成长值: 56200
|
拓扑如下:
R1---------------------------ASA---------------------------R2
line con 0
exec-timeout 0 0
privilege level 15
logging synchronous
line aux 0
exec-timeout 0 0
privilege level 15
logging synchronous
line vty 0 4
login
R2#show running-config | s line
line con 0
exec-timeout 0 0
privilege level 15
logging synchronous
line aux 0
exec-timeout 0 0
privilege level 15
logging synchronous
line vty 0 4
no login
R2#
R2#show running-config | s line
line vty 0 4
no login
R2# show line
R2# show line
Tty Typ Tx/Rx A Modem Roty AccO AccI Uses Noise Overruns Int
* 0 CTY - - - - - 0 0 0/0 -
129 AUX 9600/9600 - - - - - 0 0 0/0 -
130 VTY - - - - - 0 0 0/0 -
131 VTY - - - - - 0 0 0/0 -
132 VTY - - - - - 0 0 0/0 -
133 VTY - - - - - 0 0 0/0 -
134 VTY - - - - - 0 0 0/0 -
Line(s) not in async mode -or- with no hardware support:
1-128
R1#show line
Tty Typ Tx/Rx A Modem Roty AccO AccI Uses Noise Overruns Int
* 0 CTY - - - - - 0 0 0/0 -
129 AUX 9600/9600 - - - - - 0 0 0/0 -
130 VTY - - - - - 0 0 0/0 -
131 VTY - - - - - 0 0 0/0 -
132 VTY - - - - - 0 0 0/0 -
133 VTY - - - - - 0 0 0/0 -
134 VTY - - - - - 0 0 0/0 -
刚开始没有telnet的时候R1 * 0 CTY为0,R2 也全部是0
130 VTY - - - - - 0 0 0/0 -
131 VTY - - - - - 0 0 0/0 -
132 VTY - - - - - 0 0 0/0 -
133 VTY - - - - - 0 0 0/0 -
134 VTY - - - - - 0 0 0/0 -
现在telnet登到R2上面不退出telnet 用ctrl+shift+6 X 挂着,不退出。
1 R1#telnet 201.100.1.1
Trying 201.100.1.1 ... Open
R2>
R2>
2 R1#telnet 201.100.1.2
Trying 201.100.1.2 ... Open
R2>
3 R1#telnet 201.100.1.3
Trying 201.100.1.3 ... Open
R2>
R2>
4 R1#telnet 201.100.1.1
Trying 201.100.1.1 ... Open
R2>
5 R1#telnet 201.100.1.2
Trying 201.100.1.2 ... Open
R2>
6 R1#telnet 201.100.1.3
Trying 201.100.1.3 ...
% Connection refused by remote host
第六次telnet的时候就没有办法telnet上去了。
R1#show users
Line User Host(s) Idle Location
* 0 con 0 201.100.1.1 00:03:13
201.100.1.2 00:03:07
201.100.1.3 00:02:52
201.100.1.1 00:02:46
201.100.1.2 00:02:41
Interface User Mode Idle Peer Address
R1#show line
R1#show line
Tty Typ Tx/Rx A Modem Roty AccO AccI Uses Noise Overruns Int
* 0 CTY - - - - - 5 0 0/0 -
129 AUX 9600/9600 - - - - - 0 0 0/0 -
130 VTY - - - - - 0 0 0/0 -
131 VTY - - - - - 0 0 0/0 -
132 VTY - - - - - 0 0 0/0 -
133 VTY - - - - - 0 0 0/0 -
134 VTY - - - - - 0 0 0/0 -
Line(s) not in async mode -or- with no hardware support:
1-128
R1#telnet 201.100.1.3
Trying 201.100.1.3 ...
% Connection refused by remote host
R1#telnet 201.100.1.3
Trying 201.100.1.3 ...
% Connection refused by remote host
R1#telnet 201.100.1.3
Trying 201.100.1.3 ...
% Connection refused by remote host
R1#telnet 201.100.1.3
Trying 201.100.1.3 ...
% Connection refused by remote host
R1#telnet 201.100.1.3
Trying 201.100.1.3 ...
