Cisco組建中小型企業(yè)網(wǎng)絡(luò)實例.doc
《Cisco組建中小型企業(yè)網(wǎng)絡(luò)實例.doc》由會員分享,可在線閱讀,更多相關(guān)《Cisco組建中小型企業(yè)網(wǎng)絡(luò)實例.doc(13頁珍藏版)》請在裝配圖網(wǎng)上搜索。
組建中小型網(wǎng)絡(luò)1、Vlan 信息1Vlan ID網(wǎng)絡(luò)地址名 稱描 述1172.16.10.0/24無本地 vlan2172.16.20.0/24yfzx研發(fā)中心3172.16.30.0/24zbb質(zhì)保部4172.16.40.0/24zzb制造部5172.16.50.0/24sbb設(shè)備部6172.16.60.0/24cgb采購部7172.16.70.0/24xsb銷售部8172.16.80.0/24cwb財務(wù)部9172.16.90.0/24glb管理部100172.16.100.0/24zjb總經(jīng)辦2、VTP信息3、設(shè)備 IP地址分配交換機、路由器詳細配置1IP 地址設(shè)置2600-R-1(config)# int F0/02600-R-1 (config-if) #ip add 221.215.31.129 255.255.255.02600-R-1 (config-if) #no shutdown-2600-R-1(config-if)# int F0/12600-R-1 (config-if) #ip add 192.168.1.1 255.255.255.02600-R-1 (config-if) #no shutdown3550-S-1 (config) # int F0/13550-S-1 (config-if) # no switchport.路由端口3550-S-1 (config-if) # ip add 192.168.1.2 255.255.255.03550-S-1 (config) # int vlan 1 .管理 vlan3550-S-1 (config-if) # ip add 172.16.10.1 255.255.255.03550-S-1 (config-if) # int vlan 2研發(fā)中心3550-S-1 (config-if) # ip add 172.16.20.1 255.255.255.02設(shè)備名稱DomainPrunningPasswordMode3550-S-1vtp1Enable123Server2950-S-1vtp1Enable123Client2950-S-2vtp1Enable123Client2950-S-3vtp1Enable123Client2950-S-4vtp1Enable123Client設(shè)備名稱接口IP 地址描述2600-R-1F0/0221.215.31.129/29WANF0/1192.168.1.1/24-3550-S-1F0/1192.168.1.2/243L-Switch23550-S-13550-S-13550-S-13550-S-13550-S-13550-S-13550-S-13550-S-13550-S-13550-S-13550-S-13550-S-13550-S-13550-S-13550-S-13550-S-1VTP 配置(config-if) (config-if)(config-if)(config-if)(config-if)(config-if)(config-if)(config-if)(config-if)(config-if)(config-if)(config-if)(config-if)(config-if)(config-if)(config-if)int vlan 3質(zhì)保部ip add 172.16.30.1 255.255.255.0int vlan 4制造部ip add 172.16.40.1 255.255.255.0int vlan 5設(shè)備部ip add 172.16.50.1 255.255.255.0int vlan 6采購部ip add 172.16.60.1 255.255.255.0int vlan 7銷售部ip add 172.16.70.1 255.255.255.0int vlan 8財務(wù)部ip add 172.16.80.1 255.255.255.0int vlan 9管理部ip add 172.16.90.1 255.255.255.0int vlan 100總經(jīng)辦ip add 172.16.100.1 255.255.255.03550-S-1 # vlan database3550-S-1 (vlan) # vtp domain vtp13550-S-1 (vlan) # vtp server3550-S-1 (vlan) # vtp password 1233550-S-1 (vlan) # vtp pruning.修剪3550-S-1 (vlan) # vlan 2 name yfzx.研發(fā)中心3550-S-1 (vlan) # vlan 3 name zbb.質(zhì)保部3550-S-1 (vlan) # vlan 4 name zzb制造部3550-S-1 (vlan) # vlan 5 name sbb設(shè)備部3550-S-1 (vlan) # vlan 6 name cgb采購部3550-S-1 (vlan) # vlan 7 name xsb 銷售部3550-S-1 (vlan) # vlan 8 name xsb.