电信网通双出口负载分担设置指导.doc_第1页
电信网通双出口负载分担设置指导.doc_第2页
电信网通双出口负载分担设置指导.doc_第3页
电信网通双出口负载分担设置指导.doc_第4页
电信网通双出口负载分担设置指导.doc_第5页
已阅读5页,还剩2页未读 继续免费阅读

下载本文档

版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领

文档简介

电信网通双出口负载分担设置指导这个设置是在华为的产品上面实现的,能参考这个设置在cisco上面做一些调整就能了。 负载分担设置指导 定义监测组,分别监测电信和网通网关: 进入系统视图,创建detect-group 1,监测电信网关: systemsystem view: return to user view with ctrl+z.quidway detect-group 1quidway-detect-group-1quidway-detect-group-1detect-list 1 ip address 13quidway-detect-group-1quit 创建detect-group 1,监测网通网关: quidwaydetect-group 2quidway-detect-group-2detect-list 1 ip address 9quidway-detect-group-2quitquidway 注:以上以地址13最为电信网关地址,地址9为网通网关地址为例,能根据实际组网情况修改。 中国网管联盟 设置两条默认路由互为备份,优先走电信线路: quidwayip route-static 13 preference 60 detect-group 1quidwayip route-static 9 preference 100 detect-group 2 注:以上以地址13最为电信网关地址,地址9为网通网关地址为例,能根据实际组网情况修改。 设置静态路由和监测组关联,使访问网通流量优先走网通线路: 以下设置较多,设置过程中能用实际网通网关地址替换地址9后直接复制粘贴: ip route-static 9 preference 60 detect-group 2ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2ip route-static 9 preference 60 detect-group 2ip route-static 9 preference 60 detect-group 2ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2ip route-static 9 preference 60 detect-group 2ip route-static 9 preference 60 detect-group 2ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2ip route-static 9 preference 60 detect-group 2ip route-static 9 preference 60 detect-group 2ip route-static 9 preference 60 detect-group 2ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 46 55 54 preference 60 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 中国网管联盟 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2ip route-static 9 preference 60 detect-group 2ip route-static 9 preference 60 detect-group 2ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static 9 preference 60 detect-group 2 ip route-static preference 60 注:以上路由已包含大部分网通地址段,如有更新能动态添加。 经过如上三个设置步骤后,路由器便能自动区分网通流量和电信流量,使访问网通站点走网通线路,访问电信站点走电信线路。并且当网通线路出问题后所有流量都会自动转换到电信线路上,使用户能够不间断访问网络。 添加防火墙设置,增加网络的可性: 定义电信线路使用的acl 3001: dl.网管软件下载 能用实际电信网关地址替换地址12,实际内网地址网段替换 55后直接复制粘贴: acl number 3001 rule 10 deny tcp destination-port eq 445 rule 11 deny udp destination-port eq 445 rule 20 deny tcp destination-port eq 135 rule 21 deny udp destination-port eq 135 rule 30 deny tcp destination-port eq 137 rule 31 deny udp destination-port eq netbios-ns rule 40 deny tcp destination-port eq 138 rule 41 deny udp destination-port eq netbios-dgm rule 50 deny tcp destination-port eq 139 rule 51 deny udp destination-port eq netbios-ssn rule 61 deny udp destination-port eq tftp rule 70 deny tcp destination-port eq 593 rule 80 deny tcp destination-port eq 4444 rule 90 deny tcp destination-port eq 707 rule 100 deny tcp destination-port eq 1433 rule 101 deny udp destination-port eq 1433 rule 110 deny tcp destination-port eq 1434 rule 111 deny udp destination-port eq 1434 rule 120 deny tcp destination-port eq 5554 rule 130 deny tcp destination-port eq 9996 rule 141 deny udp source-port eq bootps rule 160 permit icmp icmp-type echo rule 161 permit icmp icmp-type echo-reply rule 162 permit icmp icmp-type ttl-exceeded rule 165 deny icmp rule 200 deny tcp destination-port eq www rule 202 deny tcp destination-port eq ftp rule 204 deny tcp destination-port eq 3389 rule 2000 permit ip destination 12 0 rule 2001 permit ip destination 55 rule 2002 deny ip 定义网通线路使用的acl 3002 能用实际网通网关地址替换地址9,实际内网地址网段替换 55后直接复制粘贴: acl number 3002 rule 10 deny tcp destination-port eq 445 rule 11 deny udp destination-port eq 445 rule 20 deny tcp destination-port eq 135 rule 21 deny udp destination-port eq 135 rule 30 deny tcp destination-port eq 137 rule 31 deny udp destination-port eq netbios-ns rule 40 deny tcp destination-port eq 138 rule 41 deny udp destination-port eq netbios-dgm rule 50 deny tcp destination-port eq 139 rule 51 deny udp destination-port eq netbios-ssn rule 61 deny udp destination-port eq tftp rule 70 deny tcp destination-port eq 593 rule 80 deny tcp destination-port eq 4444 rule 90 deny tcp destination-port eq 707 rule 100 deny tcp destination-port eq 1433 rule 101 deny udp destination-port eq 1433 rule 110 deny tcp destination-port eq 1434 rule 111 deny udp destination-port eq 1434 rule 120 deny tcp destination-port eq 5554 rule 130 deny tcp destination-port eq 9996 rule 141 deny udp source-port eq bootps bitscn_com rule 160 permit icmp icmp-type echo rule 161 permit icmp icmp-type echo-reply rule 162 permit icmp icmp-type ttl-exceeded rule 165 deny icmp rule 200 deny tcp destination-port eq www rule 202 deny tcp destination-port eq ftp rule 204 deny tcp destination-port eq 3389 rule 2000 permit ip destination 4 0 rule 2001 permit ip destination

温馨提示

  • 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
  • 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
  • 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
  • 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
  • 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
  • 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
  • 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。

评论

0/150

提交评论