实验名称:故障排错实现全网互通

实验拓扑:

排错思路 1、先排查PC机

						2、排查SW2
						
						3、排查SW3
						
						4、排查SW1
						
						5、排查AR1
						
						6、排查AR2
						
						7、排查AR3

实验步骤:

       排查修改SW2

<SW2>undo t m Info: Current terminal monitor is off. <SW2>sys Enter system view, return user view with Ctrl+Z. [SW2]dis [SW2]display co [SW2]display cou
[SW2]display cu
[SW2]display current-configuration

sysname SW2

vlan batch 10 20

cluster enable ntdp enable ndp enable

drop illegal-mac alarm

diffserv domain default

drop-profile default

aaa authentication-scheme default authorization-scheme default accounting-scheme default domain default domain default_admin local-user admin password simple admin local-user admin service-type http

interface Vlanif1

interface MEth0/0/1

interface GigabitEthernet0/0/1 port link-type access port default vlan 20

interface GigabitEthernet0/0/2

interface GigabitEthernet0/0/3

interface GigabitEthernet0/0/4

interface GigabitEthernet0/0/5

interface GigabitEthernet0/0/6

interface GigabitEthernet0/0/7

interface GigabitEthernet0/0/8

interface GigabitEthernet0/0/9

interface GigabitEthernet0/0/10

interface GigabitEthernet0/0/11

interface GigabitEthernet0/0/12 port link-type trunk port trunk allow-pass vlan 2 to 4094

interface GigabitEthernet0/0/13

interface GigabitEthernet0/0/14

interface GigabitEthernet0/0/15

interface GigabitEthernet0/0/16

interface GigabitEthernet0/0/17

interface GigabitEthernet0/0/18

interface GigabitEthernet0/0/19

interface GigabitEthernet0/0/20

interface GigabitEthernet0/0/21

interface GigabitEthernet0/0/22

interface GigabitEthernet0/0/23

interface GigabitEthernet0/0/24

interface NULL0

user-interface con 0 user-interface vty 0 4

return [SW2]int g0/0/1 [SW2-GigabitEthernet0/0/1]undo port default vlan
[SW2-GigabitEthernet0/0/1]p
[SW2-GigabitEthernet0/0/1]port de [SW2-GigabitEthernet0/0/1]port default vlan 10 [SW2-GigabitEthernet0/0/1]q [SW2]int g0/0/23 [SW2-GigabitEthernet0/0/23]p [SW2-GigabitEthernet0/0/23]port l [SW2-GigabitEthernet0/0/23]port link-t [SW2-GigabitEthernet0/0/23]port link-type t [SW2-GigabitEthernet0/0/23]port link-type trunk [SW2-GigabitEthernet0/0/23]port trunka [SW2-GigabitEthernet0/0/23]port trunk a [SW2-GigabitEthernet0/0/23]port trunk allow-pass vlan all [SW2-GigabitEthernet0/0/23]

    排查修改SW3

<SW3>UNDO T M Info: Current terminal monitor is off. <SW3>sys Enter system view, return user view with Ctrl+Z. [SW3]dis [SW3]display cu [SW3]display current-configuration

sysname SW3

vlan batch 10 20

cluster enable ntdp enable ndp enable

drop illegal-mac alarm

diffserv domain default

drop-profile default

aaa authentication-scheme default authorization-scheme default accounting-scheme default domain default domain default_admin local-user admin password simple admin local-user admin service-type http

