Cisco的4908-l3的配置比較繁雜,通過IRB來實現不同橋接組之間的通訊 可以與trunk互連 但是,要對每個單獨的橋接組進行封裝。本實例中主要介紹在壹個基於4908為中心,3500為二級交換機的園區網方案設計以及每個設備的調試過程等。著重介紹4908的配置過程 至於3500的配置請見 基本配置欄目中 關於 3500全系列配置的文章。在此,不贅述!
至於vlan分配等,通過基本配置自己體會吧 呵呵!
2.拓撲圖
3.4908_Center_A 配置
User Access Verification
Password:
Password:
Center_A>en
Password:
Center_A#sho run
Building configuration...
Current configuration:
!
version 12.0
o service pad
ervice timestamps debug uptime
ervice timestamps log uptime
o service password-encryption
!
hostname Center_A
!
enable secret 5 $1$OHq9$9XvRCkMWcYtsC4glw.NYG.
enable password cisco
!
ip subnet-zero
o ip domain-lookup
ridge irb (啟用IRB 有點兒象 Ip routing)
!
!
!
interface GigabitEthernet1
o ip address
o ip directed-broadcast
對物理端口不做配置,通過子接口進行封裝。從下面對子接口的封裝可以看出G1下面有三個bridge group (1、40、50)
!
interface GigabitEthernet1.1
encapsulation isl 1
o ip redirects
o ip directed-broadcast
ridge-group 1
!
interface GigabitEthernet1.40
encapsulation isl 40
o ip redirects
o ip directed-broadcast
ridge-group 40
!
interface GigabitEthernet1.50
encapsulation isl 50
o ip redirects
o ip directed-broadcast
ridge-group 50
!
接著進入g2的配置
interface GigabitEthernet2
o ip address
o ip directed-broadcast
!
interface GigabitEthernet2.1
encapsulation isl 1
o ip redirects
o ip directed-broadcast
ridge-group 1
!
interface GigabitEthernet2.10
encapsulation isl 10
o ip redirects
o ip directed-broadcast
ridge-group 10
!
interface GigabitEthernet2.20
encapsulation isl 20
o ip redirects
o ip directed-broadcast
ridge-group 20
!
interface GigabitEthernet2.30
encapsulation isl 30
o ip redirects
o ip directed-broadcast
ridge-group 30
!
interface GigabitEthernet2.40
encapsulation isl 40
o ip redirects
o ip directed-broadcast
ridge-group 40
!
interface GigabitEthernet2.50
encapsulation isl 50
o ip redirects
o ip directed-broadcast
ridge-group 50
!
interface GigabitEthernet3
o ip address
o ip directed-broadcast
!
interface GigabitEthernet3.1
encapsulation isl 1
o ip redirects
o ip directed-broadcast
ridge-group 1
!
interface GigabitEthernet3.150
encapsulation isl 150
o ip redirects
o ip directed-broadcast
ridge-group 150
!
interface GigabitEthernet4
o ip address
o ip directed-broadcast
!
interface GigabitEthernet4.1
encapsulation isl 1
o ip redirects
o ip directed-broadcast
ridge-group 1
!
interface GigabitEthernet4.110
encapsulation isl 110
o ip redirects
o ip directed-broadcast
ridge-group 110
!
interface GigabitEthernet4.120
encapsulation isl 120
o ip redirects
o ip directed-broadcast
ridge-group 120
!
interface GigabitEthernet4.130
encapsulation isl 130
o ip redirects
o ip directed-broadcast
ridge-group 130
!
interface GigabitEthernet4.140
encapsulation isl 140
o ip redirects
o ip directed-broadcast
ridge-group 140
!
端口G5 G6 G7用於服務器的連接
interface GigabitEthernet5
o ip address
o ip directed-broadcast
ridge-group 1
!
interface GigabitEthernet6
o ip address
o ip directed-broadcast
ridge-group 1
!
interface GigabitEthernet7
o ip address
o ip directed-broadcast
ridge-group 1
!
端口G8預留
interface GigabitEthernet8
o ip address
o ip directed-broadcast
hutdown
!
