之前66.254只给内网使用,现在接入政务网需要66段也访问这条政务网,配置完静态路由后不通,配置如下 vlan 1 # traffic classifier noxs operator and if-match acl 3100 # traffic classifier xs operator and if-match acl 3200 # traffic behavior noxs # traffic behavior xs car cir 8000 cbs 500000 ebs 0 green pass red discard yellow pass # qos policy xs classifier noxs behavior noxs classifier xs behavior xs # controller Cellular0/0 # controller Cellular0/1 # interface Aux0 # interface NULL0 # interface GigabitEthernet0/0 port link-mode route combo enable copper # interface GigabitEthernet0/0.10 ip address 192.166.66.254 255.255.255.0 qos apply policy xs outbound vlan-type dot1q vid 10 # interface GigabitEthernet0/0.20 ip address 192.168.0.254 255.255.255.0 vlan-type dot1q vid 20 # interface GigabitEthernet0/0.30 ip address 10.73.24.254 255.255.255.0 vlan-type dot1q vid 30 # interface GigabitEthernet0/1 port link-mode route ip address 124.238.146.61 255.255.255.0 nat outbound 2000 # interface GigabitEthernet0/2 port link-mode route ip address 10.211.9.146 255.255.255.192 # scheduler logfile size 16 # line class aux user-role network-admin # line class tty user-role network-operator # line class vty user-role network-operator # line aux 0 user-role network-admin # line vty 0 63 user-role network-operator # ip route-static 0.0.0.0 0 124.238.146.49 ip route-static 192.168.66.0 24 10.211.9.190 # acl basic 2000 rule 1000 permit # acl advanced 3100 rule 0 permit ip source 192.166.66.0 0.0.0.255 rule 5 permit ip source 192.168.0.0 0.0.0.255 rule 10 permit ip source 10.73.24.0 0.0.0.255 # acl advanced 3200 rule 15 permit ip
路由下端接入二层交换机透传vlan到pc
(0)
# interface GigabitEthernet0/0.10 ip address 192.166.66.254 255.255.255.0 qos apply policy xs outbound vlan-type dot1q vid 10
这个192.166是不是写错了?如果应该是192.168,那么ip route-static 192.168.66.0 24 10.211.9.190 又是什么鬼?
(0)
暂无评论
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论