interface Vlanif1

interface MEth0/0/1

interface GigabitEthernet0/0/1 port link-type access port default vlan 20

interface GigabitEthernet0/0/2

interface GigabitEthernet0/0/3

interface GigabitEthernet0/0/4

interface GigabitEthernet0/0/5

interface GigabitEthernet0/0/6

interface GigabitEthernet0/0/7

interface GigabitEthernet0/0/8

interface GigabitEthernet0/0/9

interface GigabitEthernet0/0/10

interface GigabitEthernet0/0/11

interface GigabitEthernet0/0/12

interface GigabitEthernet0/0/13 port link-type access

interface GigabitEthernet0/0/14

interface GigabitEthernet0/0/15

interface GigabitEthernet0/0/16

interface GigabitEthernet0/0/17

interface GigabitEthernet0/0/18

interface GigabitEthernet0/0/19

interface GigabitEthernet0/0/20

interface GigabitEthernet0/0/21

interface GigabitEthernet0/0/22

interface GigabitEthernet0/0/23 port link-type trunk

interface GigabitEthernet0/0/24

interface NULL0

user-interface con 0 user-interface vty 0 4

return [SW3] [SW3]int g0/0/13 [SW3-GigabitEthernet0/0/13]p [SW3-GigabitEthernet0/0/13]port [SW3-GigabitEthernet0/0/13]port
[SW3-GigabitEthernet0/0/13]port l
[SW3-GigabitEthernet0/0/13]port link-t [SW3-GigabitEthernet0/0/13]port link-type t [SW3-GigabitEthernet0/0/13]port link-type trunk [SW3-GigabitEthernet0/0/13]p [SW3-GigabitEthernet0/0/13]port t [SW3-GigabitEthernet0/0/13]port trunk a [SW3-GigabitEthernet0/0/13]port trunk allow-pass vlan all [SW3-GigabitEthernet0/0/13]q [SW3]int g0/0/23 [SW3-GigabitEthernet0/0/23]p [SW3-GigabitEthernet0/0/23]port l [SW3-GigabitEthernet0/0/23]port link-t [SW3-GigabitEthernet0/0/23]port link-type t [SW3-GigabitEthernet0/0/23]port link-type trunk [SW3-GigabitEthernet0/0/23]p [SW3-GigabitEthernet0/0/23]port t [SW3-GigabitEthernet0/0/23]port trunk a [SW3-GigabitEthernet0/0/23]port trunk allow-pass vlan all [SW3-GigabitEthernet0/0/23]

        排查修改SW1

<SW1>undo t m Info: Current terminal monitor is off. <SW1>sys Enter system view, return user view with Ctrl+Z. [SW1]display cu [SW1]display current-configuration

sysname SW1

vlan batch 10 20 40

cluster enable ntdp enable ndp enable

drop illegal-mac alarm

diffserv domain default

drop-profile default

aaa authentication-scheme default authorization-scheme default accounting-scheme default domain default domain default_admin local-user admin password simple admin local-user admin service-type http

interface Vlanif1

interface Vlanif40 ip address 192.168.40.254 255.255.255.0

interface MEth0/0/1

interface GigabitEthernet0/0/1 port hybrid pvid vlan 40

interface GigabitEthernet0/0/2 port link-type trunk port trunk allow-pass vlan 10 40

interface GigabitEthernet0/0/3

interface GigabitEthernet0/0/4

interface GigabitEthernet0/0/5

interface GigabitEthernet0/0/6

interface GigabitEthernet0/0/7

interface GigabitEthernet0/0/8

interface GigabitEthernet0/0/9

interface GigabitEthernet0/0/10

interface GigabitEthernet0/0/11

interface GigabitEthernet0/0/12 port link-type trunk port trunk allow-pass vlan 2 to 4094

interface GigabitEthernet0/0/13 port link-type trunk port trunk allow-pass vlan 2 to 4094

interface GigabitEthernet0/0/14

interface GigabitEthernet0/0/15

interface GigabitEthernet0/0/16

interface GigabitEthernet0/0/17

interface GigabitEthernet0/0/18

interface GigabitEthernet0/0/19

interface GigabitEthernet0/0/20

interface GigabitEthernet0/0/21

interface GigabitEthernet0/0/22

interface GigabitEthernet0/0/23

interface GigabitEthernet0/0/24

interface NULL0

user-interface con 0 user-interface vty 0 4

return [SW1]

