核心实验17.5:2000人 2万人堆叠型网络设计_H3C

实验:2000人 2万人堆叠型网络设计
步骤 ① 堆叠配置43:03
步骤 ② 链路聚合24:32
步骤 ③ vlan trunk18:24
步骤 ④ MAD 多主检测28:05
步骤 ⑤ 出口路由04:26
步骤 ⑥ NAT16:17
步骤 ⑦ 扩展为三层架构

项目场景

堆叠,链路聚合,vlan,trunk,mad,nat等技术实现通信。
ensp无法实现堆叠,故使用h3c模拟器。

sw1和sw2进行堆叠。


实搭拓扑图

在这里插入图片描述


相关配置

步骤 ① 堆叠配置

调试命令:dis irf

SW1

[sw1]irf member 1 priority 5 //启用堆叠 序号1 优先级5
[sw1]int range FortyGigE 1/0/53 FortyGigE 1/0/54 //批量进入5354端口
[sw1-if-range]shutdown
[sw1]irf-port 1/1 //创捆绑组
[sw1-irf-port1/1]port group interface FortyGigE 1/0/53 //53号口加入捆绑组
注意:此时不要激活接口
[sw1-irf-port1/1]port group interface FortyGigE 1/0/54//54号口加入捆绑组
[sw1]int range FortyGigE 1/0/53 FortyGigE 2/0/54
[sw1-if-range]undo shutdown
<sw1>save
[SW1]irf-port-configuration active //sw1,2配完再激活

SW2

[SW2]irf member 1 renumber 2 //irf序号2。之后接口编号为2开头。
<SW2>save
<SW2>reboot
[SW2]int range FortyGigE 2/0/53 FortyGigE 2/0/54
[SW2-if-range]shutdown
[SW2]irf-port 2/2
[SW2-irf-port2/2]port group interface FortyGigE 2/0/53
[SW2-irf-port2/2]port group interface FortyGigE 2/0/54
[SW2]int range FortyGigE 2/0/53 FortyGigE 2/0/54
[SW2-if-range]undo shutdown
<SW2>save
[SW2]irf-port-configuration active //sw1,2配完再激活

SW3

irf domain 2 //堆叠域
irf member 1 pri 5
int rang for 1/0/53 for 1/0/54
shut
irf-port 1/1
port group interface FortyGigE1/0/53
port group interface FortyGigE1/0/54
int rang for 1/0/53 for 1/0/54
undo shut
save
irf-port-config active //sw3,4配完再激活

SW4

irf domain 2
irf member 1 rember 2
save
reboot 重启生效
int rang for 2/0/53 for 2/0/54
shut
irf-port 2/2
port group interface FortyGigE1/0/53
port group interface FortyGigE1/0/54
int rang for 2/0/53 for 2/0/54
undo shut
save
irf-port-config active //sw3,4配完再激活

步骤 ② 链路聚合

查看聚合:dis link-aggregation summary
实现冗余备份,提高链路带宽。

二层聚合

SW1与SW3聚合
*SW1------------------------------------------
int Bridge-Aggregation 1 (等于华为的Eth-Trunk )
link-aggregation mode dynamic (动态模式即等于华为的LACP模式,动态协商)
int range Ten-GigabitEthernet 1/0/49 Ten-GigabitEthernet 1/0/50 Ten-Gigabit
Ethernet 2/0/49 Ten-GigabitEthernet 2/0/50
port link-aggregation group 1
*SW3------------------------------------------
int Bridge-Aggregation 1
link-aggregation mode dynamic
int range Ten-GigabitEthernet 1/0/49 Ten-GigabitEthernet 1/0/50 Ten-Gigabit
Ethernet 2/0/49 Ten-GigabitEthernet 2/0/50
port link-aggregation group 1

SW1与SW5聚合
*SW1------------------------------------------
int Bridge-Aggregation 2
link-aggregation mode dynamic
int range Ten-GigabitEthernet 1/0/51 ten 2/0/52
port link-aggregation grou 2
*SW5------------------------------------------
int Bridge-Aggregation 2
link-aggregation mode dynamic
int range ten 1/0/51 ten 1/0/52
port link-aggregation grou 2