% Connection refused by remote host
R1#show users
Line User Host(s) Idle Location
* 0 con 0 201.100.1.1 00:04:04
201.100.1.2 00:03:58
201.100.1.3 00:03:44
201.100.1.1 00:03:38
201.100.1.2 00:03:33
Interface User Mode Idle Peer Address
R1#show line
R1#show line
Tty Typ Tx/Rx A Modem Roty AccO AccI Uses Noise Overruns Int
* 0 CTY - - - - - 5 0 0/0 -
129 AUX 9600/9600 - - - - - 0 0 0/0 -
130 VTY - - - - - 0 0 0/0 -
131 VTY - - - - - 0 0 0/0 -
132 VTY - - - - - 0 0 0/0 -
133 VTY - - - - - 0 0 0/0 -
134 VTY - - - - - 0 0 0/0 -
Line(s) not in async mode -or- with no hardware support:
1-128
R1#telnet 201.100.1.3
Trying 201.100.1.3 ...
% Connection refused by remote host
R1#telnet 201.100.1.3
Trying 201.100.1.3 ...
% Connection refused by remote host
R1#telnet 201.100.1.3
Trying 201.100.1.3 ...
% Connection refused by remote host
R1#telnet 201.100.1.3
Trying 201.100.1.3 ...
% Connection refused by remote host
R1#telnet 201.100.1.3
Trying 201.100.1.3 ...
% Connection refused by remote host
R1#show users
Line User Host(s) Idle Location
* 0 con 0 201.100.1.1 00:04:04
201.100.1.2 00:03:58
201.100.1.3 00:03:44
201.100.1.1 00:03:38
201.100.1.2 00:03:33
Interface User Mode Idle Peer Address
R1#show line
R1#show line
Tty Typ Tx/Rx A Modem Roty AccO AccI Uses Noise Overruns Int
* 0 CTY - - - - - 5 0 0/0 -
129 AUX 9600/9600 - - - - - 0 0 0/0 -
130 VTY - - - - - 0 0 0/0 -
131 VTY - - - - - 0 0 0/0 -
132 VTY - - - - - 0 0 0/0 -
133 VTY - - - - - 0 0 0/0 -
134 VTY - - - - - 0 0 0/0 -
Line(s) not in async mode -or- with no hardware support:
1-128
每telnet成功一次* 0 CTY 这个值会增加1。
R2#show users
Line User Host(s) Idle Location
* 0 con 0 idle 00:00:00
130 vty 0 idle 00:05:31 10.1.1.1
131 vty 1 idle 00:05:25 10.1.1.1
132 vty 2 idle 00:05:09 10.1.1.1
133 vty 3 idle 00:05:04 10.1.1.1
134 vty 4 idle 00:04:59 10.1.1.1
Interface User Mode Idle Peer Address
R2#show line
R2#show line
Tty Typ Tx/Rx A Modem Roty AccO AccI Uses Noise Overruns Int
* 0 CTY - - - - - 0 0 0/0 -
129 AUX 9600/9600 - - - - - 0 0 0/0 -
* 130 VTY - - - - - 1 0 0/0 -
* 131 VTY - - - - - 1 0 0/0 -
* 132 VTY - - - - - 1 0 0/0 -
* 133 VTY - - - - - 1 0 0/0 -
* 134 VTY - - - - - 1 0 0/0 -
Line(s) not in async mode -or- with no hardware support:
1-128
显然,对于R2来说,每当有一个用户登陆上来,它会点用一条line等到所有的line都占了的时候R1就没有办法在telnet到R2上面了。
ciscoasa# show conn
5 in use, 6 most used
TCP outside 201.100.1.1:23 inside 10.1.1.1:15525, idle 0:06:53, bytes 53, flags UIO
TCP outside 201.100.1.1:23 inside 10.1.1.1:61718, idle 0:07:20, bytes 60, flags UIO
TCP outside 201.100.1.3:23 inside 10.1.1.1:56955, idle 0:06:59, bytes 68, flags UIO
TCP outside 201.100.1.2:23 inside 10.1.1.1:38377, idle 0:06:48, bytes 53, flags UIO
TCP outside 201.100.1.2:23 inside 10.1.1.1:39815, idle 0:07:14, bytes 53, flags UIO
此时ASA上的tcp session也是5条。
现在合部退出。
R2#show line
