最佳答案
在msg 360-20 上配置
#
track 1 nqa entry admin test1 reaction 1
#
track 2 nqa entry admin test2 reaction 2
##
policy-based-route neiwang permit node 5
if-match acl 3001
apply next-hop 1.1.1.2 track 1
#
policy-based-route neiwang permit node 10
if-match acl 3002
apply next-hop 2.2.2.2 track 2
#
nqa entry admin test1
type icmp-echo
destination ip 114.114.114.114
frequency 1000
out interface g0/1
reaction 1 checked-element probe-fail threshold-type consecutive 3 action-type trigger-only
#
nqa entry admin test2
type icmp-echo
destination ip 8.8.8.8
frequency 1000
out interface g0/2
reaction 2 checked-element probe-fail threshold-type consecutive 3 action-type trigger-only
#
nqa schedule admin test start-time now lifetime forever
nqa schedule admin test1 start-time now lifetime forever
#
interface GigabitEthernet1/0/1
port link-mode route
combo enable copper
ip address 1.1.1.1 255.255.255.0
nat outbound
#
interface GigabitEthernet1/0/2
port link-mode route
combo enable copper
ip address 2.2.2.1 255.255.255.0
nat outbound
#
interface GigabitEthernet1/0/3
port link-mode route
combo enable copper
ip address 192.168.3.1 255.255.255.0
ip policy-based-route neiwang
#
interface GigabitEthernet1/0/4
port link-mode route
combo enable copper
ip address 192.168.3.1 255.255.255.0
ip policy-based-route neiwang
#
interface GigabitEthernet1/0/14
port link-mode route
combo enable copper
ip address 192.168.124.200 255.255.255.0
#
ip route-static 192.168.1.0 16 192.168.3.1
#
acl advanced 3001
rule 0 permit ip source 192.168.1.0 0.0.0.255
#
acl advanced 3002
rule 0 permit ip source 192.168.2.0 0.0.0.255
#
在核心上创建vlan vlan 10 vlan 20 vlan 30 配置vlan 30 IP 192.168.3.2/24,所有的路由指向msg360-20上 IP
ip route-static 0.0.0.0 0 192.168.3.1
(0)
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论