthentication-modemd51plainh3c
#
bgp65131
router-id10.10.10.2
import-routeospf10
undosynchronization
peer10.3.1.5as-number65132
peer10.3.1.5route-policy1export
groupininternal
peerinnext-hop-local
peerinconnect-interfaceLoopBack0
peer10.10.10.3groupin
peer10.10.10.1groupin
#
ospf1
area0.0.0.0
authentication-modemd5
network10.2.1.00.0.0.3
network10.10.10.20.0.0.0
network10.2.1.40.0.0.3
#
ospf10
area0.0.0.0
network10.1.1.40.0.0.3
#
route-policy1permitnode10
if-matchacl2001
#
#
sysnameRT3
#
routerid10.10.10.3
#
ipunreachablesenable
#
ipttl-expiresenable
#
local-userrt3
passwordsimpleh3c
service-typeppp
#
interfaceSerial6/0
link-protocolppp
pppchapuserrt3
pppmpMp-group0
#
interfaceSerial6/1
link-protocolppp
pppchapuserrt3
pppmpMp-group0
#
interfaceMp-group0
ipaddress10.2.1.6255.255.255.252
ospfauthentication-modemd51plainh3c
#
interfaceLoopBack0
ipaddress10.10.10.3255.255.255.255
#
interfaceLoopBack10
ipaddress172.1.2.254255.255.255.255
#
interfaceLoopBack20
ipaddress192.1.2.254255.255.255.255
#
interfaceGigabitEthernet0/0
portlink-moderoute
ipaddress10.2.1.10255.255.255.252
ospfauthentication-modemd51plainh3c
#
bgp65131
network172.1.2.254255.255.255.255
network192.1.2.254255.255.255.255
undosynchronization
groupininternal
peerinconnect-interfaceLoopBack0
peer10.10.10.1groupin
peer10.10.10.2groupin
peer10.10.10.2route-policy10import
#
ospf1
area0.0.0.0
authentication-modemd5
network10.10.10.30.0.0.0
network10.2.1.40.0.0.0
network10.2.1.80.0.0.0
#
route-policy10permitnode10
if-matchip-prefix10
applylocal-preference200
#
ipip-prefix10index10permit192.1.1.024
#
#
sysnameRT4
#
routerid10.10.10.4
#
ipunreachablesenable
#
ipttl-expiresenable
#
aclnumber3001
rule0permitipsource69.1.1.20destination69.1.1.10
#
ikepeer123
pre-shared-keysimple123
remote-address69.1.1.1
local-address69.1.1.2
#
ipsecproposal1
#
ipsecpolicy11isakmp
securityacl3001
ike-peer123
proposal1
#
interfaceLoopBack0
ipaddress10.10.10.4255.255.255.255
#
interfaceLoopBack10
ipaddress172.1.3.254255.255.255.255
#
interfaceLoopBack20
ipaddress192.1.3.254255.255.255.255
#
interfaceGigabitEthernet0/0
portlink-moderoute
ospfauthentication-modemd51plainh3c
ipaddress69.1.1.2255.255.255.252
#
interfaceTunnel0
ipaddress10.2.1.14255.255.255.252
source69.1.1.2
destination69.1.1.1
keepalive103
ipsecpolicy1
#
bgp65131
router-id10.10.10.1
network172.1.3.254255.255.255.255
network192.1.3.254255.255.255.255
undosynchronization
groupininternal
peerinconnect-interfaceLoopBack0
peer10.10.10.1groupin
#
ospf1
area0.0.0.0
network10.10.10.40.0.0.0
network10.2.1.120.0.0.3
#
#
sysnameRT5
#
superpasswordlevel3simpleh3c
#
telnetserverenable
#
ipunreachablesenable
#
ipttl-expiresenable
#
interfaceLoopBack0
ipaddress20.20.20.1255.255.255.255
#
interfaceLoopBack10
ipaddress172.2.1.254255.255.255.255
#
interfaceLoopBack20
ipaddress192.2.1.254255.255.255.255
#
interfaceGigabitEthernet0/0
portlink-moderoute
ipaddress10.3.1.1255.255.255.252
#
interfaceGigabitEthernet0/1
portlink-moderoute
ipaddress10.3.1.5255.255.255.252
#
bgp65132
router-id20.20.20.1
network172.2.1.254255.255.255.255
network192.2.1.254255.255.255.255
undosynchronization
peer10.3.1.2as-number65131
peer10.3.1.6as-number65131
