摘要:希賽網(wǎng)軟考頻道小編為大家整理了2018下半年網(wǎng)絡(luò)工程師考試下午真題第四部分,供大家參考。
● 閱讀以下說明,回答問題1至問題3,將解答填入答題紙對(duì)應(yīng)的解答欄內(nèi)。
【說明】
某企業(yè)的網(wǎng)絡(luò)結(jié)構(gòu)如圖4-1所示。企業(yè)使用雙出口,其中ISP1是高速鏈路,網(wǎng)關(guān)為202.100.1.2, ISP2 是低速鏈路,網(wǎng)關(guān)為104.114.128.2。
【問題1】(13分,每空1分)
公司內(nèi)部有兩個(gè)網(wǎng)段,192.168.1.0/24 和192.168.2.0/24, 使用三層交換機(jī)SwitchB實(shí)現(xiàn)VLAN間路由。為提高用戶體驗(yàn),網(wǎng)絡(luò)管理員決定帶寬要求較高的192.168.1.0 網(wǎng)段的的數(shù)據(jù)通過高速鏈路訪問互聯(lián)網(wǎng),帶寬要求較低的192.168.2.0網(wǎng)段的數(shù)據(jù)通過低速鏈路訪問互聯(lián)網(wǎng)。請(qǐng)根據(jù)描述,將以下配置代碼補(bǔ)充完整。
[SwitchB] acl 3000
[SwitchB-acl-adv-3000] rule permit ip source 192.168.1.0 0.0.0.255 destination 192.168.2.0 0.0.0.255
[SwitchB-acl-adv-3000] rule permit ip source 192.168.2.0 0.0.0.255 destination 192.168.1.0 0.0.0.255
[SwitchB-acl-adv-3000] quit
[SwitchB] acl 3001 //匹配內(nèi)網(wǎng)192. 168.1.0/24網(wǎng)段的用戶數(shù)據(jù)流
[SwitchB-acl-adv-3001] rule permit ip source (1) 0.0.0.255
[SwitchB acl-adv-3001] quit
[SwitchB] acl 3002 //匹配內(nèi)網(wǎng)192.168.2.0/24 網(wǎng)段的用戶數(shù)據(jù)流
[SwitchB-acl-adv-3002] rule permit ip (2) 192.168.2.0 0.0.0.255
[SwitchB-acl-adv-3002] quit
[SwitchB] traffic classifier c0 operator or
[SwitchB-classifier-c0] (3) acl 3000
[SwitchB-classifer-c0] quit
[SwitchB] traffic classifier c1 (4) or
[SwitchB-classifier-c1] if-match acl 3001
[SwitchB-classifer-c1] quit
[SwitchB] traffic classifier c2 operator or
[SwitchB-classifer-c2] if-match acl (5)
[SwitchB-classfer-c2] (6) quit
[SwitchB] traffic behavior b0
[SwitchB-behavior-b0] (7)
[SwitchB-behavior-bO] quit
[SwitchB] traffic behavior bl
[SwitchB-behavior-b1] redirect ip-nexthop (8)
[SwitchB-behavior-b1] quit
[SwitchB] traffic behavior b2
[SwitchB-behavior-b2] redirect ip-nexthop (9)
[SwitchB-behavior-b2] quit
[SwitchB] traffic policy p1
[SwitchB-trafficpolicy-p1] classifier c0 behavior (10)
[SwitchB-trafficpolicy-p1] classifier c1 behavior (11)
[SwitchB-trafficpolicy-p1] classifier c2 behavior b2
[SwitchB-trafficpolicy-p1] quit
[SwitchB] interface (12)
[SwitchB-GigabitEthenet0/0/3] traffic-policy pl (13)
SwitchB-GigabitEthernet0/0/3] return
【問題2】(2分)
在問題1的配置代碼中,配置ACL 3000的作用是: (14)。
【問題3】(5分,每空1分)
公司需要訪問Intermet公網(wǎng),計(jì)劃通過配置NAT實(shí)現(xiàn)私網(wǎng)地址到公網(wǎng)地址的轉(zhuǎn)換,ISP1公網(wǎng)地址范圍為202.100.1.1~202.100.1.5 ;ISP2 公網(wǎng)地址范圍為104.114.128.1~104.114.128.5。
請(qǐng)根據(jù)描述,將下面的配置代碼補(bǔ)充完整。
.....
[SwitchB]nat address-group 0 202.100.1.3 202.100.1.5
[SwitchB]nat address-group 1 104.114.128.3 104.114.128.5
[SwitchB]acl number 2000
[SwitchB-acl-basic-2000]rule 5 (15) source 192.168.1.0 0.0.0.255
[SwitchB]acl number 2001
[SwitchB-acl-basic-2001]rule 5 permit source 192.168.2.0 0.0.0.255
[SwitchB]interface GigabitEthernet0/0/3
[SwitchB-GigabitEthernet0/0/3]nat outbound (16) address group 0 no-pat
[SwitchB-GigabitEthernnet0/0/3]nat outbound (17) address group 1 no-pat
[SwitchB-GigabitEthernet0/0/3]quit
[SwitchB] ip route-static 192.168.1.0 0.0.0.255 (18)
[SwitchB] ip route-static 192.168.2.0 0.0.0.255 (19)
...
相關(guān)推薦:2018下半年網(wǎng)絡(luò)工程師真題匯總
點(diǎn)擊注冊(cè)會(huì)員>>>即可獲取網(wǎng)絡(luò)工程師免費(fèi)在線真題、觀看免費(fèi)公開課!
軟考備考資料免費(fèi)領(lǐng)取
去領(lǐng)取
共收錄117.93萬道題
已有25.02萬小伙伴參與做題