Bước 1) Cấu hình IP cho các thiết bị theo thông tin trong sơ đồ
Bước 2) Tạo 2 VLAN trên Switch
Switch(config)# vlan 10
Switch(config-vlan)# name KeToan
Switch(config)# exit
Switch(config)# vlan 20
Switch(config-vlan)# name TaiChinh
Switch(config)# exit
Switch(config)# interface F0/1
Switch(config-if)#switchport mode access
Switch(config-if)#switchport access vlan 10
Switch(config-if)#exit
Switch(config)# interface F0/11
Switch(config-if)#switchport mode access
Switch(config-if)#switchport access vlan 20
Switch(config-if)#exit
Bước 3) Cấu hình Web Server & DNS Server
Bước 4) Cấu hình cho Router R1
R1#show running-config
Building configuration...
Current configuration : 1175 bytes
!
version 12.4
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname R1
!
no ip domain-lookup
!
interface FastEthernet0/0
ip address 192.168.1.1 255.255.255.0
ip nat inside
!
interface FastEthernet0/0.10
encapsulation dot1Q 10
ip address 192.168.10.1 255.255.255.0
ip nat inside
standby version 2
standby 10 ip 192.168.10.10
standby 10 priority 120
standby 10 preempt
!
interface FastEthernet0/0.20
encapsulation dot1Q 20
ip address 192.168.20.1 255.255.255.0
ip nat inside
standby version 2
standby 20 ip 192.168.20.20
!
interface FastEthernet0/1
ip address 200.1.1.1 255.255.255.0
ip nat outside
!
ip nat inside source list 1 interface FastEthernet0/1 overload
!
access-list 1 permit 192.168.1.0 0.0.0.255
access-list 1 permit 192.168.10.0 0.0.0.255
access-list 1 permit 192.168.20.0 0.0.0.255
!
R1#
Bước 5) Cấu hình cho Router R2
R2#show running-config
Building configuration...
Current configuration : 1175 bytes
!
version 12.4
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname R2
!
no ip domain-lookup
!
interface FastEthernet0/0
ip address 192.168.1.2 255.255.255.0
ip nat inside
duplex auto
speed auto
!
interface FastEthernet0/0.10
encapsulation dot1Q 10
ip address 192.168.10.2 255.255.255.0
ip nat inside
standby version 2
standby 10 ip 192.168.10.10
!
interface FastEthernet0/0.20
encapsulation dot1Q 20
ip address 192.168.20.2 255.255.255.0
ip nat inside
standby version 2
standby 20 ip 192.168.20.20
standby 20 priority 120
standby 20 preempt
!
interface FastEthernet0/1
ip address 200.1.1.2 255.255.255.0
ip nat outside
!
ip nat inside source list 1 interface FastEthernet0/1 overload
!
access-list 1 permit 192.168.1.0 0.0.0.255
access-list 1 permit 192.168.10.0 0.0.0.255
access-list 1 permit 192.168.20.0 0.0.0.255
!
R2#
Bước 6) Kiểm tra
Xem thông tin về HSRP trên 2 Router R1 & R2 bằng lệnh show standby brief
Đứng tại PC VLAN10 & PC VLAN20 lần lượt tracert đến máy 200.1.1.3 (dtu.vn) để xem đường đi của gói tin. Chúng ta thấy rằng PC VLAN10 đi qua R1 rồi đến dtu.vn, PC VLAN20 đi qua R2 rồi đến dtu.vn.
By: dangocuong@duytan.edu.vn
» Tin mới nhất:
» Các tin khác: