摘要:随着网络的迅速发展和普及,各行各业都逐渐加入网络大军当中。校园作为知识和文化的传播载体,自然离不开网络。该文针校园网进行分析,根据具体实例进行设计并给出接入路由和核心交换机的实际配置。
关键词:校园网;交换机;ip;vlan
中图分类号:TP393 文献标识码:A
文章编号:1009-3044(2020)03-0045-02
1 校园网络的特点
与其他网络相比较,校园网并不复杂,但一般覆盖范围比一般局域网略大,网络结点相对较多。所以在保持大多数局域网故障率低、可靠性高、运行成本低的特点之外,对ip和vlan划分方面要求细致并合理。
2 组建实例
2.1 网络概况与要求
某校园,接人方式为专线,具有企业级路由器,核心交换机6506各一台,若干台二层交换机及服务器,品牌统一为华为。要求所有办公室和机房均能接人外网,并且从外网可以访问校园内的相關服务器。
2.2 网络设计中的重要技术
(1)对路由器做正向NAT,以保证所有内部机器访问外网。
(2)对路由器做反向NAT,以保证在外网可以访问内部服务器。
(3)在核心交换机上合理划分vlan和分配ip。
2.3 主要设备实际
(1)接人路由器配置
dis cur
sysname AR46-40
local-user hhhhh
password cipher D=S\DO/,NL_Q= -Q'MAF4<<”TX$一S#6.NM(0=0\)*5WWQ=^Q、MAF4<<”TX$一S#6.
service-type telnet
level 3
local-user*****
password simple****
service-type telnet
level 3
interface Aux0
async mode flow
interface Ethernet0/0/0
ip address 60.11.253.130 255.255.255.240
nat outbound 2001
nat server protocol tcp global 60.11.253.131 any inside192.168.254.200 any
nat server protocol tcp global 60.11.253.134 any inside192.168.108.250 any
interface Ethernet0/0/1 ip address 192.168.253.2 255.255.255.0
interface NULLO acl number 2001
rule o permit source 192.168.0.0 0.0.255.255
rule l deny
acl number 3001
ip route-static 0.0.0.0 0.0.0.0 60. 11.253.129 preference 60
ip route-static 192.0.0.0 255.255.255.0 192.168.253.1 prefer-ence 60
ip route-static 192.168.0.0 255.255.0.0 192.168.253.1 prefer-ence 60
snmp-agent
snmp-agent local-engineid 800007DBOOOFE21898886877
snmp-agent community read qqqqq
snmp-agent community write qqqqw
snmp-agent sys-info location Beijing China
snmp-agent sys-info version all
authentication-mode scheme
sysname Quidway S6506
local-server nas-ip 127.0.0.1 key huawei
radius scheme system
primary authentication 127.0.0.1 1645
primary accounting 127.0.0.1 1646
user-name-format without-domain
local-user hhhhh
password cipher D=S\DO/'NL]$I\
QQKl_I!I
service-type telnet
level 3
local-user yyyyy
password simple ????
service-type telnet
level 3
stp TC-protection enable
vlan I vlan 20 vlan 30 vlan 40 vlan 41 vlan 42 vlan 50 vlan60 vlan 80 vlan 90 vlan 101
vlan 102 vlan 103 vlan 104 vlan 105 vlan 106 vlan 107 vlan109 vlan 110 vlan 111 vlan 253
vlan 254 vlan 1000
interface Vlan-interfacelo ip address 192.168.10.1 255.255.255.0
interface Vlan-interface20 ip address 192.168.20.1 255.255.255.0
interface Vlan-interface254 ip address 192. 168.254. 1 255.255.255.0
interface Vlan-interfacel000 ip address 192.0.0.1 255.255.255.0
interface Aux0/0/0
interface M-Ethernet0/0/0
interface Ethernet3/0/1 port access vlan 253
interface GigabitEthernet2/0/4 port access vlan 80
speed 1000
port link-type trunk
undo port trunk permit vlan l
port trunk permit vlan 2 t0 4094
port link-aggregation group 1
interface CigabitEthernet2/0/8
duplex full
speed 1000
port link-type trunk
undo port trunk permit vlan l
port trunk permit vlan 2 t0 4094
port link-aggregation group l
interface NULLO
ip route-static 192.0.0.0 255.255.255.0 192.168.253.10 pref-erence 60
ip route-static 192.168.128.0 255.255.128.0 192.168.253.10preference 60
參考文献:
[1]齐秀国.任务导向教学法在网络技术课程中的研究与实践[J]电脑知识与技术,2018,14(4):137-138.145.
[2]隋新.计算机组装与维修课程教学的研究与实践[J].电脑知识与技术,2019(1):83-84.
[3]齐秀国.网络搭建课程实现理实一体化教学的研究与实践[J]电脑知识与技术,2019,15(2):76-77.