静态路由是指由网络管理员手工配置路由信息。当网络的拓扑结构或链路状态发生变化时,网络管理员需要手工去修改路由表中相关的静态路由信息。静态路由一般适用于比较简单的网络环境,在这样的环境中,网络管理员易于清楚地了解网络的拓扑结构,便于设置正确的路由信息。
大型和复杂的网络环境通常不宜采用静态路由。一方面,网络管理员难以全面地了解整个网络的拓扑结构;另一方面,当网络的拓扑结构和链路状态发生变化时,路由器中的静态路由信息需要大范围地调整,这一工作的难度和复杂程度非常高。
添加静态路由的命令为:ip route [网络号] [子网掩码] [下一跳地址]。删除静态路由直接在此命令前加上no即可。例如:
创建静态路由:ip route 192.168.30.0 255.255.255.0 192.168.100.2
删除静态路由:no ip route 192.168.30.0 255.255.255.0 192.168.100.2命令: ip route 简单地表明这是一个静态路由。
192.168.30.0 就是那个需要将分组发送到的远程网络。
255.255.255.0 是这个远程网络的子网掩码。
192.168.100.2就是下一跳地址,或下一跳路由器,即将分组向下传递的下一个位置。
静态路由选择的优缺点:
静态路由选择的优点如下:
- 不增加路由器 CPU 的开销,也就是说使用静态路由选择可以比使用动态路由选择选购更便宜的路由器;
- 不增加路由器间的带宽占用,也就是说在 WAN 链接的使用中可以节省更多的费用;
- 提高了安全性,因为管理员可以有选择地配置路由,使之只通过某些特定的网络;
静态路由选择的缺点如下:
- 管理员必须真正地了解整个互联网络以及每台路由器间的连接方式,以便实现对这些路由的正确配置;
- 当添加某个网络到互联网络中时,管理员必须在所有路由器上(手工地)添加到此网络的路由;
- 对于大型网络使用静态路由选择基本上是不可行的,因为配置静态路由选择会产生巨大的工作量。
训练实例,如图:
三层交换机SA配置:
SA#show run
Building configuration...
Current configuration : 2180 bytes
!
version 16.3.2
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname SA
!
!
!
!
!
!
!
no ip cef
ip routing
!
no ipv6 cef
!
!
!
!
!
!
!
!
!
!
!
!
!
!
spanning-tree mode pvst
!
!
!
!
!
!
interface GigabitEthernet1/0/1
switchport access vlan 10
!
interface GigabitEthernet1/0/2
switchport access vlan 10
!
interface GigabitEthernet1/0/3
switchport access vlan 10
!
interface GigabitEthernet1/0/4
switchport access vlan 10
!
interface GigabitEthernet1/0/5
switchport access vlan 10
!
interface GigabitEthernet1/0/6
switchport access vlan 10
!
interface GigabitEthernet1/0/7
switchport access vlan 10
!
interface GigabitEthernet1/0/8
switchport access vlan 10
!
interface GigabitEthernet1/0/9
switchport access vlan 20
!
interface GigabitEthernet1/0/10
switchport access vlan 20
!
interface GigabitEthernet1/0/11
switchport access vlan 20
!
interface GigabitEthernet1/0/12
switchport access vlan 20
!
interface GigabitEthernet1/0/13
switchport access vlan 20
!
interface GigabitEthernet1/0/14
switchport access vlan 20
!
interface GigabitEthernet1/0/15
switchport access vlan 20
!
interface GigabitEthernet1/0/16
switchport access vlan 20
!
interface GigabitEthernet1/0/17
!
interface GigabitEthernet1/0/18
!
interface GigabitEthernet1/0/19
!
interface GigabitEthernet1/0/20
!
interface GigabitEthernet1/0/21
!
interface GigabitEthernet1/0/22
!
interface GigabitEthernet1/0/23
!
interface GigabitEthernet1/0/24
switchport access vlan 100
!
interface GigabitEthernet1/1/1
!
interface GigabitEthernet1/1/2
!
interface GigabitEthernet1/1/3
!
interface GigabitEthernet1/1/4
!
interface Vlan1
no ip address
shutdown
!
interface Vlan10
mac-address 0001.430b.4501
ip address 192.168.10.254 255.255.255.0
!
interface Vlan20
mac-address 0001.430b.4502
ip address 192.168.20.254 255.255.255.0
!
interface Vlan100
mac-address 0001.430b.4503
ip address 192.168.100.1 255.255.255.0
!
ip classless
ip route 192.168.30.0 255.255.255.0 192.168.100.2
ip route 192.168.40.0 255.255.255.0 192.168.100.2
!
ip flow-export version 9
!