財務(wù)部3550-S-1 (vlan) # vlan 9 name xsb 管理部-2950-S-1 (vlan) #vtp domain vtp12950-S-1 (vlan) #vtp tran透明模式(配置修改編號清零)2950-S-1 (vlan) #vtp client客戶模式2950-S-1 (vlan) #vtp password 1232950-S-2 (vlan) #vtp domain vtp12950-S-2 (vlan) #vtp tran透明模式(配置修改編號清零)2950-S-2 (vlan) #vtp client客戶模式2950-S-2 (vlan) #vtp password 1232950-S-3 (vlan) #vtp domain vtp12950-S-3 (vlan) #vtp tran透明模式(配置修改編號清零)2950-S-3 (vlan) #vtp client客戶模式32950-S-32950-S-42950-S-4(vlan)(vlan)(vlan)#vtp#vtp#vtppassword 123domain vtp1tran透明模式(配置修改編號清零)2950-S-42950-S-4(vlan)(vlan)#vtp#vtpclientpassword 123客戶模式3 路由配置2600-R-1(config)# ip route 0.0.0.0 0.0.0.0 f0/2.缺省路由2600-R-1(config)# ip route 192.168.0.0 255.255.0.0 192.168.1.23550-R-1 (config) # ip route 0.0.0.0 0.0.0.0 192.168.1.145NAT2600-R-1(config)# access-list 101 permit ip 192.168.0.00.0.255.255 192.168.0.00.0.255.255.內(nèi)部局部地址2600-R-1(config)# ip nat pool WAN 221.215.31.131221.215.31.134 prefix-len 29定義合法 IP 地址池2600-R-1(config)# ip nat inside sour list 101 pool WAN .實現(xiàn)地址轉(zhuǎn)換2600-R-1(config)# int f0/12600-R-1(config-if)# ip nat inside.定義 NAT inside2600-R-1(config)# int f0/02600-R-1(config-if)# ip nat outside.定義 NAToutside 端口Vlan 流量控制制造部、設(shè)備部 vlan 實現(xiàn)互訪,禁止訪問其它部門 vlan制造部、設(shè)備部上班時間禁止訪問 internet(8:00-12:00 2:00-6:00)研發(fā)中心、質(zhì)保部 vlan 實現(xiàn)互訪,禁止訪問其它部門 vlan財務(wù)部 vlan 實現(xiàn)與采購部、銷售部 vlan 的單向訪問總經(jīng)辦 vlan 實現(xiàn)與財務(wù)部、管理部 vlan 的單向訪問管理部 vlan 禁止訪問其它部門 vlan各部門 vlan 都能訪問服務(wù)器區(qū)3550-S-1(config) # time-range restrict3550-S-1(config-time-range) # periodic daily start 12:00 to 2:00.設(shè)置時間范圍3550-S-1 (config) # ip access-list extend yfzx .研發(fā)中心 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.20.00.0.0.255.訪問質(zhì)保部43550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) # deny ip any 192.168.0.0 0.0.255.255.禁止訪問其它部門3550-S-1 (config-ext-nacl) # permit ip any any3550-S-1 (config) # ip access-list extend zbb.質(zhì)保部 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.10.00.0.0.255.訪問研發(fā)中心3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) # deny ip any 192.168.0.0 0.0.255.255.禁止訪問其它部門3550-S-1 (config-ext-nacl) # permit ip any any-3550-S-1 (config) # ip access-list extend zzb.制造部 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.40.00.0.0.255.訪問設(shè)備部3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) # deny ip any 192.168.0.0 0.0.255.255.禁止訪問其它部門3550-S-1 (config-ext-nacl) # permit ip any any time-range restrict.上班時間禁止上網(wǎng)3550-S-1 (config) # ip access-list extend sbb.設(shè)備部 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.30.0 0.0.0.255.訪問制造部3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) # deny ip any 192.168.0.0 0.0.255.255.禁止訪問其它部門3550-S-1 (config-ext-nacl) # permit ip any any-3550-S-1 (config) # ip access-list extend cgb.