38.2 配置OptionC方式跨域VPN示例(方案二)

图片[1]-38.2 配置OptionC方式跨域VPN示例(方案二)-大赛人网
图38-2 Inter AS MPLS VPN  Option C(方案二)配置网络拓扑

1.CE1配置BGP

[CE1]bgp 100
[CE1-bgp]peer 12.1.1.2 as-number 234
[CE1-bgp]network 1.1.1.1 32

2.PE1配置OSPF

[PE1]ospf 1 router-id 2.2.2.2
[PE1-ospf-1]area 0
[PE1-ospf-1-area-0.0.0.0]network 2.2.2.2 0.0.0.0
[PE1-ospf-1-area-0.0.0.0]network 23.1.1.0 0.255.255.255

3.P1配置OSPF

[P1]ospf 1 router-id 3.3.3.3
[P1-ospf-1]area 0
[P1-ospf-1-area-0.0.0.0]network 3.3.3.3 0.0.0.0 
[P1-ospf-1-area-0.0.0.0]network 23.1.1.0 0.255.255.255
[P1-ospf-1-area-0.0.0.0]network 34.1.1.0 0.255.255.255

4.ASBR1上的配置OSPF

[ASBR1]ospf 1 router-id 4.4.4.4
[ASBR1-ospf-1]import-route bgp
[ASBR1-ospf-1]area 0
[ASBR1-ospf-1-area-0.0.0.0]network 4.4.4.4 0.0.0.0
[ASBR1-ospf-1-area-0.0.0.0]network 34.1.1.0 0.255.255.255

5.PE1配置VPN实例

[PE1]ip vpn-instance dsrw
[PE1-vpn-instance-dsrw]route-distinguisher 100:100
[PE1-vpn-instance-dsrw-af-ipv4]vpn-target 100:1 export-extcommunity 
[PE1-vpn-instance-dsrw-af-ipv4]vpn-target 200:1 import-extcommunity 
[PE1]interface GigabitEthernet 0/0/0
[PE1-GigabitEthernet0/0/0]ip binding vpn-instance dsrw
[PE1-GigabitEthernet0/0/0]ip address 12.1.1.2 8

6.PE1配置MPLS、LDP

[PE1]mpls lsr-id 2.2.2.2
[PE1]mpls
[PE1-mpls]mpls ldp
[PE1]interface GigabitEthernet 0/0/1
[PE1-GigabitEthernet0/0/1]mpls
[PE1-GigabitEthernet0/0/1]mpls ldp

7.PE1配置BGP

[PE1]bgp 234
[PE1-bgp]ipv4-family vpn-instance dsrw   
[PE1-bgp-dsrw]peer 12.1.1.1 as-number 100
[PE1-bgp-dsrw]import-route direct
[PE1-bgp]peer 7.7.7.7 as-number 567
[PE1-bgp]peer 7.7.7.7 connect-interface LoopBack 0
[PE1-bgp]peer 7.7.7.7 ebgp-max-hop 
[PE1-bgp]ipv4-family vpnv4
[PE1-bgp-af-vpnv4]peer 7.7.7.7 enable 

8.P1配置MPLS、LDP

[P1]mpls lsr-id 3.3.3.3
[P1]mpls
[P1-mpls]mpls ldp
[P1]interface GigabitEthernet 0/0/0
[P1-GigabitEthernet0/0/0]mpls
[P1-GigabitEthernet0/0/0]mpls ldp
[P1]interface GigabitEthernet 0/0/1
[P1-GigabitEthernet0/0/1]mpls
[P1-GigabitEthernet0/0/1]mpls ldp

9.ASBR1配置MPLS、LDP

[ASBR1]mpls lsr-id 4.4.4.4
[ASBR1]mpls
[ASBR1-mpls]lsp-trigger bgp-label-route
[ASBR1]mpls ldp
[ASBR1]interface GigabitEthernet 0/0/0
[ASBR1-GigabitEthernet0/0/0]mpls
[ASBR1-GigabitEthernet0/0/0]mpls ldp 
[ASBR1]interface GigabitEthernet 0/0/1
[ASBR1-GigabitEthernet0/0/1]mpls
//ASBR1与ASBR2的直连接口只要开启mpls,不要运行LDP协议

