最佳答案
多个网段是同一个网关还是不同网关?跨网段互访网关互通就可以。
(1)
% Invalid input detected at '^' marker. Ruijie#show run*Jun 17 13:43:07: %ARP-4-RATELIMIT: Suppressed message count: 12. *Jun 17 13:43:07: %ARP-4-ARPCHANGEMAC: ARP entry 192.168.186.114 on VLAN 190 changed 3cef.8c41.4a41 to 3cef.8c41.4a4f due to ARP packet from GigabitEthernet 0/5. Building configuration... Current configuration : 2392 bytes ! version RGOS 10.4(3)p1 Release(137164)(Thu Jun 7 17:57:07 CST 2012 -ngcf67) ! ! no co-operate enable ! ! ! ! nfpp ! ! vlan 1 ! vlan 190 ! ! no service password-encryption ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! interface GigabitEthernet 0/1 switchport access vlan 190 ! interface GigabitEthernet 0/2 switchport access vlan 190 ! interface GigabitEthernet 0/3 switchport access vlan 190 ! interface GigabitEthernet 0/4 switchport access vlan 190 ! interface GigabitEthernet 0/5 switchport access vlan 190 ! interface GigabitEthernet 0/6 switchport access vlan 190 ! interface GigabitEthernet 0/7 switchport access vlan 190 ! interface GigabitEthernet 0/8 switchport access vlan 190 ! interface GigabitEthernet 0/9 switchport access vlan 190 ! interface GigabitEthernet 0/10 switchport access vlan 190 ! interface GigabitEthernet 0/11 switchport access vlan 190 ! interface GigabitEthernet 0/12 switchport access vlan 190 ! interface GigabitEthernet 0/13 switchport access vlan 190 ! interface GigabitEthernet 0/14 switchport access vlan 190 ! interface GigabitEthernet 0/15 switchport access vlan 190 ! interface GigabitEthernet 0/16 switchport access vlan 190 ! interface GigabitEthernet 0/17 switchport access vlan 190 ! interface GigabitEthernet 0/18 switchport access vlan 190 ! interface GigabitEthernet 0/19 switchport access vlan 190 ! interface GigabitEthernet 0/20 switchport access vlan 190 ! interface GigabitEthernet 0/21 switchport access vlan 190 ! interface GigabitEthernet 0/22 switchport access vlan 190 ! interface GigabitEthernet 0/23 no switchport no ip proxy-arp ip address 192.168.0.1 255.255.240.0 ! interface GigabitEthernet 0/24 switchport access vlan 190 ! interface VLAN 190 no ip proxy-arp ip address 192.168.190.254 255.255.255.0 ip address 192.168.184.254 255.255.255.0 secondary ip address 192.168.185.254 255.255.255.0 secondary ip address 192.168.186.254 255.255.255.0 secondary ip address 192.168.187.254 255.255.255.0 secondary ip address 192.168.188.254 255.255.255.0 secondary ip address 192.168.189.254 255.255.255.0 secondary ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ip route 0.0.0.0 0.0.0.0 192.168.15.254 ! ! line con 0 line vty 0 4 login ! ! end
不同网关,多个C类网,在一个交换机下的同一个VLAN,都走二层口
跨网段互访是三层互访,一般只需要网关路由可达就可以。
可以参考链接中的vlan相关章节:http://www.h3c.com/cn/d_201908/1222037_30005_0.htm
% Invalid input detected at '^' marker. Ruijie#show run*Jun 17 13:43:07: %ARP-4-RATELIMIT: Suppressed message count: 12. *Jun 17 13:43:07: %ARP-4-ARPCHANGEMAC: ARP entry 192.168.186.114 on VLAN 190 changed 3cef.8c41.4a41 to 3cef.8c41.4a4f due to ARP packet from GigabitEthernet 0/5. Building configuration... Current configuration : 2392 bytes ! version RGOS 10.4(3)p1 Release(137164)(Thu Jun 7 17:57:07 CST 2012 -ngcf67) ! ! no co-operate enable ! ! ! ! nfpp ! ! vlan 1 ! vlan 190 ! ! no service password-encryption ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! interface GigabitEthernet 0/1 switchport access vlan 190 ! interface GigabitEthernet 0/2 switchport access vlan 190 ! interface GigabitEthernet 0/3 switchport access vlan 190 ! interface GigabitEthernet 0/4 switchport access vlan 190 ! interface GigabitEthernet 0/5 switchport access vlan 190 ! interface GigabitEthernet 0/6 switchport access vlan 190 ! interface GigabitEthernet 0/7 switchport access vlan 190 ! interface GigabitEthernet 0/8 switchport access vlan 190 ! interface GigabitEthernet 0/9 switchport access vlan 190 ! interface GigabitEthernet 0/10 switchport access vlan 190 ! interface GigabitEthernet 0/11 switchport access vlan 190 ! interface GigabitEthernet 0/12 switchport access vlan 190 ! interface GigabitEthernet 0/13 switchport access vlan 190 ! interface GigabitEthernet 0/14 switchport access vlan 190 ! interface GigabitEthernet 0/15 switchport access vlan 190 ! interface GigabitEthernet 0/16 switchport access vlan 190 ! interface GigabitEthernet 0/17 switchport access vlan 190 ! interface GigabitEthernet 0/18 switchport access vlan 190 ! interface GigabitEthernet 0/19 switchport access vlan 190 ! interface GigabitEthernet 0/20 switchport access vlan 190 ! interface GigabitEthernet 0/21 switchport access vlan 190 ! interface GigabitEthernet 0/22 switchport access vlan 190 ! interface GigabitEthernet 0/23 no switchport no ip proxy-arp ip address 192.168.0.1 255.255.240.0 ! interface GigabitEthernet 0/24 switchport access vlan 190 ! interface VLAN 190 no ip proxy-arp ip address 192.168.190.254 255.255.255.0 ip address 192.168.184.254 255.255.255.0 secondary ip address 192.168.185.254 255.255.255.0 secondary ip address 192.168.186.254 255.255.255.0 secondary ip address 192.168.187.254 255.255.255.0 secondary ip address 192.168.188.254 255.255.255.0 secondary ip address 192.168.189.254 255.255.255.0 secondary ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ip route 0.0.0.0 0.0.0.0 192.168.15.254 ! ! line con 0 line vty 0 4 login ! ! end
配置sub网关可以实现,一般还是一对一的好。如果有不懂可以加我,有空帮你看看。
(0)
如果现在一个vlan下有四个网段,想要禁止其中两个网段互访,应该如何写acl,acl又该在哪调用?是在该vlan下还是接口下
如果现在一个vlan下有四个网段,想要禁止其中两个网段互访,应该如何写acl,acl又该在哪调用?是在该vlan下还是接口下
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明