采購部 ACL3550-S-1 (config-ext-nacl) # evaluate cwb-cgb .計算匹配自反 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) #deny ip any 192.168.0.0 0.0.255.25553550-S-1 (config-ext-nacl) #permit ip any any-3550-S-1 (config) # ip access-list extend xsb.銷售部 ACL3550-S-1 (config-ext-nacl) # evaluate cwb-xsb .計算匹配自反 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) #deny ip any 192.168.0.0 0.0.255.2553550-S-1 (config-ext-nacl) #permit ip any any-3550-S-1 (config) # ip access-list extend cwb.財務(wù)部 ACL3550-S-1 (config-ext-nacl) # permint ip any 172.16.60.00.0.0.255 reflect cwb-cgb.創(chuàng)建自反 ACL cwb-cgb3550-S-1 (config-ext-nacl) # permint ip any 172.16.70.00.0.0.255 reflect cwb-xsb.創(chuàng)建自反 ACL cwb-xsb3550-S-1 (config-ext-nacl) # evaluate zjb-cwb .計算匹配自反 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) # deny ip any 192.168.0.0 0.0.255.255.禁止訪問其它部門3550-S-1 (config-ext-nacl) # permit ip any any-3550-S-1 (config) # ip access-list extend cwb.管理部 ACL3550-S-1 (config-ext-nacl) # evaluate zjb-glb .計算匹配自反 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) # deny ip any 192.168.0.0 0.0.255.255.禁止訪問其它部門3550-S-1 (config-ext-nacl) # permit ip any any-3550-S-1 (config) # ip access-list extend zjb.總經(jīng)辦 ACL3550-S-1 (config-ext-nacl) # permint ip any 172.16.80.00.0.0.255 reflect zjb-cwb.創(chuàng)建自反 ACL zjb-cwb3550-S-1 (config-ext-nacl) # permint ip any 172.16.90.00.0.0.255 reflect zjb-glb.創(chuàng)建自反 ACL zjb-glb3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.2556訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) # deny ip any 192.168.0.0 0.0.255.255.禁止訪問其它部門3550-S-1 (config-ext-nacl) # permit ip any anyACL 應(yīng)用:3550-S-13550-S-13550-S-13550-S-13550-S-13550-S-1(config) # int vlan 2 .研發(fā)中心(config-if) #ip access-group yfzx in(config) # int vlan 3 .質(zhì)保部(config-if) #ip access-group zbb in(config) # int vlan 4 制造部(config-if) #ip access-group zzb in(略)附:關(guān)鍵字 established 的 ACL 應(yīng)用(單向訪問)3550-S-1 (config) # ip access-list extend cgb.采購部 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.80.0 0.0.0.0.255estab3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) #deny ip any 192.168.0.0 0.0.255.2553550-S-1 (config-ext-nacl) #permit ip any any3550-S-1 (config) # ip access-list extend xsb.