题目:
实操图:
一、配置Ip:
区域 0
R3:
34.0.0.1/24
ip route172.16.1-static 0.0.0.0 0 34.0.0.2
R4(ISP):
34.0.0.2/24
45.0.0.2/24
46.0.0.2/24
47.0.0.2/24
环回:
4.4.4.4/24
R5:
45.0.0.1/24
ip router-static 0.0.0.0 0 45.0.0.2
R6:
46.0.0.1/24
ip router-static 0.0.0.0 0 46.0.0.2
R7:
47.0.0.1/24
ip router-static 0.0.0.0 0 47.0.0.2
检验公网连接:
R3:ping 45.0.0.1,46.0.0.1,47.0.0.1
R5:ping 46.0.0.1 47.0.0.1
R6:ping 47.0.0.1
配置R3、R5、R6、R7中以R3为中心站点的MGRE环境:
R3:
int t 0/0/0
ip address 172.16.1.1 29
tunnel-protocol gre p2mp
source 34.0.0.1
nhrp network-id 100
nhrp entry multicast dynamic — 建立伪广播
R5:
int t0/0/0
ip address 172.16.1.2 29
tunnel-protocol gre p2mp
source Serial 4/0/0
nhrp network-id 100
nhrp entry 172.16.1.1 34.0.0.1 register
环回: 172.16.2.1 24
R6:
int t0/0/0
ip address 172.16.1.3 29
tunnel-protocol gre p2mp
source Serial 4/0/0
nhrp network-id 100
nhrp entry 172.16.1.1 34.0.0.1 register
环回: 172.16.3.1 24
R7:
int t0/0/0
ip address 172.16.1.4 29
tunnel-protocol gre p2mp
source GigabitEthernet 0/0/0
nhrp network-id 100
nhrp entry 172.16.1.1 34.0.0.1 register
环回: 172.16.4.1 24
R3、R5、R6、R7配置MGRE后路由连接情况:
将R3,R5,R6,R7接口网络类型改为p2mp
再输入display ospf peer brief有
区域1:
R1:
g0/0/0 172.16.33.1/29
int loopback0 172.16.34.1 24
R2:
g0/0/0 172.16.33.2/29
int loopback0 172.16.35.1 24
R3:
g0/0/0 172.16.33.3 29
int loopback0 172.16.36.1 24
检验区域1连接情况:
R1ping 172.16.33.2 172.16.33.3
区域2:
R6:
g0/0/0 172.16.65.1 29
R11:
g0/0/0 172.16.65.2 29
loopback0 172.16.66.1 24
g0/0/1 172.16.65.9 29
R12:
g0/0/0 172.16.65.10 29
loopback0:172.16.160.1 20
loopback1:172.16.176.1 20
rip:
160.16.160.0/19
172.16.160.0/20
172.16.176.0/20
由R11ping 172.16.65.1 172.16.65.10
area 3:
R7:
g0/0/1 172.16.97.1 29
R8:
g0/0/0 172.16.97.2 29
loopback0:172.16.98.1 24
g0/0/1 172.16.97.9 29
R9:
g0/0/0 172.16.97.10 29
由R8 ping 172.16.97.1 172.16.97.10
area 4:
R9:
g0/0/1 172.16.129.1 29
loopback0 172.16.130.1 24
R10:
g0/0/0 172.16.129.2 29
loopback0 192.16.131.1 24
由R9ping172.16.129.2
二、启动ospf进程
R1:
ospf 1 router-id 1.1.1.1
[R1-ospf-1]a 1
[R1-ospf-1-area-0.0.0.1]network 172.16.0.0 0.0.255.255
R2:
ospf 1 router-id 2.2.2.2
[R2-ospf-1]a 1
[R2-ospf-1-area-0.0.0.1]network 172.16.0.0 0.0.255.255
R3:
区域1:
ospf 1 router-id 3.3.3.3
[R3-ospf-1]a 1
[R3-ospf-1-area-0.0.0.1]network 172.16.32.0 0.0.7.255
区域0:
[R3-ospf-1-area-0.0.0.1]a 0
[R3-ospf-1-area-0.0.0.0]net
[R3-ospf-1-area-0.0.0.0]network 172.16.1.1 0.0.0.0
R5:
ospf 1 router-id 5.5.5.5
[R5-ospf-1]a 0
[R5-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.255.255
R6:
area 0
ospf 1 router-id 6.6.6.6
[R6-ospf-1]a 0
[R6-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.3.255
area 2
[R6-ospf-1-area-0.0.0.0]a 2
[R6-ospf-1-area-0.0.0.2]net
[R6-ospf-1-area-0.0.0.2]network 172.16.65.1 0.0.0.0
R11:
[R11]ospf 1 r
[R11]ospf 1 router-id 11.11.11.11
[R11-ospf-1]a 2
[R11-ospf-1-area-0.0.0.2]network 172.16.0.0 0.0.255.255
R12:
