一、实验拓扑
二、目的
保障192.168.1.1和192.168.2.1能够跨子网通信
三、配置
1、接入交换机配置VLAN
SW8配置
vlan 10
vlan 20
interface GigabitEthernet1/0/1
port link-mode bridge
port access vlan 10
combo enable fiber
stp edged-port
#
interface GigabitEthernet1/0/2
port link-mode bridge
port access vlan 20
combo enable fiber
stp edged-port
#
interface GigabitEthernet1/0/3
port link-mode bridge
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 10 20
combo enable fiber
SW9配置
interface GigabitEthernet1/0/1
port link-mode bridge
port access vlan 10
combo enable fiber
stp edged-port
#
interface GigabitEthernet1/0/2
port link-mode bridge
port access vlan 20
combo enable fiber
stp edged-port
#
interface GigabitEthernet1/0/3
port link-mode bridge
port link-type trunk
undo port trunk permit vlan 1
port trunk permit vlan 10 20
combo enable fiber
2、配置底层网络
SW1配置
interface LoopBack0
ip address 1.1.1.1 255.255.255.255
interface GigabitEthernet1/0/1
port link-mode route
combo enable fiber
ip address 12.1.1.1 255.255.255.0
#
interface GigabitEthernet1/0/2
port link-mode route
combo enable fiber
ip address 13.1.1.1 255.255.255.0
ospf 1 router-id 1.1.1.1
area 0.0.0.0
network 1.1.1.1 0.0.0.0
network 12.1.1.0 0.0.0.255
network 13.1.1.0 0.0.0.255
SW2配置
interface LoopBack0
ip address 2.2.2.2 255.255.255.255
interface GigabitEthernet1/0/3
port link-mode route
combo enable fiber
ip address 12.1.1.2 255.255.255.0
ospf 1 router-id 2.2.2.2
area 0.0.0.0
network 2.2.2.2 0.0.0.0
network 12.1.1.0 0.0.0.255
SW3配置
interface GigabitEthernet1/0/3
port link-mode route
combo enable fiber
ip address 13.1.1.3 255.255.255.0
interface LoopBack0
ip address 3.3.3.3 255.255.255.255
ospf 1 router-id 3.3.3.3
area 0.0.0.0
network 3.3.3.3 0.0.0.0
network 13.1.1.0 0.0.0.255
3、配置vxlan
SW1配置
l2vpn enable
interface Tunnel10 mode vxlan
source 1.1.1.1
destination 2.2.2.2
#
interface Tunnel20 mode vxlan
source 1.1.1.1
destination 3.3.3.3
vsi 10
gateway vsi-interface 10
vxlan 10
tunnel 10
tunnel 20
#
vsi 20
gateway vsi-interface 20
vxlan 20
tunnel 10
tunnel 20
interface Vsi-interface10
ip address 192.168.1.254 255.255.255.0
#
interface Vsi-interface20
ip address 192.168.2.254 255.255.255.0
SW2配置
l2vpn enable
interface Tunnel10 mode vxlan
source 2.2.2.2
destination 3.3.3.3
#
interface Tunnel100 mode vxlan
source 2.2.2.2
destination 1.1.1.1
vsi vxlan10
vxlan 10
tunnel 10
tunnel 100
#
vsi vxlan20
vxlan 20
tunnel 10
tunnel 100
interface GigabitEthernet1/0/1
port link-mode route
combo enable fiber
#
interface GigabitEthernet1/0/1.1
vlan-type dot1q vid 10
xconnect vsi vxlan10
#
interface GigabitEthernet1/0/1.2
vlan-type dot1q vid 20
xconnect vsi vxlan20
SW3配置
l2vpn enable
interface Tunnel10 mode vxlan
source 3.3.3.3
destination 2.2.2.2
#
interface Tunnel100 mode vxlan
source 3.3.3.3
destination 1.1.1.1
vsi vxlan10
vxlan 10
tunnel 10
tunnel 100
#
vsi vxlan20
vxlan 20
tunnel 10
tunnel 100
interface GigabitEthernet1/0/1
port link-mode route
combo enable fiber
#
interface GigabitEthernet1/0/1.1
vlan-type dot1q vid 10
xconnect vsi vxlan10
#
interface GigabitEthernet1/0/1.2
vlan-type dot1q vid 20
xconnect vsi vxlan20
四、PC配置相应网关
五、测试
六、查看
SW1的arp表项
查看SW2的隧道接口