拓扑图
配置
配置接口IP地址
配置VPN-Instance,RD,RT
配置ISIS
配置MPLS,ASBR互联接口开启MPLS
配置IPv4 BGP,开启标签路由功能,AR7、AR8为RR,通告AR1、AR7和AR6、AR8环回口路由,并通过Route-policy应用标签,在ASBR间和ASBR与RR间通告BGP标签路由
配置MP-BGP,RR上关闭VPNv4的RT过滤,VPN实例内通告私网路由
sysname AR1
#
ip vpn-instance BJ
ipv4-family
route-distinguisher 100:1
vpn-target 100:1 export-extcommunity
vpn-target 200:6 import-extcommunity
#
mpls lsr-id 1.1.1.1
mpls
#
mpls ldp
#
isis 1
is-level level-2
network-entity 49.0000.0000.0000.0001.00
#
interface GigabitEthernet0/0/0
ip address 12.1.1.1 255.255.255.0
isis enable 1
mpls
mpls ldp
#
interface GigabitEthernet0/0/1
ip binding vpn-instance BJ
ip address 10.0.1.254 255.255.255.0
#
interface LoopBack0
ip address 1.1.1.1 255.255.255.255
isis enable 1
#
bgp 100
peer 7.7.7.7 as-number 100
peer 7.7.7.7 connect-interface LoopBack0
#
ipv4-family unicast
undo synchronization
peer 7.7.7.7 enable
peer 7.7.7.7 label-route-capability
#
ipv4-family vpnv4
policy vpn-target
peer 7.7.7.7 enable
#
ipv4-family vpn-instance BJ
network 10.0.1.0 255.255.255.0
#
sysname AR2
#
mpls lsr-id 2.2.2.2
mpls
undo ttl expiration pop
#
mpls ldp
#
isis 1
is-level level-2
network-entity 49.0000.0000.0000.0002.00
#
interface GigabitEthernet0/0/0
ip address 12.1.1.2 255.255.255.0
isis enable 1
mpls
mpls ldp
#
interface GigabitEthernet0/0/1
ip address 23.1.1.2 255.255.255.0
isis enable 1
mpls
mpls ldp
#
interface GigabitEthernet0/0/2
ip address 27.1.1.2 255.255.255.0
isis enable 1
mpls
mpls ldp
#
interface LoopBack0
ip address 2.2.2.2 255.255.255.255
isis enable 1
#
sysname AR3
#
mpls lsr-id 3.3.3.3
mpls
#
mpls ldp
#
isis 1
is-level level-2
network-entity 49.0000.0000.0000.0003.00
#
interface GigabitEthernet0/0/0
ip address 23.1.1.3 255.255.255.0
isis enable 1
mpls
mpls ldp
#
interface GigabitEthernet0/0/1
ip address 34.1.1.3 255.255.255.0
mpls
#
interface LoopBack0
ip address 3.3.3.3 255.255.255.255
isis enable 1
#
bgp 100
peer 7.7.7.7 as-number 100
peer 7.7.7.7 connect-interface LoopBack0
peer 34.1.1.4 as-number 200
#
ipv4-family unicast
undo synchronization
network 1.1.1.1 255.255.255.255
network 7.7.7.7 255.255.255.255
peer 7.7.7.7 enable
peer 7.7.7.7 route-policy RR-Label export
peer 7.7.7.7 label-route-capability
peer 34.1.1.4 enable
peer 34.1.1.4 route-policy ASBR-Label export
peer 34.1.1.4 label-route-capability
#
route-policy ASBR-Label permit node 10
apply mpls-label
#
route-policy RR-Label permit node 10
if-match mpls-label
apply mpls-label
#
sysname AR4
#
mpls lsr-id 4.4.4.4
mpls
#
mpls ldp
#
isis 1
is-level level-2
network-entity 49.0000.0000.0000.0004.00
#
interface GigabitEthernet0/0/0
ip address 34.1.1.4 255.255.255.0
mpls
#
interface GigabitEthernet0/0/1
ip address 45.1.1.4 255.255.255.0
isis enable 1
mpls
mpls ldp
#
interface LoopBack0
ip address 4.4.4.4 255.255.255.255
isis enable 1
#
bgp 200
peer 8.8.8.8 as-number 200
peer 8.8.8.8 connect-interface LoopBack0
peer 34.1.1.3 as-number 100
#
ipv4-family unicast
undo synchronization
network 6.6.6.6 255.255.255.255
network 8.8.8.8 255.255.255.255
peer 8.8.8.8 enable
peer 8.8.8.8 route-policy RR-Label export
peer 8.8.8.8 label-route-capability
peer 34.1.1.3 enable
peer 34.1.1.3 route-policy ASBR-Label export
peer 34.1.1.3 label-route-capability
#
route-policy ASBR-Label permit node 10
apply mpls-label
#
route-policy RR-Label permit node 10
if-match mpls-label