SW1与SW6聚合
*SW1------------------------------------------
int Bridge-Aggregation 3
link-aggregation mode dynamic
int range Ten-GigabitEthernet 1/0/52 ten 2/0/51
port link-aggregation grou 3
*SW6------------------------------------------
int Bridge-Aggregation 3
link-aggregation mode dynamic
int range ten 1/0/51 ten 1/0/52
port link-aggregation grou 3

三层聚合

SW1与R1聚合
*SW1------------------------------------------
interface Route-Aggregation10
ip address 192.168.254.2 255.255.255.0
interface GigabitEthernet1/0/2
port link-mode route
port link-aggregation group 10
interface GigabitEthernet2/0/1
port link-mode route
port link-aggregation group 10
*R1------------------------------------------
interface Route-Aggregation10
ip address 192.168.254.1 255.255.255.0
int ran gi 0/2 gi 0/0
port link-aggregation group 10

步骤 ③ vlan trunk

SW1:

vlan 10
vlan 20
vlan 30
vlan 40
interface Bridge-Aggregation1
port link-type trunk
port trunk permit vlan 10 20
interface Bridge-Aggregation2
port link-type trunk
port trunk permit vlan 30
interface Bridge-Aggregation3
port link-type trunk
port trunk permit vlan 40

interface Vlan-interface10
ip address 192.168.10.1 255.255.255.0
interface Vlan-interface20
ip address 192.168.20.1 255.255.255.0
interface Vlan-interface30
ip address 192.168.30.1 255.255.255.0
interface Vlan-interface40
ip address 192.168.40.1 255.255.255.0

SW3:

vlan 10
vlan 20
interface Bridge-Aggregation1
port link-type trunk
port trunk permit vlan 10 20

int gi 1/0/1
port link-type access
port access vlan 10
(sw4)int gi 2/0/1
port link-type access
port access vlan 10


SW5:

vlan 30
interface Bridge-Aggregation2
port link-type trunk
port trunk permit vlan 30

int gi 1/0/1
port link-type access
port access vlan 30

SW6:

vlan 40
interface Bridge-Aggregation3
port link-type trunk
port trunk permit vlan 40

int gi 1/0/1
port link-type access
port access vlan 40

步骤 ④ MAD 多主检测

调试命令:dis mad verbose

检测堆叠的设备间的堆叠线(心跳线)是否断开

mad 检测不能在路由器聚合链路上使能,路由器不支持

检测方式:lacp(推荐)、arp、bfd

lacp:通过发送特殊的lacp 组播报文检测,lacp组播报文里面包含irf domain id 和active 主设备成员id。当检测到心跳线断开,两个设备比较id号,其中id号大的设备自动shutdown所有接口退出工作。

SW1

interface Bridge-Aggregation1 (可以在部分的聚合口选配mad功能,不
必每个聚合口都启用mad功能,例如聚合组1 可以不启用madmad enable
interface Bridge-Aggregation2
mad enable
interface Bridge-Aggregation3
mad enable
irf domain id:0 全部选择0(检测sw1.选择2则是检测堆叠域2)

SW3、SW5、SW6

interface Bridge-Aggregation1
mad enable
irf domain id:0 选择0

步骤 ⑤ 出口路由

SW1:

ip route-static 0.0.0.0 0 192.168.254.1 //sw1出给r1

R1:

ip route-static 0.0.0.0 0 12.1.1.2 //r1出给外网
ip route-static 192.168.0.0 16 192.168.254.2 //r1回给sw1

步骤 ⑥ NAT

easy ip型nat

R1:

acl basic 2000
rule 0 permit source 192.168.0.0 0.0.255.255
interface GigabitEthernet0/1
ip address 12.1.1.1 255.255.255.0
nat outbound 2000

步骤 ⑦ 扩展为三层架构


在这里插入图片描述

SW5:

interface GigabitEthernet1/0/5
port link-type trunk
port trunk permit vlan 30

SW7:

vlan 30
interface GigabitEthernet1/0/5
port link-type trunk
port trunk permit vlan 1 30
interface GigabitEthernet1/0/6
port link-mode bridge
port access vlan 30

完成效果:

  • 1
    点赞
  • 2
    收藏
    觉得还不错? 一键收藏
  • 0
    评论

“相关推荐”对你有帮助么?

  • 非常没帮助
  • 没帮助
  • 一般
  • 有帮助
  • 非常有帮助
提交
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值