[SW1-GigabitEthernet0/0/1]undo port hybrid pvid vlan [SW1-GigabitEthernet0/0/1]p [SW1-GigabitEthernet0/0/1]port l [SW1-GigabitEthernet0/0/1]port link-t [SW1-GigabitEthernet0/0/1]port link-type a [SW1-GigabitEthernet0/0/1]port link-type access [SW1-GigabitEthernet0/0/1]p [SW1-GigabitEthernet0/0/1]port de [SW1-GigabitEthernet0/0/1]port default vlan 40 [SW1-GigabitEthernet0/0/1]q [SW1]int g0/0/2 [SW1-GigabitEthernet0/0/2]p [SW1-GigabitEthernet0/0/2]port l [SW1-GigabitEthernet0/0/2]port link-t [SW1-GigabitEthernet0/0/2]port link-type t [SW1-GigabitEthernet0/0/2]port link-type trunk [SW1-GigabitEthernet0/0/2]p [SW1-GigabitEthernet0/0/2]port t [SW1-GigabitEthernet0/0/2]port trunk a [SW1-GigabitEthernet0/0/2]port trunk allow-pass vlan all [SW1-GigabitEthernet0/0/2] [SW1-GigabitEthernet0/0/2]q [SW1]ospf [SW1-ospf-1]area 0 [SW1-ospf-1-area-0.0.0.0]net [SW1-ospf-1-area-0.0.0.0]network 192.168.40.254 0.0.0.0 [SW1-ospf-1-area-0.0.0.0]network 192.168.10.250 0.0.0.0 [SW1-ospf-1-area-0.0.0.0]network 192.168.20.250 0.0.0.0 [SW1-ospf-1-area-0.0.0.0]

排查修改AR1

<R1>undo t m Info: Current terminal monitor is off. <R1>sys Enter system view, return user view with Ctrl+Z. [R1]dis [R1]display cu [V200R003C00]

sysname R1

snmp-agent local-engineid 800007DB03000000000000 snmp-agent

clock timezone China-Standard-Time minus 08:00:00

portal local-server load flash:/portalpage.zip

drop illegal-mac alarm

wlan ac-global carrier id other ac id 0

set cpu-usage threshold 80 restore 75

aaa authentication-scheme default authorization-scheme default accounting-scheme default domain default domain default_admin local-user admin password cipher %$%$K8m.Nt84DZ}e#<0`8bmE3Uw}%$%$ local-user admin service-type http

firewall zone Local priority 15

interface GigabitEthernet0/0/0 ip address 192.168.12.1 255.255.255.0 ospf network-type p2p

interface GigabitEthernet0/0/1

interface GigabitEthernet0/0/2

interface GigabitEthernet0/0/2.1 dot1q termination vid 2 ip address 192.168.10.254 255.255.255.0

interface GigabitEthernet0/0/2.20 dot1q termination vid 10 ip address 192.168.20.254 255.255.255.0

interface NULL0

ospf 1 router-id 1.1.1.1 area 0.0.0.0
network 192.168.12.0 0.0.0.255

user-interface con 0 authentication-mode password user-interface vty 0 4 user-interface vty 16 20

wlan ac

Return [R1] int g0/0/2.1 [R1-GigabitEthernet0/0/2.1]undo dot [R1-GigabitEthernet0/0/2.1]undo dot1q t [R1-GigabitEthernet0/0/2.1]undo dot1q termination vid 2 [R1-GigabitEthernet0/0/2.1]undo ip add 192.168.10.254 255.255.255.0 [R1-GigabitEthernet0/0/2.1]q [R1]int g0/0/2.20 [R1-GigabitEthernet0/0/2.20]undo dot [R1-GigabitEthernet0/0/2.20]undo dot1q t [R1-GigabitEthernet0/0/2.20]undo dot1q termination vid 10 [R1-GigabitEthernet0/0/2.20]undo ip add 192.168.20.254 255.255.255.0 [R1-GigabitEthernet0/0/2.20]q [R1]int g0/0/2.1 [R1-GigabitEthernet0/0/2.1]dot [R1-GigabitEthernet0/0/2.1]dot1q t [R1-GigabitEthernet0/0/2.1]dot1q termination vid 10 [R1-GigabitEthernet0/0/2.1]ip add 192.168.10.254 24 [R1-GigabitEthernet0/0/2.1]arp b [R1-GigabitEthernet0/0/2.1]arp broadcast enable [R1-GigabitEthernet0/0/2.1]q [R1]int g0/0/2.20 [R1-GigabitEthernet0/0/2.20]dot [R1-GigabitEthernet0/0/2.20]dot1q t [R1-GigabitEthernet0/0/2.20]dot1q termination vid 20 [R1-GigabitEthernet0/0/2.20]ip add 192.168.20.254 24 [R1-GigabitEthernet0/0/2.20]arp b [R1-GigabitEthernet0/0/2.20]arp broadcast enable [R1-GigabitEthernet0/0/2.20]q [R1]int g0/0/2.40 [R1-GigabitEthernet0/0/2.40]do [R1-GigabitEthernet0/0/2.40]dot1q t [R1-GigabitEthernet0/0/2.40]dot1q termination vid 40 [R1-GigabitEthernet0/0/2.40]ip add 192.168.40.250 24 [R1-GigabitEthernet0/0/2.40]arp b [R1-GigabitEthernet0/0/2.40]arp broadcast enable [R1-GigabitEthernet0/0/2.40]q [R1]ospf [R1-ospf-1]area 0 [R1-ospf-1-area-0.0.0.0]ne [R1-ospf-1-area-0.0.0.0]network 192.168.10.254 0.0.0.0 [R1-ospf-1-area-0.0.0.0]network 192.168.20.254 0.0.0.0 [R1-ospf-1-area-0.0.0.0]network 192.168.40.250 0.0.0.0 [R1-ospf-1-area-0.0.0.0]network 192.168.12.1 0.0.0.0
[R1-ospf-1-area-0.0.0.0] [R1]int g0/0/0 [R1-GigabitEthernet0/0/0]ospf net [R1-GigabitEthernet0/0/0]ospf network-type br [R1-GigabitEthernet0/0/0]ospf network-type broadcast

