我们公司要我用一个CISCO3550EMI的交换机配置一套方案 ,让两个不同网段的主机(注意:500多台主机)能够在“网上邻居”里看到对方且互相能够访问.
大家评评理,下面的这个配置究竟有没有隔离广播风爆的作用????
Switch# configure terminal
Switch(config)#vtp mode transparent
Switch(config)#vlan 10
Switch(config-vlan)# name vlan10
Switch(config)#exit
Switch(config)#vlan 11
Switch(config-vlan)name vlan11
Switch(config-vlan)end
Switch#configure terminal
Switch(config)#interface fastethernet0/9
Switch(config-if)#switchport mode access
Switch(config-if)#switchport access vlan 10
Switch(config-if)#exit
Switch(config)#interface fastethernet0/10
Switch(config-if)#switchport mode access
Switch(config-if)#switchport access vlan 10
Switch(config-if)#exit
Switch(config)#interface fastethernet0/11
Switch(config-if)#switchport mode access
Switch(config-if)#switchport access vlan 11
Switch(config-if)#exit
Switch(config)#interface fastethernet0/12
Switch(config-if)#switchport mode access
Switch(config-if)#switchport access vlan 11
Switch(config-if)#exit
Switch(config)#interface vlan10
Switch(config-if)#ip address 192.168.0.1 255.255.255.0
Switch(config-if)#no shutdown
Switch(config-if)#exit
Switch(config)#interface vlan11
Switch(config-if)#ip address 192.168.1.1 255.255.255.0
Switch(config-if)#no shutdown
Switch(config-if)#exit
Switch(config)#ip routing
Switch(config)#ip forward-protocol udp
Switch(config)#inter vlan 10
Switch(config-if)#ip helper 192.168.1.255
Switch(config-if)#ip directed-broadcast
Switch(config-if)#exit
Switch(config)#inter vlan 11
Switch(config-if)#ip helper 192.168.0.255
Switch(config-if)#ip directed-broadcast
Switch(config-if)#exit
Switch(config)#ip route 0.0.0.0 0.0.0.0 Vlan10
Switch(config)#ip route 0.0.0.0 0.0.0.0 Vlan11
Switch(config)#end
Switch# copy run star
下面的是生成的配置文件
cisco-3550-emi-gsk#show run
Building configuration...
Current configuration : 2650 bytes
!
version 12.1
no service pad
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname cisco-3550-emi-gsk
!
enable secret 5 $1$qUVf$vl8fMJUJmWgRFc32NkGXF0
enable password xxb
!
ip subnet-zero
ip routing
!
vtp domain COM
vtp mode transparent
!
spanning-tree mode pvst
spanning-tree extend system-id
!
!
!
!
vlan 2
name nanqu
!
vlan 3
name beiqu
!
vlan 10
name vlan10
!
vlan 11
name vlan11
!
!
interface FastEthernet0/1
switchport mode dynamic desirable
!
interface FastEthernet0/2
switchport mode dynamic desirable
!
interface FastEthernet0/3
switchport mode dynamic desirable
!
interface FastEthernet0/4
switchport mode dynamic desirable
!
interface FastEthernet0/5
switchport mode dynamic desirable
!
interface FastEthernet0/6
switchport mode dynamic desirable
!
interface FastEthernet0/7
switchport mode dynamic desirable
!
interface FastEthernet0/8
switchport mode dynamic desirable
!
interface FastEthernet0/9
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/10
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/11
switchport access vlan 11
switchport mode access
!
interface FastEthernet0/12
switchport access vlan 11
switchport mode access
!
interface FastEthernet0/13
switchport mode dynamic desirable
!
interface FastEthernet0/14
switchport mode dynamic desirable
!
interface FastEthernet0/15
switchport mode dynamic desirable
!
interface FastEthernet0/16
switchport mode dynamic desirable
!
interface FastEthernet0/17
switchport mode dynamic desirable
!
interface FastEthernet0/18
switchport mode dynamic desirable
!
interface FastEthernet0/19
switchport mode dynamic desirable
!
interface FastEthernet0/20
switchport mode dynamic desirable
!
interface FastEthernet0/21
switchport mode dynamic desirable
!
interface FastEthernet0/22
switchport mode dynamic desirable
!
interface FastEthernet0/23
switchport mode dynamic desirable
!
interface FastEthernet0/24
switchport mode dynamic desirable
!
interface GigabitEthernet0/1
switchport mode dynamic desirable
!
interface GigabitEthernet0/2
switchport mode dynamic desirable
!
interface Vlan1
ip address 172.16.1.1 255.255.255.0
!
interface Vlan10
ip address 192.168.0.1 255.255.255.0
ip helper-address 192.168.1.255
ip directed-broadcast
!
interface Vlan11
ip address 192.168.1.1 255.255.255.0
ip helper-address 192.168.0.255
ip directed-broadcast
!
ip classless
ip route 0.0.0.0 0.0.0.0 Vlan10
ip route 0.0.0.0 0.0.0.0 Vlan11
ip http server
!
!
line con 0
exec-timeout 0 0
line vty 0 4
password gsk
login
line vty 5 15
password gsk
login
!
!
end
cisco-3550-emi-gsk# |