mplsvpn配置案例.doc_第1页
mplsvpn配置案例.doc_第2页
mplsvpn配置案例.doc_第3页
mplsvpn配置案例.doc_第4页
mplsvpn配置案例.doc_第5页
已阅读5页,还剩5页未读 继续免费阅读

下载本文档

版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领

文档简介

Mpls vpn配置实例一.建立MPLS域(配置PE与P之间的IGP和MPLS)1.分别在R2.R3.R4.R5开启OSPF协议分配到area 0,进入各接口开启mpls ip,保证R2的loopback 0地址与R5的loopback 0地址可以互访。R2配置Router#conf tRouter(config)#router ospf 1Router(config-router)#router-id 2.2.2.2Router(config-router)#network 2.2.2.2 0.0.0.0 area 0Router(config-router)#network 10.1.23.0 0.0.0.255 area 0Router(config-router)#mpls ldp autoconfigR3配置Router#conf tRouter(config)#router ospf 1Router(config-router)#router-id 3.3.3.3Router(config-router)#network 0.0.0.0 0.0.0.0 area 0Router(config-router)#mpls ldp autoconfigR4配置Router#conf tRouter(config)#router ospf 1Router(config-router)#router-id 4.4.4.4Router(config-router)#network 0.0.0.0 0.0.0.0 area 0Router(config-router)#mpls ldp autoconfigR5配置Router#conf tRouter(config)#router ospf 1Router(config-router)#router-id 5.5.5.5Router(config-router)#network 5.5.5.5 0.0.0.0 area 0Router(config-router)#network 10.1.45.0 0.0.0.255 area 0Router(config-router)#mpls ldp autoconfig二.MPLS VPN部署1配置PE与CE之间的路由协议1.接入点使用rip v2路由协议接入R2配置R2(config)#ip vrf A /定义VRF(接入用户名字)R2(config-vrf)#rd 1:100 /定义RD(区分客户路由,不同客户分配不同RD)R2(config-vrf)#route-target 1:100 /定义RT(对接VPN)R2(config)#interface f0/1 /进入PE链接CE接口R2(config-if)#ip vrf forwarding A /把接口放入VRF虚拟环境R5配置R5(config)#ip vrf A /定义VRF(接入用户名字)R5(config-vrf)#rd 1:100 /定义RD(区分客户路由,不同客户分配不同RD)R5(config-vrf)#route-target 1:100 /定义RT(对接VPN)R5(config)#interface f0/1 /进入PE链接CE接口R5(config-if)#ip vrf forwarding A /把接口放入VRF虚拟环境配置R1与R2要互相学习路由R1配置R2配置R2(config)#router ripR2(config-router)#version 2R2(config-router)#no auto-summaryR2(config-router)#address-family ipv4 vrf AR2(config-router-af)#network 192.168.1.0配置完后确保R2可以学到到R1的路由配置R5与R6要互相学习路由R6配置R5配置R5(config)#router ripR5(config-router)#version 2R5(config-router)#no auto-summaryR5(config-router)#address-family ipv4 vrf AR5(config-router-af)#network 192.168.2.0配置完后确保R5可以学到R6的路由信息2.接入点使用静态路由接入R2配置R2(config)#ip vrf A /定义VRF(接入用户名字)R2(config-vrf)#rd 1:200 /定义RD(区分客户路由,不同客户分配不同RD)R2(config-vrf)#route-target 1:200 /定义RT(对接VPN)R2(config)#interface f0/1 /进入PE链接CE接口R2(config-if)#ip vrf forwarding B /把接口放入VRF虚拟环境R5配置R5(config)#ip vrf A /定义VRF(接入用户名字)R5(config-vrf)#rd 1:200 /定义RD(区分客户路由,不同客户分配不同RD)R5(config-vrf)#route-target 1:200 /定义RT(对接VPN)R5(config)#interface f0/1 /进入PE链接CE接口R5(config-if)#ip vrf forwarding B /把接口放入VRF虚拟环境R2静态路由配置Router(config)#ip route vrf B 7.7.7.7 255.255.255.255 192.168.3.7R5静态路由配置Router(config)#ip route vrf B 8.8.8.8 255.255.255.255 192.168.4.83.