   排查修改AR2

<R2>undo t m Info: Current terminal monitor is off. <R2>sys Enter system view, return user view with Ctrl+Z. [R2]dis [R2]display cu [R2]display current-configuration [V200R003C00]

sysname R2

snmp-agent local-engineid 800007DB03000000000000 snmp-agent

clock timezone China-Standard-Time minus 08:00:00

portal local-server load flash:/portalpage.zip

drop illegal-mac alarm

wlan ac-global carrier id other ac id 0

set cpu-usage threshold 80 restore 75

acl name A30001 3999
rule 5 deny ip rule 10 permit ip

aaa authentication-scheme default authorization-scheme default accounting-scheme default
domain default domain default_admin local-user admin password cipher %$%$K8m.Nt84DZ}e#<0`8bmE3Uw}%$%$ local-user admin service-type http

firewall zone Local priority 15

interface GigabitEthernet0/0/0 ip address 192.168.12.2 255.255.255.0 ospf timer hello 15

interface GigabitEthernet0/0/1

interface GigabitEthernet0/0/2 ip address 192.168.30.254 255.255.255.0 traffic-filter inbound acl name A30001

interface NULL0

ospf 1 router-id 2.2.2.2 area 0.0.0.0 network 192.168.12.0 0.0.0.0

user-interface con 0 authentication-mode password user-interface vty 0 4 user-interface vty 16 20

wlan ac

return [R2] [R2]int g0/0/2 [R2-GigabitEthernet0/0/2]undo traffic-f [R2-GigabitEthernet0/0/2]undo traffic-filter i [R2-GigabitEthernet0/0/2]undo traffic-filter inbound acl 3999 ^ Error:Too many parameters found at '^' position. [R2-GigabitEthernet0/0/2]undo traffic-filter inbound ?
ipv6 Specify IPv6 <cr> Please press ENTER to execute command [R2-GigabitEthernet0/0/2]undo traffic-filter inbound [R2-GigabitEthernet0/0/2]q [R2]int g0/0/1 [R2-GigabitEthernet0/0/1]q [R2]int g0/0/1 [R2-GigabitEthernet0/0/1]q [R2]int g0/0/0 [R2-GigabitEthernet0/0/0]ospf t [R2-GigabitEthernet0/0/0]ospf timer h [R2-GigabitEthernet0/0/0]ospf timer hello 10 [R2-GigabitEthernet0/0/0]q [R2]ospf [R2-ospf-1]area 0 [R2-ospf-1-area-0.0.0.0]net [R2-ospf-1-area-0.0.0.0]network 192.168.30.254 0.0.0.0 [R2-ospf-1-area-0.0.0.0]network 192.168.12.2 0.0.0.0
[R2-ospf-1-area-0.0.0.0]