銷售部 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.80.0 0.0.0.0.255estab3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) #deny ip any 192.168.0.0 0.0.255.2553550-S-1 (config-ext-nacl) #permit ip any any1、Vlan 信息7Vlan ID網(wǎng)絡(luò)地址名 稱描 述1172.16.10.0/24無本地 vlan2172.16.20.0/24yfzx研發(fā)中心2、VTP信息3、設(shè)備 IP地址分配交換機、路由器詳細配置1IP 地址設(shè)置2600-R-1(config)# int F0/02600-R-1 (config-if) #ip add 221.215.31.129 255.255.255.083172.16.30.0/24zbb質(zhì)保部4172.16.40.0/24zzb制造部5172.16.50.0/24sbb設(shè)備部6172.16.60.0/24cgb采購部7172.16.70.0/24xsb銷售部8172.16.80.0/24cwb財務(wù)部9172.16.90.0/24glb管理部100172.16.100.0/24zjb總經(jīng)辦設(shè)備名稱DomainPrunningPasswordMode3550-S-1vtp1Enable123Server2950-S-1vtp1Enable123Client2950-S-2vtp1Enable123Client2950-S-3vtp1Enable123Client2950-S-4vtp1Enable123Client設(shè)備名稱接口IP 地址描述2600-R-1F0/0221.215.31.129/29WANF0/1192.168.1.1/24-3550-S-1F0/1192.168.1.2/243L-Switch2600-R-1 (config-if) #no shutdown-2600-R-1(config-if)# int F0/12600-R-1 (config-if) #ip add 192.168.1.1 255.255.255.02600-R-1 (config-if) #no shutdown3550-S-1 (config) # int F0/13550-S-1 (config-if) # no switchport.路由端口3550-S-1 (config-if) # ip add 192.168.1.2 255.255.255.03550-S-1 (config) # int vlan 1 .管理 vlan3550-S-1 (config-if) # ip add 192.168.10.1 255.255.255.03550-S-1 (config-if) # int vlan 2研發(fā)中心3550-S-1 (config-if) # ip add 192.168.20.1 255.255.255.03550-S-1 (config-if) # int vlan 3質(zhì)保部3550-S-1 (config-if) # ip add 192.168.30.1 255.255.255.03550-S-1 (config-if) # int vlan 4制造部3550-S-1 (config-if) # ip add 192.168.40.1 255.255.255.03550-S-1 (config-if) # int vlan 5設(shè)備部3550-S-1 (config-if) # ip add 192.168.50.1 255.255.255.03550-S-1 (config-if) # int vlan 6采購部3550-S-1 (config-if) # ip add 192.168.60.1 255.255.255.03550-S-1 (config-if) # int vlan 7銷售部3550-S-1 (config-if) # ip add 192.168.70.1 255.255.255.03550-S-1 (config-if) # int vlan 8財務(wù)部3550-S-1 (config-if) # ip add 192.168.80.1 255.255.255.03550-S-1 (config-if) # int vlan 9管理部3550-S-1 (config-if) # ip add 192.168.90.1 255.255.255.03550-S-1 (config-if) # int vlan 100總經(jīng)辦3550-S-1 (config-if) # ip add 192.168.100.1 255.255.255.02VTP 配置3550-S-1(config)# vlan database3550-S-1 (vlan) # vtp domain vtp13550-S-1 (vlan) # vtp server3550-S-1 (vlan) # vtp password 1233550-S-1 (vlan) # vtp pruning.修剪3550-S-1 (vlan) # vlan 2 name yfzx.研發(fā)中心3550-S-1 (vlan) # vlan 3 name zbb.質(zhì)保部3550-S-1 (vlan) # vlan 4 name zzb制造部3550-S-1 (vlan) # vlan 5 name sbb設(shè)備部3550-S-1 (vlan) # vlan 6 name cgb采購部3550-S-1 (vlan) # vlan 7 name xsb 銷售部3550-S-1 (vlan) # vlan 8 name xsb.財務(wù)部3550-S-1 (vlan) # vlan 9 name xsb 管理部9-2950-S-1 (vlan) #vtp domain vtp12950-S-1 (vlan) #vtp tran透明模式(配置修改編號清零)2950-S-1 (vlan) #vtp client客戶模式2950-S-1 (vlan) #vtp password 1232950-S-2 (vlan) #vtp domain vtp12950-S-2 (vlan) #vtp tran透明模式(配置修改編號清零)2950-S-2 (vlan) #vtp client客戶模式2950-S-2 (vlan) #vtp password 1232950-S-3 (vlan) #vtp domain vtp12950-S-3 (vlan) #vtp tran透明模式(配置修改編號清零)2950-S-3 (vlan) #vtp client客戶模式2950-S-3 (vlan) #vtp password 1232950-S-4 (vlan) #vtp domain vtp12950-S-4 (vlan) #vtp tran透明模式(配置修改編號清零)2950-S-4 (vlan) #vtp client客戶模式2950-S-4 (vlan) #vtp password 1233 路由配置2600-R-1(config)# ip route 0.0.0.0 0.0.0.0 f0/2.