1 R4为isp,其上只能费置IP地址;R4与其地所有直连设备间使用公有IP;
2、R3----R5/6/7为MGRE环填。 R3为中心站点
3、整个OSPF环境IP地址为172.16.0.0/16
4.所有设备均可访间R4的环回:
5.减少LSA的更新量,加快收敛,保障更斯安全
6.全网可达
IP地址规划
172.16.0.0/19
172.16.32.0/19
172.16.64.0/19
172.16.96.0/19
172.16.128.0/19
172.16.160.0/19
172.16.192.0/19
172.16.224.0/19
区域1:
使用 172.16.32.0/19
172.16.32.0/25
172.16.32.128/25
区域0:
使用 172.16.0.0/19
骨干
172.16.0.0/25
172.16.0.128/25
区域2:
使用 172.16.64.0/19
172.16.64.0/25
区域3:
172.16.96.0/19
区域4:
172.16.128.0/19
RIP:
使用 172.16.160.0/19
172.16.160.0/20
172.16.176.0/20
R1
g0/0/0 172.16.32.129/29
LoopBack0 172.16.33.1/25
R2
g0/0/0 172.16.32.130/29
LoopBack0 172.16.33.129/25
R3
g0/0/1 34.1.1.1/24
LoopBack0 172.16.34.1/25
g0/0/0 172.16.32.131/29
R4
g0/0/0 34.1.1.2/24
g0/0/1 54.1.1.2/24
g3/0/0 64.1.1.2/24
g0/0/2 74.1.1.2/24
LoopBack0 4.4.4.4/24
R5
LoopBack0 172.16.1.1/25
g0/0/0 54.1.1.1/24
R6
g0/0/0 64.1.1.1/24
LoopBack0 172.16.1.129/25
g0/0/1 172.16.64.1/30
R7
g0/0/0 74.1.1.1/24
LoopBack0 172.16.2.1/25
g0/0/1 172.16.96.1/30
R8
g0/0/0 172.16.96.2/30
LoopBack0 172.16.97.1/25
g0/0/1 172.16.96.5/30
R9
g0/0/0 172.16.96.6/30
LoopBack0 172.16.129.1/25
g0/0/1 172.16.128.1/30
R10
g0/0/0 172.16.128.2/30
LoopBack0 172.16.129.129/25
R11
LoopBack0 172.16.65.1/25
g0/0/0 172.16.64.2/30
g0/0/1 172.16.64.5/30
R12
LoopBack0 172.16.160.1/20
LoopBack1 172.16.176.1/20
g0/0/0 172.16.64.6/30
配置缺省路由,测试
R3
ip route-static 0.0.0.0 0 34.1.1.2
R5
ip route-static 0.0.0.0 0 54.1.1.2
R6
ip route-static 0.0.0.0 0 64.1.1.2
R7
ip route-static 0.0.0.0 0 74.1.1.2
r3—r5/6/7为MGRE环境,r3为中心站点
R3 :
int Tunnel 0/0/0
ip add 172.16.0.129 29
tunnel-protocol gre p2mp
source g0/0/0
nhrp network-id 100
nhrp entry multicast dynamic
R5 :
int Tunnel 0/0/0
ip add 172.16.0.130 29
tunnel-protocol gre p2mp
source g0/0/0
nhrp network-id 100
nhrp entry 172.16.0.129 34.1.1.1 register
R6 :
int t0/0/0
ip add 172.16.0.131 29
tunnel-protocol gre p2mp
source g0/0/0
nhrp network-id 100
nhrp entry 172.16.0.129 34.1.1.1 register
R7 :
int t0/0/0
ip add 172.16.0.132 29
tunnel-protocol gre p2mp
source g0/0/0
nhrp network-id 100
nhrp entry 172.16.0.129 34.1.1.1 register
测试
ospf配置
区域0
R3
ospf 1 router-id 3.3.3.3
area 0
network 172.16.0.129 0.0.0.0
R5
ospf 1 router-id 5.5.5.5
area 0
network 172.16.0.0 0.0.255.255
R6
ospf 1 router-id 6.6.6.6
area 0
network 172.16.0.0 0.0.1.255
R7
ospf 1 router-id 7.7.7.7
area 0
network 172.16.0.0 0.0.3.255
修改接口类型
R3
int t0/0/0
ospf network-type broadcast
R5
int t0/0/0
ospf network-type broadcast
ospf dr-priority 0
R6
int t0/0/0
ospf network-type broadcast
ospf dr-priority 0
R7
int t0/0/0
ospf network-type broadcast
ospf dr-priority 0
区域1
R3
ospf 1 router-id 3.3.3.3
area 1
network 172.16.32.0 0.0.3.255
R1
ospf 1 router-id 1.1.1.1
area 1
network 172.16.0.0 0.0.255.255
R2
ospf 1 router-id 2.2.2.2
area 1
network 172.16.0.0 0.0.255.255
区域2
R6
ospf 1
area 2
network 172.16.64.1 0.0.0.0
R11
ospf 1 router-id 11.11.11.11
area 2
network 172.16.0.0 0.0.255.255
R12
ospf 1 router-id 12.12.12.12
area 2
network 172.16.64.6 0.0.0.0
区域3
R7
ospf 1 router-id 7.7.7.7
area 3
network 172.16.96.1 0.0.0.0
R8
ospf 1 router-id 8.8.8.8
area 3
network 172.16.0.0 0.0.255.255
R9
ospf 1 router-id 9.9.9.9
area 3
network 172.16.96.6 0.0.0.0
区域4
R9
ospf 1 router-id 9.9.9.9
area 4
network 172.16.128.0 0.0.1.255
R10
ospf 1 router-id 10.10.10.10
area 4
network 172.16.0.0 0.0.255.255
rip
R12
rip 1
version 2
network 172.16.0.0
重发布将不规则区域打通
R12
ospf 1
import-route rip
R9
ospf 1
area 4
undo network 172.16.128.0 0.0.1.255
ospf 2 router-id 9.9.9.9
area 4
network 172.16.128.0 0.0.1.255
default-route-advertise
ospf 1
import-route ospf 2
将区域1设置STUB,将区域2与区域3设置NSSA
区域1
R1
ospf 1
area 1
stub
R2
ospf 1
area 1
stub
R3
ospf 1
area 1
abr-summary 172.16.32.0 255.255.224.0
stub no-summary
区域2
R6
ospf 1
a 2
abr-summary 172.16.64.0 255.255.224.0
nssa no-summary
R11
ospf 1
area 2
nssa
R12
ospf 1
asbr-summary 172.16.160.0 255.255.224.0
area 2
nssa
区域3
R7
ospf 1
area 3
nssa no-summary
abr-summary 172.16.96.0 255.255.224.0
R8
ospf 1
area 3
nssa
R9
ospf 1
area 3
nssa
asbr-summary 172.16.128.0 255.255.224.0
R9
ospf 2
default-route-advertise
测试
R3
acl 2000
rule permit source 172.16.0.0 0.0.255.255
int g0/0/0
nat outbound 2000
R6
acl 2000
rule permit source 172.16.0.0 0.0.255.255
int g0/0/0
nat outbound 2000
R7
acl 2000
rule permit source 172.16.0.0 0.0.255.255
int g0/0/0
nat outbound 2000