<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>IPCPU——网络之路 &#187; SMB</title>
	<atom:link href="http://www.ipcpu.com/tag/smb/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ipcpu.com</link>
	<description></description>
	<lastBuildDate>Sat, 03 Dec 2011 17:16:33 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1.2</generator>
		<item>
		<title>小型企业网组网方案</title>
		<link>http://www.ipcpu.com/2010/05/smb-network-design/</link>
		<comments>http://www.ipcpu.com/2010/05/smb-network-design/#comments</comments>
		<pubDate>Tue, 04 May 2010 09:59:17 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[网络技术]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[SMB]]></category>
		<category><![CDATA[企业网络]]></category>
		<category><![CDATA[网络设计]]></category>

		<guid isPermaLink="false">http://www.ipcpu.com/?p=487</guid>
		<description><![CDATA[三层交换机 1台 二层交换机  若干 路由器      1台 防火墙      1台 三层交换机用来做VLAN间路由，二层交换机纯用来连接，路由器防火墙全部跑静态路由，防火墙上可再连DMZ， 至于NAT在那做，没什么太大关系，防火墙、路由都可以。 三层交换配置： ip routing !开启路由功能 interface FastEthernet0/1 switchport trunk encapsulation dot1q switchport mode trunk !TRUNK设置 ! interface FastEthernet0/24 no switchport ip address 192.168.251.2 255.255.255.0 interface Vlan10 ip address 192.168.10.1 255.255.255.0 ! interface Vlan20 ip address 192.168.20.1 255.255.255.0 ! ip route 0.0.0.0 0.0.0.0 192.168.251.1 !默认路由指到防火墙 ip route [...]]]></description>
			<content:encoded><![CDATA[<p>三层交换机 1台<br />
二层交换机  若干<br />
路由器      1台<br />
防火墙      1台<br />
三层交换机用来做VLAN间路由，二层交换机纯用来连接，路由器防火墙全部跑静态路由，防火墙上可再连DMZ，</p>
<p>至于NAT在那做，没什么太大关系，防火墙、路由都可以。</p>
<p><a href="http://www.ipcpu.com/wp-content/uploads/2010/05/enter_r1_c1.jpg"><img class="alignnone size-full wp-image-488" title="enter_r1_c1" src="http://www.ipcpu.com/wp-content/uploads/2010/05/enter_r1_c1.jpg" alt="" width="480" height="305" /></a><br />
<strong><span id="more-487"></span>三层交换配置：</strong><br />
ip routing<br />
!开启路由功能<br />
interface FastEthernet0/1<br />
switchport trunk encapsulation dot1q<br />
switchport mode trunk<br />
!TRUNK设置<br />
!<br />
interface FastEthernet0/24<br />
no switchport<br />
ip address 192.168.251.2 255.255.255.0<br />
interface Vlan10<br />
ip address 192.168.10.1 255.255.255.0<br />
!<br />
interface Vlan20<br />
ip address 192.168.20.1 255.255.255.0<br />
!<br />
ip route 0.0.0.0 0.0.0.0 192.168.251.1<br />
!默认路由指到防火墙<br />
ip route 192.168.0.0 255.255.128.0 Null0<br />
!内部汇总路由指到空接口</p>
<p><strong>防火墙配置（路由方面）：</strong><br />
ip route 0.0.0.0 0.0.0.0 192.168.252.1<br />
ip route 192.168.0.0 255.255.128.0 192.168.251.2<br />
<strong>路由器配置：</strong><br />
ip route 0.0.0.0 0.0.0.0 202.100.0.1<br />
ip route 192.168.0.0 255.255.128.0 192.168.252.2</p>
<p><strong>接入层交换机Switch0的配置：</strong><br />
interface FastEthernet0/1<br />
switchport access vlan 10<br />
switchport mode access<br />
!<br />
!将接口划分到VLAN<br />
interface FastEthernet0/2<br />
switchport access vlan 20<br />
switchport mode access<br />
!<br />
interface GigabitEthernet1/1<br />
switchport mode trunk<br />
!TRUNK设置</p>
<p><strong>注意事项：</strong></p>
<p>核心交换机上使用静态默认路由时，要记得在路由器上回指内网网络。</p>
<p>VLAN的配置使用sh run看不到，注意交换机之间VLAN同步。</p>
<p>NAT的配置将在下一节介绍。</p>
]]></content:encoded>
			<wfw:commentRss>http://www.ipcpu.com/2010/05/smb-network-design/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

