1.本次OSPF大实验的拓扑图如下所示
本次实验一共有六点要求:
(1)R4为ISP,其上只能配置IP地址;R4与其他所有直连设备间使用公有IP
(2)R3–R5/6/7为MGRE环境,R3为中心站点
(3)整个OSPF环境IP地址为172.16.0.0/16
(4)所有设备均可访问R4的环回
(5)减少LSA的更新量,加快收敛,保障更新安全
(6)全网可达
2.规划IP地址
172.16.0.0/16
172.16.0.0/19 Area 0 172.16.0.0/25 (在里面继续规划/29)
172.16.0.128/25 (在里面继续规划/30地址)
172.16.1.0/25 172.16.1.128/25
172.16.31.128/25
172.16.32.0/19 A1
172.16.64.0/19 A2 172.16.64.0/25 MA 172.16.64.128/35 ptp
172.16.96.0/19 A3
172.16.128.0/19 A4
172.16.160.0/19 RIP
172.16.192.0/19
172.16.224.0/19
3.R1到R12路由器的详细配置如下所示
R1:
dis current-configuration
[V200R003C00]
sysname R1
snmp-agent local-engineid 800007DB03000000000000
snmp-agent
clock timezone China-Standard-Time minus 08:00:00
portal local-server load portalpage.zip
drop illegal-mac alarm
set cpu-usage threshold 80 restore 75
aaa
authentication-scheme default
authorization-scheme default
accounting-scheme default
domain default
domain default_admin
local-user admin password cipher % % K8m.Nt84DZ}e#<0`8bmE3Uw}% %
local-user admin service-type http
firewall zone Local
priority 15
interface Ethernet0/0/0
interface Ethernet0/0/1
interface Ethernet0/0/2
interface Ethernet0/0/3
interface Ethernet0/0/4
interface Ethernet0/0/5
interface Ethernet0/0/6
interface Ethernet0/0/7
interface GigabitEthernet0/0/0
ip address 172.16.32.1 255.255.255.248
interface GigabitEthernet0/0/1
interface NULL0
interface LoopBack0
ip address 172.16.33.1 255.255.255.128
ospf 1 router-id 1.1.1.1
area 0.0.0.1
network 172.16.0.0 0.0.255.255
stub
area 0.0.0.2
nssa no-summary
user-interface con 0
authentication-mode password
user-interface vty 0 4
user-interface vty 16 20
wlan ac
return
R2:
dis current-configuration
[V200R003C00]
sysname R2
snmp-agent local-engineid 800007DB03000000000000
snmp-agent
clock timezone China-Standard-Time minus 08:00:00
portal local-server load portalpage.zip
drop illegal-mac alarm
set cpu-usage threshold 80 restore 75
aaa
authentication-scheme default
authorization-scheme default
accounting-scheme default
domain default
domain default_admin
local-user admin password cipher % % K8m.Nt84DZ}e#<0`8bmE3Uw}% %
local-user admin service-type http
firewall zone Local
priority 15
interface Ethernet0/0/0
interface Ethernet0/0/1
interface Ethernet0/0/2
interface Ethernet0/0/3
interface Ethernet0/0/4
interface Ethernet0/0/5
interface Ethernet0/0/6
interface Ethernet0/0/7
interface GigabitEthernet0/0/0
ip address 172.16.32.2 255.255.255.248
interface GigabitEthernet0/0/1
interface NULL0
interface LoopBack0
ip address 172.16.33.129 255.255.255.128
ospf 1 router-id 2.2.2.2
area 0.0.0.1
network 172.16.0.0 0.0.255.255
stub
user-interface con 0
authentication-mode password
user-interface vty 0 4
user-interface vty 16 20
wlan ac
return
R3:
dis current-configuration
[V200R003C00]
sysname R3
snmp-agent local-engineid 800007DB03000000000000
snmp-agent
clock timezone China-Standard-Time minus 08:00:00
portal local-server load portalpage.zip
drop illegal-mac alarm
set cpu-usage threshold 80 restore 75
acl number 2000
rule 5 permit source 172.16.0.0 0.0.255.255
aaa
authentication-scheme default
authorization-scheme default
accounting-scheme default
domain default
domain default_admin
local-user admin password cipher %