《思科》实训报告
课题名称: 网络设计
专 业: 计算机网络
班 级:
学 号:
姓 名:
指导教师: 刘 悦
月 日
目 录
一、 课程设计目的…………………………………………………………1
二、 课程设计题目描述和要求……………………………………………2
三、 课程设计报告内容……………………………………………………3
3.1 设计任务…………………………………………………………………4
3.2 设计要求及设计步骤………………………………………………………5
3.3 设计概述…………………………………………………………………5
3.4设计方案的论证……………………………………………………………6
3.5 设计代码…………………………………………………………………8
四、结论………………………………………………………………………22
五、结束语……………………………………………………………………22
六、参考书……………………………………………………………………23
一、课程设计目的
课程设计结束后,学生能够自己设计一个中小型网络的拓扑,能够熟练配置思科的交换和路由设备,完成网络的建设和日常维护工作。
二、课程设计题目描述和要求
在学校中有一个大的多媒体教室,但需要被划成四个区域,使四个区域的广播能够相互隔离,避免使整个网络受到广播风暴的影响。但是互相可以进行正常的通信。同时,要确保每台主机都能够访问ISP的web服务器。
三、课程设计报告内容
3.1设计任务
通过实践教学,使学生掌握中小型网络的组建方法。主要是针对在网络组建中使用的技术和网络设备的配置。其中包括,广域网的技术ppp、帧中继、NAT、PAT等,还有含盖了日常组网常用的技术,动态路由协议、VLAN技术和一些常用的认证技术。
3.2设计要求及设计步骤
1、主要内容:课程中所学的许多技能,这些技能包括构建网络,应用编址方案,配置路由,VLAN、STP 和 VTP 以及测试连通性。
2、设计要求:
技能要求:学会各种协议的使用,掌握它们的操作技巧及应用范围,能独立完成拓扑的设计与规划,并配置好网络。
3、需要注意的知识点
?
1) ??加密认证的使用
2) ??广域网技术
3) ??VLAN技术的应用
4) ??动态路由协议的应用与配置
5) ??ip节省的一些相关技术
3.3设计概述
n 拓扑图:
n 网络的实际应用及具体设备配置
架式和刀片服务器,以及Windows Storage Server 2003操作系统,帮助企业实现快速安装与部署。IBM X系列存储服务器可以为客户提供低成本的可靠的NAS解决方案,易于使用和管理,并可以通过NAS网关功能与现有的SAN基础设施相集成。
n 选定的设备介绍
Cisco1841路由器:
- 端口结构:模块化 Qos支持:支持
- 局域网接口:2个 VPN支持:支持
- 传输速率:10/100Mbps 产品内存:最大DRAM内存:384M
- 网络管理:SNMP/telnet 其它端口:1个板载USB端口
- 防火墙:内置防火墙 扩展模块:2个模块化插槽+2个W
- 网络协议:TCP/IP 环境标准:工作温度:0-40℃
Cisco2960交换机:
- 产品类型:智能交换机 网络管理:Web浏览器,
- 应用层级:二层 包转发率:38.7Mpps
- 传输速率:10/100/1000Mbps MAC地址表:8K
- 端口数量:26个 端口结构:非模块化
- 背板带宽:50Gbps 交换方式:存储-转发
- VLAN:支持 产品内存:DRAM内存:128MB F
3.4设计方案的论证
Vlan:VLAN是一种将局域网设备从逻辑上划分成一个个网段,从而实现虚拟工作组的新兴数据交换技术。这一新兴技术主要应用于交换机和路由器中,但主流应用还是在交换机之中。所有交换机都具有此功能,只有VLAN协议的第三层以上交换机才具有此功能。
Vtp : 它是思科私有协议。作用是十几台交换机在企业网中,配置VLAN工作量大,可以使用VTP协议,把一台交换机配置成VTP Server, 其余交换机配置成VTP Client,这样他们可以自动学习到server 上的VLAN 信息。
Ospf: 是一个内部网关协议(Interior Gateway Protocol,简称IGP),用于在单一自治系统内决策路由。与RIP相比,OSPF是链路状态路由协议,而RIP是距离矢量路由协议。
Stp :生成树协议,用来确保多台交换机之间不会产生环路。
3.5 设计代码
Isp的配置:
ISP#show run
Building configuration...
Current configuration : 1076 bytes
!
version 12.3
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname ISP
!
!
!
enable secret 5 $1$wTX2$Antawj7kYElq0mN96ZxDK1
enable password cisco
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
interface FastEthernet0/0
description Link to Web Server
ip address 209.165.201.1 255.255.255.252
duplex auto
speed auto
!
interface FastEthernet0/1
no ip address
duplex auto
speed auto
shutdown
!
interface Serial0/0/0
no ip address
shutdown
!
interface Serial0/0/1
description Link to CENTRAL
ip address 209.165.200.225 255.255.255.252
!
interface Vlan1
no ip address
shutdown
!
ip classless
ip route 10.1.1.0 255.255.255.252 Serial0/0/1
ip route 172.17.1.0 255.255.255.0 Serial0/0/1
ip route 172.17.10.0 255.255.255.0 Serial0/0/1
ip route 172.17.20.0 255.255.255.0 Serial0/0/1
ip route 172.17.30.0 255.255.255.0 Serial0/0/1
ip route 172.17.99.0 255.255.255.0 Serial0/0/1
!
