NSSA区域处于边界引入默认路由该怎么处理呢?

如下图的拓扑所示,

内部网络的路由连接internet上,边界的路由器的内部网口属于ospf的NSSA区域,路由器上配置相应的默认路由指向internet的下一跳。内部网络中跑着不同协议的路由信息,保证内部的OSPF区域当中还需要引入其他类型的路由信息;并且要保证内部网络能够正常访问internet(在边界的路由器上做NAT暂时忽略,保证网络的连通性 )

怎么保证内部的网络能够正常访问internet呢?

具体的配置信息如下:

R5的路由配置信息:

router ospf 1
 log-adjacency-changes
 area 1 nssa
 redistribute connected subnets
 redistribute static subnets
 network area 1
ip route

R4的路由配置信息:

router ospf 1
 log-adjacency-changes
 area 1 nssa default-information-originate no-summary
 network area 1
 network area 0
 network area 1
!

R3的路由配置信息:

router ospf 1
 log-adjacency-changes
 redistribute rip metric 1 subnets
 network area 0
 network area 3
 network area 0
!
router rip
 version 2
 redistribute ospf 1 metric 2
 network
 no auto-summary

R2路由配置信息:

router ospf 1
 log-adjacency-changes
 network area 3
 network area 3

R1路由配置信息:

router rip
 version 2
 network
 network
 no auto-summary
查看R1的路由信息

R1#show ip route
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP
       D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
       N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
       E1 - OSPF external type 1, E2 - OSPF external type 2
       i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
       ia - IS-IS inter area, * - candidate default, U - per-user static route
       o - ODR, P - periodic downloaded static route
Gateway of last resort is not set
     /24 is subnetted, 1 subnets
C       is directly connected, Loopback1
     /32 is subnetted, 1 subnets
R       [120/2] via , 00:00:16, FastEthernet0/0
     /24 is subnetted, 1 subnets
R       [120/2] via , 00:00:16, FastEthernet0/0
     /32 is subnetted, 1 subnets
R       [120/2] via , 00:00:16, FastEthernet0/0
     /24 is subnetted, 1 subnets
R       [120/2] via , 00:00:16, FastEthernet0/0
R    /24 [120/2] via , 00:00:16, FastEthernet0/0
R    /24 [120/2] via , 00:00:16, FastEthernet0/0
     /24 is subnetted, 1 subnets
C       is directly connected, Loopback10
C    /24 is directly connected, FastEthernet0/0
R    /24 [120/2] via , 00:00:17, FastEthernet0/0
R    /24 [120/2] via , 00:00:17, FastEthernet0/0
查看R2的路由信息:

R2#  show ip route
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP
       D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
       N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
       E1 - OSPF external type 1, E2 - OSPF external type 2
       i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
       ia - IS-IS inter area, * - candidate default, U - per-user static route
       o - ODR, P - periodic downloaded static route
Gateway of last resort is not set
     /24 is subnetted, 1 subnets
O E2    [110/1] via , 04:44:05, FastEthernet0/1
     /24 is subnetted, 1 subnets
C       is directly connected, Loopback2
     /32 is subnetted, 1 subnets
O IA    [110/2] via , 05:06:48, FastEthernet0/1
     /32 is subnetted, 1 subnets
O IA    [110/12] via , 05:06:48, FastEthernet0/1
     /24 is subnetted, 1 subnets
O E2    [110/20] via , 04:43:55, FastEthernet0/1
O IA /24 [110/21] via , 04:44:05, FastEthernet0/1
O E2 /24 [110/20] via , 04:43:55, FastEthernet0/1
O E2 /24 [110/1] via , 04:44:05, FastEthernet0/1
C    /24 is directly connected, FastEthernet0/1
O IA /24 [110/11] via , 05:06:49, FastEthernet0/1

查看R5路由的信息:

R5#   show ip route
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP
       D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
       N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
       E1 - OSPF external type 1, E2 - OSPF external type 2
       i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
       ia - IS-IS inter area, * - candidate default, U - per-user static route
       o - ODR, P - periodic downloaded static route
Gateway of last resort is to network
     /32 is subnetted, 1 subnets
O       [110/11] via , 00:09:53, Ethernet1/0
     /24 is subnetted, 1 subnets
C       is directly connected, Loopback5
C    /24 is directly connected, Ethernet1/0
C    /24 is directly connected, Ethernet1/2
S*   /0 [1/0] via

R5的LSDB信息:

R5#show ip ospf database
            OSPF Router with ID () (Process ID 1)
                Router Link States (Area 1)
Link ID         ADV Router      Age         Seq#       Checksum Link count
                  618         0x80000007 0x00A253 2
                  601         0x80000006 0x003ED1 1
                Net Link States (Area 1)
Link ID         ADV Router      Age         Seq#       Checksum
              627         0x80000001 0x001277
                Summary Net Link States (Area 1)
Link ID         ADV Router      Age         Seq#       Checksum
                  473         0x80000001 0x00C065
                Type-7 AS External Link States (Area 1)
Link ID         ADV Router      Age         Seq#       Checksum Tag
                  482         0x80000001 0x005D34 0
                  715         0x80000001 0x00B24E 0
              715         0x80000001 0x007E23 0

查看到R1上的LSDB也会产生相应的7类的默认路由LSA,但是查看路由表中只有一条去往internet的默认路由;为什么没有产生一条去往R2的默认路由呢?