上述的br-group有點象 VLAN的劃分過程
以下是對每個br-group 加上網關(可以這樣理解)
interface BVI1
ip address 10.1.0.1 255.255.0.0
o ip directed-broadcast
o ip route-cache cef
!
interface BVI10
ip address 10.10.0.1 255.255.0.0
o ip directed-broadcast
o ip route-cache cef
!
interface BVI20
ip address 10.20.0.1 255.255.0.0
o ip directed-broadcast
o ip route-cache cef
!
interface BVI30
ip address 10.30.0.1 255.255.0.0
o ip directed-broadcast
o ip route-cache cef
!
interface BVI40
ip address 10.40.0.1 255.255.0.0
o ip directed-broadcast
o ip route-cache cef
!
interface BVI50
ip address 10.50.0.1 255.255.0.0
o ip directed-broadcast
o ip route-cache cef
!
interface BVI110
ip address 10.110.0.1 255.255.0.0
o ip directed-broadcast
o ip route-cache cef
!
interface BVI120
ip address 10.120.0.1 255.255.0.0
o ip directed-broadcast
o ip route-cache cef
!
interface BVI130
ip address 10.130.0.1 255.255.0.0
o ip directed-broadcast
o ip route-cache cef
!
interface BVI140
ip address 10.140.0.1 255.255.0.0
o ip directed-broadcast
o ip route-cache cef
!
interface BVI150
ip address 10.150.0.1 255.255.0.0
o ip directed-broadcast
o ip route-cache cef
!
ip classless
!
在每個br-group中指定可路由的協議
ridge 1 protocol ieee
ridge 1 route ip
ridge 10 protocol ieee
ridge 10 route ip
ridge 20 protocol ieee
ridge 20 route ip
ridge 30 protocol ieee
ridge 30 route ip
ridge 40 protocol ieee
ridge 40 route ip
ridge 50 protocol ieee
ridge 50 route ip
ridge 110 protocol ieee
ridge 110 route ip
ridge 120 protocol ieee
ridge 120 route ip
ridge 130 protocol ieee
ridge 130 route ip
ridge 140 protocol ieee
ridge 140 route ip
ridge 150 protocol ieee
ridge 150 route ip
!
line con 0
assword cisco
transport input none
line aux 0
assword cisco
line vty 0 4
assword cisco
login
!
end
就可以了
Center_A#
不過不能通過4908實現 VTP server client的配置!
只能通過透明傳輸 不過 對於二級的堆疊組可以局域實現 server client的配置
4.Center_B 配置
Center_B#show run
Building configuration...
Current configuration:
!
version 12.0
o service pad
ervice timestamps debug uptime
ervice timestamps log uptime
o service password-encryption
!
hostname Center_B
!
enable secret 5 $1$364f$eocY1OMDhoSaEqxPZ3oIY/
enable password cisco
!
!
!
!
!
!
ip subnet-zero
!
!
!
interface FastEthernet0/1
witchport access vlan 130
!
interface FastEthernet0/2
!
interface FastEthernet0/3
!
interface FastEthernet0/4
!
interface FastEthernet0/5
!
interface FastEthernet0/6
!
interface FastEthernet0/7
!
interface FastEthernet0/8
!
interface FastEthernet0/9
!
interface FastEthernet0/10
!
interface FastEthernet0/11
!
interface FastEthernet0/12
!
interface FastEthernet0/13
!
interface FastEthernet0/14
!
interface FastEthernet0/15
!
interface FastEthernet0/16
!
interface FastEthernet0/17
!
interface FastEthernet0/18
!
interface FastEthernet0/19
!
interface FastEthernet0/20
!
interface FastEthernet0/21
witchport access vlan 150
!
interface FastEthernet0/22
witchport access vlan 150
!
interface FastEthernet0/23
witchport access vlan 150
!
interface FastEthernet0/24
witchport access vlan 150
!
interface GigabitEthernet0/1
witchport mode trunk
!
interface GigabitEthernet0/2
witchport mode trunk
!
interface VLAN1
ip address 10.1.2.1 255.255.0.0
o ip directed-broadcast
o ip route-cache
!
