MPLS实验2023-8-15

文章详细描述了在一个网络环境中,如何配置IP地址、使用OSPF路由公网,启用MPLS/LDP协议,创建并管理两个VPNs,以及通过BGP和静态路由实现路由重发布的步骤。
摘要由CSDN通过智能技术生成

 

实验思路:

1.规划IP,ospf跑通公网;

2.开启MPLS协议(LDP协议)(因为LDP携带标签号,不会在R3上产生路由黑洞)

3.在R2/R4上各开启开启2个VPN(VRF) 空间,一个用于A公司,另一个用于B公司

  以上基层配置结束

4.建立BGP,(因为要传VPN路由,所以要进入家族模式中)

5.A1 跑RIP ;A2跑OSPF;然后和BGP进行双向重发布

6. B1  B2用静态;然后BGP进行双向重发布

一:IP地址规划;

R1 
[r1-LoopBack0]ip address 192.68.1.1 24
[r1-GigabitEthernet0/0/0]ip address 192.168.2.1 24
R2
[r2-LoopBack0]ip address 2.2.2.2 32   
[r2-GigabitEthernet0/0/1]ip address 192.168.2.2 24 
[r2-GigabitEthernet0/0/0]ip address 23.1.1.1 24 
[r2-GigabitEthernet0/0/2]ip address 192.168.2.2 24
R3 
[r3-GigabitEthernet0/0/1]ip address 23.1.1.2 24
[r3-GigabitEthernet0/0/0]ip address 34.1.1.1 24    
[r3-LoopBack0]ip address 3.3.3.3 32

R4

[r4-LoopBack0]ip address 4.4.4.4 32
[r4-GigabitEthernet0/0/1]ip address 34.1.1.2 24
[r4-GigabitEthernet4/0/0]ip address 47.1.1.1 24

 R5   
[r5-LoopBack0]ip address 192.168.4.1 24    
[r5-GigabitEthernet0/0/1]ip address 192.168.3.2 24

R6
[r6-LoopBack0]ip address 192.168.1.1 24
[r6-GigabitEthernet0/0/0]ip address 192.168.2.1 24

R7  
[r7-LoopBack0]ip address 192.168.4.2 24 
[r7-GigabitEthernet0/0/1]ip address 192.168.3.2 24    
[r7-GigabitEthernet0/0/0]ip address 47.1.1.2 24

二:跑通公网OSPF

R2

[r2]ospf 1 router-id 2.2.2.2
[r2-ospf-1]area 0
[r2-ospf-1-area-0.0.0.0]network 2.2.2.2 0.0.0.0  
[r2-ospf-1-area-0.0.0.0]network 23.1.1.1 0.0.0.0

R3

[r3]ospf 1 router-id 3.3.3.3 
[r3-ospf-1]area 0
[r3-ospf-1-area-0.0.0.0]network 3.3.3.3 0.0.0.0    
[r3-ospf-1-area-0.0.0.0]network 23.1.1.2 0.0.0.0
[r3-ospf-1-area-0.0.0.0]network 34.1.1.1 0.0.0.0

R4

[r4]ospf 1 router-id 4.4.4.4  
[r4-ospf-1]area 0   
[r4-ospf-1-area-0.0.0.0]network 4.4.4.4 0.0.0.0    
[r4-ospf-1-area-0.0.0.0]network 34.1.1.2 0.0.0.0
测试

三:开启MPLS协议(LDP协议)

R2
[r2]mpls lsr-id 2.2.2.2   
[r2-mpls]mpls ldp
[r2-mpls-ldp]int g0/0/0
[r2-GigabitEthernet0/0/0]mpls 
[r2-GigabitEthernet0/0/0]mpls ldp

R3


[r3]mpls lsr-id 3.3.3.3
[r3-mpls]mpls 
[r3-mpls]mpls ldp
[r3-mpls-ldp]int g0/0/1
[r3-GigabitEthernet0/0/1]mpls  
[r3-GigabitEthernet0/0/1]mpls ldp 
[r3-mpls-ldp]int g0/0/0   
[r3-GigabitEthernet0/0/0]mpls 
[r3-GigabitEthernet0/0/0]mpls ldp

R4
[r4]mpls lsr-id 4.4.4.4
[r4]mpls      
[r4-mpls]mpls ldp
[r4-mpls-ldp]int g0/0/1   
[r4-GigabitEthernet0/0/1]mpls    
[r4-GigabitEthernet0/0/1]mpls ldp 

四:开启VPN 空间(VRF)

R2

第一个空间

[r2]IP vpn-instance a1
[r2-vpn-instance-a1]ipv4-family
[r2-vpn-instance-a1-af-ipv4]route-distinguisher 1:1 (注释:得先赋值RD,不然会报错)
[r2-vpn-instance-a1-af-ipv4]vpn-target 1:1

[r2-vpn-instance-a1-af-ipv4]dis th
 ipv4-family
  route-distinguisher 1:1
  vpn-target 1:1 export-extcommunity
  vpn-target 1:1 import-extcommunity(写一个RT值,会出现两个值;一个为出,另一个为进入)
第二个空间  
[r2]ip vpn-instance b1 
[r2-vpn-instance-b1]ipv4-family
[r2-vpn-instance-b1-af-ipv4]route-distinguisher 2:2  
[r2-vpn-instance-b1-af-ipv4]vpn-target 2:2

