拓扑图
实验思路:
1、合理划分IP地址,配置IP地址及环回接口。
2、在AS2当中启动IGP协议OSPF,作为BGP协议的基础
3、启动BGP协议建立邻居关系,使得整个BGP协议可以使得BGP路由可达。其中需要注意,有小的联邦的AS号需要将小的联邦的AS号进行先配置,再将所属的真实的AS号进行发布。如果有联邦EBGP,并要宣告邻居联邦EBGP的AS号。此实验当中联邦IBGP对等体中需要配置路由反射器,从而实现BGP路由的传递。
4、减少路由条目,可以使用配置一条空接口路由来完成,即达成了路由条目的减少,也达到空接口防环的机制,且最重要的是,从而实现了整个AS2内的环回接口可达。
5、通过再AR1与AR8上创建GRE隧道,来实现192.168.1.0/24与192.168.2.0/24的环回接口进行通讯,注意的是,隧道中源目接口的IP地址要使用AR1与AR8上另外以一个换回接口,其原因是,如果选用物理接口,是无法通讯的,是因为物理接口根本没有去往对方的路由信息,物理接口都无法通讯,隧道就更可能了。
实验步骤:
1/对AS2子网划分,IP地址规划
AS1:192.168.1.0 24
10.0.0.0 24
AS2:172.16.0.0 16划分
骨干链路;R2-R3: 172.16.1.0 29
R3-R4: 172.16.1.8 29
R4-R7: 172.16.1.16 29
R2-R5: 172.16.1.24 29
R5-R6: 172.16.1.32 29
R6-R7: 172.16.1.40 29
R2: 172.16.2.0 24
R3: 172.16.3.0 24
R4: 172.16.4.0 24
R5: 172.16.5.0 24
R6: 172.16.6.0 24
R7: 172.16.7.0 24
AS3: 192.168.2.0 24
11.0.0.0 24
1.配置IP和环回地址R1配置:
[R1]int G 0/0/0
[R1-GigabitEthernet0/0/0]ip address 12.0.0.1 24
[R1]int LoopBack 0
[R1-LoopBack0]ip address 192.168.1.1 24
[R1]int LoopBack 1
[R1-LoopBack1]ip address 10.0.0.1 24
R2配置:
[R2]int G 0/0/0
[R2-GigabitEthernet0/0/0]ip address 12.0.0.2 24
[R2]int G 0/0/1
[R2-GigabitEthernet0/0/1]ip address 172.16.1.1 29
[R2]int G 0/0/2
[R2-GigabitEthernet0/0/2]ip address 172.16.1.25 29
[R2]int LoopBack 0
[R2-LoopBack0]ip address 172.16.2.1 24
R3配置:
[R3]int G 0/0/0
[R3-GigabitEthernet0/0/0]ip address 172.16.1.2 29
[R3]int G 0/0/1
[R3-GigabitEthernet0/0/1]ip address 172.16.1.9 29
[R3]int LoopBack 0
[R3-LoopBack0]ip address 172.16.3.1 24
R4配置:
[R4]int G 0/0/0
[R4-GigabitEthernet0/0/0]ip address 172.16.1.10 29
[R4]int G 0/0/1
[R4-GigabitEthernet0/0/1]ip address 172.16.1.9 29
[R4]int LoopBack 0
[R4-LoopBack0]ip address 172.16.4.1 24
R5配置:
[R5]int G 0/0/0
[R5-GigabitEthernet0/0/0]ip address 172.16.1.25 29
[R5]int G 0/0/1
[R5-GigabitEthernet0/0/1]ip address 172.16.1.33 29
[R5]int LoopBack 0
[R5-LoopBack0]ip address 172.16.5.1 24
R6配置:
[R6]int G 0/0/0
[R6-GigabitEthernet0/0/0]ip address 172.16.1.34 29
[R6]int G 0/0/1
[R6-GigabitEthernet0/0/1]ip address 172.16.1.41 29
[R6]int LoopBack 0
[R6-LoopBack0]ip address 172.16.6.1 24
R7配置:
[R7]int G 0/0/0
[R7-GigabitEthernet0/0/0]ip address 172.16.1.42 29
[R7]int G 0/0/1
[R7-GigabitEthernet0/0/1]ip address 172.16.1.18 29
[R7]int G 0/0/2
[R7-GigabitEthernet0/0/2]ip address 13.0.0.1 24
[R7]int LoopBack 0
[R7-LoopBack0]ip address 172.16.1.7 24
R8配置:
[R8]int G 0/0/0
[R8-GigabitEthernet0/0/0]ip address 13.0.0.2 24
[R8]int LoopBack 0
[R8-LoopBack0]ip address 192.168.2.1 24
[R8]int LoopBack 1
[R8-LoopBack1]ip address 11.0.0.1 24
2.在AS2中启用OSPF协议
R2配置:
[R2]ospf 1 router-id 2.2.2.2
[R2-ospf-1]area 0
[R2-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.255.255
R3配置:
[R3]ospf 1 router-id 3.3.3.3
[R3-ospf-1]area 0
[R3-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.255.255
R4配置:
[R4]ospf 1 router-id 4.4.4.4
[R4-ospf-1]area 0
[R4-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.255.255
R5配置:
[R5]ospf 1 router-id 5.5.5.5
[R5-ospf-1]area 0
[R5-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.255.255
R6配置:
[R6]ospf 1 router-id 6.6.6.6
[R6-ospf-1]area 0
[R6-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.255.255
R7配置:
[R7]ospf 1 router-id 7.7.7.7