接入点使用OSPF路由协议接入(R7和R8清空静态路由)R2配置R2(config)#ip vrf C /定义VRF(接入用户名字)R2(config-vrf)#rd 1:300 /定义RD(区分客户路由,不同客户分配不同RD)R2(config-vrf)#route-target 1:300 /定义RT(对接VPN)R2(config)#interface f0/1 /进入PE链接CE接口R2(config-if)#ip vrf forwarding C /把接口放入VRF虚拟环境R5配置R5(config)#ip vrf C /定义VRF(接入用户名字)R5(config-vrf)#rd 1:300 /定义RD(区分客户路由,不同客户分配不同RD)R5(config-vrf)#route-target 1:300 /定义RT(对接VPN)R5(config)#interface f0/1 /进入PE链接CE接口R5(config-if)#ip vrf forwarding C /把接口放入VRF虚拟环境R7配置OSPF路由协议Router(config)#router ospf 2Router(config-router)#router-id 7.7.7.7Router(config-router)#network 0.0.0.0 0.0.0.0 area 0在R2上输入,可以成功学到R7的路由Router#show ip route vrf CRouting Table: CCodes: C - connected, S - static, R - RIP, M - mobile, B - BGP D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2 E1 - OSPF external type 1, E2 - OSPF external type 2 i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2 ia - IS-IS inter area, * - candidate default, U - per-user static route o - ODR, P - periodic downloaded static routeGateway of last resort is not set 7.0.0.0/32 is subnetted, 1 subnetsO 7.7.7.7 110/2 via 192.168.3.7, 00:01:15, FastEthernet0/2C 192.168.3.0/24 is directly connected, FastEthernet0/2R8配置OSPF路由协议Router(config)#router ospf 2Router(config-router)#router-id 8.8.8.8Router(config-router)#network 0.0.0.0 0.0.0.0 area 0在R5上输入,可以成功学到R8的路由Router#show ip route vrf CRouting Table: CCodes: C - connected, S - static, R - RIP, M - mobile, B - BGP D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2 E1 - OSPF external type 1, E2 - OSPF external type 2 i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2 ia - IS-IS inter area, * - candidate default, U - per-user static route o - ODR, P - periodic downloaded static routeGateway of last resort is not set 8.0.0.0/32 is subnetted, 1 subnetsO 8.8.8.8 110/2 via 192.168.4.8, 00:03:34, FastEthernet0/2C 192.168.4.0/24 is directly connected, FastEthernet0/22配置PE与PE之间的MP-BGP(R2和R5要互相学习路由)R2配置R2(config)#router bgp 1R2(config-router)#no synchronizationR2(config-router)#no auto-summaryR2(config-router)#bgp router-id 2.2.2.2R2(config-router)#neighbor 5.5.5.5 remote-as 1R2(config-router)#neighbor 5.5.5.5 update-source loopback 0R2(config-router)#address-family vpnv4R2(config-router-af)#neighbor 5.5.5.5 activateR2(config-router-af)#neighbor 5.5.5.5 send-communityR5配置R5(config)#router bgp1R5(config-router)#no synchronizationR5(config-router)#no auto-summaryR5(config-router)#bgp router-id 5.5.5.5R5(config-router)#neighbor 2.2.2.2 remote-as 1R5(config-router)#neighbor 2.2.2.2 update-source loopback 0R5(config-router)#address-family vpnv4R5(config-router-af)#neighbor 2.2.2.2 activateR5(config-router-af)#neighbor 2.2.2.2 send-community3.配置PE与BGP与IGP的路由重分发1.接入点使用rip v2路由协议接入配置R2配置(把R1的RIP导入到R2的BGP)Router(config)#router bgp 1Router(config-router)#address-family ipv4 vrf ARouter(config-router-af)#redistribute rip metric 5Router#show ip bgp vpnv4 allBGP table version is 5, local router ID is 2.2.2.2Status codes: s suppressed, d damped, h history, * valid, best, i - internal, r RIB-failure, S StaleOrigin codes: i - IGP, e - EGP, ? - incomplete Network Next Hop Metric LocPrf Weight PathRoute Distinguisher: 1:100 (default for vrf A)* 1.1.1.1/32 192.168.1.1 5 32768 ?