[R12]ospf 1 router-id 12.12.12.12
[R12-ospf-1]a 2
[R12-ospf-1-area-0.0.0.2]network 172.16.65.10 0.0.0.0
rip宣告:
[R12]rip
[R12-rip-1]v 2
[R12-rip-1]network 172.16.0.0
R7:
area 0:
[R7]ospf 1 router-id 7.7.7.7
[R7-ospf-1]a 0
[R7-ospf-1-area-0.0.0.0]net
[R7-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.7.255
area 3:
[R7-ospf-1-area-0.0.0.0]a 3
[R7-ospf-1-area-0.0.0.3]net
[R7-ospf-1-area-0.0.0.3]network 172.16.97.1 0.0.0.0
R8:
[R8]ospf 1 router-id 8.8.8.8
[R8-ospf-1]a 3
[R8-ospf-1-area-0.0.0.3]net
[R8-ospf-1-area-0.0.0.3]network 172.16.0.0 0.0.255.255
R9:
[R9]ospf 1 router-id 9.9.9.9
[R9-ospf-1]
[R9-ospf-1]a 3
[R9-ospf-1-area-0.0.0.3]network 192.16.97.10 0.0.0.0
[R9-ospf-1-area-0.0.0.3]
[R9-ospf-1-area-0.0.0.3]a 4
[R9-ospf-1-area-0.0.0.4]network 172.16.128.0 0.0.3.255
R10:
[R10]ospf 1 router-id 10.10.10.10
[R10-ospf-1]a 4
[R10-ospf-1-area-0.0.0.4]net
[R10-ospf-1-area-0.0.0.4]network 172.16.0.0 0.0.255.255
重发布(获取rip信息):
R12为ASBR路由器
[R12]ospf 1
[R12-ospf-1]im
[R12-ospf-1]import-route rip
三、汇总:
R3:
[R3]ospf 1
[R3-ospf-1]a 1
[R3-ospf-1-area-0.0.0.1]ab
[R3-ospf-1-area-0.0.0.1]abr-summary 172.16.32.0 255.255.224.0
R7:
[R7]ospf 1
[R7-ospf-1]a 3
[R7-ospf-1-area-0.0.0.3]ab
[R7-ospf-1-area-0.0.0.3]abr-summary 172.16.96.0 255.255.224.0
R9:
[R9]ospf 1
[R9-ospf-1]asb
[R9-ospf-1]asbr-summary 172.16.128.0 255.255.224.0
R12:
[R12]ospf 1
[R12-ospf-1]asb
[R12-ospf-1]asbr-summary 172.16.160.0 255.255.224.0
四、对非骨干区域设置特殊区域:
1、完全末梢区域:
R1:
[R1]ospf 1
[R1-ospf-1]
[R1-ospf-1]a 1
[R1-ospf-1-area-0.0.0.1]stub
R2:
[R2]ospf 1
[R2-ospf-1]a 1
[R2-ospf-1-area-0.0.0.1]stub
R3:
[R3]ospf 1
[R3-ospf-1]a 1
[R3-ospf-1-area-0.0.0.1]stub no-summary
2、area 2、area 3配置NSSA:
R6:
[R6]ospf 1
[R6-ospf-1]a 2
[R6-ospf-1-area-0.0.0.2]
[R6-ospf-1-area-0.0.0.2]nssa no-summary
R11:
[R11]ospf 1
[R11-ospf-1]a 2
[R11-ospf-1-area-0.0.0.2]nssa
R12:
[R12]ospf 1
[R12-ospf-1] a 2
[R12-ospf-1-area-0.0.0.2]nssa
R7:
[R7]ospf 1
[R7-ospf-1]a 3
[R7-ospf-1-area-0.0.0.3]nssa no-summary
R8:
[R8]ospf 1
[R8-ospf-1]a 3
[R8-ospf-1-area-0.0.0.3]nssa
R9:
[R9]ospf 1
[R9-ospf-1]a 3
[R9-ospf-1-area-0.0.0.3]nssa
五、防环
R3:
[R3]ip route-static 172.16.32.0 255.255.224.0 NULL 0
R6:
[R6]ip route-static 172.16.64.0 255.255.224.0 NULL 0
R7:
[R7]ip route-static 172.16.96.0 255.255.224.0 NULL 0
R9:
[R9]ip route-static 172.16.128.0 255.255.224.0 NULL 0
R12:
[R12]ip route-static 172.16.160.0 255.255.224.0 NULL 0
六、使所有设备访问R4环回:
R3:
R3]acl 2000
[R3-acl-basic-2000]rule permit source 172.16.0.0 0.0.255.255
[R3]int s 4/0/0
[R3-Serial4/0/0]nat outbound 2000
R6:
[R6]acl 2000
[R6-acl-basic-2000]rule permit source 172.16.0.0 0.0.255.255
[R6]int g 0/0/0
[R6-GigabitEthernet0/0/0]nat outbound 2000
R7:
[R7]acl 2000
[R7-acl-basic-2000]rule permit source 172.16.0.0 0.0.255.255
[R7]int g 0/0/0
[R7-GigabitEthernet0/0/0]nat outbound 2000
分别在R1、R2、R10、R12 ping 4.4.4.4
如图:
实现全网可达;
在R10上 ping 拓扑图中任意 ip