一、网络雏形:
二、实验要求:
- 整个网络IP地址为192.168.1.0/24,自己规划;
- area 0区域手工设置 R1为 DR、R2为BDR;
- R3 - R4之间使用密文认证方式;
- R1、R2、R5上配置环回接口,但是R5环回接口不能宣告进OSPF
- 全网可达;
三、思路分析:
- 进行 IP地址的划分;
主网: 192.168.1.0 /24
area 0:
192.168.1.0/25
--------MA骨干:
--------192.168.1.0/27
----------------192.168.1.0/29 192.168.1.8/29 192.168.1.16/29 192.168.1.24/29(选一个用)
--------R1环回: 192.168.1.32/27
--------R2环回: 192.168.1.64/27
--------R3环回: 192.168.1.96/27
area 1:
192.168.128.0/25
--------骨干:
--------192.168.128.0/26
----------------192.168.128.0/30 192.168.128.4/30
--------R5环回: 192.168.192.0/26
- 配置 IP;
- 开启 ospf,进行宣告,宣告时注意反掩码的使用;
- 最后进行密文的认证,缺省路由等拓展配置;
四、配置:
(一)配置接口 IP及环回接口 IP:
(1)R1的 IP添加:
[Huawei]sysname R1
[R1]interface g0/0/0
[R1-GigabitEthernet0/0/0]ip address 192.168.1.1 27
[R1-GigabitEthernet0/0/0]quit
[R1]interface LoopBack 0
[R1-LoopBack0]ip address 192.168.1.33 27
(2)R2的 IP添加:
[Huawei]sysname R2
[R2]interface g0/0/0
[R2-GigabitEthernet0/0/0]ip address 192.168.1.2 27
[R2-GigabitEthernet0/0/0]quit
[R2]interface LoopBack 0
[R2-LoopBack0]ip address 192.168.1.65 27
(3)R3的 IP添加:
[Huawei]sysname R3
[R3]interface g0/0/0
[R3-GigabitEthernet0/0/0]ip address 192.168.1.3 27
[R3-GigabitEthernet0/0/0]quit
[R3]interface LoopBack 0
[R3-LoopBack0]ip address 192.168.1.97 27
[R3-LoopBack0]quit
[R3]interface g0/0/1
[R3-GigabitEthernet0/0/1]ip add 192.168.128.1 30
(4)R4的 IP添加:
[Huawei]sysname R4
[R4]interface g0/0/0
[R4-GigabitEthernet0/0/0]ip address 192.168.128.2 30
[R4-GigabitEthernet0/0/0]quit
[R4]interface g0/0/1
[R4-GigabitEthernet0/0/1]ip address 192.168.128.5 30
(5)R5的 IP添加:
[Huawei]sysname R5
[R5]interface g0/0/0
[R5-GigabitEthernet0/0/0]ip address 192.168.128.6 30
[R5-GigabitEthernet0/0/0]quit
[R5]interface LoopBack 0
[R5-LoopBack0]ip address 192.168.192.1 26
(二)OSPF 的配置:
(1)R1设备:
[R1]ospf 1 router-id 1.1.1.1
[R1-ospf-1]area 0
[R1-ospf-1-area-0.0.0.0]network 192.168.1.1 0.0.0.0
[R1-ospf-1-area-0.0.0.0]network 192.168.1.33 0.0.0.0
(2)R2设备:
[R2]ospf 1 router-id 2.2.2.2
[R2-ospf-1]ar
[R2-ospf-1]area 0
[R2-ospf-1-area-0.0.0.0]net
[R2-ospf-1-area-0.0.0.0]network 192.168.1.2 0.0.0.0
[R2-ospf-1-area-0.0.0.0]network 192.168.1.65 0.0.0.0
(3)R3设备:
[R3]ospf 1 router-id 3.3.3.3
[R3-ospf-1]area 0
[R3-ospf-1-area-0.0.0.0]network 192.168.1.3 0.0.0.0
[R3-ospf-1-area-0.0.0.0]network 192.168.1.97 0.0.0.0
[R3-ospf-1-area-0.0.0.0]quit
[R3-ospf-1]area 1 //记得换到区域 1
[R3-ospf-1-area-0.0.0.1]network 192.168.128.1 0.0.0.0
(4)R4设备:
[R4]ospf 1 router-id 4.4.4.4
[R4-ospf-1]net
[R4-ospf-1]ar
[R4-ospf-1]area 1
[R4-ospf-1-area-0.0.0.1]net
[R4-ospf-1-area-0.0.0.1]network 192.168.128.2 0.0.0.0
[R4-ospf-1-area-0.0.0.1]network 192.168.128.5 0.0.0.0
(5)R5设备:
[R5]ospf 1 router-id 5.5.5.5
[R5-ospf-1]area 1
[R5-ospf-1-area-0.0.0.1]network 192.168.128.6 0.0.0.0
(三)拓展配置:
(1) 设置 R1为DR,R2为BDR:
[R1]interface g0/0/0
[R1-GigabitEthernet0/0/0]ospf dr-priority 3
[R2]interface g0/0/0
[R2-GigabitEthernet0/0/0]ospf dr-priority 2
[R3]interface g0/0/0
[R3-GigabitEthernet0/0/0]ospf dr-priority 0
(2)R3 - R4之间使用密文认证:
[R3]int g0/0/1
[R3-GigabitEthernet0/0/0]ospf authentication-mode md5 1 cipher 123456
[R4]int g0/0/0
[R4-GigabitEthernet0/0/0]ospf authentication-mode md5 1 cipher 123456
(3)配置缺省路由:
[R5]ospf 1
[R5-ospf-1]default-route-advertise always