Tty Typ Tx/Rx A Modem Roty AccO AccI Uses Noise Overruns Int
* 0 CTY - - - - - 0 0 0/0 -
129 AUX 9600/9600 - - - - - 0 0 0/0 -
130 VTY - - - - - 1 0 0/0 -
131 VTY - - - - - 1 0 0/0 -
132 VTY - - - - - 1 0 0/0 -
133 VTY - - - - - 1 0 0/0 -
134 VTY - - - - - 1 0 0/0 -
Line(s) not in async mode -or- with no hardware support:
1-128
R1多次telnet到R2上面,不ctrl + shift +6 X挂着,而是直接退出。
R1#telnet 201.100.1.1
Trying 201.100.1.1 ... Open
R2>quit
[Connection to 201.100.1.1 closed by foreign host]
R1#telnet 201.100.1.1
Trying 201.100.1.1 ... Open
R2>qui
[Connection to 201.100.1.1 closed by foreign host]
R1#telnet 201.100.1.1
Trying 201.100.1.1 ... Open
R2>quit
[Connection to 201.100.1.1 closed by foreign host]
R1#telnet 201.100.1.1
Trying 201.100.1.1 ... Open
R2>quit
[Connection to 201.100.1.1 closed by foreign host]
R1#telnet 201.100.1.1
Trying 201.100.1.1 ... Open
R2>quit
[Connection to 201.100.1.1 closed by foreign host]
R1#
R1#telnet 201.100.1.1
Trying 201.100.1.1 ... Open
R2>
R2>quit
[Connection to 201.100.1.1 closed by foreign host]
R1#show line
Tty Typ Tx/Rx A Modem Roty AccO AccI Uses Noise Overruns Int
* 0 CTY - - - - - 11 0 0/0 -
129 AUX 9600/9600 - - - - - 0 0 0/0 -
130 VTY - - - - - 0 0 0/0 -
131 VTY - - - - - 0 0 0/0 -
132 VTY - - - - - 0 0 0/0 -
133 VTY - - - - - 0 0 0/0 -
134 VTY - - - - - 0 0 0/0 -
Line(s) not in async mode -or- with no hardware support:
1-128
R1 六次从5变成了11
R2#show line
Tty Typ Tx/Rx A Modem Roty AccO AccI Uses Noise Overruns Int
* 0 CTY - - - - - 0 0 0/0 -
129 AUX 9600/9600 - - - - - 0 0 0/0 -
130 VTY - - - - - 7 0 0/0 -
131 VTY - - - - - 1 0 0/0 -
132 VTY - - - - - 1 0 0/0 -
133 VTY - - - - - 1 0 0/0 -
134 VTY - - - - - 1 0 0/0 -
Line(s) not in async mode -or- with no hardware support:
1-128
增加的6次全部在line 130下面。
命令总结:
telnet 挂着的命令:ctrl + shift + 6 X
恢复的命令:直接回车,回到上次telnet的连接。或者。
R1#resume ?
/debug Print parameter changes & messages
/echo Perform local echo
/line Enable telnet line mode
/next Step to next network connection
/nodebug Do not print parameter changes & messages
/noecho Disable local echo
/noline Disable telnet line mode
/nostream Disable stream processing
/set Set X3 connection options
/stream Enable stream processing
<1-4> The number of an active network connection
WORD The name of an active network connection or Connection options
<cr>
对于telnet客户端来说。R1#show line
Tty Typ Tx/Rx A Modem Roty AccO AccI Uses Noise Overruns Int
* 0 CTY - - - - - 15 0 0/0 -
每次telnet成功一次加1.
对于telnet server端R2来说
R2#show line
Tty Typ Tx/Rx A Modem Roty AccO AccI Uses Noise Overruns Int
* 0 CTY - - - - - 0 0 0/0 -
129 AUX 9600/9600 - - - - - 0 0 0/0 -
* 130 VTY - - - - - 8 0 0/0 -
* 131 VTY - - - - - 2 0 0/0 -
* 132 VTY - - - - - 2 0 0/0 -
* 133 VTY - - - - - 2 0 0/0 -
134 VTY - - - - - 1 0 0/0 -
Line(s) not in async mode -or- with no hardware support:
1-128
每当有一个客户上来占用一条line.
|
|