Java教程

动态路由之OSPF综合实验

本文主要是介绍动态路由之OSPF综合实验,对大家解决编程问题具有一定的参考价值,需要的程序猿们随着小编来一起学习吧!

实验内容内容及拓扑如下

整个OSPF环境IP基于172.16.0.0/16划分

172.16.0.0/16
    172.16.0.0/19     ------area0
            172.16.0.0/24    -------P2P骨干
                172.16.0.0/30
                172.16.0.4/30
                172.16.0.8/30
                .....
            172.16.1.0/24    -------MA骨干
                172.16.1.0/29
                172.16.1.8/29
                172.16.1.16/29
                .....
            172.16.2.0/24
            172.16.3.0/24
            172.16.4.0/24
            ......


    172.16.32.0/19    ------area1
         172.16.32.0/24    -------P2P骨干
                 172.16.32.0/30
                 172.16.32.4/30
                 172.16.32.8/30
                 .....
         172.16.33.0/24    -------MA骨干
                 172.16.33.0/29
                 172.16.33.8/29
                 172.16.33.16/29
                 .....
         172.16.34.0/24
         172.16.35.0/24
         172.16.36.0/24
         ......    
         
         
    172.16.64.0/19    ------area2
        172.16.64.0/24    -------P2P骨干
                172.16.64.0/30
                172.16.64.4/30
                172.16.64.8/30
                .....
            172.16.65.0/24    -------MA骨干
                172.16.65.0/29
                172.16.65.8/29
                172.16.65.16/29
                .....
            172.16.66.0/24
            172.16.67.0/24
            172.16.68.0/24
            ......


    172.16.96.0/19    ------area3
        172.16.96.0/24    -------P2P骨干
                172.16.96.0/30
                172.16.96.4/30
                172.16.96.8/30
                .....
            172.16.97.0/24    -------MA骨干
                172.16.97.0/29
                172.16.97.8/29
                172.16.97.16/29
                .....
            172.16.98.0/24
            172.16.99.0/24
            172.16.100.0/24
            ......


    172.16.128.0/19    ------area4
            172.16.128.0/24    -------P2P骨干
                172.16.128.0/30
                172.16.128.4/30
                172.16.128.8/30
                .....
            172.16.129.0/24    -------MA骨干
                172.16.129.0/29
                172.16.129.8/29
                172.16.129.16/29
                .....
            172.16.130.0/24
            172.16.131.0/24
            172.16.132.0/24
            ......


    172.16.160.0/19    ------rip
        172.16.160.0/20
        172.16.176.0/20


    172.16.192.0/19
    172.16.224.0/19

R4为ISP,其上只能配置IP地址;R4与其他所有直连设备间均使用公有IP

[isp]int s 4/0/0
[isp-Serial4/0/0]ip address 34.0.0.2 24

[isp-Serial4/0/0]int s 4/0/1
[isp-Serial4/0/1]ip address 45.0.0.2 24

[isp-Serial4/0/1]int s 3/0/0
[isp-Serial3/0/0]ip address 46.0.0.2 24

[isp-Serial3/0/0]int g 0/0/0
[isp-GigabitEthernet0/0/0]ip address 47.0.0.2 24

[isp]int l0
[isp-LoopBack0]ip address 4.4.4.4 24
[isp-LoopBack0]q

R3-R5/6/7为MGRE环境,R3为中心站点

R3、R5、R6、R7配置公网IP、缺省,(R5、R6、R7)配置环回

[r3]int s 4/0/0
[r3-Serial4/0/0]ip address 34.0.0.1 24
[r3-Serial4/0/0]q
[r3]ip route-static 0.0.0.0 0 34.0.0.2

[r5]int s 4/0/0
[r5-Serial4/0/0]ip address 45.0.0.1 24
[r5-Serial4/0/0]q
[r5]ip route-static 0.0.0.0 0 45.0.0.2
[r5]int l 0
[r5-LoopBack0]ip address 172.16.2.1 24
[r5-LoopBack0]q

[r6]int s 4/0/0
[r6-Serial4/0/0]ip address 46.0.0.1 24
[r6-Serial4/0/0]q
[r6]ip route-static 0.0.0.0 0 46.0.0.2
[r6]int l 0
[r6-LoopBack0]ip address 172.16.3.1 24
[r6-LoopBack0]q