!
line con 0
assword cisco
transport input none
topbits 1
line vty 0 4
assword cisco
login
line vty 5 15
assword cisco
login
!
end
Center_B# show vlan
VLAN Name Status Ports
---- -------------------------------- --------- -------------------------------
1 default active Fa0/1,Fa0/2, Fa0/3, Fa0/4, Fa0/5,
Fa0/6, Fa0/7, Fa0/8, Fa0/9,
Fa0/10, Fa0/11, Fa0/12, Fa0/13,
Fa0/14, Fa0/15, Fa0/16, Fa0/17,
Fa0/18, Fa0/19, Fa0/20
150 wailian active Fa0/21, Fa0/22, Fa0/23, Fa0/24
1002 fddi-default active
1003 token-ring-default active
1004 fddinet-default active
1005 trnet-default active
VLAN Type SAID MTU Parent RingNo BridgeNo Stp BrdgMode Trans1 Trans2
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
1 enet 100001 1500 - - - - - 1002 1003
130 enet 100130 1500 - - - - - 0 0
150 enet 100150 1500 - - - - - 0 0
1002 fddi 101002 1500 - - - - - 1 1003
1003 tr 101003 1500 1005 0 - - srb 1 1002
1004 fdnet 101004 1500 - - 1 ibm - 0 0
1005 trnet 101005 1500 - - 1 ibm - 0 0
Center_B#
5.bluestudy1 配置
luestudy1#show run
Building configuration...
Current configuration:
!
version 12.0
o service pad
ervice timestamps debug uptime
ervice timestamps log uptime
o service password-encryption
!
hostname bluestudy1
!
enable secret 5 $1$oGOc$Jh0uRraaxrbjklW4.22Na0
enable password cisco
!
!
!
!
!
!
ip subnet-zero
!
!
!
interface FastEthernet0/1
witchport access vlan 50
!
interface FastEthernet0/2
witchport access vlan 50
!
interface FastEthernet0/3
witchport access vlan 50
!
interface FastEthernet0/4
witchport access vlan 50
!
interface FastEthernet0/5
witchport access vlan 50
!
interface FastEthernet0/6
witchport access vlan 50
!
interface FastEthernet0/7
witchport access vlan 50
!
interface FastEthernet0/8
witchport access vlan 50
!
interface FastEthernet0/9
witchport access vlan 50
!
interface FastEthernet0/10
witchport access vlan 50
!
interface FastEthernet0/11
witchport access vlan 50
!
interface FastEthernet0/12
witchport access vlan 50
!
interface FastEthernet0/13
witchport access vlan 50
!
interface FastEthernet0/14
witchport access vlan 40
!
interface FastEthernet0/15
witchport access vlan 40
!
interface FastEthernet0/16
witchport access vlan 40
!
interface FastEthernet0/17
witchport access vlan 40
!
interface FastEthernet0/18
witchport access vlan 40
!
interface FastEthernet0/19
witchport access vlan 40
!
interface FastEthernet0/20
witchport access vlan 40
!
interface FastEthernet0/21
witchport access vlan 40
!
interface FastEthernet0/22
witchport access vlan 40
!
interface FastEthernet0/23
witchport access vlan 40
!
interface FastEthernet0/24
witchport access vlan 40
!
interface GigabitEthernet0/1
witchport mode trunk
!
interface GigabitEthernet0/2
witchport mode trunk
!
interface VLAN1
ip address 10.1.10.1 255.255.0.0
o ip directed-broadcast
o ip route-cache
!
ip default-gateway 10.1.0.1
!
line con 0
assword cisco
transport input none
topbits 1
line vty 0 4
assword cisco
login
line vty 5 15
assword cisco
login
!
end
luestudy1#show vlan
VLAN Name Status Ports
---- -------------------------------- --------- -------------------------------
1 default active
3 VLAN0003 active
4 VLAN0004 active
5 VLAN0005 active
40 jiben active Fa0/14, Fa0/15, Fa0/16, Fa0/17,
Fa0/18, Fa0/19, Fa0/20, Fa0/21,
Fa0/22, Fa0/23, Fa0/24
50 jiaoshi active Fa0/1, Fa0/2, Fa0/3, Fa0/4,
Fa0/5, Fa0/6, Fa0/7, Fa0/8,
Fa0/9, Fa0/10, Fa0/11, Fa0/12,
Fa0/13
1002 fddi-default active
1003 token-ring-default active
1004 fddinet-default active
1005 trnet-default active
VLAN Type SAID MTU Parent RingNo BridgeNo Stp BrdgMode Trans1 Trans2
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
1 enet 100001 1500 - - - - - 1002 1003
3 enet 100003 1500 - - - - - 0 0
4 enet 100004 1500 - - - - - 0 0
5 enet 100005 1500 - - - - - 0 0
40 enet 100040 1500 - - - - - 0 0
50 enet 100050 1500 - - - - - 0 0
1002 fddi 101002 1500 - 0 - - - 1 1003
1003 tr 101003 1500 1005 0 - - srb 1 1002
1004 fdnet 101004 1500 - - 1 ibm - 0 0
1005 trnet 101005 1500 - - 1 ibm - 0 0
luestudy1#
luestudy1#
6.bluestudy2_C 配置
Building configuration...
