sw3配置
[sw3]vlan 10
[sw3-vlan10]port g1/0/1
[sw3]vlan 20
[sw3-vlan20]port g1/0/2
[sw3]int ran g1/0/3 to g1/0/4
[sw3-if-range]port link-type trunk
[sw3-if-range]port trunk permit vlan 10 20
[sw3]stp region-configuration
[sw3-mst-region]region-name h3c
[sw3-mst-region]revision-level 0
[sw3-mst-region]instance 10 vlan 10
[sw3-mst-region]instance 20 vlan 20
[sw3-mst-region]active region-configuration
sw1配置
[sw1]int ran g1/0/1 to g1/0/3
[sw1-if-range]port link-type trunk
[sw1-if-range]port trunk permit vlan 10 20
[sw1]stp region-configuration
[sw1-mst-region]region-name h3c
[sw1-mst-region]revision-level 0
[sw1-mst-region]instance 10 vlan 10
[sw1-mst-region]ins
[sw1-mst-region]instance 20 vlan 20
[sw1-mst-region]active region-configuration
[sw1]int bridge-aggregation 1
[sw1-bridge-aggregation1]port link-type trunk
[sw1-bridge-aggregation1]port trunk permit vlan 10 20
[sw1]int ran g1/0/1 to g1/0/2
[sw1-if-range]port link-aggregation group 1
[sw1]stp instance 10 root primary
[sw1]stp instance 20 root secondary
[sw1]int vlan 10
[sw1-vlan-inte***ce10]ip address 192.168.10.252 24
[sw1-vlan-inte***ce10]vrrp vrid 10 virtual-ip 192.168.10.254
[sw1-vlan-inte***ce10]vrrp vrid 10 priority 120
[sw1]int vlan 20
[sw1-vlan-inte***ce20]ip address 192.168.20.252 24
[sw1-vlan-inte***ce20]vrrp vrid 20 virtual-ip 192.168.20.254
[sw1-loopback0]ip address 3.3.3.3 32
[sw1-gigabitethernet1/0/4]port link-mode route
[sw1-gigabitethernet1/0/4]ip address 10.0.1.1 24
[sw1]int vlan 10
[sw1-vlan-inte***ce10]vrrp vrid 10 track 1 priority reduced 30
[sw1]track 1 int g 1/0/4
!!!配置監視埠不僅可以監視上行埠的物理連線是否可達,還可以監視網路可達性,一旦網路不可達,也可以實現主備切換
track 2 ip route
1.1.1.1
32 reachability-------監視上行環迴口
可達!!!!
[sw1-ospf-1-area-0.0.0.0]network 192.168.10.0 0.0.0.255-----敲黑板!!!
這裡之所以不宣告vlan20的網段是因為考慮安全,要保持vlan10的主機訪問外部時來回報文的路徑一致,不然一旦網路中有防火牆,可能會被攔截。
[sw1-ospf-1-area-0.0.0.0]network 10.0.1.0 0.0.0.255
[sw1-ospf-1]import-route direct-----路由備份
sw2的配置和sw1的配置基本一致,只是環迴口和要宣告的網段不一樣而已。
r1的配置
[r1]int g 0/1
[r1-gigabitethernet0/1]ip address 10.0.1.2 24
[r1-gigabitethernet0/0]ip address 10.0.2.1 24
[r1-loopback0]ip address 1.1.1.1 32
[r1-ospf-1-area-0.0.0.0]network 10.0.1.0 0.0.0.255
[r1-ospf-1-area-0.0.0.0]network 10.0.2.0 0.0.0.255
[r1-loopback0]ip address 1.1.1.1 32
r2的配置跟r1基本一致
結果是全網可達,並且在sw1和sw2上面可以實現vrrp主備的切換,在r1上看到學習到的vlan20網段的路由一下跳是r2的0/0埠;在r2上看到學習到的vlan10網段的路由一下跳是r1的0/0埠.
華三 h3c super vlan配置
super vlan配置 想在此基礎上 swb上面配置靜態路由,實現pc和swb的互通 swa vlan 2 swa vlan2 port g1 0 1 swa vlan 3 swa vlan3 port g1 0 2 swa vlan 10 swa vlan10 supervlan super v...
華三 h3c ACL配置
基本的配置不做闡述,這裡使用rip來進行全網連通 r1 r1 rip r1 rip 1 net 192.168.1.0 0.0.0.255 r1 rip 1 net 192.168.2.0 0.0.0.255 r1 rip 1 ver 2 r1 rip 1 un su r2 r2 rip 1 net...
華三 h3c ppp配置
先把基本的配置做完 r1 r1 int g 0 0 r1 gigabitethernet0 0 ip address 10.1.1.254 24 r1 int s1 0 r1 serial1 0 ip address 10.2.1.1 24 r1 ip route static 10.3.1.0 2...