1,地址划分
[a0]172.16.0.0/19
[a1]172.16.32.0/19
[a2]172.16.64.0/19
[a3]172.16.96.0/19
[a4]172.16.128.0/19
[rip]172.16.160.0/19
2,配置IP地址及环回地址
(缺省路由)
[R3]ip route-static 0.0.0.0 0 34.0.0.2
[R5]ip route-static 0.0.0.0 0 45.0.0.2
[R6]ip route-static 0.0.0.0 0 46.0.0.2
[R7]ip route-static 0.0.0.0 0 47.0.0.2
(测试)
3. 运行OSPF
4,搭建MGRE环境
5,重新发布
将rip的路由导入
[R12-ospf-1]import-route rip 1
将area 4的路由导入不再将ospf进程1的路由导入进程2,用缺省代替,使得全网可通
[R9-ospf-1]import-route ospf 2
[R10]ip route-static 0.0.0.0 0 172.16.129.1
6. 优化
[R3-ospf-1-area-0.0.0.1]abr-summary 172.16.32.0 255.255.224.0
[R6-ospf-1-area-0.0.0.2]abr-summary 172.16.64.0 255.255.224.0
[R7-ospf-1-area-0.0.0.3]abr-summary 172.16.96.0 255.255.224.0
[R9-ospf-1]asbr-summary 172.16.128.0 255.255.224.0
[R12-ospf-1]asbr-summary 172.16.160.0 255.255.224.0
area1:
[R1-ospf-1-area-0.0.0.1]stub
[R2-ospf-1-area-0.0.0.1]stub
[R3-ospf-1-area-0.0.0.1]stub no-summary
area2:
[R6-ospf-1-area-0.0.0.2]nssa no-summary
[R11-ospf-1-area-0.0.0.2]nssa
[R12-ospf-1-area-0.0.0.2]nssa
area3:
[R7-ospf-1-area-0.0.0.3]nssa no-summary
[R8-ospf-1-area-0.0.0.3]nssa
[R9-ospf-1-area-0.0.0.3]nssa
7,做空接口
[R3]ip route-static 172.16.32.0 19 NULL 0
[R6]ip route-static 172.16.64.0 19 NULL 0
[R7]ip route-static 172.16.96.0 19 NULL 0
[R9]ip route-static 172.16.128.0 19 NULL 0
[R12]ip route-static 172.16.160.0 19 NULL 0
8,NAT配置
9,加快收敛
[R6-GigabitEthernet0/0/0]ospf network-type p2p
[R7-GigabitEthernet0/0/1]ospf network-type p2p
[R8-GigabitEthernet0/0/0]ospf network-type p2p
[R8-GigabitEthernet0/0/1]ospf network-type p2p
[R9-GigabitEthernet0/0/0]ospf network-type p2p
[R9-GigabitEthernet0/0/1]ospf network-type p2p
[R10-GigabitEthernet0/0/0]ospf network-type p2p
[R11-GigabitEthernet0/0/0]ospf network-type p2p
[R11-GigabitEthernet0/0/1]ospf network-type p2p
[R12-GigabitEthernet0/0/0]ospf network-type p2p
10,进行区域认证的配置,保证更新安全
例:[r1-ospf-1-area-0.0.0.1]authentication-mode md5 1 cipher 123456