hcip-homework-10 MPLS实验

86 阅读4分钟

一、实验拓扑

image.png

二、实验需求

image-20230815194933141.png

三、实验思路

四、实验步骤

1、配置IP地址

2、ISP公网起ospf路由

[R2]ospf 1 router-id 2.2.2.2    
[R2-ospf-1]area 0
[R2-ospf-1-area-0.0.0.0]network 2.2.2.2 0.0.0.0
[R2-ospf-1-area-0.0.0.0]network 23.1.1.1 0.0.0.0
[R3]ospf 1 router-id 3.3.3.3
[R3-ospf-1]area 0
[R3-ospf-1-area-0.0.0.0]network 3.3.3.3 0.0.0.0
[R3-ospf-1-area-0.0.0.0]network 23.1.1.2 0.0.0.0
[R3-ospf-1-area-0.0.0.0]network 34.1.1.1 0.0.0.0
[R4]ospf 1 router-id 4.4.4.4    
[R4-ospf-1]area 0
[R4-ospf-1-area-0.0.0.0]network 4.4.4.4 0.0.0.0
[R4-ospf-1-area-0.0.0.0]network 34.1.1.2 0.0.0.0

3、R2,R3,R3对应接口上配置MPLS – LDP

[R2]mpls lsr-id 2.2.2.2
[R2-mpls]mpls ldp
[R2-mpls-ldp]q
[R2]int g0/0/2
[R2-GigabitEthernet0/0/2]mpls
[R2-GigabitEthernet0/0/2]mpls ldp
[R3]mpls lsr-id 3.3.3.3
[R3]mpls
[R3-mpls]mpls ldp
[R3-mpls-ldp]q
[R3]int g0/0/0
[R3-GigabitEthernet0/0/0]mpls
[R3-GigabitEthernet0/0/0]mpls ldp
[R3-GigabitEthernet0/0/0]int g0/0/1
[R3-GigabitEthernet0/0/1]mpls
[R3-GigabitEthernet0/0/1]mpls ldp
[R4]mpls lsr-id 4.4.4.4
[R4]mpls
[R4-mpls]mpls ldp
[R4-mpls-ldp]q
[R4]int g0/0/0
[R4-GigabitEthernet0/0/0]mpls
[R4-GigabitEthernet0/0/0]mpls ldp

mpls的邻居建立完毕

image-20230815202633527.png

4、配置MPLS VPN

[R2]ip vpn-instance b1
[R2-vpn-instance-b1]ipv4-family
[R2-vpn-instance-b1-af-ipv4]routing-table
[R2-vpn-instance-b1-af-ipv4]route-distinguisher 1:1
[R2-vpn-instance-b1-af-ipv4]vpn-target 1:1
​
[R2-vpn-instance-b1-af-ipv4]int g0/0/0
[R2-GigabitEthernet0/0/0]ip binding vpn-instance b1
[R2-GigabitEthernet0/0/0]ip add 192.168.2.2 24
[R2]ip vpn-instance a1
[R2-vpn-instance-a1]ipv4-family 
[R2-vpn-instance-a1-af-ipv4]route-distinguisher 2:2
[R2-vpn-instance-a1-af-ipv4]vpn-target 2:2
​
[R2-vpn-instance-a1-af-ipv4]int g0/0/1
[R2-GigabitEthernet0/0/1]ip binding vpn-instance a1
[R2-GigabitEthernet0/0/1]ip add 192.168.2.2 24
[R4]ip vpn-instance b2
[R4-vpn-instance-b2]ipv4-family 
[R4-vpn-instance-b2-af-ipv4]route-distinguisher 1:1
[R4-vpn-instance-b2-af-ipv4]vpn-target 1:1
​
[R4-vpn-instance-b2-af-ipv4]int g0/0/1
[R4-GigabitEthernet0/0/1]ip binding vpn-instance b2
[R4-GigabitEthernet0/0/1]ip add 192.168.3.1 24
[R4]ip vpn-instance a2
[R4-vpn-instance-a2]ipv4-family 
[R4-vpn-instance-a2-af-ipv4]route-distinguisher 2:2
[R4-vpn-instance-a2-af-ipv4]vpn-target 2:2
​
[R4-vpn-instance-a2-af-ipv4]int g4/0/0
[R4-GigabitEthernet4/0/0]ip binding vpn-instance a2
[R4-GigabitEthernet4/0/0]ip add 192.168.3.1 24

