拓扑图
设计
划分6个网段
172.16.0.0/19 A0
172.16.32.0/19 A1
172.16.64.0/19 A2
172.16.96.0/19 A3
172.16.128.0/19 A4
172.16.160.0/19 RIP
172.16.0.0/19 A0
172.16.0.0/24 R5
172.16.1.0/24 R6
172.16.2.0/24 R7
172.16.3.0/29 MA
172.16.32.0/19---- A1
172.16.32.0/24 R1
172.16.33.0/24 R2
172.16.34.0/24 R3
172.16.35.0/29 MA
172.16.64.0/19 A2
172.16.64.0/24 R11
172.16.65.0 R6-R11
172.16.65.128/30 R11-R12
172.16.96.0/19 A3
172.16.96.0/24
172.16.97.0/24
172.16.98.0/30
172.16.99.0/30
172.16.128.0/19 A4
172.16.128.0/24
172.16.192.0/30
172.16.160.0/19 RIP
172.16.160.0/24
172.16.161.0/24
给网络配上合适的IP地址,并给ABR写一条缺省指向路由器
[r3]ip route-static 0.0.0.0 0 34.1.1.2
[r5]ip route-static 0.0.0.0 0 45.1.1.2
[r6]ip route-static 0.0.0.0 0 46.1.1.2
[r7]ip route-static 0.0.0.0 0 47.1.1.2
构建MGRE环境,R3为中心站点
中心站点:R3
interface Tunnel0/0/0
ip address 172.16.3.1 255.255.255.248
tunnel-protocol gre p2mp
source 34.1.1.1
ospf network-type broadcast
nhrp entry multicast dynamic
nhrp network-id 100
分支:R5
interface Tunnel0/0/0
ip address 172.16.3.2 255.255.255.248
tunnel-protocol gre p2mp
source g0/0/0
ospf network-type broadcast
ospf dr-priority 0
nhrp network-id 100
nhrp entry 172.16.0.129 34.1.1.1 register
分支:R6
interface Tunnel0/0/0
ip address 172.16.3.3 255.255.255.248
tunnel-protocol gre p2mp
source g0/0/0
ospf network-type broadcast
ospf dr-priority 0
nhrp network-id 100
nhrp entry 172.16.3.1 34.1.1.1 register
分支:R7
interface Tunnel0/0/0
ip address 172.16.3.4 255.255.255.248
tunnel-protocol gre p2mp
source g0/0/0
ospf network-type broadcast
ospf dr-priority 0
nhrp network-id 100
nhrp entry 172.16.3.1 34.1.1.1 register
起ospf
ospf 1 router-id 3.3.3.3
area 0.0.0.0
network 172.16.3.1 0.0.0.0
ospf 1 router-id 5.5.5.5
area 0.0.0.0
network 172.16.0.1 0.0.0.0
network 172.16.3.2 0.0.0.0
ospf 1 router-id 6.6.6.6
area 0.0.0.0
network 172.16.1.1 0.0.0.0
network 172.16.3.3 0.0.0.0
ospf 1 router-id 7.7.7.7
area 0.0.0.0
network 172.16.2.1 0.0.0.0
network 172.16.3.4 0.0.0.0
[R1]ospf 1 router-id 1.1.1.1
[R1-ospf-1]area 1
[R1-ospf-1-area-0.0.0.1]network 172.16.32.1 0.0.0.0
[R1-ospf-1-area-0.0.0.1]network 172.16.35.1 0.0.0.0
[R2]ospf 1 router-id 2.2.2.2
[R2-ospf-1]area 1
[R2-ospf-1-area-0.0.0.1]network 172.16.33.1 0.0.0.0
[R2-ospf-1-area-0.0.0.1]network 172.16.35.2 0.0.0.0
[R3]ospf 1
[R3-ospf-1]area 1
[R3-ospf-1-area-0.0.0.1]network 172.16.34.0 0.0.0.255
[R3-ospf-1-area-0.0.0.1]network 172.16.35.3 0.0.0.0
[R6]ospf 1
[R6-ospf-1]a
[R6-ospf-1]area 2
[R6-ospf-1-area-0.0.0.2]network 172.16.65.0 0.0.0.3
[R11]ospf 1 router-id 11.11.11.11
[R11-ospf-1]area 2
[R11-ospf-1-area-0.0.0.2]network 172.16.64.0 0.0.0.255
[R11-ospf-1-area-0.0.0.2]network 172.16.65.0 0.0.0.3
[R12-rip-1]version 2
[R12-rip-1]undo summary
[R12-rip-1]network 172.16.0.0
[R12]ospf 1 router-id 12.12.12.12
[R12-ospf-1]import-route rip 1
[R12-ospf-1]area 2
[R12-ospf-1-area-0.0.0.2]network 172.16.65.128 0.0.0.3
[R7-ospf-1]area 3
[R7-ospf-1-area-0.0.0.3]net
[R7-ospf-1-area-0.0.0.3]network 172.16.98.0 0.0.0.3
[R7-ospf-1-area-0.0.0.3]
[R8]ospf 1 router-id 8.8.8.8
[R8-ospf-1]net
[R8-ospf-1]a
[R8-ospf-1]area 3
[R8-ospf-1-area-0.0.0.3]net
[R8-ospf-1-area-0.0.0.3]network 172.16.96.0 0.0.0.255
[R8-ospf-1-area-0.0.0.3]network 172.16.98.0 0.0.0.3
[R9-ospf-1]area 3
[R9-ospf-1-area-0.0.0.3]net
[R9-ospf-1-area-0.0.0.3]network 172.16.97.0 0.0.0.255
[R9-ospf-1-area-0.0.0.3]net
[R9-ospf-1-area-0.0.0.3]network 172.16.99.0 0.0.0.3
[R9-ospf-1-area-0.0.0.3]
[R9-ospf-1]area 4
[R9-ospf-1-area-0.0.0.4]net
[R9-ospf-1-area-0.0.0.4]network network 172.16.192.0 0.0.0.3
减少数目:
[R6-ospf-1-area-0.0.0.2]abr-summary 172.16.64.0 255.255.224.0
[R3-ospf-1-area-0.0.0.1]abr-summary 172.16.32.0 255.255.224.0
[R7-ospf-1-area-0.0.0.3]abr-summary 172.16.96.0 255.255.224.0
[R12-ospf-1]asbr-summary 172.16.160.0 255.255.224.0
区域1做成stub区域,区域2和3做成nssa区域
[R1-ospf-1-area-0.0.0.1]stub
[R2-ospf-1-area-0.0.0.1]stub
[R3-ospf-1-area-0.0.0.1]stub no-summary
[R6-ospf-1-area-0.0.0.2]nssa
[R11-ospf-1-area-0.0.0.2]nssa
[R12-ospf-1-area-0.0.0.2]nssa
[R7-ospf-1-area-0.0.0.3]nssa no-summary
[R8-ospf-1-area-0.0.0.3]nssa
[R9-ospf-1-area-0.0.0.3]nssa
解决area 3和area 4通信问题
[R9]ospf 1 router-id 9.9.9.9
[R9-ospf-1]a
[R9-ospf-1]area 3
[R9-ospf-1-area-0.0.0.3]net
[R9-ospf-1-area-0.0.0.3]network 172.16.99.0 0.0.0.3
[R9-ospf-1-area-0.0.0.3]network 172.16.97.0 0.0.0.255
[R9-ospf-1-area-0.0.0.3]q
[R9-ospf-1]ospf 2 route-id 9.9.9.9
[R9-ospf-1]area 4
[R9-ospf-1-area-0.0.0.4]network 172.16.128.0 0.0.0.255
[R9-ospf-1-area-0.0.0.4]net
[R9-ospf-1-area-0.0.0.4]network 172.16.192.0 0.0.0.3
[R9-ospf-1-area-0.0.0.4]
在R9下放缺省
[R9-ospf-2]default-route-advertise
NAT:在3 5 6 7路由器上做
[R3]acl 2000
[R3-acl-basic-2000]r
[R3-acl-basic-2000]ru
[R3-acl-basic-2000]rule p
[R3-acl-basic-2000]rule permit s
[R3-acl-basic-2000]rule permit source any
[R3-acl-basic-2000]q
[R3]int g0/0/1
[R3-GigabitEthernet0/0/1]nat o
[R3-GigabitEthernet0/0/1]nat outbound 2000
[R3-GigabitEthernet0/0/1]
[R5]acl 2000
[R5-acl-basic-2000]ru
[R5-acl-basic-2000]rule p
[R5-acl-basic-2000]rule permit s
[R5-acl-basic-2000]rule permit source any
[R5-acl-basic-2000]q
[R5]int g0/0/0
[R5-GigabitEthernet0/0/0]nat ou
[R5-GigabitEthernet0/0/0]nat outbound 2000
[R5-GigabitEthernet0/0/0]
R6]acl 2000
[R6-acl-basic-2000]ru
[R6-acl-basic-2000]rule p
[R6-acl-basic-2000]rule permit so
[R6-acl-basic-2000]rule permit source any
[R6-acl-basic-2000]q
[R6]int g0/0/0
[R6-GigabitEthernet0/0/0]nat out
[R6-GigabitEthernet0/0/0]nat outbound 2000
[R7]acl 2000
[R7-acl-basic-2000]ru
[R7-acl-basic-2000]rule p
[R7-acl-basic-2000]rule permit so
[R7-acl-basic-2000]rule permit source ant
^
Error: Wrong parameter found at ‘^’ position.
[R7-acl-basic-2000]rule permit source an
[R7-acl-basic-2000]rule permit source any
[R7-acl-basic-2000]q
[R7]int g0/0/0
[R7-GigabitEthernet0/0/0]nat o
[R7-GigabitEthernet0/0/0]nat outbound 2000