一、实验要求
1,R4为ISP,其上只能配置IP地址;R4与其他所有直连设备间均使用公有IP
2,R3-R5/6/7为MGRE环境,R3为中心站点;
3,整个OSPF环境IP基于172.16.0.0/16划分;
4,所有设备均可访问R4的环回;
5,减少LSA的更新量,加快收敛,保障更新安全;
6,全网可达
二、配置思路
1、根据实验要求对172.16.0.0/16网段进行子网划分,方便之后的子网汇总,从而实现对路由条目的减少。
2、对各个设备进行IP地址的配置,及环回接口的配置。
3、对R3、R5、R6、R7设备进行MGRE环境的配置,R3为中心站点,并在这四个路由器上而配置到ISP的缺省路由,实现对边界路由器的私网互通。
4、对各个路由器进行配置OSPF协议并进行宣告,注意在宣告的时候可以汇总的路由信息可以汇总后一并宣告,让其各个路由器获取其他网段的路由拓扑信息,从而获取路由条目。
5、将域外路由通过重发布实现OSPF内可以互通。
6、对需要做特殊区域的区域做特殊区域的配置
7、对边界路由器配置NAT协议从而实现可以对公网的访问
三、实验步骤
1、子网划分
172.16.0.0 16 区域0
172.16.0.0 19--骨干
172.16.0.0 24--P2P(点到点)的链路/30
172.16.0.0 30 --172.16.0.1/30 172.16.0.2/30
172.16.0.4 30--172.16.0.5/30 172.16.0.6/30
172.16.0.8 30--172.16.0.9/30 172.16.0.10/30
172.16.0.12 30 --172.16.0.13/30 172.13.0.14/30
172.16.0.16 30 --172.16.0.17/30 172.16.0.18/30
172.16.0.20 30--172.16.0.21/30 172.16.0.22/30
172.16.0.24 30--172.16.0.25/30 172.16.0.26/30
... ...
172.16.1.0 24--MA链路/29
172.16.1.0/29
172.16.1.8/29
172.16.1.16/29
172.16.1.24/29
172.16.1.32/29
172.16.1.40/29
172.16.1.48/29
172.16.1.56/29
172.16.1.64/29
172.16.1.72/29
172.16.1.80/29
... ...
172.16.2.0 24
172.16.3.0 24
... ...
172.16.31.0 24
172.16.32.0 19 区域一
172.16.32.0 24
172.16.32.4 30
172.16.32.8 30
172.16.32.12 30
... ...
172.16.32.0 24
172.16.33.0 29
172.16.33.8 29
172.16.33.16 29
... ....
172.16.33.0 24
172.16.33.0 24
172.16.34.0 24
... ..
172.16.63.0 24
172.16.64.0 19 区域二
172.16.64.0 24
172.16.64.0 30
172.16.64.4 30
172.16.64.8 30
... ...
172.16.65.0 24
172.16.65.0 29
172.16.65.8 29
172.16.65.16 29
... ...
172.16.66.0 24
... ...
172.16.96.0 19 区域三
172.16.96.0 24
172.16.96.0 30
172.16.96.4 30
172.16.98.8 30
... ...
172.16.97.0 24
172.16.97.0 29
172.16.97.8 29
172.16.97.16 29
... ...
172.16.98.0 24
172.16.99.0 24
... ...
172.16.128.0 19 区域四
172.16.128.0 24
172.16.128.0 30
172.16.128.4 30
172.16.128.8 30
... ...
172.16.129.0 24
172.16.129.0 29
172.16.129.8 29
172.16.129.16 29
... ...
172.16.130.0 24
172.16.131.0 24
172.16.132.0 24
... ...
172.16.160.0 19 rip
172.16.160.0 24
172.16.160.0 30
172.16.160.4 30
172.16.160.8 30
... ...
172.16.161.0 24
172.16.161.0 29
172.16.161.8 29
172.16.161.16 29
... ...