mpls对应的私有网段的vrf空间均已建好

image-20230815204522184.png

5、PE与PE间建立MP-BPG邻居关系

[R2]bgp 2
[R2-bgp]router-id 2.2.2.2
[R2-bgp]peer 4.4.4.4 as-number 2
[R2-bgp]peer 4.4.4.4 connect-interface LoopBack 0
​
[R2-bgp]ipv4-family vpnv4
[R2-bgp-af-vpnv4]peer 4.4.4.4 enable 
[R4]bgp 2
[R4-bgp]router-id 4.4.4.4
[R4-bgp]peer 2.2.2.2 as-number 2
[R4-bgp]peer 2.2.2.2 connect-interface LoopBack 0
​
[R4-bgp]ipv4-family vpnv4
[R4-bgp-af-vpnv4]peer 2.2.2.2 enable 

MP-BPG邻居关系建立完毕

image-20230815205242949.png

6、CE端与PE端交互路由

R1与R2采用静态,R2编写到VRF空间内的静态路由

[R2]ip route-static vpn-instance b1 192.168.1.0 24 192.168.2.1

将本地vrf空间内的静态和直连路由重发布到BGP协议传递到对端的R4

[R2]bgp 2
[R2-bgp]ipv4 vpn-instance b1
[R2-bgp-b1]import-route direct 
[R2-bgp-b1]import-route static 

R5与R4采用静态

[R4]ip route-static vpn-instance b2 192.168.4.0 24 192.168.3.2
[R4]bgp 2
[R4-bgp]ipv4 vpn-instance b2
[R4-bgp-b2]import-route direct  
[R4-bgp-b2]import-route static 

R1和R5各补两条指向空间内缺省

[R1]ip route-static 0.0.0.0 0 192.168.2.2
​
[R5]ip route-static 0.0.0.0 0 192.168.3.1

image-20230815212753732.png

R6采用rip

[R6]rip 1
[R6-rip-1]ver 2
[R6-rip-1]network 192.168.2.0
[R6-rip-1]network 192.168.1.0
[R2-rip-1]ver 2
[R2-rip-1]ne    
[R2-rip-1]network 192.168.2.0

使用双向重发布,实现路由共享

[R2-rip-1]bgp 2
[R2-bgp]ipv4-family vpnv4
[R2-bgp]ipv4-family vpn-instance a1
[R2-bgp-a1]import-route rip 1
[R2-bgp-a1]q
[R2-bgp]q
[R2]rip 1   
[R2-rip-1]import-route bgp

R7采用ospf

[R7]ospf 1 router-id 7.7.7.7
[R7-ospf-1]area 0
[R7-ospf-1-area-0.0.0.0]network 192.168.4.2 0.0.0.0
[R7-ospf-1-area-0.0.0.0]network 192.168.3.2 0.0.0.0
[R4]ospf 2 vpn-instance a2
[R4-ospf-2]area 0
[R4-ospf-2-area-0.0.0.0]network 192.168.3.1 0.0.0.0

使用双向重发布,实现路由共享

[R4]bgp 2
[R4-bgp]ipv4-family vpn-instance a2
[R4-bgp-a2]import-route ospf 2
[R4-bgp-a2]q
[R4-bgp]q
[R4]ospf 2 vpn-instance a2
[R4-ospf-2]import-route bgp

image-20230815214054836.png

7、R7访问R2/3/4环回

[R4]ospf 1
[R4-ospf-1]area 0
[R4-ospf-1-area-0.0.0.0]network 47.1.1.1 0.0.0.0

image-20230816091715459.png