Current configuration:
!
version 12.0
o service pad
ervice timestamps debug uptime
ervice timestamps log uptime
o service password-encryption
!
hostname bluestudy2_C
!
enable secret 5 $1$wdBN$5M0mlLk09wutc44dApZat0
enable password cisco
!
!
!
!
!
!
ip subnet-zero
!
!
!
interface FastEthernet0/1
witchport access vlan 110
!
interface FastEthernet0/2
witchport access vlan 110
!
interface FastEthernet0/3
witchport access vlan 110
!
interface FastEthernet0/4
witchport access vlan 110
!
interface FastEthernet0/5
witchport access vlan 120
!
interface FastEthernet0/6
witchport access vlan 120
!
interface FastEthernet0/7
witchport access vlan 120
!
interface FastEthernet0/8
witchport access vlan 120
!
interface FastEthernet0/9
witchport access vlan 120
!
interface FastEthernet0/10
witchport access vlan 120
!
interface FastEthernet0/11
witchport access vlan 120
!
interface FastEthernet0/12
witchport access vlan 120
!
interface FastEthernet0/13
witchport access vlan 120
!
interface FastEthernet0/14
witchport access vlan 120
!
interface FastEthernet0/15
witchport access vlan 120
!
interface FastEthernet0/16
witchport access vlan 120
!
interface FastEthernet0/17
witchport access vlan 120
!
interface FastEthernet0/18
witchport access vlan 120
!
interface FastEthernet0/19
witchport access vlan 120
!
interface FastEthernet0/20
witchport access vlan 120
!
interface FastEthernet0/21
witchport access vlan 140
!
interface FastEthernet0/22
witchport access vlan 140
!
interface FastEthernet0/23
witchport access vlan 140
!
interface FastEthernet0/24
witchport access vlan 140
!
interface FastEthernet0/25
witchport access vlan 140
!
interface FastEthernet0/26
witchport access vlan 140
!
interface FastEthernet0/27
witchport access vlan 140
!
interface FastEthernet0/28
witchport access vlan 140
!
interface FastEthernet0/29
witchport access vlan 140
!
interface FastEthernet0/30
witchport access vlan 140
!
interface FastEthernet0/31
witchport access vlan 140
!
interface FastEthernet0/32
witchport access vlan 140
!
interface FastEthernet0/33
witchport access vlan 140
!
interface FastEthernet0/34
witchport access vlan 140
!
interface FastEthernet0/35
witchport access vlan 140
!
interface FastEthernet0/36
witchport access vlan 140
!
interface FastEthernet0/37
witchport access vlan 140
!
interface FastEthernet0/38
witchport access vlan 140
!
interface FastEthernet0/39
witchport access vlan 140
!
interface FastEthernet0/40
witchport access vlan 140
!
interface FastEthernet0/41
witchport access vlan 140
!
interface FastEthernet0/42
witchport access vlan 140
!
interface FastEthernet0/43
witchport access vlan 140
!
interface FastEthernet0/44
witchport access vlan 140
!
interface FastEthernet0/45
witchport access vlan 140
!
interface FastEthernet0/46
witchport access vlan 140
!
interface FastEthernet0/47
witchport access vlan 140
!
interface FastEthernet0/48
witchport access vlan 140
!
interface GigabitEthernet0/1
witchport mode trunk
!
interface GigabitEthernet0/2
witchport mode trunk
!
interface VLAN1
ip address 10.1.40.1 255.255.0.0
o ip directed-broadcast
o ip route-cache
!
ip default-gateway 10.1.0.1
!
line con 0
assword cisco
transport input none
topbits 1
line vty 0 4
assword cisco
login
line vty 5 15
assword cisco
login
!
