HCIE - 数通|MPLS虚拟专用网跨域实验

目录

一、前言

二、实验拓扑

三、实验需求

四、实验配置

(一)PE设备

① R2配置

② R7配置

③ R10配置

④ R11配置

(二)RR设备

① R3配置

② R6配置

(三)ASBR设备

① R4配置

② R5配置

五、实验效果

① R1到R8流量路径

② R9到R12流量路径


各位如果有学习python相关知识及相应算法的同学,推荐关注一下我的朋友:Neptune_yx


一、前言

        该实验是对MPLS虚拟专用网跨域的一次应用,通过该实验可以掌握相应的MPLS虚拟专用网跨域的有关配置,由于时间比较仓促,实验配置部分只说明设备的有关配置,不再按步骤进行说明,有关原理知识,可以参考前面的博文 MPLS虚拟专用网跨域(一)以及MPLS虚拟专用网跨域(二)

二、实验拓扑

三、实验需求

        ① AR3和AR6作为图中RR设备、AR2、AR9、AR7、AR10是PE设备;

        ② 通过MPLS VPN跨域option C1将AR1和AR8完成通信,AR11和AR12之间完成通信;

        ③ 各设备之间互访为最优路径。 

四、实验配置

(一)PE设备

① R2配置如下

ip vpn-instance CE1
 ipv4-family
  route-distinguisher 2:2
  vpn-target 100:1 export-extcommunity
  vpn-target 100:1 import-extcommunity
#
mpls lsr-id 2.2.2.2
mpls
#
mpls ldp
#
interface GigabitEthernet0/0/0
 ip binding vpn-instance CE1
 ip address 12.1.1.2 255.255.255.0 
#
interface GigabitEthernet0/0/1
 ip address 23.1.1.2 255.255.255.0 
 ospf enable 1 area 0.0.0.0
 mpls
 mpls ldp
#
interface LoopBack1
 ip address 2.2.2.2 255.255.255.255 
 ospf enable 1 area 0.0.0.0
#
bgp 200
 peer 3.3.3.3 as-number 200 
 peer 3.3.3.3 connect-interface LoopBack1
 #
 ipv4-family unicast
  undo synchronization
  peer 3.3.3.3 enable
  peer 3.3.3.3 label-route-capability
 # 
 ipv4-family vpnv4
  policy vpn-target
  peer 3.3.3.3 enable
 #
 ipv4-family vpn-instance CE1 
  peer 12.1.1.1 as-number 100 
#
ospf 1 
 area 0.0.0.0 

② R7配置如下

ip vpn-instance CE2
 ipv4-family
  route-distinguisher 7:7
  vpn-target 100:1 export-extcommunity
  vpn-target 100:1 import-extcommunity
#
mpls lsr-id 7.7.7.7
mpls
#
mpls ldp
#
interface GigabitEthernet0/0/0
 ip address 67.1.1.7 255.255.255.0 
 ospf enable 1 area 0.0.0.0
 mpls
 mpls ldp
#
interface GigabitEthernet0/0/1
 ip binding vpn-instance CE2
 ip address 78.1.1.7 255.255.255.0 
#
interface LoopBack1
 ip address 7.7.7.7 255.255.255.255 
 ospf enable 1 area 0.0.0.0
#
bgp 300
 peer 6.6.6.6 as-number 300 
 peer 6.6.6.6 connect-interface LoopBack1
 #
 ipv4-family unicast
  undo synchronization
  peer 6.6.6.6 enable
  peer 6.6.6.6 label-route-capability
 # 
 ipv4-family vpnv4
  policy vpn-target
  peer 6.6.6.6 enable
 #
 ipv4-family vpn-instance CE2 
  peer 78.1.1.8 as-number 400 
#
ospf 1 
 area 0.0.0.0 

③ R10配置如下

#
ip vpn-instance CE3
 ipv4-family
  route-distinguisher 10:10
  vpn-target 200:1 export-extcommunity
  vpn-target 200:1 import-extcommunity
#
mpls lsr-id 10.10.10.10
mpls
#
mpls ldp
#
interface GigabitEthernet0/0/0
 ip binding vpn-instance CE3
 ip address 109.1.1.10 255.255.255.0 
#
interface GigabitEthernet0/0/1
 ip address 103.1.1.10 255.255.255.0 
 ospf enable 1 area 0.0.0.0
 mpls
 mpls ldp
#
interface LoopBack1
 ip address 10.10.10.10 255.255.255.255 
 ospf enable 1 area 0.0.0.0
#
bgp 200
 peer 3.3.3.3 as-number 200 
 peer 3.3.3.3 connect-interface LoopBack1
 #
 ipv4-family unicast
  undo synchronization
  peer 3.3.3.3 enable
  peer 3.3.3.3 label-route-capability
 # 
 ipv4-family vpnv4
  policy vpn-target
  peer 3.3.3.3 enable
 #
 ipv4-family vpn-instance CE3 
  peer 109.1.1.9 as-number 500 
#
ospf 1 
 area 0.0.0.0 