apply mpls-label
#
sysname AR5
#
mpls lsr-id 5.5.5.5
mpls
undo ttl expiration pop
#
mpls ldp
#
isis 1
is-level level-2
network-entity 49.0000.0000.0000.0005.00
#
interface GigabitEthernet0/0/0
ip address 45.1.1.5 255.255.255.0
isis enable 1
mpls
mpls ldp
#
interface GigabitEthernet0/0/1
ip address 56.1.1.5 255.255.255.0
isis enable 1
mpls
mpls ldp
#
interface GigabitEthernet0/0/2
ip address 58.1.1.5 255.255.255.0
isis enable 1
mpls
mpls ldp
#
interface LoopBack0
ip address 5.5.5.5 255.255.255.255
isis enable 1
#
sysname AR6
#
ip vpn-instance SH
ipv4-family
route-distinguisher 200:6
vpn-target 200:6 export-extcommunity
vpn-target 100:1 import-extcommunity
#
mpls lsr-id 6.6.6.6
mpls
#
mpls ldp
#
isis 1
is-level level-2
network-entity 49.0000.0000.0000.0006.00
#
interface GigabitEthernet0/0/0
ip address 56.1.1.6 255.255.255.0
isis enable 1
mpls
mpls ldp
#
interface GigabitEthernet0/0/1
ip binding vpn-instance SH
ip address 10.0.2.254 255.255.255.0
#
interface LoopBack0
ip address 6.6.6.6 255.255.255.255
isis enable 1
#
bgp 200
peer 8.8.8.8 as-number 200
peer 8.8.8.8 connect-interface LoopBack0
#
ipv4-family unicast
undo synchronization
peer 8.8.8.8 enable
peer 8.8.8.8 label-route-capability
#
ipv4-family vpnv4
policy vpn-target
peer 8.8.8.8 enable
#
ipv4-family vpn-instance SH
network 10.0.2.0 255.255.255.0
#
sysname AR7
#
mpls lsr-id 7.7.7.7
mpls
#
mpls ldp
#
isis 1
is-level level-2
network-entity 49.0000.0000.0000.0007.00
#
interface GigabitEthernet0/0/0
ip address 27.1.1.7 255.255.255.0
isis enable 1
mpls
mpls ldp
#
interface LoopBack0
ip address 7.7.7.7 255.255.255.255
isis enable 1
#
bgp 100
peer 1.1.1.1 as-number 100
peer 1.1.1.1 connect-interface LoopBack0
peer 3.3.3.3 as-number 100
peer 3.3.3.3 connect-interface LoopBack0
peer 8.8.8.8 as-number 200
peer 8.8.8.8 ebgp-max-hop 255
peer 8.8.8.8 connect-interface LoopBack0
#
ipv4-family unicast
undo synchronization
peer 1.1.1.1 enable
peer 1.1.1.1 reflect-client
peer 1.1.1.1 label-route-capability
peer 3.3.3.3 enable
peer 3.3.3.3 reflect-client
peer 3.3.3.3 label-route-capability
undo peer 8.8.8.8 enable
#
ipv4-family vpnv4
undo policy vpn-target
peer 1.1.1.1 enable
peer 1.1.1.1 reflect-client
peer 1.1.1.1 next-hop-invariable
peer 8.8.8.8 enable
peer 8.8.8.8 next-hop-invariable
#
sysname AR8
#
mpls lsr-id 8.8.8.8
mpls
#
mpls ldp
#
isis 1
is-level level-2
network-entity 49.0000.0000.0000.0008.00
#
interface GigabitEthernet0/0/0
ip address 58.1.1.8 255.255.255.0
isis enable 1
mpls
mpls ldp
#
interface LoopBack0
ip address 8.8.8.8 255.255.255.255
isis enable 1
#
bgp 200
peer 4.4.4.4 as-number 200
peer 4.4.4.4 connect-interface LoopBack0
peer 6.6.6.6 as-number 200
peer 6.6.6.6 connect-interface LoopBack0
peer 7.7.7.7 as-number 100
peer 7.7.7.7 ebgp-max-hop 255
peer 7.7.7.7 connect-interface LoopBack0
#
ipv4-family unicast
undo synchronization
peer 4.4.4.4 enable
peer 4.4.4.4 reflect-client
peer 4.4.4.4 label-route-capability
peer 6.6.6.6 enable
peer 6.6.6.6 reflect-client
peer 6.6.6.6 label-route-capability
undo peer 7.7.7.7 enable
#
ipv4-family vpnv4
undo policy vpn-target
peer 6.6.6.6 enable
peer 6.6.6.6 reflect-client
peer 6.6.6.6 next-hop-invariable
peer 7.7.7.7 enable
peer 7.7.7.7 next-hop-invariable
#
查看BGP邻居
查看VPNv4邻居
查看BGP路由
PC1访问PC2,查看路径
AR1访问AR2,查看标签交换路径
查看VPNv4标签
查看BGP/MPLS路由标签