[R7-ospf-1]area 0
[R7-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.255.255
3.对所有设备启用BGP协议,并进行对等体的建立
R1配置:
[R1]bgp 1
[R1-bgp]route-select
[R1-bgp]router-id 1.1.1.1
[R1-bgp]peer 12.0.0.2 as-number 2
R2配置:
[R2]bgp 64512
[R2-bgp]route-select
[R2-bgp]router-id 2.2.2.2
[R2-bgp]confederation id 2
[R2-bgp]confederation peer-as 64513
[R2-bgp]peer 12.0.0.1 as-number 1
[R2-bgp]peer 172.16.3.1 as-number 64512
[R2-bgp]peer 172.16.3.1 connect-interface LoopBack0
[R2-bgp]peer 172.16.5.1 as-number 64513
[R2-bgp]peer 172.16.5.1 connect-interface LoopBack0
[R2-bgp]peer 172.16.5.1 ebgp-max-hop 2
[R2-bgp]peer 172.16.3.1 next-hop-local
[R2-bgp]peer 172.16.5.1 next-hop-local
R3配置:
[R3]bgp 64512
[R3-bgp]router-id 3.3.3.3
[R3-bgp]confederation id 2
[R3-bgp]peer 172.16.2.1 as 64512
[R3-bgp]peer 172.16.2.1 connect-interface LoopBack0
[R3-bgp]peer 172.16.4.1 as 64512
[R3-bgp]peer 172.16.4.1 connect-interface LoopBack0
[R3-bgp]peer 172.16.2.1 reflect-client//破除IBGP之间的水平分割,配置路由反射器.
R4配置:
[R4]bgp 64512
[R4-bgp]router-id 4.4.4.4
[R4-bgp]confederation id 2
[R4-bgp]confederation peer-as 64513
[R4-bgp]peer 172.16.3.1 as 64512
[R4-bgp]peer 172.16.3.1 connect-interface LoopBack0
[R4-bgp]peer 172.16.7.1 as 64513
[R4-bgp]peer 172.16.7.1 connect-interface LoopBack0
[R4-bgp]peer 172.16.7.1 ebgp-max-hop 2
R5配置:
[R5]bgp 64513
[R5-bgp]router-id 5.5.5.5
[R5-bgp]confederation id 2
[R5-bgp]confederation peer-as 64512
[R5-bgp]peer 172.16.2.1 as 64512
[R5-bgp]peer 172.16.2.1 connect-interface LoopBack0
[R5-bgp]peer 172.16.2.1 ebgp-max-hop 2
[R5-bgp]peer 172.16.6.1 as 64513
[R5-bgp]peer 172.16.6.1 connect-interface LoopBack0
R6配置:
[R6]bgp 64513
[R6-bgp]router-id 6.6.6.6
[R6-bgp]confederation id 2
[R6-bgp]peer 172.16.5.1 as 64513
[R6-bgp]peer 172.16.5.1 connect-interface LoopBack0
[R6-bgp]peer 172.16.7.1 as 64513
[R6-bgp]peer 172.16.7.1 connect-interface LoopBack0
[R6-bgp]peer 172.16.7.1 reflect-client//破除IBGP之间的水平分割,配置路由反射器.
R7配置:
[R7]bgp 64513
[R7-bgp]router-id 7.7.7.7
[R7-bgp]confederation id 2
[R7-bgp]confederation peer-as 64512
[R7-bgp]peer 172.16.6.1 as 64513
[R7-bgp]peer 172.16.6.1 connect-interface LoopBack0
[R7-bgp]peer 172.16.4.1 as 64512
[R7-bgp]peer 172.16.4.1 connect-interface LoopBack0
[R7-bgp]peer 172.16.4.1 ebgp-max-hop 2
[R7-bgp]peer 13.0.0.2 as 3
[R7-bgp]peer 172.16.4.1 next-hop-local
[R7-bgp]peer 172.16.6.1 next-hop-local
R8配置:
[R8]bgp 3
[R8-bgp]router-id 8.8.8.8
[R8-bgp]peer 13.0.0.1 as-number 2
4.发布路由信息
R1配置:
[R1]bgp 1
[R1-bgp]network 10.0.0.0 24
R8配置:
[R8]bgp 3
[R8-bgp]network 11.0.0.0 24
5.做空接口、汇总以及宣告
R2配置:
[R2]ip route-static 172.16.0.0 21 NULL 0
[R2]bgp 64512
[R2-bgp]network 172.16.0.0 21
R7配置:
[R7]ip route-static 172.16.0.0 22 NULL 0
[R7]bgp 64513
[R7-bgp]network 172.16.0.0 21
6.建立GREVPN
R1配置:
[R1]int t0/0/0
[R1-Tunnel0/0/0]ip address 192.168.3.1 24
[R1-Tunnel0/0/0]tunnel-protocol gre
[R1-Tunnel0/0/0]source 10.0.0.1
[R1-Tunnel0/0/0]destination 11.0.0.1
[R1]ip route-static 192.168.2.0 24 192.168.3.2
R8配置:
[R8]int t0/0/0
[R8-Tunnel0/0/0]ip address 192.168.10.2 24
[R8-Tunnel0/0/0]tunnel-protocol gre
[R8-Tunnel0/0/0]source 11.0.0.1
[R8-Tunnel0/0/0]destination 10.0.0.1
[R8]ip route-static 192.168.1.0 24 192.168.3.1