场景再现
行政部新入职同事焦急地喊:“电脑连不上网啊!”
你冲过去一看——IP地址冲突。
行政小妹委屈道:“之前技术留的IP表,我明明按顺序填的…”
这就是手动分配IP的痛:
- 📉 新设备接入需手动记录IP/MAC
- 💥 IP冲突导致断网频发
- ⏳ 位置调整需重新配置
- 🚫 访客网络无法快速开通
DHCP正是解药——自动分配IP地址,让网络管理效率提升300%!

本文分别列举路由器和交换机配置DHCP的方法:网络拓扑规划(经典中小企方案)

路由器DHCP配置
sysname Router#undo info-centerenable#dhcpenable#acl number 2000rule 5 permitsource172.16.0.0 0.0.255.255rule 10 permitsource192.168.1.0 0.0.0.255#ip pool Quanjugateway-list 192.168.1.254network 192.168.1.0 mask 255.255.255.0#aaaauthentication-scheme defaultauthorization-scheme defaultaccounting-scheme defaultdomain defaultdomain default_adminlocal-user admin password cipher OOCM4m($F4ajUn1vMEIBNUw#local-user admin service-type http#firewall zone Localpriority 16#interface Ethernet0/0/0description ISPip address 114.114.114.113 255.255.255.0natptenablenat outbound 2000#interface GigabitEthernet0/0/0description dT:Core-SW-Gi0/0/1ip address 10.1.1.1 255.255.255.252#interface GigabitEthernet0/0/1ip address 192.168.1.254 255.255.255.0dhcpselectglobal#ip route-static 172.16.0.0 255.255.0.0 10.1.1.2#
交换机DHCP配置
sysname Core-SW#undo info-centerenable#vlan batch 10 20 30 100#clusterenablentdpenablendpenable#lldpenable#dhcpenable#aaaauthentication-scheme defaultauthorization-scheme defaultaccounting-scheme defaultdomain defaultdomain default_adminlocal-user admin password cipher &A!ZVW&T.21I>,Z,88J\:Q!!local-user admin privilege level 15local-user admin service-type telnet ssh#interface Vlanif10description For-officeip address 172.16.10.254 255.255.255.0dhcpselectinterfacedhcp server excluded-ip-address 172.16.10.251 172.16.10.253dhcp server lease day 1 hour 12 minute 0dhcp server dns-list 172.16.10.254#interface Vlanif20description For-Managerip address 172.16.20.254 255.255.255.0dhcpselectinterfacedhcp server excluded-ip-address 172.16.20.250 172.16.20.253dhcp server lease day 2 hour 0 minute 0dhcp server dns-list 172.16.20.254#interface Vlanif30description For-financeip address 172.16.30.254 255.255.255.0dhcpselectinterfacedhcp server excluded-ip-address 172.16.30.200 172.16.30.253dhcp server dns-list 172.16.30.254#interface Vlanif100description uT:Router-Hulianip address 10.1.1.2 255.255.255.252#interface GigabitEthernet0/0/1description uT:Router-Gi0/0/0port link-type accessport default vlan 100#interface GigabitEthernet0/0/2description dT:Acc-SW1-Eth0/0/1port link-type trunkundo port trunk allow-pass vlan 1port trunk allow-pass vlan 10 20 30#interface GigabitEthernet0/0/3description dT:Acc-SW2-Eth0/0/1port link-type trunkundo port trunk allow-pass vlan 1port trunk allow-pass vlan 10 20 30#interface GigabitEthernet0/0/4description dT:Acc-SW3-Eth0/0/1port link-type trunkundo port trunk allow-pass vlan 1port trunk allow-pass vlan 10 20 30#ip route-static 0.0.0.0 0.0.0.0 10.1.1.1 description Chukou#stelnet serverenablessh authentication-type default passwordssh user adminssh user admin authentication-type passwordssh user admin service-type stelnet#user-interface con 0user-interface vty 0 4authentication-mode aaaprotocol inbound ssh#
验证PC动态获取IP地址





验证PC通过NAT访问ISP


通过抓包查看内网PC访问114.114.114.114公网地址通过路由器的公网114.114.114.113出去的,地址映射成功。

END





发表回复