
先解决ip,再处理路由,然后考虑策略
AR1:
 sys
 sys R1
 int g0/0/0
 ip address 12.0.0.1 24
 int l0
 ip add 1.1.1.1 24
 int g 0/0/1
 ip address 14.0.0.1 24
 q
 int l1
 ip address 172.16.1.1 24
 int l2
 ip address 172.16.2.1 24
 int l3
 ip address 172.16.3.1 24
 display ip interface brief 查看ip是否配错
 rip
 v 2
 network 12.0.0.0
 network 14.0.0.0
 network 1.0.0.0
 network 172.16.0.0
 display ip routing-table protocol rip
 //减少路由条目数量,进行汇总
 int g 0/0/0
 rip summary address 172.16.0.0 255.255.252.0【rip summary address 后跟汇总地址】
 rip g 0/0/1
 rip summary address 172.16.0.0 255.255.252.0
 q
 display ip routing-table protocol rip
 int g 0/0/0
 rip authentation-mode md5 usual cipher 123456
 telent 2.2.2.2
AR2:
 sys
 sys R2
 int g0/0/0
 ip address 12.0.0.2 24
 int g 0/0/1
 ip address 23.0.0.1 24
 q
 int l0
 ip add 2.2.2.2 24
 ping 12.0.0.1
 ping 23.0.0.2
 rip
 v 2
 network 12.0.0.0
 network 23.0.0.0
 network 2.0.0.0
 display ip routing-table protocol rip
 int g 0/0/0
 rip authentation-mode md5 usual cipher 123456
 display rip 1 route
 ip route-static 172.16.0.0 22 n0 防治路由黑洞造成路由环路问题
 ping 7.7.7.7
 ping 6.6.6.6
 ping 3.3.3.3
 ping 2.2.2.2
 ping 5.5.5.5 不可ping通,因为不能宣告
 display ip routing-table protocol rip
 int g 0/0/0
 nat static protocol tcp global interface loopback 0 直接写接口名称来替代ip
 nat static protocol tcp global interface loopback 0 inside 7.7.7.7 23
 y
 acl 2000
 rule permit source 7.0.0.0 0
 q
 int g 0/0/0
 rip metricin 2000 ?
 rip metricin 2000 10 修改为10
 q
AR3:
 sys
 sys R3
 int g0/0/0
 ip address 23.0.0.2 24
 int g 0/0/1
 ip address 34.0.0.1 24
 q
 int l0
 ip add 3.3.3.3 24
 ping 34.0.0.2
 rip
 v 2
 network 23.0.0.0
 network 34.0.0.0
 network 3.0.0.0
 display ip routing-table protocol rip
 //要求R3使用R2访问R1环回
 acl 2000
 rule permit source 1.1.1.0 0
 rule permit source 172.16.0.0 0
 q
 int g 0/0/1
 rip meticin 2000 10
AR4:
 sys
 sys R4
 int g0/0/0
 ip address 14.0.0.2 24
 int g 0/0/1
 ip address 34.0.0.2 24
 int g 0/0/2
 ip address 45.0.0.1 24
 int g 4/0/0
 ip address 46.0.0.1 24
 q
 int l0
 ip add 4.4.4.4 24
 ping 14.0.0.1
 ping 45.0.0.2
 ping 46.0.0.2
 rip
 v 2
 network 14.0.0.0
 network 34.0.0.0
 network 45.0.0.0
 network 46.0.0.0
 network 4.0.0.0
 display ip routing-table protocol rip
 acl 2000
 rule permit source 12.0.0.0
 q
 int g 0/0/0
 rip metricont
 rip metricin 2000 10
AR5:
 sys
 sys R5
 int g0/0/0
 ip address 45.0.0.2 24
 int l0
 ip add 5.5.5.5 24
 q
 ping 45.0.0.1
 rip
 v 2
 network 45.0.0.0
 display ip routing-table protocol rip
 rip
 default-cost
 default-route originate
AR6:
 sys
 sys R6
 int g0/0/0
 ip address 46.0.0.2 24
 int g 0/0/1
 ip address 67.0.0.1 24
 q
 int l0
 ip add 6.6.6.6 24
 display ip interface brief
 ping 67.0.0.2
 rip
 v 1
 network 46.0.0.0
 network 67.0.0.0
 network 6.0.0.0
 display ip routing-table protocol rip
 int g 0/0/0
 rip version 2
 //R6-R7路由器不能学习到达R1环回路由—可以直接在R6上进行过滤
 acl 2000
 rule deny source 172.16.0.0 0
 rule deny source 1.1.1.0 0
 rule permit source any
 q
 rip
 filter-policy 2000 import
 q
 ping 7.7.7.7
 telnet 7.7.7.7
AR7:
 sys
 sys R7
 int g0/0/0
 ip address 67.0.0.2 24
 int l0
 ip add 7.7.7.7 24
 q
 rip
 v 1
 network 67.0.0.0
 network 7.0.0.0
 display ip routing-table protocol rip
 aaa
 local-user lbs privilege lecel 15 password cipher 29920814
 local-user lbs service-type telnet
 q
 user-group
 user-interface vty 0 4
 acl-ping
 authentication-mode aaa