是由于路由的管理距离起的作用,默认路由的管理距离是1 ,ospf的管理距离是110,管理距离是越小越优先,所以就没有产生ospf的默认路由

解决方案:1、要么修改Area 1的属性,nssa区域修改成普通的area区域并要在边界路由器的上注入默认路由(命令:default-information originate),保证内部网络能够正常访问internet网络

修改后:查看到的R1/R2上路由信息都能够学习到一条外部引入的默认路由信息

具体的修改信息如下:

修改后R5的配置如下:

 log-adjacency-changes
 redistribute connected subnets
 redistribute static subnets
 network area 1
 default-information originate
!
ip route

R4的配置信息:

router ospf 1
 log-adjacency-changes
 network area 1
 network area 0
 network area 1
!
查看R1的路由信息:

R1#            show ip ro
R1#            show ip route
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP
       D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
       N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
       E1 - OSPF external type 1, E2 - OSPF external type 2
       i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
       ia - IS-IS inter area, * - candidate default, U - per-user static route
       o - ODR, P - periodic downloaded static route
Gateway of last resort is to network
     /24 is subnetted, 1 subnets
C       is directly connected, Loopback1
     /32 is subnetted, 1 subnets
R       [120/2] via , 00:00:13, FastEthernet0/0
     /24 is subnetted, 1 subnets
R       [120/2] via , 00:00:13, FastEthernet0/0
     /32 is subnetted, 1 subnets
R       [120/2] via , 00:00:13, FastEthernet0/0
     /24 is subnetted, 1 subnets
R       [120/2] via , 00:00:13, FastEthernet0/0
R    /24 [120/2] via , 00:00:13, FastEthernet0/0
R    /24 [120/2] via , 00:00:13, FastEthernet0/0
     /24 is subnetted, 1 subnets
C       is directly connected, Loopback10
C    /24 is directly connected, FastEthernet0/0
R    /24 [120/2] via , 00:00:14, FastEthernet0/0
R    /24 [120/2] via , 00:00:14, FastEthernet0/0
R*   /0 [120/2] via , 00:00:14, FastEthernet0/0

查看R2的路由信息:

R2#show ip route
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP
       D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
       N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
       E1 - OSPF external type 1, E2 - OSPF external type 2
       i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
       ia - IS-IS inter area, * - candidate default, U - per-user static route

       o - ODR, P - periodic downloaded static route

Gateway of last resort is to network

     /24 is subnetted, 1 subnets
O E2    [110/1] via , 00:04:04, FastEthernet0/1
     /24 is subnetted, 1 subnets
C       is directly connected, Loopback2
     /32 is subnetted, 1 subnets
O IA    [110/2] via , 05:25:49, FastEthernet0/1
     /32 is subnetted, 1 subnets
O IA    [110/12] via , 05:25:49, FastEthernet0/1
     /24 is subnetted, 1 subnets
O E2    [110/20] via , 00:04:04, FastEthernet0/1
O IA /24 [110/21] via , 00:04:19, FastEthernet0/1
O E2 /24 [110/20] via , 00:04:04, FastEthernet0/1
O E2 /24 [110/1] via , 00:04:04, FastEthernet0/1
C    /24 is directly connected, FastEthernet0/1
O IA /24 [110/11] via , 05:25:49, FastEthernet0/1
O*E2 /0 [110/1] via , 00:03:40, FastEthernet0/1

查看R2的LSDB信息:

R2#show ip ospf database
            OSPF Router with ID () (Process ID 1)
                Router Link States (Area 3)
Link ID         ADV Router      Age         Seq#       Checksum Link count
                  602         0x8000000D 0x005AC8 2
                  1666        0x8000000C 0x001F12 1
                Net Link States (Area 3)
Link ID         ADV Router      Age         Seq#       Checksum
              602         0x8000000B 0x004E58
                Summary Net Link States (Area 3)
Link ID         ADV Router      Age         Seq#       Checksum
                  682         0x8000000B 0x009A7F
                  682         0x8000000B 0x00D03B
              682         0x8000000D 0x00A806
              396         0x80000001 0x001A95
                Summary ASB Link States (Area 3)
Link ID         ADV Router      Age         Seq#       Checksum
                  391         0x80000001 0x000305
                Type-5 AS External Link States
Link ID         ADV Router      Age         Seq#       Checksum Tag
                  359         0x80000001 0x00A4F9 1
                  1667        0x8000000A 0x009803 0
                  433         0x80000001 0x009CE0 0
              1667        0x8000000A 0x00FF34 0
              433         0x80000001 0x0068B5 0
网络测试:
R2# ping    模拟的外部internet网络
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to , timeout is 2 seconds:
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 60/73/104 ms
R2#tracerou
Type escape sequence to abort.
Tracing the route to
  1 28 msec 12 msec 20 msec
  2 8 msec 24 msec 32 msec
  3 32 msec 40 msec 80 msec
  4 104 msec 60 msec 72 msec

评论 1
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值