一、topo
二、配置
AR1
sys
sys AR1
dhcp en
acl 2000
rule permit source 192.168.10.0 0.0.0.255
int g0/0/0
ip ad 192.168.10.254 24
dhcp se int
int g0/0/1
ip ad 12.0.0.1 24
nat outbound 2000
q
ip route-static 0.0.0.0 0 12.0.0.2
int Tunnel0/0/0
ip ad 192.168.13.1 24
tunnel-protocol gre
source 12.0.0.1
destination 23.0.0.3
keepalive
q
ip route-static 192.168.20.0 24 Tunnel0/0/0
ISP
sys
sys ISP
int g0/0/1
ip ad 23.0.0.2 24
int g0/0/0
ip ad 12.0.0.2 24
int loopback 0
ip ad 2.2.2.2 32
AR3
sys
sys AR3
dhcp en
acl 2000
rule permit source 192.168.20.0 0.0.0.255
int g0/0/1
ip ad 192.168.20.254 24
dhcp se int
int g0/0/0
ip ad 23.0.0.3 24
nat outbound 2000
q
ip route-static 0.0.0.0 0 23.0.0.2
int Tunnel0/0/0
ip ad 192.168.13.3 24
tunnel-protocol gre
source 23.0.0.3
destination 12.0.0.1
keepalive
q
ip route-static 192.168.10.0 24 tunnel0/0/0
三、路由协议
通用路由封装协议GRE (Generic Routing Encapsulation)提供了将一种协议的报文封装在另一种协议报文中的机制,是一种隧道封装技术。GRE可以封装组播数据,并可以和IPSec结合使用,从而保证语音、视频等组播业务的安全。
与ospf使用时一直反复down<- ->full: