OSPF综合实验

实验题目要求如下:

1.搭建拓扑图

 实验分析:
     首先要划分私网IP地址。由于以后每个区域的路由进行路由汇总,需要为每个区域划分一个大网段。有area0、area1、area2、area3、area4和rip共6个区域,所以将172.16.0.0/16划分为172.16.0.0/19、172.16.32.0/19、172.16.64.0/19、172.16.96.0/19、172.16.128.0/19、172.16.160.0/19分别为这六个区域的网段,剩余两个网段作为预留网段,每个区域内又分为P2P骨干链路、MA骨干链路等
     划分好网段后配好IP,使公网通;配置R3-R5/6/7的MGRE环境;配置基本的OSPF和RIP;所有设备均可访问R4的环回,说明需要做缺省+nat或者通过做特殊区域+nat;减少LSA的更新量,说明需要做路由汇总和特殊区域,此时,考虑area4这个不规则区域与area0,为使area3能够成为特殊区域,让area4做多线程重发布。另外,当汇总遇到缺省时会产生黑洞,一定要配置NULL 0空接口防环。

2.进行合理的IP规划

子网划分:172.16.0.0/16(整个ospf环境)按区域划分:
划分为六个区域:(借三位)
172.16.0.0/19  A0    172.16.0.0/25--/30点到点骨干 172.16.0.128/25--/29MA骨干  172.16.1.0/25--172.16.31/128/25(一共64个子网,从第三个开始作为用户网段--环回)

172.16.32.0/19   A1   
172.16.64.0/19   A2
172.16.96.0/19   A3
172.16.128.0/19  A4
172.16.160/0/19  RIP    172.16.160.0/20  172.16.176.0/20(两个环回)
172.16.192.0/19(预留)
172.16.224.0/19(预留)

具体划分

172.16.0.0/19 --- A0
172.16.0.0/24 --- P2P骨干
172.16.0.0/30
172.16.1.0/24 --- MA骨干
172.16.1.0/29
172.16.2.0/24--用户网段
172.16.32.0/19 --- A1
172.16.32.0/24 --- P2P骨干
172.16.32.0/30
172.16.33.0/24 --- MA骨干   
172.16.33.0/29   
172.16.34.0/24----环回网段
172.16.64.0/19 --- A2
172.16.64.0/24 --- P2P骨干
172.16.64.0/30
172.16.65.0/24 --- MA骨干
172.16.65.0/29     
172.16.66.0/24   
172.16.96.0/19 --- A3     
172.16.96.0/24 --- P2P骨干
172.16.96.0/30
172.16.97.0/24 --- MA骨干
172.16.97.0/29     
172.16.98.0/24
172.16.128.0/19 --- A4
172.16.128.0/24 --- P2P骨干
172.16.128.0/30
172.16.129.0/24 --- MA骨干
172.16.129.0/29
172.16.130.0/24 
172.16.160.0/19 --- RIP
172.16.160.0/20    ---环回    
172.16.176.0/20     ---环回
172.16.192.0/19
172.16.224.0/19
3.对区域0的设备配置IP以及环回

(1).R3

[R3]int Serial 4/0/0
[R3-Serial4/0/0]ip address 34.1.1.1 24

(2).ISP

[ISP]int s3/0/0    
[ISP-Serial3/0/0]ip address 34.1.1.2 24
[ISP-Serial3/0/0]int s4/0/1
[ISP-Serial4/0/1]ip address 46.1.1.2 24
[ISP-Serial4/0/1]int s3/0/1    
[ISP-Serial3/0/1]ip address 45.1.1.2 24
[ISP-Serial3/0/1]int s4/0/0
[ISP-Serial4/0/0]ip address 47.1.1.2 24
[ISP-LoopBack0]ip address 4.4.4.4 24
 (3).R5
 
[R5]int s4/0/0
[R5-Serial4/0/0]ip address 45.0.0.1 24
[R5-Serial4/0/0]int l0
[R5-LoopBack0]ip address 5.5.5.5 24

 (4).R6
 
[R6]int s4/0/0    
[R6-Serial4/0/0]ip address 46.0.0.1 24. 
[R6-Serial4/0/0]int l0
[R6-LoopBack0]ip address 6.6.6.6 24

 (5).R7

[R7]int Serial4/0/0
[R7-Serial4/0/0]ip address 47.0.0.1 24
[R7-Serial4/0/0]int l0
[R7-LoopBack0]ip address 7.7.7.7 24