#
#
sysnameSW1
#
ipunreachablesenable
#
vlan1
#
vlan10
#
vlan101to102
#
stpenable
stpregion-configuration
instance1vlan101
instance2vlan102
activeregion-configuration
#
interfaceVlan-interface10
ipaddress10.1.1.10255.255.255.252
#
interfaceVlan-interface101
ipaddress172.1.1.1255.255.255.0
vrrpvrid1virtual-ip172.1.1.254
#
interfaceVlan-interface102
ipaddress192.1.1.1255.255.255.0
vrrpvrid2virtual-ip192.1.1.254
#
interfaceEthernet1/0/1
portlink-modebridge
portaccessvlan10
#
interfaceEthernet1/0/2
portlink-modebridge
portlink-typetrunk
porttrunkpermitvlan1101to102
#
interfaceEthernet1/0/24
portlink-modebridge
portlink-typetrunk
porttrunkpermitvlan1101to102
#
ospf10
area0.0.0.0
network10.1.1.80.0.0.3
network172.1.1.00.0.0.255
network192.1.1.00.0.0.255
#
sysnameSW2
#
ipunreachablesenable
#
aclnumber3000
rule0permitipsource172.2.0.00.0.255.255
#
vlan1
#
vlan10
#
vlan20
#
vlan101to102
#
stpenable
stpregion-configuration
instance1vlan101
instance2vlan102
activeregion-configuration
#
interfaceVlan-interface10
ipaddress10.1.1.6255.255.255.252
#
interfaceVlan-interface20
ipaddress10.3.1.2255.255.255.252
#
interfaceVlan-interface101
ipaddress172.1.1.1255.255.255.0
vrrpvrid1virtual-ip172.1.1.254
#
interfaceVlan-interface102
ipaddress192.1.1.2255.255.255.0
vrrpvrid2virtual-ip192.1.1.254
#
interfaceEthernet1/0/1
portlink-modebridge
portaccessvlan10
#
interfaceEthernet1/0/2
portlink-modebridge
portlink-typetrunk
porttrunkpermitvlan1101to102
#
interfaceEthernet1/0/3
portlink-modebridge
portaccessvlan20
#
interfaceEthernet1/0/24
portlink-modebridge
portlink-typetrunk
porttrunkpermitvlan1101to102
#
bgp65131
network172.1.1.0255.255.255.0
undosynchronization
peer10.3.1.1as-number65132
#
ospf10
area0.0.0.0
network10.1.1.40.0.0.3
network172.1.1.00.0.0.255
network192.1.1.00.0.0.255
#
route-policy1permitnode10
if-matchacl3000
#
sysnameSW3
#
vlan1
#
vlan101to102
#
stpenable
stpregion-configuration
instance1vlan101
instance2vlan102
activeregion-configuration
#
interfaceVlan-interface101
ipaddress172.1.1.100255.255.255.0
#
interfaceVlan-interface102
ipaddress192.1.1.100255.255.255.0
#
interfaceEthernet1/0/1
portlink-modebridge
portlink-typetrunk
porttrunkpermitvlan1101to102
#
interfaceEthernet1/0/2
portlink-modebridge
portlink-typetrunk
porttrunkpermitvlan1101to102
#
interfaceEthernet1/0/11
portlink-modebridge
portaccessvlan101
#
interfaceEthernet1/0/12
portlink-modebridge
portaccessvlan102
#
iproute-static172.0.0.0255.0.0.0172.1.1.254
iproute-static192.0.0.0255.0.0.0192.1.1.254
#
#
sysnameRT1
#
routerid10.10.10.1
#
ipunreachablesenable
#
ipttl-expiresenable
#
aclnumber3001
rule0permitipsource69.1.1.10destination69.1.1.20
#
ikepeer123
pre-shared-keysimple123
remote-address69.1.1.2
local-address69.1.1.1
#
ipsecproposal1
#
ipsecpolicy11isakmp
securityacl3001
ike-peer123
proposal1
#
interfaceEthernet5/0
portlink-moderoute
ospfauthentication-modemd51plainh3c
ipaddress10.2.1.9255.255.255.252
#
interfaceEthernet5/1
portlink-moderoute
ipaddress69.1.1.1255.255.255.252
ipsecpolicy1
#
interfaceLoopBack0
ipaddress10.10.10.1255.255.255.255
#
interfaceGigabitEthernet0/0
portlink-moderout
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- 案例 故障 配置 V23