④ R11配置如下

#
ip vpn-instance CE4
 ipv4-family
  route-distinguisher 11:11
  vpn-target 200:1 export-extcommunity
  vpn-target 200:1 import-extcommunity
#
mpls lsr-id 11.11.11.11
mpls
#
mpls ldp
#
#
interface GigabitEthernet0/0/0
 ip binding vpn-instance CE4
 ip address 112.1.1.11 255.255.255.0 
#
interface GigabitEthernet0/0/1
 ip address 116.1.1.11 255.255.255.0 
 ospf enable 1 area 0.0.0.0
 mpls
 mpls ldp
#
interface LoopBack1
 ip address 11.11.11.11 255.255.255.255 
 ospf enable 1 area 0.0.0.0
#
bgp 300
 peer 6.6.6.6 as-number 300 
 peer 6.6.6.6 connect-interface LoopBack1
 #
 ipv4-family unicast
  undo synchronization
  peer 6.6.6.6 enable
  peer 6.6.6.6 label-route-capability
 # 
 ipv4-family vpnv4
  policy vpn-target
  peer 6.6.6.6 enable
 #
 ipv4-family vpn-instance CE4 
  peer 112.1.1.12 as-number 600 
#
ospf 1 
 area 0.0.0.0 
#

(二)RR设备

① R3配置如下

#
mpls lsr-id 3.3.3.3
mpls
#
mpls ldp
#
#
interface GigabitEthernet0/0/0
 ip address 23.1.1.3 255.255.255.0 
 ospf enable 1 area 0.0.0.0
 mpls
 mpls ldp
#
interface GigabitEthernet0/0/1
 ip address 34.1.1.3 255.255.255.0 
 ospf enable 1 area 0.0.0.0
 mpls
 mpls ldp
#
interface GigabitEthernet0/0/2
 ip address 103.1.1.3 255.255.255.0 
 ospf enable 1 area 0.0.0.0
 mpls
 mpls ldp
#
interface LoopBack1
 ip address 3.3.3.3 255.255.255.255 
 ospf enable 1 area 0.0.0.0
#
bgp 200
 peer 2.2.2.2 as-number 200 
 peer 2.2.2.2 connect-interface LoopBack1
 peer 4.4.4.4 as-number 200 
 peer 4.4.4.4 connect-interface LoopBack1
 peer 6.6.6.6 as-number 300 
 peer 6.6.6.6 ebgp-max-hop 10 
 peer 6.6.6.6 connect-interface LoopBack1
 peer 10.10.10.10 as-number 200 
 peer 10.10.10.10 connect-interface LoopBack1
 #
 ipv4-family unicast
  undo synchronization
  peer 2.2.2.2 enable
  peer 2.2.2.2 reflect-client
  peer 2.2.2.2 label-route-capability
  peer 4.4.4.4 enable
  peer 4.4.4.4 reflect-client
  peer 4.4.4.4 label-route-capability
  peer 6.6.6.6 enable
  peer 10.10.10.10 enable
  peer 10.10.10.10 reflect-client
  peer 10.10.10.10 label-route-capability
 # 
 ipv4-family vpnv4
  undo policy vpn-target
  peer 2.2.2.2 enable
  peer 2.2.2.2 next-hop-invariable 
  peer 4.4.4.4 enable
  peer 6.6.6.6 enable
  peer 6.6.6.6 next-hop-invariable 
  peer 10.10.10.10 enable
  peer 10.10.10.10 next-hop-invariable 
#
ospf 1 
 area 0.0.0.0 
#