4.公网配置缺省,实现公网通

 (1).R3

[R3]ip route-static 0.0.0.0 0 34.1.1.2

 (2).R5

[R5]ip route-static 0.0.0.0 0 45.1.1.2

 (3).R6
[R6]ip route-static 0.0.0.0 0 46.1.1.2

 (4).R7

[R7]ip route-static 0.0.0.0 0 47.1.1.2 

5.配置MGRE环境(R5/6/7),R3作为中心站点

(1).R3

[R3]int Tunnel 0/0/0    
[R3-Tunnel0/0/0]ip address 172.16.1.1 29    
[R3-Tunnel0/0/0]tunnel-protocol gre p2mp 
[R3-Tunnel0/0/0]source 34.1.1.1    
[R3-Tunnel0/0/0]nhrp network-id 100    
[R3-Tunnel0/0/0]nhrp entry multicast dynamic  

 (2).R5
 
[R5]int Tunnel 0/0/0
[R5-Tunnel0/0/0]ip address 172.16.1.2 29    
[R5-Tunnel0/0/0]tunnel-protocol gre p2mp     
[R5-Tunnel0/0/0]source Serial 4/0/0    
[R5-Tunnel0/0/0]nhrp network-id 100
[R5-Tunnel0/0/0]nhrp entry 172.16.1.1 34.0.0.1 register
 (3).R6
 
[R6]int Tunnel 0/0/0
[R6-Tunnel0/0/0]ip address 172.16.1.3 29    
[R6-Tunnel0/0/0]tunnel-protocol gre p2mp     
[R6-Tunnel0/0/0]source Serial 4/0/0
[R6-Tunnel0/0/0]nhrp network-id 100    
[R6-Tunnel0/0/0]nhrp entry 172.16.1.1 34.0.0.1 register 
 (4).R7
 
[R7]int Tunnel 0/0/0    
[R7-Tunnel0/0/0]ip address 172.16.1.4 29    
[R7-Tunnel0/0/0]tunnel-protocol gre p2mp     
[R7-Tunnel0/0/0]source Serial 4/0/0
[R7-Tunnel0/0/0]nhrp network-id 100    
[R7-Tunnel0/0/0]nhrp entry 172.16.1.1 34.0.0.1 register 

6.配置其他私网路由器接口的IP以及环回

(1).R1

[R1]int g0/0/0
[R1-GigabitEthernet0/0/0]ip address 172.16.33.1 29
[R1-GigabitEthernet0/0/0]int l0    
[R1-LoopBack0]ip address 172.16.34.1 24
 
 (2).R2
[R2]int g0/0/0    
[R2-GigabitEthernet0/0/0]ip address 172.16.33.2 29
[R2-GigabitEthernet0/0/0]int l0
[R2-LoopBack0]ip address 172.16.35.1 24
 
 (3).R3
[R3]int g0/0/0
[R3-GigabitEthernet0/0/0]ip address 172.16.33.3 29
[R3-GigabitEthernet0/0/0]int l0
[R3-LoopBack0]ip address 172.16.36.1 24
 (4).R6
 
[R6]int s4/0/1
[R6-s4/0/1]ip address 172.16.65.1 29
 (5).R7
 
[R7]int s4/0/1
[R7-s4/0/1]ip address 172.16.97.1 29
 (6).R8
 
[R8]int s4/0/0
[R8-s4/0/0]ip address 172.16.97.2 29
[R8-s4/0/0]int l0
[R8-LoopBack0]ip address 172.16.98.1 24
[R8-LoopBack0]int s4/0/1   
[R8-s4/0/1]ip address 172.16.97.9 29
 (7).R9
 
[R9]int s4/0/0  
[R9-s4/0/0]ip address 172.16.97.10 29
[R9-s4/0/0]int s4/0/1
[R9-s4/0/1]ip address 172.16.129.1 29
[R9-s4/0/1]int l0
[R9-LoopBack0]ip address 172.16.130.1 24
(8).R10
 
[R10]int s4/0/0
[R10-s4/0/0 ]ip address 172.16.129.2 29
[R10-s4/0/0 ]int l0    
[R10-LoopBack0]ip address 172.16.131.1 24
 (9).R11
 
[R11]int s4/0/0
[R11-s4/0/0 ]ip address 172.16.65.2 29 
[R11-s4/0/0 ]int s4/0/1
[R11- s4/0/1]ip address 172.16.65.9 29 
[R11- s4/0/1]int l0    
[R11-LoopBack0]ip address 172.16.66.1 24
 (10).R12
 