!
!
banner motd ^C
AUTHORIZED ACCESS ONLY^C
!
!
!
!
line con 0
password cisco
login
line vty 0 4
password cisco
login
!
!
!
end
CENTRAL的配置:
CENTRAL#show run
Building configuration...
Current configuration : 968 bytes
!
version 12.3
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname CENTRAL
!
!
!
enable secret 5 $1$mERr$9cTjUIEqNGurQiFU.ZeCi1
!
!
no ip domain-lookup
!
!
!
!
!
!
interface FastEthernet0/0
no ip address
duplex auto
speed auto
shutdown
!
interface FastEthernet0/1
no ip address
duplex auto
speed auto
shutdown
!
interface Serial0/0/0
description Link to BRANCH
ip address 10.1.1.2 255.255.255.252
!
interface Serial0/0/1
description Link to ISP
ip address 209.165.200.226 255.255.255.252
clock rate 64000
!
interface Vlan1
no ip address
shutdown
!
router ospf 1
log-adjacency-changes
passive-interface Serial0/0/1
network 10.1.1.0 0.0.0.3 area 0
default-information originate
!
ip classless
ip route 0.0.0.0 0.0.0.0 Serial0/0/1
!
!
!
banner motd ^CAUTHORIZED ACCESS ONLY^C
!
!
!
!
line con 0
password cisco
login
line vty 0 4
password cisco
login
!
!
!
End
BRANCH的配置:
Router#show run
Building configuration...
Current configuration : 1487 bytes
!
version 12.4
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname Router
interface FastEthernet0/0
no ip address
duplex auto
speed auto
!
interface FastEthernet0/0.1
encapsulation dot1Q 1 native
ip address 172.17.1.1 255.255.255.0
!
interface FastEthernet0/0.10
encapsulation dot1Q 10
ip address 172.17.10.1 255.255.255.0
!
interface FastEthernet0/0.20
encapsulation dot1Q 20
ip address 172.17.20.1 255.255.255.0
!
interface FastEthernet0/0.30
encapsulation dot1Q 30
ip address 172.17.30.1 255.255.255.0
!
interface FastEthernet0/0.99
encapsulation dot1Q 99 native
ip address 172.17.99.1 255.255.255.0
!
interface FastEthernet0/1
no ip address
duplex auto
speed auto
shutdown
!
interface Serial0/0/0
ip address 10.1.1.1 255.255.255.252
clock rate 64000
!
interface Serial0/0/1
no ip address
shutdown
!
interface Vlan1
no ip address
shutdown
!
router ospf 1
log-adjacency-changes
passive-interface FastEthernet0/0.1
passive-interface FastEthernet0/0.10
passive-interface FastEthernet0/0.20
passive-interface FastEthernet0/0.30
passive-interface FastEthernet0/0.99
network 10.1.1.0 0.0.0.3 area 0
network 172.17.1.0 0.0.0.255 area 0
network 172.17.10.0 0.0.0.255 area 0
network 172.17.20.0 0.0.0.255 area 0
network 172.17.30.0 0.0.0.255 area 0
network 172.17.99.0 0.0.0.255 area 0
!
ip classless
!
!
!
!
!
!
!
line con 0
line vty 0 4
login
!
!
!
End
S1上的配置:
S1#show run
Building configuration...
Current configuration : 2710 bytes
!
version 12.2
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname S1
!
!
spanning-tree vlan 1,10,20,30,99 priority 4096
!
interface FastEthernet0/1
switchport access vlan 99
switchport trunk native vlan 99
switchport mode trunk
!
interface FastEthernet0/2
switchport access vlan 99
switchport trunk native vlan 99
switchport mode trunk
!
interface FastEthernet0/3
switchport access vlan 99
switchport trunk native vlan 99
switchport mode trunk
!
interface FastEthernet0/4
switchport access vlan 99
switchport trunk native vlan 99
switchport mode trunk
!
interface FastEthernet0/5
switchport access vlan 99
switchport trunk native vlan 99
switchport mode trunk
!
interface FastEthernet0/6
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/7
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/8
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/9
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/10
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/11
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/12
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/13
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/14
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/15
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/16
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/17
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/18
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/19
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/20
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/21
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/22
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/23
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/24
switchport access vlan 20
switchport mode access
!
interface GigabitEthernet1/1
!
interface GigabitEthernet1/2
!
interface Vlan1
ip address 172.17.1.2 255.255.255.0
!
interface Vlan10
ip address 172.17.10.2 255.255.255.0
!
interface Vlan20
ip address 172.17.20.2 255.255.255.0
!
interface Vlan30
ip address 172.17.30.2 255.255.255.0
!
interface Vlan99
ip address 172.17.99.11 255.255.255.0
!
ip default-gateway 172.17.99.1
!
