一、实验要求
二、实验步骤
(1)配置接口IP及其缺省路由,实现中心网络全网可达
R1
[r1-GigabitEthernet0/0/0]ip add 192.168.1.1 24
[r1-Serial4/0/0]ip add 15.0.0.1 24
[r1]ip route-static 0.0.0.0 0 15.0.0.2
R2
[r2-GigabitEthernet0/0/0]ip add 192.168.2.1 24
[r2]ip route-static 0.0.0.0 0 25.0.0.2
[r2-Serial4/0/0]ip add 25.0.0.1 24
R3
[r3-GigabitEthernet0/0/0]ip add 192.168.3.1 24
[r3-Serial4/0/0]ip add 35.0.0.1 24
[r3]ip route-static 0.0.0.0 0 35.0.0.2
R4
[r4-GigabitEthernet0/0/1]ip add 45.0.0.1 24
[r4-GigabitEthernet0/0/0]ip add 192.168.4.1 24
[r4]ip route-static 0.0.0.0 0 45.0.0.2
ISP
[ISP-GigabitEthernet0/0/0]ip add 45.0.0.2 24
[ISP-Serial4/0/0]ip add 35.0.0.2 24
[ISP-Serial3/0/1]ip add 25.0.0.2 24
[ISP-Serial3/0/0]ip add 15.0.0.2 24
(2)根据要求2进行配置
[ISP-aaa]local-user yk password cipher 123
[ISP-Serial3/0/0]ppp authentication-mode pap
[ISP-Serial3/0/1]ppp authentication-mode chap
[r1-Serial4/0/0]ppp pap local-user yk password cipher 123
[r2-Serial4/0/0]ppp chap user yk
[r2-Serial4/0/0]ppp chap password cipher 123
[ISP-Serial4/0/0]link-protocol hdlc
[r3-Serial4/0/0]link-protocol hdlc
(3)创建MGRE GRE
[r1-Tunnel0/0/0]ip add 192.168.5.2 24
[r1-Tunnel0/0/0]tunnel-protocol gre p2mp
[r1-Tunnel0/0/0]source Serial 4/0/0
[r1-Tunnel0/0/0]nhrp network-id 40
[r1-Tunnel0/0/0]nhrp entry 192.168.5.1 15.0.0.1 regist
[r3-Tunnel0/0/0]ip add 192.168.5.3 24
[r3-Tunnel0/0/0]tunnel-protocol gre p2mp
[r3-Tunnel0/0/0]source Serial 4/0/0
[r3-Tunnel0/0/0]nhrp network-id 40
[r3-Tunnel0/0/0]nhrp entry 192.168.5.1 15.0.0.1 register
[r2-Tunnel0/0/0]ip add 192.168.5.2 24
[r2-Tunnel0/0/0]tunnel-protocol gre p2mp
[r2-Tunnel0/0/0]source Serial 4/0/0
[r2-Tunnel0/0/0]nhrp network-id 40
[r2-Tunnel0/0/0]nhrp entry 192.168.5.1 15.0.0.1 register
GRE
[r1-Tunnel0/0/1]ip add 192.168.6.1 24
[r1-Tunnel0/0/1]tunnel-protocol gre
[r1-Tunnel0/0/1]source 15.0.0.1
[r1-Tunnel0/0/1]destination 45.0.0.1
[r4-Tunnel0/0/1]ip add 192.168.6.2 24
[r4-Tunnel0/0/1]tunnel-protocol gre
[r4-Tunnel0/0/1]source 45.0.0.1
[r4-Tunnel0/0/1]destination 15.0.0.1
(4)使用rip,nat 实现全网可达
[r1]rip 1
[r1-rip-1]version 2
[r1-rip-1]network 192.168.1.0
[r1-rip-1]network 192.168.5.0
[r1-rip-1]network 192.168.6.0
r1-Tunnel0/0/0]nhrp entry multicast dynamic
[r1-Tunnel0/0/0]undo rip split-horizon
[r1]acl 2000
[r1-acl-basic-2000]rule permit source 192.168.1.0 0.0.0 255 ^
[r1-Serial4/0/0]nat outbound 2000