172.16.162.0 24
172.16.163.0 24
172.16.164.0 24
172.16.165.0 24
... ...
2、对AERA0区域的设备进行IP地址配置
R5
[R5]interface Serial 4/0/0
[R5-Serial4/0/0]ip add 45.0.0.1 24
[R5]interface LoopBack 0
[R5-LoopBack0]ip add 172.16.2.1 24
[R5]interface Tunnel 0/0/0
[R5-Tunnel0/0/0]tunnel-protocol gre p2mp
[R5-Tunnel0/0/0]ip add 172.16.1.1 29
R3
[R3]interface Serial 4/0/0
[R3-Serial4/0/0]ip add 34.0.0.1 24
[R3]interface Tunnel 0/0/0
[R3-Tunnel0/0/0]tunnel-protocol gre p2mp
[R3-Tunnel0/0/0]ip add 172.16.1.4 29
R4
[R4]interface Serial 4/0/0
[R4-Serial4/0/0]ip add 31.0.0.2 24
[R4]interface s
[R4]interface Serial 3/0/0
[R4-GigabitEthernet0/0/0]ip add 47.0.0.2 24
R6
[Huawei]int se 4/0/0
[Huawei-Serial4/0/0]ip add 46.0.0.1 24
[Huawei]interface LoopBack 0
[Huawei-LoopBack0]ip add 172.16.4.1 24
[Huawei-Tunnel0/0/0]tunnel-protocol gre p2mp
[Huawei-Tunnel0/0/0]ip add 172.16.1.2 29
R7
[R7]int g 0/0/0
[R7-GigabitEthernet0/0/0]ip address 47.0.0.1 24
[R7]interface LoopBack 0
[R7-LoopBack0]ip address 172.16.3.1 24
[R7]interface Tunnel 0/0/0
[R7-Tunnel0/0/0]tunnel-protocol gre p2mp
[R7-Tunnel0/0/0]ip add 172.16.1.3 29
3、对AERA1区域的设备进行IP地址配置
R1
[R1]interface GigabitEthernet 0/0/0
[R1-GigabitEthernet0/0/0]IP ADD 172.16.33.1 29
[R1]interface LoopBack 0
[R1-LoopBack0]ip add 172.16.35.1 24
[R1-LoopBack0]
R2
[R2]interface GigabitEthernet 0/0/0
[R2-GigabitEthernet0/0/0]ip add 172.16.33.2 29
[R2]interface LoopBack 0
[R2-LoopBack0]ip add 172.16.36.1 24
R3
[R3]interface GigabitEthernet 0/0/0
[R3-GigabitEthernet0/0/0]ip add 172.16.33.3 29[R3]interface LoopBack 0
[R3-LoopBack0]ip add 172.16.34.1 24
4、对AERA2区域的设备进行IP地址配置
R6
[R6]interface GigabitEthernet 0/0/0
[R6-GigabitEthernet0/0/0]ip add 172.16.64.1 30
R11
[R11]interface GigabitEthernet 0/0/0
[R11-GigabitEthernet0/0/0]ip add 172.16.64.2 30
[R11]interface GigabitEthernet 0/0/1
[R11-GigabitEthernet0/0/1]ip add 172.16.64.5 30
[R11]interface LoopBack 0
[R11-LoopBack0]ip add 172.16.66.1 24
R12
[R12]interface GigabitEthernet 0/0/0
[R12-GigabitEthernet0/0/0]ip add 172.16.64.6 30
5、对AERA3区域的设备进行IP地址配置
R7
[R7]interface GigabitEthernet 0/0/1
[R7-GigabitEthernet0/0/1]ip add 172.16.96.1 30
R8
[R8]interface GigabitEthernet 0/0/0
[R8-GigabitEthernet0/0/0]ip add 192.16.96.2 30
[R8]interface GigabitEthernet 0/0/1
