GME 和MGRE综合实验

一、实验拓扑

二、实验要求

1、R5为ISP,只能进行I地址配置,其所有地址均配为公有I地址;

2、R1和R5间使用PPP的PAP认证,R5为主认证方

R2与R5之间使用ppp的cHAP认证,R5为主认证方;

R3与R5之间使用HDLC封装;

3、R1、R2、R3构建一个MGRE环境,R1为中心站点,R1、R4间为点到点的GRE;

4、整个私有网络基本RIP全网可达;

5、所有Pc设置私有IP为源IP,可以访问5环回

三、实验思路

1、配置IP地址

2、配置PAP、CHAP、HDLC封装

3、配置MGRE、GRE

4、配置RIP协议

5、配置NAT

测试和验证

四、实验步骤

1、IP地址配置

R1int g 0/0/0

R1-GigabitEthernet0/0/0ip add 192.168.1.1 24

R1int Serial 4/0/0

R1-Serial4/0/0ip add 15.1.1.1 24

R2int g0/0/0

R2-GigabitEthernet0/0/0ip add 192.168.2.2 24

R2int Serial 4/0/0

R2-Serial4/0/0ip add 25.1.1.2 24

R3int g 0/0/0

R3-GigabitEthernet0/0/0ip add 192.168.3.3 24

R3int Serial 4/0/0

R3-Serial4/0/0ip add 35.1.1.3 24

R4int g 0/0/0

R4-GigabitEthernet0/0/0ip add 45.1.1.4 24

R4-GigabitEthernet0/0/0int g 0/0/1

R4-GigabitEthernet0/0/1ip add 192.168.4.4 24

R5int Serial 4/0/1

R5-Serial4/0/1ip add 15.1.1.5 24

R5-Serial4/0/1int g 0/0/0

R5-GigabitEthernet0/0/0ip add 45.1.1.5 24

R5int Serial 3/0/1

R5-Serial3/0/1ip add 25.1.1.5 24

R5int Serial 4/0/0

R5-Serial4/0/0ip add 35.1.1.5 24

(2)配置静态ip

R1ip route-static 0.0.0.0 0 15.1.1.5

R2ip route-static 0.0.0.0 0 25.1.1.5

R3ip route-static 0.0.0.0 0 35.1.1.5

R4ip route-static 0.0.0.0 0 45.1.1.5

3、PPP认证(配置PAP、CHAP、HDLC封装)