② R6配置如下

#
mpls lsr-id 6.6.6.6
mpls
#
mpls ldp
#
interface GigabitEthernet0/0/0
 ip address 56.1.1.6 255.255.255.0 
 ospf enable 1 area 0.0.0.0
 mpls
 mpls ldp
#
interface GigabitEthernet0/0/1
 ip address 67.1.1.6 255.255.255.0 
 ospf enable 1 area 0.0.0.0
 mpls
 mpls ldp
#
interface GigabitEthernet0/0/2
 ip address 116.1.1.6 255.255.255.0 
 ospf enable 1 area 0.0.0.0
 mpls
 mpls ldp
#
interface LoopBack1
 ip address 6.6.6.6 255.255.255.255 
 ospf enable 1 area 0.0.0.0
#
bgp 300
 peer 3.3.3.3 as-number 200 
 peer 3.3.3.3 ebgp-max-hop 10 
 peer 3.3.3.3 connect-interface LoopBack1
 peer 5.5.5.5 as-number 300 
 peer 5.5.5.5 connect-interface LoopBack1
 peer 7.7.7.7 as-number 300 
 peer 7.7.7.7 connect-interface LoopBack1
 peer 11.11.11.11 as-number 300 
 peer 11.11.11.11 connect-interface LoopBack1
 #
 ipv4-family unicast
  undo synchronization
  peer 3.3.3.3 enable
  peer 5.5.5.5 enable
  peer 5.5.5.5 reflect-client
  peer 5.5.5.5 label-route-capability
  peer 7.7.7.7 enable
  peer 7.7.7.7 reflect-client
  peer 7.7.7.7 label-route-capability
  peer 11.11.11.11 enable
  peer 11.11.11.11 reflect-client
  peer 11.11.11.11 label-route-capability
 # 
 ipv4-family vpnv4
  undo policy vpn-target
  peer 3.3.3.3 enable
  peer 3.3.3.3 next-hop-invariable 
  peer 5.5.5.5 enable
  peer 7.7.7.7 enable
  peer 7.7.7.7 next-hop-invariable 
  peer 11.11.11.11 enable
  peer 11.11.11.11 next-hop-invariable 
#
ospf 1 
 area 0.0.0.0 
#

(三)ASBR设备

① R4配置如下:

#
mpls lsr-id 4.4.4.4
mpls
#
mpls ldp
#
interface GigabitEthernet0/0/0
 ip address 34.1.1.4 255.255.255.0 
 ospf enable 1 area 0.0.0.0
 mpls
 mpls ldp
#
interface GigabitEthernet0/0/1
 ip address 45.1.1.4 255.255.255.0 
 mpls
#
#
interface LoopBack1
 ip address 4.4.4.4 255.255.255.255 
 ospf enable 1 area 0.0.0.0
#
bgp 200
 peer 3.3.3.3 as-number 200 
 peer 3.3.3.3 connect-interface LoopBack1
 peer 45.1.1.5 as-number 300 
 #
 ipv4-family unicast
  undo synchronization
  network 2.2.2.2 255.255.255.255 
  network 3.3.3.3 255.255.255.255 
  network 10.10.10.10 255.255.255.255 
  peer 3.3.3.3 enable
  peer 3.3.3.3 route-policy rr export
  peer 3.3.3.3 label-route-capability
  peer 45.1.1.5 enable
  peer 45.1.1.5 route-policy asbr export
  peer 45.1.1.5 label-route-capability
 # 
 ipv4-family vpnv4
  undo policy vpn-target
  peer 3.3.3.3 enable
#
ospf 1 
 area 0.0.0.0 
#
route-policy asbr permit node 10 
 apply mpls-label
#
route-policy rr permit node 10 
 if-match mpls-label 
 apply mpls-label
#

② R5配置如下

mpls lsr-id 5.5.5.5
mpls
#
mpls ldp
#
interface GigabitEthernet0/0/0
 ip address 45.1.1.5 255.255.255.0 
 mpls
#
interface GigabitEthernet0/0/1
 ip address 56.1.1.5 255.255.255.0 
 ospf enable 1 area 0.0.0.0
 mpls
 mpls ldp
#
interface LoopBack1
 ip address 5.5.5.5 255.255.255.255 
 ospf enable 1 area 0.0.0.0
#
bgp 300
 peer 6.6.6.6 as-number 300 
 peer 6.6.6.6 connect-interface LoopBack1
 peer 45.1.1.4 as-number 200 
 #
 ipv4-family unicast
  undo synchronization
  network 6.6.6.6 255.255.255.255 
  network 7.7.7.7 255.255.255.255 
  network 11.11.11.11 255.255.255.255 
  peer 6.6.6.6 enable
  peer 6.6.6.6 route-policy rr export
  peer 6.6.6.6 label-route-capability
  peer 45.1.1.4 enable
  peer 45.1.1.4 route-policy asbr export
  peer 45.1.1.4 label-route-capability
 # 
 ipv4-family vpnv4
  undo policy vpn-target
  peer 6.6.6.6 enable
#
ospf 1 
 area 0.0.0.0 
#
route-policy asbr permit node 10 
 apply mpls-label
#
route-policy rr permit node 10
 if-match mpls-label 
 apply mpls-label
#

五、实验效果

① R1到R8流量路径如下

② R9到R12流量路径如下

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包

打赏作者

朔方鸟

你的鼓励将是我创作的最大动力

¥1 ¥2 ¥4 ¥6 ¥10 ¥20
扫码支付:¥1
获取中
扫码支付

您的余额不足,请更换扫码支付或充值

打赏作者

实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值