当前位置:首页
>
查试题
>
公司内部有两个网段,192.168.1.0/24和192.168.2.0/24,使用三层交换机SwitchB实现VLAN间路由。为提高用户体验,网络管理员决定带宽要求较高的192.168.1.0网段的的数据通过高速链路访问互联网,带宽要求较低的192.168.2.0网段的数据通过低速链路访问互联网。请根据描述,将以下配置代码补充完整。[SwitchB]acl 3000[SwitchB-acl-adv-3000]rule permit ip source 192.168.1.0 0.0.0.255 destination 192.168.2.0 0.0.0.255[SwitchB-acl-adv-3000]rule permit ip source 192.168.2.0 0.0.0.255 destination 192.168.1.0 0.0.0.255[SwitchB-acl-adv-3000]quit[SwitchB]acl 3001//匹配内网192.168.1.0/24网段的用户数据流[SwitchB-acl-adv-3001]rule permit ip source(1)0.0.0.255[SwitchB acl-adv-3001]quit[SwitchB]acl 3002//匹配内网192.168.2.0/24网段的用户数据流[SwitchB-acl-adv-3002]rule permit ip(2)192.168.2.0 0.0.0.255[SwitchB-acl-adv-3002]quit[SwitchB]traffic classifier c0 operator or[SwitchB-classifier-c0](3)acl 3000[SwitchB-classifer-c0]quit[SwitchB]traffic classifier c1(4)or[SwitchB-classifier-c1]if-match acl 3001[SwitchB-classifer-c1]quit[SwitchB]traffic classifier c2 operator or[SwitchB-classifer-c2]if-match acl(5)[SwitchB-classfer-c2](6)[SwitchB]traffic behavior b0[SwitchB-behavior-b0](7)[SwitchB-behavior-b0]quit[SwitchB]traffic behavior b1[SwitchB-behavior-b1]redirect ip-nexthop(8)[SwitchB-behavior-b1]quit[SwitchB]traffic behavior b2[SwitchB-behavior-b2]redirect ip-nexthop(9)[SwitchB-behavior-b2]quit[SwitchB]traffic policy p1[SwitchB-trafficpolicy-p1]classifier c0 behavior(10)[SwitchB-trafficpolicy-p1]classifier c1 behavior(11)[SwitchB-trafficpolicy-p1]classifier c2 behavior b2[SwitchB-trafficpolicy-p1]quit[SwitchB]interface(12)[SwitchB-GigabitEthenet0/0/3]traffic-policy pl(13)SwitchB-GigabitEthernet0/0/3]return【问题2】(2分)在问题1的配置代码中,配置ACL 3000的作用是:(14)。【问题3】(5分,每空1分)公司需要访问Intermet公网,计划通过配置NAT实现私网地址到公网地址的转换,ISP1公网地址范围为202.100.1.1~202.100.1.5;ISP2公网地址范围为104.114.128.1~104.114.128.5。请根据描述,将下面的配置代码补充完整。.....[SwitchB]nat address-group 0 202.100.1.3 202.100.1.5[SwitchB]nat address-group 1 104.114.128.3 104.114.128.5[SwitchB]acl number 2000[SwitchB-acl-basic-2000]rule 5(15)source 192.168.1.0 0.0.0.255[SwitchB]acl number 2001[SwitchB-acl-basic-2001]rule 5 permit source 192.168.2.0 0.0.0.255[SwitchB]interface GigabitEthernet0/0/3[SwitchB-GigabitEthernet0/0/3]nat outbound(16)address group 0 no-pat[SwitchB-GigabitEthernnet0/0/3]nat outbound(17)address group 1 no-pat[SwitchB-GigabitEthernet0/0/3]quit[SwitchB]ip route-static 192.168.1.0 255.255.255.0(18)[SwitchB]ip route-static 192.168.2.0 255.255.255.0(19)……