(1)R1 R5 PAP R5为主认证方

R5aaa

R5-aaalocal-user xxx password cipher xxx111

R5-aaaint s4/0/1

R5-Serial4/0/1ppp authentication-mode pap

R1int s 4/0/0

R1-Serial4/0/0ppp pap local-user xxx password cipher xxx111

(2)R2 R5 CHAP R5为主认证方

R5aaa

R5-aaalocal-user sss password cipher sss222

R5-aaalocal-user sss service-type ppp

R5-aaaint s3/0/1

R5-Serial3/0/1ppp authentication-mode chap

R2int s 4/0/0

R2-Serial4/0/0ppp chap user sss

R2-Serial4/0/0ppp chap password cipher sss222

(3)R3 R5 HDLC

R5aaa

R5-aaalocal-user xsq password cipher xsq789

R5-aaalocal-user xsq service-type ppp

R5int Serial 4/0/0

R5-Serial4/0/0ppp authentication-mode chap

R5-Serial4/0/0link-protocol hdlc

R3int Serial 4/0/0

R3-Serial4/0/0ppp pap local-user xsq password cipher xsq789

R3-Serial4/0/0ppp authentication-mode chap

R3-Serial4/0/0link-protocol hdlc

全网通

4、配置MGRE、GRE

构建隧道

(1)R2、R3构建一个MGRE环境,R1为中心站点

R1int Tunnel 0/0/0

R1-Tunnel0/0/0ip add 10.1.2.1 24

R1-Tunnel0/0/0tunnel-protocol gre p2mp

R1-Tunnel0/0/0source 15.1.1.1

R1-Tunnel0/0/0nhrp network-id 100

R2int Tunnel 0/0/0

R2-Tunnel0/0/0ip add 10.1.2.2 24

R2-Tunnel0/0/0tunnel-protocol gre p2mp

R2-Tunnel0/0/0source Serial 4/0/0

R2-Tunnel0/0/0nhrp network-id 100

R2-Tunnel0/0/0nhrp entry 10.1.2.1 15.1.1.1 register

R3int Tunnel 0/0/0

R3-Tunnel0/0/0ip add 10.1.2.3 24

R3-Tunnel0/0/0tunnel-protocol gre p2mp

R3-Tunnel0/0/0source Serial 4/0/0

R3-Tunnel0/0/0nhrp entry 10.1.2.1 15.1.1.1 register

(2)R1、R4间为点到点的GRE

R1int Tunnel 0/0/1

R1-Tunnel0/0/1ip add 10.1.1.1 24

R1-Tunnel0/0/1tunnel-protocol gre

R1-Tunnel0/0/1source 15.1.1.1

R1-Tunnel0/0/1destination 45.1.1.4

R4int Tunnel 0/0/1

R4-Tunnel0/0/1ip add 10.1.1.2 24

R4-Tunnel0/0/1tunnel-protocol gre

R4-Tunnel0/0/1source 45.1.1.4

R4-Tunnel0/0/1destination 15.1.1.1

4、配置RIP协议

R1rip 1

R1-rip-1version 2

R1-rip-1undo summary

R1-rip-1network 192.168.1.0

R1-rip-1network 10.0.0.0

R2rip 1

R2-rip-1version 2

R2-rip-1undo summary

R2-rip-1network 192.168.2.0

R2-rip-1network 10.0.0.0

R3rip 1

R3-rip-1version 2

R3-rip-1undo summary

R3-rip-1network 192.168.3.0

R3-rip-1network 10.0.0.0

R4rip 1

R4-rip-1version 2

R4-rip-1undo summary

R4-rip-1network 192.168.4.0

R4-rip-1network 10.0.0.0

查看rip表

5、配置NAT

R1acl 2000

R1-acl-basic-2000rule 5 permit source 192.168.1.0 0.0.0.255

R1-acl-basic-2000q

R1int Serial 4/0/0

R1-Serial4/0/0nat outbound 2000

R2acl 2000

R2-acl-basic-2000rule 5 permit source 192.168.2.0 0.0.0.255

R2-acl-basic-2000int s 4/0/0

R2-Serial4/0/0nat outbound 2000

R3acl 2000

R3-acl-basic-2000rule 5 permit source 192.168.3.0 0.0.0.255

R3-acl-basic-2000int s4/0/0

R3-Serial4/0/0nat outbound 2000

R4acl 2000

R4-acl-basic-2000rule 5 permit source 192.168.4.0 0.0.0.255

R4-acl-basic-2000int g 0/0/0

R4-GigabitEthernet0/0/0nat outbound 2000

6、测试

相关推荐
Wang's Blog2 小时前
Java 接入Redis: 服务启动停止与后台运行配置
java·服务器·redis
Hrain-AI2 小时前
多 Agent 并行不打架:worktree 隔离与反馈回流落地(附脚本)
网络·数据库·人工智能·架构
云运维笔记3 小时前
IP地址从入门到精通:网络通信的核心基石
运维·网络·计算机网络
Koi慢热3 小时前
DayDayMap学术社区体验:卫星网络测绘专题用下来怎么样
网络·人工智能·windows·web安全·网络安全
万联WANFLOW3 小时前
从“连接网络”到“编排业务”:企业网络架构正在发生什么变化?
网络·人工智能
码农学院4 小时前
企业官网改版后 AI 引用归零的复盘:301 重定向断层让爬虫索引掉线,修复方案与恢复数据
运维·geo优化·ai优化aio
kuroomi4 小时前
Ingress-Nginx与kubernetes 网络
linux·运维·网络·kubernetes
当下新鲜事4 小时前
空调机房冷冻泵与冷却泵技术分析:赛莱默B&G背包式智能变频管道泵的工程应用
运维·物联网·业界资讯
EasyGBS4 小时前
终结训推割裂!EasyGBS×EasyAIS×DLTM,实现AI算法训推一体闭环落地!
服务器·深度学习·安全
Yang96115 小时前
鼎讯101C测向天线200MHz至500MHz比幅测向解读
网络