缺省路由2600-R-1(config)# ip route 192.168.0.0 255.255.0.0 192.168.1.23550- R -1 (config) # ip route 0.0.0.0 0.0.0.0 192.168.1.145NAT2600-R-1(config)# access-list 101 permit ip 192.168.0.00.0.255.255 192.168.0.00.0.255.255.內(nèi)部局部地址2600-R-1(config)# ip nat pool WAN 221.215.31.131221.215.31.134 prefix-len 29定義合法 IP 地址池2600-R-1(config)# ip nat inside sour list 101 pool WAN .實現(xiàn)地址轉(zhuǎn)換2600-R-1(config)# int f0/12600-R-1(config-if)# ip nat inside.定義 NAT inside2600-R-1(config)# int f0/02600-R-1(config-if)# ip nat outside.定義 NAToutside 端口Vlan 流量控制制造部、設(shè)備部 vlan 實現(xiàn)互訪,禁止訪問其它部門 vlan制造部、設(shè)備部上班時間禁止訪問 internet(8:00-12:00 2:00-6:00)研發(fā)中心、質(zhì)保部 vlan 實現(xiàn)互訪,禁止訪問其它部門 vlan財務(wù)部 vlan 實現(xiàn)與采購部、銷售部 vlan 的單向訪問10總經(jīng)辦 vlan 實現(xiàn)與財務(wù)部、管理部 vlan 的單向訪問管理部 vlan 禁止訪問其它部門 vlan各部門 vlan 都能訪問服務(wù)器區(qū)3550-S-1(config) # time-range restrict3550-S-1(config-time-range) # periodic daily start 12:00 to 2:00.設(shè)置時間范圍3550-S-1 (config) # ip access-list extend yfzx .研發(fā)中心 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.20.00.0.0.255.訪問質(zhì)保部3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) # deny ip any 192.168.0.0 0.0.255.255.禁止訪問其它部門3550-S-1 (config-ext-nacl) # permit ip any any3550-S-1 (config) # ip access-list extend zbb.質(zhì)保部 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.10.00.0.0.255.訪問研發(fā)中心3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) # deny ip any 192.168.0.0 0.0.255.255.禁止訪問其它部門3550-S-1 (config-ext-nacl) # permit ip any any-3550-S-1 (config) # ip access-list extend zzb.制造部 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.40.00.0.0.255.訪問設(shè)備部3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) # deny ip any 192.168.0.0 0.0.255.255.禁止訪問其它部門3550-S-1 (config-ext-nacl) # permit ip any any time-range restrict.上班時間禁止上網(wǎng)3550-S-1 (config) # ip access-list extend sbb.設(shè)備部 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.30.0 0.0.0.255.訪問制造部3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)113550-S-1 (config-ext-nacl) # deny ip any 192.168.0.0 0.0.255.255.禁止訪問其它部門3550-S-1 (config-ext-nacl) # permit ip any any-3550-S-1 (config) # ip access-list extend cgb.采購部 ACL3550-S-1 (config-ext-nacl) # evaluate cwb-cgb .計算匹配自反 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) #deny ip any 192.168.0.0 0.0.255.2553550-S-1 (config-ext-nacl) #permit ip any any-3550-S-1 (config) # ip access-list extend xsb.