* 192.168.1.0 0.0.0.0 0 32768 ?R5配置(bgp导入rip)Router(config)#router ripRouter(config-router)#address-family ipv4 vrf ARouter(config-router-af)#redistribute bgp 1 metric transparent做完后R6可以学到R1的路由Router#show ip route Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2 E1 - OSPF external type 1, E2 - OSPF external type 2 i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2 ia - IS-IS inter area, * - candidate default, U - per-user static route o - ODR, P - periodic downloaded static routeGateway of last resort is not set 1.0.0.0/32 is subnetted, 1 subnetsR 1.1.1.1 120/6 via 192.168.2.5, 00:00:01, FastEthernet0/1 6.0.0.0/32 is subnetted, 1 subnetsC 6.6.6.6 is directly connected, Loopback0R 192.168.1.0/24 120/1 via 192.168.2.5, 00:00:01, FastEthernet0/1C 192.168.2.0/24 is directly connected, FastEthernet0/1R5配置Router(config)#router bgp 1Router(config-router)#address-family ipv4 vrf ARouter(config-router-af)#redistribute rip metric 5R2配置Router(config)#router ripRouter(config-router)#address-family ipv4 vrf ARouter(config-router-af)#redistribute bgp 1 metric transparent完成后R1可以学习到R6的路由Router#show ip route Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2 E1 - OSPF external type 1, E2 - OSPF external type 2 i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2 ia - IS-IS inter area, * - candidate default, U - per-user static route o - ODR, P - periodic downloaded static routeGateway of last resort is not set 1.0.0.0/32 is subnetted, 1 subnetsC 1.1.1.1 is directly connected, Loopback0 6.0.0.0/32 is subnetted, 1 subnetsR 6.6.6.6 120/6 via 192.168.1.2, 00:00:14, FastEthernet0/1C 192.168.1.0/24 is directly connected, FastEthernet0/1R 192.168.2.0/24 120/1 via 192.168.1.2, 00:00:14, FastEthernet0/12.接入点使用静态路由接入R2配置Router(config)#router bgp 1Router(config-router)#address-family ipv4 vrf BRouter(config-router-af)#redistribute static完后可学到R7路由Router#show ip bgp vpnv4 allBGP table version is 13, local router ID is 2.2.2.2Status codes: s suppressed, d damped, h history, * valid, best, i - internal, r RIB-failure, S StaleOrigin codes: i - IGP, e - EGP, ? - incomplete Network Next Hop Metric LocPrf Weight PathRoute Distinguisher: 1:100 (default for vrf A)* 1.1.1.1/32 192.168.1.1 5 32768 ?*i6.6.6.6/32 5.5.5.5 5 100 0 ?* 192.168.1.0 0.0.0.0 0 32768 ?*i192.168.2.0 5.5.5.5 0 100 0 ?Route Distinguisher: 1:200 (default for vrf B)* 7.7.7.7/32 192.168.3.7 0 32768 ?R5配置Router(config)#router bgp 1Router(config-router)#address-family ipv4 vrf BRouter(config-router-af)#redistribute static完后可学到R8路由Router#show ip bgp vpnv4 allBGP table version is 13, local router ID is 2.2.2.2Status codes: s suppressed, d damped, h history, * valid, best, i - internal, r RIB-failure, S StaleOrigin codes: i - IGP, e - EGP, ? - incomplete Network Next Hop Metric LocPrf Weight PathRoute Distinguisher: 1:100 (default for vrf A)* 1.1.1.1/32 192.168.1.1 5 32768 ?*i6.6.6.6/32 5.5.5.5 5 100 0 ?* 192.168.1.0 0.0.0.0 0 32768 ?*i192.168.2.0 5.5.5.5 0 100 0 ?Route Dis

温馨提示

  • 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
  • 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
  • 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
  • 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
  • 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
  • 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
  • 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。

评论

0/150

提交评论