1子网划分:为了汇总方便,上半部使用0-127划分,下半部使用128-255进行划分
AR1:G0/0/0-192.168.0.1/30 G0/0/1-192.168.0.129/30
Lo0:192.168.0.32/28
Lo1:192.168.0.48/28
AR2:G0/0/0-192.168.0.2/30 G0/0/1-192.168.0.5/30
Lo0:192.168.0.64/28
Lo1:192.168.0.80/28
AR3:G0/0/0-192.168.0.130/30 G0/0/1-192.168.0.133/30
Lo0:192.168.0.192/28
Lo1:192.168.0.208/28
AR4:G0/0/0-192.168.0.6/30 G0/0/1-192.168.0.134/30
G4/0/0-192.168.09/30 G4/0/1-192.168.0.13/30
Lo0:192.168.0.128/28
Lo1:192.168.0.144/28
AR5:G0/0/0-192.168.0.10/30 G0/0/1-192.168.0.14/30
Lo0:5.5.5.0/24
2.配置ip地址
3配置路由表:
验证全网互通:
防止环路
将路由器的lo0和lo1的地址汇总路由指向null 0 接口,可以保证 AR1上lo0或者lo1的网络不可达时,导致的路由环路
配置文件
<AR1>dis current-configuration
[V200R003C00]
#
sysname AR1
#
interface GigabitEthernet0/0/0
ip address 192.168.0.1 255.255.255.252
#
interface GigabitEthernet0/0/1
ip address 192.168.0.129 255.255.255.252
#
interface LoopBack0
ip address 192.168.0.33 255.255.255.240
#
interface LoopBack1
ip address 192.168.0.49 255.255.255.240
#
ip route-static 0.0.0.0 0.0.0.0 GigabitEthernet0/0/0 192.168.0.2
ip route-static 0.0.0.0 0.0.0.0 GigabitEthernet0/0/1 192.168.0.130 preference 10
0
ip route-static 192.168.0.128 255.255.255.128 GigabitEthernet0/0/1 192.168.0.130
#
<AR2>dis cu
[V200R003C00]
#
sysname AR2
#
interface GigabitEthernet0/0/0
ip address 192.168.0.2 255.255.255.252
#
interface GigabitEthernet0/0/1
ip address 192.168.0.5 255.255.255.252
#
interface LoopBack0
ip address 192.168.0.65 255.255.255.240
#
interface LoopBack1
ip address 192.168.0.81 255.255.255.240
#
ip route-static 0.0.0.0 0.0.0.0 GigabitEthernet0/0/1 192.168.0.6
ip route-static 0.0.0.0 0.0.0.0 GigabitEthernet0/0/0 192.168.0.1 preference 100
ip route-static 192.168.0.32 255.255.255.224 GigabitEthernet0/0/0 192.168.0.1
#
return
<AR3>dis cu
[V200R003C00]
#
sysname AR3
#
firewall zone Local
priority 15
#
interface GigabitEthernet0/0/0
ip address 192.168.0.130 255.255.255.252
#
interface GigabitEthernet0/0/1
ip address 192.168.0.133 255.255.255.252
#
interface LoopBack0
ip address 192.168.0.161 255.255.255.240
#
interface LoopBack1
ip address 192.168.0.177 255.255.255.240
#
ip route-static 0.0.0.0 0.0.0.0 GigabitEthernet0/0/1 192.168.0.134
ip route-static 0.0.0.0 0.0.0.0 GigabitEthernet0/0/0 192.168.0.129 preference 10
0
ip route-static 192.168.0.0 255.255.255.252 GigabitEthernet0/0/0 192.168.0.129
ip route-static 192.168.0.32 255.255.255.224 GigabitEthernet0/0/0 192.168.0.129
#
return
<AR4>dis cu
[V200R003C00]
#
sysname AR4
#
interface GigabitEthernet0/0/0
ip address 192.168.0.6 255.255.255.252
#
interface GigabitEthernet0/0/1
ip address 192.168.0.134 255.255.255.252
#
interface GigabitEthernet4/0/0
ip address 192.168.0.9 255.255.255.252
#
interface GigabitEthernet4/0/1
ip address 192.168.0.13 255.255.255.252
#
interface LoopBack0
ip address 192.168.0.193 255.255.255.240
#
interface LoopBack1
ip address 192.168.0.209 255.255.255.240
#
ip route-static 0.0.0.0 0.0.0.0 GigabitEthernet4/0/0 192.168.0.10
ip route-static 0.0.0.0 0.0.0.0 GigabitEthernet4/0/1 192.168.0.14
ip route-static 192.168.0.0 255.255.255.128 GigabitEthernet0/0/0 192.168.0.5
ip route-static 192.168.0.0 255.255.255.128 GigabitEthernet0/0/1 192.168.0.133 p
reference 100
ip route-static 192.168.0.128 255.255.255.128 GigabitEthernet0/0/1 192.168.0.133
ip route-static 192.168.0.128 255.255.255.128 GigabitEthernet0/0/0 192.168.0.5 p
reference 100
#
return
<AR5>dis cu
[V200R003C00]
#
sysname AR5
#
interface GigabitEthernet0/0/0
ip address 192.168.0.10 255.255.255.252
#
interface GigabitEthernet0/0/1
ip address 192.168.0.14 255.255.255.252
#
interface LoopBack0
ip address 5.5.5.5 255.255.255.0
#
ip route-static 0.0.0.0 0.0.0.0 GigabitEthernet0/0/0 192.168.0.9
ip route-static 0.0.0.0 0.0.0.0 GigabitEthernet0/0/1 192.168.0.13 preference 10
0
#
return
验证路由备份:
问题:
1在所有的路由器上均配置了默认路由,配置了默认路由的备份路由,想实现任何一个链路断开,网络还是可达,经测试,当断开AR1与AR2的链路,AR4与AR5并不能访问AR1及AR1的lo0和lo1,因为AR4并不知道AR1与AR2的链路断开了,默认发包还是发到了AR2,AR2发现AR1不可达,又把数据包发给了AR4,导致了数据包在AR2和AR4之间相互发送,最终丢弃数据包。