!
!
!
!
!
!
!
line con 0
!
line aux 0
!
line vty 0 4
login
!
!
!
!
end
SA#
SA#
三层交换机SB配置:
SB#show run
Building configuration...
Current configuration : 2180 bytes
!
version 16.3.2
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname SB
!
!
!
!
!
!
!
no ip cef
ip routing
!
no ipv6 cef
!
!
!
!
!
!
!
!
!
!
!
!
!
!
spanning-tree mode pvst
!
!
!
!
!
!
interface GigabitEthernet1/0/1
switchport access vlan 30
!
interface GigabitEthernet1/0/2
switchport access vlan 30
!
interface GigabitEthernet1/0/3
switchport access vlan 30
!
interface GigabitEthernet1/0/4
switchport access vlan 30
!
interface GigabitEthernet1/0/5
switchport access vlan 30
!
interface GigabitEthernet1/0/6
switchport access vlan 30
!
interface GigabitEthernet1/0/7
switchport access vlan 30
!
interface GigabitEthernet1/0/8
switchport access vlan 30
!
interface GigabitEthernet1/0/9
switchport access vlan 40
!
interface GigabitEthernet1/0/10
switchport access vlan 40
!
interface GigabitEthernet1/0/11
switchport access vlan 40
!
interface GigabitEthernet1/0/12
switchport access vlan 40
!
interface GigabitEthernet1/0/13
switchport access vlan 40
!
interface GigabitEthernet1/0/14
switchport access vlan 40
!
interface GigabitEthernet1/0/15
switchport access vlan 40
!
interface GigabitEthernet1/0/16
switchport access vlan 40
!
interface GigabitEthernet1/0/17
!
interface GigabitEthernet1/0/18
!
interface GigabitEthernet1/0/19
!
interface GigabitEthernet1/0/20
!
interface GigabitEthernet1/0/21
!
interface GigabitEthernet1/0/22
!
interface GigabitEthernet1/0/23
!
interface GigabitEthernet1/0/24
switchport access vlan 100
!
interface GigabitEthernet1/1/1
!
interface GigabitEthernet1/1/2
!
interface GigabitEthernet1/1/3
!
interface GigabitEthernet1/1/4
!
interface Vlan1
no ip address
shutdown
!
interface Vlan30
mac-address 00e0.f721.3c01
ip address 192.168.30.254 255.255.255.0
!
interface Vlan40
mac-address 00e0.f721.3c02
ip address 192.168.40.254 255.255.255.0
!
interface Vlan100
mac-address 00e0.f721.3c03
ip address 192.168.100.2 255.255.255.0
!
ip classless
ip route 192.168.10.0 255.255.255.0 192.168.100.1
ip route 192.168.20.0 255.255.255.0 192.168.100.1
!
ip flow-export version 9
!
!
!
!
!
!
!
!
line con 0
!
line aux 0
!
line vty 0 4
login
!
!
!
!
end
SB#
SB#
查看三层交换机SA和SB路由表,其中C表示直连,S表示静态路由。
SA#show ip route
Codes: C - connected, S - static, I - IGRP, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2, E - EGP
i - IS-IS, L1 - IS-IS level-1, L2 - IS-IS level-2, ia - IS-IS inter area
* - candidate default, U - per-user static route, o - ODR
P - periodic downloaded static route
Gateway of last resort is not set
C 192.168.10.0/24 is directly connected, Vlan10
C 192.168.20.0/24 is directly connected, Vlan20
S 192.168.30.0/24 [1/0] via 192.168.100.2
S 192.168.40.0/24 [1/0] via 192.168.100.2
C 192.168.100.0/24 is directly connected, Vlan100
SB#show ip route
Codes: C - connected, S - static, I - IGRP, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2, E - EGP
i - IS-IS, L1 - IS-IS level-1, L2 - IS-IS level-2, ia - IS-IS inter area
* - candidate default, U - per-user static route, o - ODR
P - periodic downloaded static route
Gateway of last resort is not set
S 192.168.10.0/24 [1/0] via 192.168.100.1
S 192.168.20.0/24 [1/0] via 192.168.100.1
C 192.168.30.0/24 is directly connected, Vlan30
C 192.168.40.0/24 is directly connected, Vlan40
C 192.168.100.0/24 is directly connected, Vlan100