[R12]int s4/0/1
[R12- s4/0/1]ip address 172.16.65.10 29
[R12- s4/0/1]int l0
[R12-LoopBack0]ip address 172.16.160.1 20
[R12-LoopBack0]int l1
[R12-LoopBack1]ip address 172.16.176.1 20

7.查看R3、R5、R6、R7的邻居工作方式是否可以建立起来

8.修改MGRE环境的接口网络类型,R3当DR并将R5、R6、R7的dr-priority改为0(使其放弃选举)

 (1).R3

[R3]interface Tunnel 0/0/0
[R3-Tunnel0/0/0]ospf network-type broadcast

(2).R5

[R5]interface Tunnel 0/0/0
[R5-Tunnel0/0/0]ospf network-type broadcast

(3).R6

[R6]interface Tunnel 0/0/0
[R6-Tunnel0/0/0]ospf network-type broadcast

(4).R7

[R7]interface Tunnel 0/0/0
[R7-Tunnel0/0/0]ospf network-type broadcast

(5).R5

[R5]interface Tunnel 0/0/0
[R5-Tunnel0/0/0]ospf network-type broadcast 
[R5-Tunnel0/0/0]ospf dr-priority 0

(6).R6

[R6]interface Tunnel 0/0/0
[R6-Tunnel0/0/0]ospf network-type broadcast 
[R6-Tunnel0/0/0]ospf dr-priority 0

(7).R7

[R7]interface Tunnel 0/0/0
[R7-Tunnel0/0/0]ospf network-type broadcast 
[R7-Tunnel0/0/0]ospf dr-priority 0

9.配置OSPF和RIP

(1).R1

[r1]ospf 1 router-id 1.1.1.1
[r1-ospf-1]a 1
[r1-ospf-1-area-0.0.0.1]net    
[r1-ospf-1-area-0.0.0.1]network 172.16.0.0 0.0.255.255

(2).R2
[r2]ospf 1 router-id 2.2.2.2
[r2-ospf-1]a 1
[r2-ospf-1-area-0.0.0.1]net    
[r2-ospf-1-area-0.0.0.1]network 172.16.0.0 0.0.255.255

(3).R3
[r3]ospf 1 router-id 3.3.3.3
[r3-ospf-1]a 1
[r3-ospf-1-area-0.0.0.1]network 172.16.32.0 0.0.7.255
[r3-ospf-1-area-0.0.0.1]q
[r3-ospf-1]a 0
[r3-ospf-1-area-0.0.0.0]network 172.16.1.1 0.0.0.0

(4).R5
[r5]ospf 1 router-id 5.5.5.5
[r5-ospf-1]a 0
[r5-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.255.255

(5).R6
[r6]ospf 1 router-id 6.6.6.6
[r6-ospf-1]a 0
[r6-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.3.255
[r6-ospf-1-area-0.0.0.0]q
[r6-ospf-1]a 2
[r6-ospf-1-area-0.0.0.2]network 172.16.65.1 0.0.0.0

(6).R7
[r7]ospf 1 router-id 7.7.7.7
[r7-ospf-1]a 0
[r7-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.7.255
[r7-ospf-1-area-0.0.0.0]q
[r7-ospf-1]a 3
[r7-ospf-1-area-0.0.0.3]network 172.16.97.1 0.0.0.0

(7).R8
[r8]ospf 1 router-id 8.8.8.8
[r8-ospf-1]a 3
[r8-ospf-1-area-0.0.0.3]net    
[r8-ospf-1-area-0.0.0.3]network 172.16.0.0 0.0.255.255

(8).R9
[r9]ospf 1 router-id 9.9.9.9
[r9-ospf-1]a 3
[r9-ospf-1-area-0.0.0.3]network 172.16.97.10 0.0.0.0
[r9-ospf-1-area-0.0.0.3]q
[r9-ospf-1]q
[r9]ospf 2
[r9-ospf-2]a 4
[r9-ospf-2-area-0.0.0.4]network 172.16.128.0 0.0.3.255

(9).R10
[r10]ospf 1 router-id 10.10.10.10
[r10-ospf-1]a 4
[r10-ospf-1-area-0.0.0.4]network 172.16.0.0 0.0.255.255

(10).R11
[r11]ospf 1 router-id 11.11.11.11
[r11-ospf-1]a 2
[r11-ospf-1-area-0.0.0.2]network 172.16.0.0 0.0.255.255