!
line con 0
!
line vty 0 4
login
line vty 5 15
login
!
!
End
S2上的配置:
S2#show run
Building configuration...
Current configuration : 2631 bytes
!
version 12.2
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname S2
!
!
!
interface FastEthernet0/1
switchport access vlan 99
switchport trunk native vlan 99
switchport mode trunk
!
interface FastEthernet0/2
switchport access vlan 99
switchport trunk native vlan 99
switchport mode trunk
!
interface FastEthernet0/3
switchport access vlan 99
switchport trunk native vlan 99
switchport mode trunk
!
interface FastEthernet0/4
switchport access vlan 99
switchport trunk native vlan 99
switchport mode trunk
!
interface FastEthernet0/5
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/6
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/7
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/8
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/9
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/10
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/11
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/12
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/13
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/14
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/15
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/16
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/17
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/18
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/19
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/20
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/21
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/22
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/23
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/24
switchport access vlan 20
switchport mode access
!
interface GigabitEthernet1/1
!
interface GigabitEthernet1/2
!
interface Vlan1
ip address 172.17.1.3 255.255.255.0
!
interface Vlan10
ip address 172.17.10.3 255.255.255.0
!
interface Vlan20
ip address 172.17.20.3 255.255.255.0
!
interface Vlan30
ip address 172.17.30.3 255.255.255.0
!
interface Vlan99
ip address 172.17.99.12 255.255.255.0
!
ip default-gateway 172.17.99.1
!
!
line con 0
!
line vty 0 4
login
line vty 5 15
login
!
!
End
S3上的配置:
S3#show run
Building configuration...
Current configuration : 2631 bytes
!
version 12.2
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname S3
!
!
!
interface FastEthernet0/1
switchport access vlan 99
switchport trunk native vlan 99
switchport mode trunk
!
interface FastEthernet0/2
switchport access vlan 99
switchport trunk native vlan 99
switchport mode trunk
!
interface FastEthernet0/3
switchport access vlan 99
switchport trunk native vlan 99
switchport mode trunk
!
interface FastEthernet0/4
switchport access vlan 99
switchport trunk native vlan 99
switchport mode trunk
!
interface FastEthernet0/5
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/6
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/7
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/8
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/9
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/10
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/11
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/12
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/13
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/14
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/15
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/16
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/17
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/18
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/19
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/20
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/21
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/22
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/23
switchport access vlan 20
switchport mode access
!
interface FastEthernet0/24
switchport access vlan 20
switchport mode access
!
interface GigabitEthernet1/1
!
interface GigabitEthernet1/2
!
interface Vlan1
ip address 172.17.1.4 255.255.255.0
!
interface Vlan10
ip address 172.17.10.4 255.255.255.0
!
interface Vlan20
ip address 172.17.20.4 255.255.255.0
!
interface Vlan30
ip address 172.17.30.4 255.255.255.0
!
interface Vlan99
ip address 172.17.99.13 255.255.255.0
!
ip default-gateway 172.17.99.1
!
!
line con 0
!
line vty 0 4
login
line vty 5 15
login
!
!
end
四、结论
本次设计查阅了很多案例,学习到了很多知识,原先很多不懂的东西、都有了初步的了解。设计一个校园网,不仅要求结构要合理,还要根据实际需要,对性能和价格作出合理的搭配,达到性能价格比达到最优。
本次设计是一次自我学习的过程。开始的时候就遇到了困难。因为需求分析是整个设计的纲领,只有搞好了这个纲领下面才有思路往下继续。
课程设计是培养我们综合运用所学知识,发现、提出、分析和解决实际问题,锻炼实践能力的重要环节,是对我们实际工作能力的具体训练和考察过程。随着科学技术发展的日新月异,网络已经成为当今计算机发展中空前活跃的领域,在生活中可以说是无处不在,因此作为二十一世纪的计算机专业的大学生来说掌握网络组网技术是十分重要的。建议应该在服务器前端设置防火墙,用来防范由外部发起的攻击。交换机S1与路由器BRANCH处也应该提供冗余,避免因为单臂路由出现故障而导致与外网中断。
五、结束语
通过这两个周的学习,还是学到了不少的知识!不仅纠正了课程学习过程中出现的许多错误,还在试验中验证了自己的一些猜想。在学习的过程中有失败,当然也有 困惑,有成功,当然就有喜悦。做学问也是做人,再作学问的过程中体味做人的道理不也是一种收获。
六、参考书目
【1】 Rick Graziani,Allan Johnson 思科网络技术学院教程《路由协议和概念》人民邮电出版社,
【2】 Wayne Lewis ,Ph.D. 思科网络技术学院教程《Lan交换和无线》人民邮电出版社