銷售部 ACL3550-S-1 (config-ext-nacl) # evaluate cwb-xsb .計算匹配自反 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) #deny ip any 192.168.0.0 0.0.255.2553550-S-1 (config-ext-nacl) #permit ip any any-3550-S-1 (config) # ip access-list extend cwb.財務(wù)部 ACL3550-S-1 (config-ext-nacl) # permint ip any 172.16.60.00.0.0.255 reflect cwb-cgb.創(chuàng)建自反 ACL cwb-cgb3550-S-1 (config-ext-nacl) # permint ip any 172.16.70.00.0.0.255 reflect cwb-xsb.創(chuàng)建自反 ACL cwb-xsb3550-S-1 (config-ext-nacl) # evaluate zjb-cwb .計算匹配自反 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) # deny ip any 192.168.0.0 0.0.255.255.禁止訪問其它部門3550-S-1 (config-ext-nacl) # permit ip any any-3550-S-1 (config) # ip access-list extend cwb.管理部 ACL3550-S-1 (config-ext-nacl) # evaluate zjb-glb .計算匹配自反 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) # deny ip any 192.168.0.0 0.0.255.255.禁止訪問其它部門3550-S-1 (config-ext-nacl) # permit ip any any12-3550-S-1 (config) # ip access-list extend zjb.總經(jīng)辦 ACL3550-S-1 (config-ext-nacl) # permint ip any 172.16.80.00.0.0.255 reflect zjb-cwb.創(chuàng)建自反 ACL zjb-cwb3550-S-1 (config-ext-nacl) # permint ip any 172.16.90.00.0.0.255 reflect zjb-glb.創(chuàng)建自反 ACL zjb-glb3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) # deny ip any 192.168.0.0 0.0.255.255.禁止訪問其它部門3550-S-1 (config-ext-nacl) # permit ip any anyACL 應(yīng)用:3550-S-13550-S-13550-S-13550-S-13550-S-13550-S-1(config) # int vlan 2 .研發(fā)中心(config-if) #ip access-group yfzx in(config) # int vlan 3 .質(zhì)保部(config-if) #ip access-group zbb in(config) # int vlan 4 制造部(config-if) #ip access-group zzb in(略)附:關(guān)鍵字 established 的 ACL 應(yīng)用(單向訪問)3550-S-1 (config) # ip access-list extend cgb.采購部 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.80.0 0.0.0.0.255estab3550-S-1 (config-ext-nacl) # permit ip any 172.16.100.0 0.0.0.255訪問服務(wù)器區(qū)3550-S-1 (config-ext-nacl) #deny ip any 192.168.0.0 0.0.255.2553550-S-1 (config-ext-nacl) #permit ip any any3550-S-1 (config) # ip access-list extend xsb.銷售部 ACL3550-S-1 (config-ext-nacl) # permit ip any 172.16.80.0 0.- 1.請仔細閱讀文檔,確保文檔完整性,對于不預(yù)覽、不比對內(nèi)容而直接下載帶來的問題本站不予受理。
- 2.下載的文檔,不會出現(xiàn)我們的網(wǎng)址水印。
- 3、該文檔所得收入(下載+內(nèi)容+預(yù)覽)歸上傳者、原創(chuàng)作者;如果您是本文檔原作者,請點此認領(lǐng)!既往收益都歸您。
下載文檔到電腦,查找使用更方便
9.9 積分
下載 |
- 配套講稿:
如PPT文件的首頁顯示word圖標,表示該PPT已包含配套word講稿。雙擊word圖標可打開word文檔。
- 特殊限制:
部分文檔作品中含有的國旗、國徽等圖片,僅作為作品整體效果示例展示,禁止商用。設(shè)計者僅對作品中獨創(chuàng)性部分享有著作權(quán)。
- 關(guān) 鍵 詞:
- Cisco 組建 中小型企業(yè) 網(wǎng)絡(luò) 實例
鏈接地址:http://m.appdesigncorp.com/p-6632804.html