[R8-GigabitEthernet0/0/1]ip add 172.16.96.5 30
[R8]interface LoopBack 0
[R8-LoopBack0]ip add 172.16.98.1 24
R9
[R9]interface GigabitEthernet 0/0/0
[R9-GigabitEthernet0/0/0]ip add 172.16.96.6 30
6、对AERA4区域的设备进行IP地址配置
R9
[R9]interface GigabitEthernet 0/0/1
[R9-GigabitEthernet0/0/1]ip add 172.16.128.1 30
[R9]interface LoopBack 0
[R9-LoopBack0]ip add 172.16.130.1 24
R10
[R10]interface GigabitEthernet 0/0/0
[R10-GigabitEthernet0/0/0]ip add 172.16.128.2 30
[R10]interface LoopBack 0
[R10-LoopBack0]ip add 172.16.131.1 24
7、对rip区域的设备进行IP地址配置
R12
[R12]interface LoopBack 0
[R12-LoopBack0]ip address 172.16.162.1 24
[R12]interface LoopBack 1
[R12-LoopBack1]ip add 172.16.163.1 24
R3-R5/6/7为MGRE环境,R3为中心站点。
在r3、r5、r6、r7上写一条缺省
[R3]ip route-static 0.0.0.0 0 34.0.0.2
[R5]ip route-static 0.0.0.0 0 45.0.0.2
[R6]ip route-static 0.0.0.0 0 46.0.0.2
[R7]ip route-static 0.0.0.0 0 47.0.0.2
四、配置
1、构建MGRE 环境
r3
[R3]interface Tunnel 0/0/0
[R3-Tunnel0/0/0]source 34.0.0.1
[R3-Tunnel0/0/0]nhrp network-id 100
[R3-Tunnel0/0/0]nhrp entry multicast dynamic
r5
[R5-Tunnel0/0/0]nhrp network-id 100
[R5-Tunnel0/0/0]nhrp entry 172.16.1.4 34.0.0.1 register
r6
[R6]int Tunnel 0/0/0
[R6-Tunnel0/0/0]source Serial 4/0/0
[R6-Tunnel0/0/0]nhrp network-id 100
[R6-Tunnel0/0/0]nhrp entry 172.16.1.4 34.0.0.1 register
r7
[R7]interface Tunnel 0/0/0
[R7-Tunnel0/0/0]source GigabitEthernet 0/0/0
[R7-Tunnel0/0/0]nhrp network-id 100
[R7-Tunnel0/0/0]nhrp entry 172.16.1.4 34.0.0.1 register
2、ospf协议宣告
区域0
R3
[r3]ospf 1 router-id 3.3.3.3
[r3-ospf-1]a 1
[r3-ospf-1-area-0.0.0.1]network 172.16.32.0 0.0.7.255
[r3-ospf-1-area-0.0.0.1]a 0
[r3-ospf-1-area-0.0.0.0]net
[r3-ospf-1-area-0.0.0.0]network 172.16.1.1 0.0.0.0
R5
[r5]ospf 1 rout
[r5]ospf 1 router-id 5.5.5.5
[r5-ospf-1]a 0
[r5-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.255.255
R6
[r6]ospf 1 router-id 6.6.6.6
[r6-ospf-1]a 0
[r6-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.3.255
[r6-ospf-1-area-0.0.0.0]a 2
[r6-ospf-1-area-0.0.0.2]network 172.16.65.1 0.0.0.0
R7
[r7]ospf 1 router-id 7.7.7.7
[r7-ospf-1]a 0
[r7-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.7.255
[r7-ospf-1-area-0.0.0.0]a 3
[r7-ospf-1-area-0.0.0.3]network 172.16.97.1 0.0.0.0
区域1
R1
R2
区域2
R6
R11
R12
区域三
R7
R8
R9
区域四用双向重发布
R9
R10
rip区域
3、重发布
区域1学习区域2
4、域间汇总
5、域外汇总
防环
区域认证