end
luestudy2_C#show vlan
VLAN Name Status Ports
---- -------------------------------- --------- -------------------------------
1 default active
110 shixunshi active Fa0/1, Fa0/2, Fa0/3, Fa0/4
120 jifang active Fa0/5, Fa0/6, Fa0/7, Fa0/8,
Fa0/9, Fa0/10, Fa0/11, Fa0/12,
Fa0/13, Fa0/14, Fa0/15, Fa0/16,
Fa0/17, Fa0/18, Fa0/19, Fa0/20
140 zhuanjiasushe active Fa0/21, Fa0/22, Fa0/23, Fa0/24,
Fa0/25, Fa0/26, Fa0/27, Fa0/28,
Fa0/29, Fa0/30, Fa0/31, Fa0/32,
Fa0/33, Fa0/34, Fa0/35, Fa0/36,
Fa0/37, Fa0/38, Fa0/39, Fa0/40,
Fa0/41, Fa0/42, Fa0/43, Fa0/44,
Fa0/45, Fa0/46, Fa0/47, Fa0/48
1002 fddi-default active
1003 token-ring-default active
1004 fddinet-default active
1005 trnet-default active
VLAN Type SAID MTU Parent RingNo BridgeNo Stp BrdgMode Trans1 Trans2
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
1 enet 100001 1500 - - - - - 1002 1003
110 enet 100110 1500 - - - - - 0 0
120 enet 100120 1500 - - - - - 0 0
140 enet 100140 1500 - - - - - 0 0
1002 fddi 101002 1500 - - - - - 1 1003
1003 tr 101003 1500 1005 0 - - srb 1 1002
1004 fdnet 101004 1500 - - 1 ibm - 0 0
1005 trnet 101005 1500 - - 1 ibm - 0 0
luestudy2_C#wr
Building configuration...
[OK]
luestudy2_C#
7.bluestudy2_D 配置
Building configuration...
Current configuration:
!
version 12.0
o service pad
ervice timestamps debug uptime
ervice timestamps log uptime
o service password-encryption
!
hostname bluestudy2_D
!
enable secret 5 $1$Tgi9$6gZxtbdeFGRcsvZjmUFmR1
enable password cisco
!
!
!
!
!
!
ip subnet-zero
!
!
!
interface FastEthernet0/1
witchport access vlan 130
!
interface FastEthernet0/2
witchport access vlan 130
!
interface FastEthernet0/3
witchport access vlan 130
!
interface FastEthernet0/4
witchport access vlan 130
!
interface FastEthernet0/5
witchport access vlan 130
!
interface FastEthernet0/6
witchport access vlan 130
!
interface FastEthernet0/7
witchport access vlan 130
!
interface FastEthernet0/8
witchport access vlan 130
!
interface FastEthernet0/9
witchport access vlan 130
!
interface FastEthernet0/10
witchport access vlan 130
!
interface FastEthernet0/11
witchport access vlan 130
!
interface FastEthernet0/12
witchport access vlan 130
!
interface FastEthernet0/13
witchport access vlan 130
!
interface FastEthernet0/14
witchport access vlan 130
!
interface FastEthernet0/15
witchport access vlan 130
!
interface FastEthernet0/16
witchport access vlan 130
!
interface FastEthernet0/17
witchport access vlan 130
!
interface FastEthernet0/18
witchport access vlan 130
!
interface FastEthernet0/19
witchport access vlan 130
!
interface FastEthernet0/20
witchport access vlan 130
!
interface FastEthernet0/21
witchport access vlan 130
!
interface FastEthernet0/22
witchport access vlan 130
!
interface FastEthernet0/23
witchport access vlan 130
!
interface FastEthernet0/24
witchport access vlan 130
!
interface FastEthernet0/25
witchport access vlan 130
!
interface FastEthernet0/26
witchport access vlan 130
!
interface FastEthernet0/27
witchport access vlan 130
!
interface FastEthernet0/28
witchport access vlan 130
!
interface FastEthernet0/29
witchport access vlan 130
!
interface FastEthernet0/30
witchport access vlan 130
!
interface FastEthernet0/31
witchport access vlan 130
!
interface FastEthernet0/32
witchport access vlan 130
!
interface FastEthernet0/33
witchport access vlan 130
!
interface FastEthernet0/34
witchport access vlan 130
!
interface FastEthernet0/35
witchport access vlan 130
!
interface FastEth