[r7]int g 0/0/0
[r7-GigabitEthernet0/0/0]ip address 47.0.0.1 24
[r7-GigabitEthernet0/0/0]q
[r7]ip route-static 0.0.0.0 0 47.0.0.2
[r7]int l 0
[r7-LoopBack0]ip address 172.16.4.1 24
[r7-LoopBack0]q

R3作为中心点进行配置

[r3]int t 0/0/0
[r3-Tunnel0/0/0]ip address 172.16.1.1 29
[r3-Tunnel0/0/0]tunnel-protocol gre p2mp 
[r3-Tunnel0/0/0]source 34.0.0.1 
[r3-Tunnel0/0/0]nhrp network-id 100
[r3-Tunnel0/0/0]nhrp entry multicast dynamic 

 R5

[r5]int t 0/0/0
[r5-Tunnel0/0/0]ip address 172.16.1.2 29
[r5-Tunnel0/0/0]tunnel-protocol gre p2mp 
[r5-Tunnel0/0/0]source Serial 4/0/0
[r5-Tunnel0/0/0]nhrp network-id 100
[r5-Tunnel0/0/0]nhrp entry 172.16.1.1 34.0.0.1 register 

 R6

[r6]int t 0/0/0
[r6-Tunnel0/0/0]ip address 172.16.1.3 29
[r6-Tunnel0/0/0]tunnel-protocol gre p2mp 
[r6-Tunnel0/0/0]source Serial 4/0/0
[r6-Tunnel0/0/0]nhrp network-id 100
[r6-Tunnel0/0/0]nhrp entry 172.16.1.1 34.0.0.1 register 

R7

[r7]int t 0/0/0
[r7-Tunnel0/0/0]ip address 172.16.1.4 29
[r7-Tunnel0/0/0]tunnel-protocol gre p2mp 
[r7-Tunnel0/0/0]source GigabitEthernet 0/0/0
[r7-Tunnel0/0/0]nhrp network-id 100
[r7-Tunnel0/0/0]nhrp entry 172.16.1.1 34.0.0.1 register 

 查看是否向中心进行注册

[r3]display nhrp peer all
------------------------------------------------------------------------------- 
Protocol-addr   Mask  NBMA-addr       NextHop-addr    Type         Flag         
------------------------------------------------------------------------------- 
172.16.1.2      32    45.0.0.1        172.16.1.2      dynamic      route tunnel 
------------------------------------------------------------------------------- 
Tunnel interface: Tunnel0/0/0
Created time    : 00:04:36
Expire time     : 01:55:24
------------------------------------------------------------------------------- 
Protocol-addr   Mask  NBMA-addr       NextHop-addr    Type         Flag         
------------------------------------------------------------------------------- 
172.16.1.3      32    46.0.0.1        172.16.1.3      dynamic      route tunnel 
------------------------------------------------------------------------------- 
Tunnel interface: Tunnel0/0/0
Created time    : 00:02:44
Expire time     : 01:57:16
------------------------------------------------------------------------------- 
Protocol-addr   Mask  NBMA-addr       NextHop-addr    Type         Flag         
------------------------------------------------------------------------------- 
172.16.1.4      32    47.0.0.1        172.16.1.4      dynamic      route tunnel 
------------------------------------------------------------------------------- 
Tunnel interface: Tunnel0/0/0
Created time    : 00:01:29
Expire time     : 01:58:31

Number of nhrp peers: 3

area 1区域配置

 R1、R2、R3配置环回、骨干

[r1]int g 0/0/0
[r1-GigabitEthernet0/0/0]ip address 172.16.33.1 29
[r1-GigabitEthernet0/0/0]int l 0
[r1-LoopBack0]ip address 172.16.34.1 24
[r1-LoopBack0]q

[r2]int g 0/0/0
[r2-GigabitEthernet0/0/0]ip address 172.16.33.2 29
[r2-GigabitEthernet0/0/0]int l 0
[r2-LoopBack0]ip address 172.16.35.1 24
[r2-LoopBack0]q