进入接口,绑定VPN空间

[r2]interface g0/0/1 
[r2-GigabitEthernet0/0/1]ip binding vpn-instance a1
Info: All IPv4 related configurations on this interface are removed!
Info: All IPv6 related configurations on this interface are removed!
[r2-GigabitEthernet0/0/1]ip address 192.168.2.2 24

[r2-GigabitEthernet0/0/2]ip binding vpn-instance b1
Info: All IPv4 related configurations on this interface are removed!
Info: All IPv6 related configurations on this interface are removed!
[r2-GigabitEthernet0/0/2]ip address 192.168.2.2 24

(1)查看VPN空间路由

[r2-GigabitEthernet0/0/1]display ip routing-table vpn-instance a1
Route Flags: R - relay, D - download to fib
------------------------------------------------------------------------------
Routing Tables: a1
         Destinations : 4        Routes : 4        

Destination/Mask    Proto   Pre  Cost      Flags NextHop         Interface

    192.168.2.0/24  Direct  0    0           D   192.168.2.2     GigabitEthernet
0/0/1
    192.168.2.2/32  Direct  0    0           D   127.0.0.1       GigabitEthernet
0/0/1
  192.168.2.255/32  Direct  0    0           D   127.0.0.1       GigabitEthernet
0/0/1
255.255.255.255/32  Direct  0    0           D   127.0.0.1       InLoopBack0

(2)R2pingR1时,得进入VPN空间里

[r2-GigabitEthernet0/0/1]ping -vpn-instance a1 192.168.2.1

R4

开启2个VPN空间

[r4]ip vpn-instance a1  
[r4-vpn-instance-a1]ipv4-family 
[r4-vpn-instance-a1-af-ipv4]route-distinguisher 1:1 
[r4-vpn-instance-a1-af-ipv4]vpn-target 1:1  
[r4]ip vpn-instance b1  
[r4-vpn-instance-b1]ipv4-family 
[r4-vpn-instance-b1-af-ipv4]route-distinguisher 2:2
[r4-vpn-instance-b1-af-ipv4]vpn-target 2:2

把两个接口绑定在VPN空间里,并给接口配IP

[r4-GigabitEthernet0/0/0]ip binding vpn-instance a1 
[r4-GigabitEthernet0/0/0]ip address 192.168.3.1 24 
[r4-GigabitEthernet0/0/2]ip binding vpn-instance b1
[r4-GigabitEthernet0/0/2]ip address 192.168.3.1 24

四:建立BGP,(因为要传VPN路由,所以要进入家族模式中)

R2

[r2]bgp 1
[r2-bgp]router-id 2.2.2.2 
[r2-bgp]peer 4.4.4.4 as-number 1  
[r2-bgp]peer 4.4.4.4 connect-interface LoopBack 0  
[r2-bgp]ipv4-family vpnv4    
[r2-bgp-af-vpnv4]peer 4.4.4.4 enable 

R4

[r4]bgp 1
[r4-bgp]router-id 4.4.4.4
[r4-bgp]peer 2.2.2.2 as-number 1
[r4-bgp]peer 2.2.2.2 connect-interface LoopBack 0  
[r4-bgp]ipv4-family vpnv4
[r4-bgp-af-vpnv4]peer 2.2.2.2 enable 

五:A1 跑RIP ;A2跑OSPF;然后和BGP进行双向重发布

A1区域跑OSPF

[r1]rip 1
[r1-rip-1]version 2
[r1-rip-1]network 192.168.1.0
[r1-rip-1]network 192.168.2.0

  
[r2]rip 1 vpn-instance a1
[r2-rip-1]ver 2
[r2-rip-1]network 192.168.2.0

A2区域跑OSPF
[r4]ospf 2 vpn-instance a1 
[r4-ospf-2]area 0 
[r4-ospf-2-area-0.0.0.0]network 192.168.3.1 0.0.0.0
[r5]ospf 1   
[r5-ospf-1]area 0   
[r5-ospf-1-area-0.0.0.0]network 192.168.4.1 0.0.0.0
[r5-ospf-1-area-0.0.0.0]network 192.168.3.2 0.0.0.0

A1和BGP进行双向重发布

[r2]bgp 1   
[r2-bgp]ipv4-family vpn-instance a1
[r2-bgp-a1]import-route rip 1

[r2]rip 1 vpn-instance a1 
[r2-rip-1]import-route bgp 

A2和BGP进行双向重发布

[r4]ospf 2 vpn-instance a1 
[r4-ospf-2]import-route bgp 
[r4]bgp 1
[r4-bgp]ipv4-family vpn-instance a1  
[r4-bgp-a1]import-route ospf 2

 R4

R2

R1环回pingR4环回

 

 六:B1  B2用静态;然后BGP进行双向重发布

B1写 静态;重发布

[r2]ip route-static vpn-instance b1 192.168.1.0 24 192.168.2.1 
[r2]bgp 1   
[r2-bgp]ipv4-family vpn-instance b1
[r2-bgp-b1]import-route direct 
[r2-bgp-b1]import-route static 

B2写静态,重发布

[r4]ip route-static vpn-instance b1 192.168.4.0 24 192.168.3.2
[r4]bgp 1 
[r4-bgp]ipv4-family vpn-instance b1   
[r4-bgp-b1]import-route direct  
[r4-bgp-b1]import-route static 
 

 用R6pingR7环回

 

评论 1
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值