实验拓扑如下:
实验要求:在蓝框中全局运行ospf,pc网段通过ar1的直连路由将其引入到ospf1,实现网络互通。但是不要引入pc2
实验基础配置:
#AR1
<Huawei>undo t m
Info: Current terminal monitor is off.
<Huawei>sys
Enter system view, return user view with Ctrl+Z.
[Huawei]int g0/0/1
[Huawei-GigabitEthernet0/0/1]ip address 192.168.11.254 24
[Huawei-GigabitEthernet0/0/1]int g0/0/2
[Huawei-GigabitEthernet0/0/2]ip address 192.168.22.254 24
[Huawei-GigabitEthernet0/0/2]int g4/0/0
[Huawei-GigabitEthernet4/0/0]ip address 192.168.33.254 24
[Huawei-GigabitEthernet4/0/0]int g0/0/0
[Huawei-GigabitEthernet0/0/0]ip address 192.168.12.1 24
[Huawei-GigabitEthernet0/0/0]q
[Huawei]ospf 1 router-id 1.1.1.1
[Huawei-ospf-1]area 0
[Huawei-ospf-1-area-0.0.0.0]network 192.168.12.1 0.0.0.0
[Huawei-ospf-1-area-0.0.0.0]
#AR2
[Huawei]int g0/0/0
[Huawei-GigabitEthernet0/0/0]ip address 192.168.12.2 24
[Huawei-GigabitEthernet0/0/0]q
[Huawei]ospf 1 router-id 2.2.2.2
[Huawei-ospf-1-area-0.0.0.0]network 192.168.12.2 0.0.0.0
[Huawei-ospf-1-area-0.0.0.0]
至此,ospf相关配置完成。
接下来进行route-policy相关配置。
#AR1
#定义acl2000,用于匹配需要允许的路由:
[Huawei]acl 2000
[Huawei-acl-basic-2000]rule 5 permit source 192.168.11.0 0.0.0.0
[Huawei-acl-basic-2000]rule 10 permit source 192.168.22.0 0.0.0.0
[Huawei-acl-basic-2000]q
#创建一个Route-Policy,名字为hcia,同时配置第一个节点,节点编号为10:
[Huawei]route-policy hcia permit node 10
Info: New Sequence of this List.
[Huawei-route-policy]if-match acl 2000 //在节点10中调用acl 2000
[Huawei-route-policy]apply cost 25 //在节点1中定义一个apply语句,设置路由的度量值为20
[Huawei-route-policy]q
[Huawei]
[Huawei]ospf 1
[Huawei-ospf-1]import-route direct route-policy hcia //在ospf中引入直连路由并实行hcia策略
[Huawei-ospf-1]
至此,配置结束,查看ar2的路由表:
如图所示,发现确实没有pc3网段192.168.33.0/24的路由。
至此,实验目的达成,实验结束。