一、实验要求
二、解题思路
1、首先将公网部分搭建完毕,配置相对应的IP地址和网络协议,使R2/R3/R4公有路由器连成一个整体;
2、然后将R1和R5用MPLS VPN连成一个私网,R6和 R7也使用MPLS VPN连成另外一个私网;
3、由于R7访问R2/R3/R4走的是公网,所以不用额外配置。
三、配置命令
R1配置命令
1、配置接口IP地址:
interface GigabitEthernet0/0/1
ip address 192.168.2.1 255.255.255.0
2、配置环回0IP地址:
interface LoopBack0
ip address 192.168.1.1 255.255.255.0
3、手动配置静态路由:
ip route-static 192.168.3.0 255.255.255.0 192.168.2.2
ip route-static 192.168.4.0 255.255.255.0 192.168.2.2
R2配置命令
1、配置接口G0/0/0 VPN和IP地址:
interface GigabitEthernet0/0/0
ip binding vpn-instance b
ip address 192.168.2.2 255.255.255.0
2、配置接口G0/0/1IP地址和MPLS:
interface GigabitEthernet0/0/1
ip address 23.1.1.1 255.255.255.0
mpls
mpls ldp
3、将接口G0/0/2的IP地址绑定到VPN A上:
interface GigabitEthernet0/0/2
ip binding vpn-instance a
ip address 192.168.2.2 255.255.255.0
4、配置环回IP地址:
interface LoopBack0
ip address 2.2.2.2 255.255.255.0
5、配置BGP协议
bgp 1
router-id 2.2.2.2
peer 4.4.4.4 as-number 1
peer 4.4.4.4 connect-interface LoopBack0
#
ipv4-family unicast
undo synchronization
peer 4.4.4.4 enable
#
ipv4-family vpnv4
policy vpn-target
peer 4.4.4.4 enable
#
ipv4-family vpn-instance a
import-route rip 1
#
ipv4-family vpn-instance b
import-route direct
import-route static
6、配置OSPF和RIP协议:
ospf 1 router-id 2.2.2.2
area 0.0.0.0
network 2.2.2.2 0.0.0.0
network 23.1.1.1 0.0.0.0
#
rip 1 vpn-instance a
version 2
network 192.168.2.0
import-route bgp
7、手动配置VPN B的专用静态路由:
#
ip route-static vpn-instance b 192.168.1.0 255.255.255.0 192.168.2.1
8、创建VPN A 和B:
ip vpn-instance a
ipv4-family
route-distinguisher 1:1
vpn-target 1:1 export-extcommunity
vpn-target 1:1 import-extcommunity
ip vpn-instance b
ipv4-family
route-distinguisher 2:2
vpn-target 2:2 export-extcommunity
vpn-target 2:2 import-extcommunity
#
mpls lsr-id 2.2.2.2
mpls
#
mpls ldp
R3配置命令
1、配置接口IP和MPLS:
interface GigabitEthernet0/0/0
ip address 23.1.1.2 255.255.255.0
mpls
mpls ldp
#
interface GigabitEthernet0/0/1
ip address 34.1.1.1 255.255.255.0
mpls
mpls ldp
interface LoopBack0
ip address 3.3.3.3 255.255.255.0
2、配置OSPF协议:
ospf 1 router-id 3.3.3.3
area 0.0.0.0
network 3.3.3.3 0.0.0.0
network 23.1.1.2 0.0.0.0
network 34.1.1.1 0.0.0.0
R4配置命令
1、创建VPN A 和B:
ip vpn-instance a
ipv4-family
route-distinguisher 1:1
vpn-target 1:1 export-extcommunity
vpn-target 1:1 import-extcommunity
#
ip vpn-instance b
ipv4-family
route-distinguisher 2:2
vpn-target 2:2 export-extcommunity
vpn-target 2:2 import-extcommunity
#
mpls lsr-id 4.4.4.4
mpls
#
mpls ldp
2、配置接口IP和环回:
interface GigabitEthernet0/0/0
ip address 34.1.1.2 255.255.255.0
mpls
mpls ldp
#
interface GigabitEthernet0/0/1
ip binding vpn-instance b
ip address 192.168.3.1 255.255.255.0
#
interface GigabitEthernet0/0/2
ip binding vpn-instance a
ip address 192.168.3.1 255.255.255.0
#
interface GigabitEthernet4/0/0
ip address 47.1.1.1 255.255.255.0
#
interface NULL0
#
interface LoopBack0
ip address 4.4.4.4 255.255.255.0
3、配置BGP协议:
bgp 1
router-id 4.4.4.4
peer 2.2.2.2 as-number 1
peer 2.2.2.2 connect-interface LoopBack0
#
ipv4-family unicast
undo synchronization
peer 2.2.2.2 enable
#
ipv4-family vpnv4
policy vpn-target
peer 2.2.2.2 enable
#
ipv4-family vpn-instance a
import-route ospf 2
#
ipv4-family vpn-instance b
import-route direct
import-route static
4、配置OSPF协议:
ospf 1 router-id 4.4.4.4
silent-interface GigabitEthernet4/0/0
area 0.0.0.0
network 4.4.4.4 0.0.0.0
network 34.1.1.2 0.0.0.0
network 47.1.1.1 0.0.0.0
#
ospf 2 vpn-instance a
import-route bgp
area 0.0.0.0
network 192.168.3.1 0.0.0.0
#
ip route-static vpn-instance b 192.168.4.0 255.255.255.0 192.168.3.2
R5配置命令
1、配置接口IP:
interface GigabitEthernet0/0/0
ip address 192.168.3.2 255.255.255.0
2、配置环回IP:
interface LoopBack0
ip address 192.168.4.1 255.255.255.0
3、配置静态路由:
ip route-static 192.168.1.0 255.255.255.0 192.168.3.1
ip route-static 192.168.2.0 255.255.255.0 192.168.3.1
R6配置命令
1、配置接口IP和环回:
interface GigabitEthernet0/0/0
ip address 192.168.2.1 255.255.255.0
interface LoopBack0
ip address 192.168.1.1 255.255.255.0
2、配置RIP协议:
rip 1
version 2
network 192.168.1.0
network 192.168.2.0
R7配置命令
1、配置接口IP和环回:
interface GigabitEthernet0/0/0
ip address 192.168.3.2 255.255.255.0
interface GigabitEthernet0/0/1
ip address 47.1.1.2 255.255.255.0
interface LoopBack0
ip address 192.168.4.2 255.255.255.0
2、配置OSPF协议:
ospf 1 router-id 7.7.7.7
area 0.0.0.0
network 192.168.3.2 0.0.0.0
network 192.168.4.2 0.0.0.0
ip route-static 0.0.0.0 0.0.0.0 47.1.1.1