[r3]int g 0/0/0
[r3-GigabitEthernet0/0/0]ip address 172.16.33.3 29
[r3-GigabitEthernet0/0/0]int l 0
[r3-LoopBack0]ip address 172.16.36.1 24
[r3-LoopBack0]q

area 2区域配置

[r6]int g 0/0/0
[r6-GigabitEthernet0/0/0]ip address 172.16.65.1 29
[r6-GigabitEthernet0/0/0]q

[r11]int g 0/0/0
[r11-GigabitEthernet0/0/0]ip address 172.16.65.2 29
[r11-GigabitEthernet0/0/0]int g 0/0/1
[r11-GigabitEthernet0/0/1]ip address 172.16.65.9 29
[r11-GigabitEthernet0/0/1]int l 0
[r11-LoopBack0]ip address 172.16.66.1 24
[r11-LoopBack0]q

[r12]int g 0/0/0
[r12-GigabitEthernet0/0/0]ip address 172.16.65.10 29
[r12-GigabitEthernet0/0/0]q

 area 3区域配置

[r7]int g 0/0/1
[r7-GigabitEthernet0/0/1]ip address 172.16.97.1 29 
[r7-GigabitEthernet0/0/1]q

[r8]int g 0/0/0 
[r8-GigabitEthernet0/0/0]ip address 172.16.97.2 29 
[r8-GigabitEthernet0/0/0]int g 0/0/1
[r8-GigabitEthernet0/0/1]ip address 172.16.97.9 29
[r8-GigabitEthernet0/0/1]int l 0
[r8-LoopBack0]ip address 172.16.98.1 24
[r8-LoopBack0]q

[r9]int g 0/0/0
[r9-GigabitEthernet0/0/0]ip address 172.16.97.10 29
[r9-GigabitEthernet0/0/0]q

area 4区域配置 

[r9]int g 0/0/1
[r9-GigabitEthernet0/0/1]ip address 172.16.129.1 29
[r9-GigabitEthernet0/0/1]int l 0
[r9-LoopBack0]ip address 172.16.130.1 24
[r9-LoopBack0]q

[r10]int g 0/0/0
[r10-GigabitEthernet0/0/0]ip address 172.16.129.2 29 
[r10-GigabitEthernet0/0/0]int l 0
[r10-LoopBack0]ip address 172.16.131.1 24
[r10-LoopBack0]q

 RIP环回区域R12的环回

[r12]int l 0
[r12-LoopBack0]ip address 172.16.160.1 20
[r12-LoopBack0]int l 1
[r12-LoopBack1]ip address 172.16.176.1 20
[r12-LoopBack1]q

 启动OSPF协议、宣告

[r1]ospf 1 router-id 1.1.1.1 
[r1-ospf-1]a 1
[r1-ospf-1-area-0.0.0.1]network 172.16.0.0 0.0.255.255

[r2]ospf 1 router-id 2.2.2.2
[r2-ospf-1]a 1
[r2-ospf-1-area-0.0.0.1]network 172.16.0.0 0.0.255.255

[r3]ospf 1 router-id 3.3.3.3
[r3-ospf-1]a 1
[r3-ospf-1-area-0.0.0.1]network 172.16.32.0 0.0.7.255
[r3-ospf-1-area-0.0.0.1]q
[r3-ospf-1]a 0
[r3-ospf-1-area-0.0.0.0]network 172.16.1.1 0.0.0.0

[r5]ospf 1 router-id 5.5.5.5
[r5-ospf-1]a 0
[r5-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.255.255

[r6]ospf 1 router-id 6.6.6.6
[r6-ospf-1]a 0
[r6-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.3.255
[r6-ospf-1-area-0.0.0.0]q
[r6-ospf-1]a 2
[r6-ospf-1-area-0.0.0.2]network 172.16.65.1 0.0.0.0

[r7]ospf 1 router-id 7.7.7.7
[r7-ospf-1]a 0
[r7-ospf-1-area-0.0.0.0]network 172.16.0.0 0.0.7.255 
[r7-ospf-1-area-0.0.0.0]a 3
[r7-ospf-1-area-0.0.0.3]network 172.16.97.1 0.0.0.0