(11).R12
[r12]ospf 1 router-id 12.12.12.12
[r12-ospf-1]a 2
[r12-ospf-1-area-0.0.0.2]network 172.16.65.10 0.0.0.0
[r12-ospf-1-area-0.0.0.2]q
[r12-ospf-1]q
[r12]rip
[r12-rip-1]v 2
[r12-rip-1]net    
[r12-rip-1]network 172.16.0.0

10.将rip和区域4重发布到ospf中,对12rip重发布,对9进行双向重发布(9的进程1和上面的ospf,进程2和下面的rip)9上导下,下导上实现双向重发布(做成域外),即在R9上下发一条5类缺省:

[r9]ospf 1

[r9-ospf-1]import-route ospf 2

[r12]ospf 1

[r12-ospf-1]import-route rip 1

[r9-ospf-2]default-route-advertise

11.OSPF路由汇总

[r3]ospf 1
[r3-ospf-1]a 1
[r3-ospf-1-area-0.0.0.1]abr-summary 172.16.32.0 255.255.224.0
[r6]ospf 1
[r6-ospf-1]a 2
[r6-ospf-1-area-0.0.0.2]abr-summary 172.16.64.0 255.255.224.0
[r7]ospf 1    
[r7-ospf-1]a 3
[r7-ospf-1-area-0.0.0.3]abr-summary 172.16.96.0 255.255.224.0
[r9]ospf 1
[r9-ospf-1]asbr-summary 172.16.128.0 255.255.224.0
[r12]ospf 1
[r12-ospf-1]asbr-summary 172.16.160.0 255.255.224.0

12. 区域1调整为完全末梢区域(3上定义完全),区域2调整为完全nssa(6上定义完全nssa),区域3调整为完全nssa(把区域4看作rip,和区域2一样)

(1).area1的完全末梢区域

[r1]ospf 1
[r1-ospf-1]a 1
[r1-ospf-1-area-0.0.0.1]stub


[r2]ospf 1
[r2-ospf-1]a 1
[r2-ospf-1-area-0.0.0.1]stub


[r3]ospf 1
[r3-ospf-1]a 1
[r3-ospf-1-area-0.0.0.1]stub no-summary 

查看数据库表及路由表

 

(2).area2的完全nssa区域

[r6]ospf 1
[r6-ospf-1]a 2
[r6-ospf-1-area-0.0.0.2]nssa no-summary
[r11]ospf 1
[r11-ospf-1]a 2
[r11-ospf-1-area-0.0.0.2]nssa
[r12]ospf 1
[r12-ospf-1]a 2
[r12-ospf-1-area-0.0.0.2]nssa

查看数据库表及路由表

 

(3).area3的完全 nssa区域

[r7]ospf 1
[r7-ospf-1]a 3
[r7-ospf-1-area-0.0.0.3]nssa no-summary
[r8]ospf 1
[r8-ospf-1]a 3
[r8-ospf-1-area-0.0.0.3]nssa
[r9]ospf 1 
[r9-ospf-1]a 3
[r9-ospf-1-area-0.0.0.3]nssa

查看数据库表及路由表

13.缺省+汇总--黑洞--配置null  0接口防环 

[r3]ip route-static 172.16.32.0 19 NULL 0
[r6]ip route-static 172.16.64.0 19 NULL 0
[r7]ip route-static 172.16.96.0 19 NULL 0
[r9]ip route-static 172.16.128.0 19 NULL 0
[r12]ip route-static 172.16.160.0 19 NULL 0

14.配置nat使公网和私网可以正常通讯

[r3]acl 2000
[r3-acl-basic-2000]rule permit source 172.16.0.0 0.0.255.255
[r3-acl-basic-2000]q
[r3]int Serial 4/0/0
[r3-Serial4/0/0]nat outbound 2000
[r6]acl 2000
[r6-acl-basic-2000]rule permit source 172.16.0.0 0.0.255.255
[r6-acl-basic-2000]q
[r6]int Serial 4/0/0
[r6-Serial4/0/0]nat outbound 2000
[r7]acl 2000
[r7-acl-basic-2000]rule permit source 172.16.0.0 0.0.255.255
[r7-acl-basic-2000]q
[r7]int GigabitEthernet 0/0/0
[r7-GigabitEthernet0/0/0]nat outbound 2000

15.测试

 

 

评论 1
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值