   排查修改SW4

<SW4>undo t m Info: Current terminal monitor is off. <SW4>sys Enter system view, return user view with Ctrl+Z. [SW4]dis [SW4]display cu [SW4]display current-configuration

sysname SW4

vlan batch 30

cluster enable ntdp enable ndp enable

drop illegal-mac alarm

diffserv domain default

drop-profile default

aaa authentication-scheme default authorization-scheme default accounting-scheme default domain default domain default_admin local-user admin password simple admin local-user admin service-type http

interface Vlanif1

interface MEth0/0/1

interface GigabitEthernet0/0/1 port hybrid pvid vlan 30

interface GigabitEthernet0/0/2 port link-type trunk port trunk allow-pass vlan 30

interface GigabitEthernet0/0/3

interface GigabitEthernet0/0/4

interface GigabitEthernet0/0/5

interface GigabitEthernet0/0/6

interface GigabitEthernet0/0/7

interface GigabitEthernet0/0/8

interface GigabitEthernet0/0/9

interface GigabitEthernet0/0/10

interface GigabitEthernet0/0/11

interface GigabitEthernet0/0/12

interface GigabitEthernet0/0/13

interface GigabitEthernet0/0/14

interface GigabitEthernet0/0/15

interface GigabitEthernet0/0/16

interface GigabitEthernet0/0/17

interface GigabitEthernet0/0/18

interface GigabitEthernet0/0/19

interface GigabitEthernet0/0/20

interface GigabitEthernet0/0/21

interface GigabitEthernet0/0/22

interface GigabitEthernet0/0/23

interface GigabitEthernet0/0/24

interface NULL0

user-interface con 0 user-interface vty 0 4

return [SW4] [SW4]int g0/0/1 [SW4-GigabitEthernet0/0/1]undo port h [SW4-GigabitEthernet0/0/1]undo port hybrid pvid vlan [SW4-GigabitEthernet0/0/1]p [SW4-GigabitEthernet0/0/1]port l [SW4-GigabitEthernet0/0/1]port link-t [SW4-GigabitEthernet0/0/1]port link-type a [SW4-GigabitEthernet0/0/1]port link-type access [SW4-GigabitEthernet0/0/1]p [SW4-GigabitEthernet0/0/1]port de [SW4-GigabitEthernet0/0/1]port default vlan 30 [SW4-GigabitEthernet0/0/1]q [SW4]int g0/0/2 [SW4-GigabitEthernet0/0/2]q
[SW4]clear configuration interface g0/0/2 Warning: All configurations of the interface will be cleared, and its state will be shutdown. Continue? [Y/N] :y Info: Total execute 2 command(s), 2 successful, 0 failed. [SW4]int g0/0/2 [SW4-GigabitEthernet0/0/2]undo shutdown Info: Interface GigabitEthernet0/0/2 is not shutdown. [SW4-GigabitEthernet0/0/2]p [SW4-GigabitEthernet0/0/2]port l [SW4-GigabitEthernet0/0/2]port link-t [SW4-GigabitEthernet0/0/2]port link-type a [SW4-GigabitEthernet0/0/2]port link-type access [SW4-GigabitEthernet0/0/2]p [SW4-GigabitEthernet0/0/2]port de [SW4-GigabitEthernet0/0/2]port default vlan 30

     验证测试:
		 
		 ![](http://i2.51cto.com/images/blog/201801/24/bb1b78f220c644eee46126c97086e044.png?x-oss-process=image/watermark,size_16,text_QDUxQ1RP5Y2a5a6i,color_FFFFFF,t_30,g_se,x_10,y_10,shadow_20,type_ZmFuZ3poZW5naGVpdGk=)
		 
		 ![](http://i2.51cto.com/images/blog/201801/24/a26b6ca2c2bef39666ec6a6aa2505eca.png?x-oss-process=image/watermark,size_16,text_QDUxQ1RP5Y2a5a6i,color_FFFFFF,t_30,g_se,x_10,y_10,shadow_20,type_ZmFuZ3poZW5naGVpdGk=)
		 
		 ![](http://i2.51cto.com/images/blog/201801/24/f98196724875892f14dfdb25fe309b42.png?x-oss-process=image/watermark,size_16,text_QDUxQ1RP5Y2a5a6i,color_FFFFFF,t_30,g_se,x_10,y_10,shadow_20,type_ZmFuZ3poZW5naGVpdGk=)