[r8]ospf 1 router-id 8.8.8.8
[r8-ospf-1]a 3
[r8-ospf-1-area-0.0.0.3]network 172.16.0.0 0.0.255.255

[r9]ospf 1 router-id 9.9.9.9
[r9-ospf-1]a 3
[r9-ospf-1-area-0.0.0.3]network 172.16.97.10 0.0.0.0
[r9-ospf-1-area-0.0.0.3]q
[r9-ospf-1]a 4
[r9-ospf-1-area-0.0.0.4]network 172.16.128.0 0.0.3.255

[r10]ospf 1 router-id 10.10.10.10
[r10-ospf-1]a 4
[r10-ospf-1-area-0.0.0.4]network 172.16.0.0 0.0.255.255

[r11]ospf 1 router-id 11.11.11.11
[r11-ospf-1]a 2
[r11-ospf-1-area-0.0.0.2]network 172.16.0.0 0.0.255.255

[r12]ospf 1 router-id 12.12.12.12
[r12-ospf-1]a 2
[r12-ospf-1-area-0.0.0.2]network 172.16.65.10 0.0.0.0
[R12]rip 1
[R12-rip-1]version 2
[R12-rip-1]network 172.16.0.0 

 更改area0区域网络类型为p2mp,使得邻居关系成功建立

[r3]int t 0/0/0	
[r3-Tunnel0/0/0]ospf network-type p2mp

[r5]int t 0/0/0
[r5-Tunnel0/0/0]ospf network-type p2mp

[r6]int t 0/0/0
[r6-Tunnel0/0/0]ospf network-type p2mp

[r7]int t 0/0/0
[r7-Tunnel0/0/0]ospf network-type p2mp

RIP区域的路由信息重发布到OSPF区域中去

[r12]ospf
[r12-ospf-1]import-route rip 1
[r12-ospf-1]q

 再使用重发布导入area 4区域的路由信息

[R9]ospf 1
[R9-ospf-1]import-route ospf 2

减少LSA的更新量,加快收敏,保障更新安全

减少更新量(通过汇总与特殊区域实现)

 汇总,并配置空接口避免出现环路

[r3]ospf
[r3-ospf-1]a 1
[r3-ospf-1-area-0.0.0.1]abr	
[r3-ospf-1-area-0.0.0.1]abr-summary 172.16.32.0 255.255.254.0
[r3]ip route-static 172.16.32.0 19 NULL 0

[R6]ospf 1
[R6-ospf-1]a 2
[R6-ospf-1-area-0.0.0.2]abr-summary 172.16.64.0 255.255.224.0
[R6]ip route-static 172.16.64.0 19 NULL 0

[R7]ospf 1
[R7-ospf-1]a 3
[R7-ospf-1-area-0.0.0.3]abr-summary 172.16.96.0 255.255.224.0
[R7]ip route-static 172.16.96.0 19 NULL 0

[R9]ospf 1
[R9-ospf-1]asbr-summary 172.16.128.0 255.255.224.0
[R9]ip route-static 172.16.128.0 19 NULL 0

[R12]ospf 1
[R12-ospf-1]asbr-summary 172.16.160.0 255.255.224.0
[R12]ip route-static 172.16.160.0 19 NULL 0

 配置特殊区域

[R1]ospf 1
[R1-ospf-1]a 1
[R1-ospf-1-area-0.0.0.1]stub 

[R2]ospf 1
[R2-ospf-1]a 1
[R2-ospf-1-area-0.0.0.1]stub 

[R3]ospf 1
[R3-ospf-1]a 1
[R3-ospf-1-area-0.0.0.1]stub no-summary 

[R7]ospf 1
[R7-ospf-1]a 3
[R7-ospf-1-area-0.0.0.3]nssa no-summary

[R8]ospf 1
[R8-ospf-1]a 3
[R8-ospf-1-area-0.0.0.3]nssa 

[R9]ospf 1
[R9-ospf-1]a 3
[R9-ospf-1-area-0.0.0.3]nssa

[R6]ospf 1
[R6-ospf-1]a 2
[R6-ospf-1-area-0.0.0.2]nssa no-summary

[R11]ospf 1
[R11-ospf-1]a 2
[R11-ospf-1-area-0.0.0.2]nssa 

[R12]ospf 1
[R12-ospf-1]a 2
[R12-ospf-1-area-0.0.0.2]nssa 

 下发一条缺省路由指向R9

[R9]ospf 2
[R9-ospf-2]default-route-advertise

 加快收敛(减少计时器时间)

[R3]int t 0/0/0
[R3-Tunnel0/0/0]ospf timer hello 5

[R5]int t 0/0/0
[R5-Tunnel0/0/0]ospf timer hello 5

[R6]int t 0/0/0
[R6-Tunnel0/0/0]ospf timer hello 5

[R7]int t 0/0/0
[R7-Tunnel0/0/0]ospf timer hello 5

 保障更新安全

进行手工认证,即区域认证(实际上也是接口认证)

[R1]ospf 1
[R1-ospf-1]a 1
[R1-ospf-1-area-0.0.0.1]authentication-mode md5 1 123456

[R2]ospf 1
[R2-ospf-1]a  1
[R2-ospf-1-area-0.0.0.1]authentication-mode md5 1 cipher 123456

[R3]ospf 1
[R3-ospf-1]a 1
[R3-ospf-1-area-0.0.0.1]authentication-mode md5 1 cipher 123456

所有设备均可访问R4的环回

配置NAT

[R3]acl 2000
[R3-acl-basic-2000]rule permit source 172.16.0.0 0.0.255.255
[R3-acl-basic-2000]q
[R3]int Serial 4/0/0
[R3-Serial4/0/0]nat outbound 2000

[R6]acl 2000
[R6-acl-basic-2000]rule permit source 172.16.0.0 0.0.255.255
[R6-acl-basic-2000]q
[R6]int s 4/0/0
[R6-Serial4/0/0]nat outbound 2000

[R7]acl 2000
[R7-acl-basic-2000]rule permit source 172.16.0.0 0.0.255.255
[R7-acl-basic-2000]q
[R7]int g 0/0/0
[R7-GigabitEthernet0/0/0]nat outbound 2000

测试

<r1>ping 4.4.4.4
  PING 4.4.4.4: 56  data bytes, press CTRL_C to break
    Reply from 4.4.4.4: bytes=56 Sequence=1 ttl=254 time=100 ms
    Reply from 4.4.4.4: bytes=56 Sequence=2 ttl=254 time=50 ms
    Reply from 4.4.4.4: bytes=56 Sequence=3 ttl=254 time=40 ms

  --- 4.4.4.4 ping statistics ---
    3 packet(s) transmitted
    3 packet(s) received
    0.00% packet loss
    round-trip min/avg/max = 40/63/100 ms

<r6>ping 4.4.4.4
  PING 4.4.4.4: 56  data bytes, press CTRL_C to break
    Reply from 4.4.4.4: bytes=56 Sequence=1 ttl=255 time=40 ms
    Reply from 4.4.4.4: bytes=56 Sequence=2 ttl=255 time=10 ms
    Reply from 4.4.4.4: bytes=56 Sequence=3 ttl=255 time=20 ms
    Reply from 4.4.4.4: bytes=56 Sequence=4 ttl=255 time=20 ms
    Reply from 4.4.4.4: bytes=56 Sequence=5 ttl=255 time=30 ms

  --- 4.4.4.4 ping statistics ---
    5 packet(s) transmitted
    5 packet(s) received
    0.00% packet loss
    round-trip min/avg/max = 10/24/40 ms

<r11>ping 4.4.4.4
  PING 4.4.4.4: 56  data bytes, press CTRL_C to break
    Reply from 4.4.4.4: bytes=56 Sequence=1 ttl=254 time=30 ms
    Reply from 4.4.4.4: bytes=56 Sequence=2 ttl=254 time=30 ms
    Reply from 4.4.4.4: bytes=56 Sequence=3 ttl=254 time=20 ms

  --- 4.4.4.4 ping statistics ---
    3 packet(s) transmitted
    3 packet(s) received
    0.00% packet loss
    round-trip min/avg/max = 20/26/30 ms

这篇关于动态路由之OSPF综合实验的文章就介绍到这儿,希望我们推荐的文章对大家有所帮助,也希望大家多多支持为之网!