10.ASBR1配置BGP

[ASBR1]route-policy policy1 permit node 1
[ASBR1-route-policy]apply mpls-label 
[ASBR1]bgp 234
[ASBR1-bgp]peer 45.1.1.5 as-number 567
[ASBR1-bgp]peer 45.1.1.5 route-policy policy1 export
[ASBR1-bgp]peer 45.1.1.5 label-route-capability
[ASBR1-bgp]network 2.2.2.2 32

11.ASBR2上的配置OSPF

[ASBR2]ospf 1 router-id 5.5.5.5
[ASBR2-ospf-1]import-route bgp
[ASBR2-ospf-1]area 0
[ASBR2-ospf-1-area-0.0.0.0]network 5.5.5.5 0.0.0.0
[ASBR2-ospf-1-area-0.0.0.0]network 56.1.1.0 0.255.255.255

12.P2配置OSPF

[P2]ospf 1 router-id 6.6.6.6
[P2-ospf-1]area 0
[P2-ospf-1-area-0.0.0.0]network 6.6.6.6 0.0.0.0 
[P2-ospf-1-area-0.0.0.0]network 56.1.1.0 0.255.255.255
[P2-ospf-1-area-0.0.0.0]network 67.1.1.0 0.255.255.255

13.PE2上的配置OSPF

[PE2]ospf 1 router-id 7.7.7.7
[PE2-ospf-1]area 0
[PE2-ospf-1-area-0.0.0.0]network 7.7.7.7 0.0.0.0
[PE2-ospf-1-area-0.0.0.0]network 67.1.1.0 0.255.255.255

14.ASBR2配置MPLS、LDP

[ASBR2]mpls lsr-id 5.5.5.5
[ASBR2]mpls
[ASBR2-mpls]lsp-trigger bgp-label-route
[ASBR2]mpls ldp
[ASBR2]interface GigabitEthernet 0/0/1
[ASBR2-GigabitEthernet0/0/1]mpls
//ASBR1与ASBR2的直连接口只要开启mpls,不要运行LDP协议
[ASBR2]interface GigabitEthernet 0/0/0
[ASBR2-GigabitEthernet0/0/0]mpls 
[ASBR2-GigabitEthernet0/0/0]mpls ldp

15.ASBR2配置BGP

[ASBR2]route-policy policy1 permit node 1
[ASBR2-route-policy]apply mpls-label
[ASBR2]bgp 567
[ASBR2-bgp]peer 45.1.1.4 as-number 234
[ASBR2-bgp]peer 45.1.1.4 route-policy policy1 export 
[ASBR2-bgp]peer 45.1.1.4 label-route-capability
[ASBR2-bgp]network 7.7.7.7 32

16.P2配置MPLS、LDP

[P2]mpls lsr-id 6.6.6.6
[P2]mpls
[P2-mpls]mpls ldp
[P2]interface GigabitEthernet 0/0/0
[P2-GigabitEthernet0/0/0]mpls
[P2-GigabitEthernet0/0/0]mpls ldp
[P2]interface GigabitEthernet 0/0/1
[P2-GigabitEthernet0/0/1]mpls
[P2-GigabitEthernet0/0/1]mpls ldp

17.PE2配置VPN实例

[PE2]ip vpn-instance dsrw
[PE2-vpn-instance-dsrw]route-distinguisher 200:200
[PE2-vpn-instance-dsrw-af-ipv4]vpn-target 200:1 export-extcommunity 
[PE2-vpn-instance-dsrw-af-ipv4]vpn-target 100:1 import-extcommunity 
[PE2]interface GigabitEthernet 0/0/0
[PE2-GigabitEthernet0/0/0]ip binding vpn-instance dsrw
[PE2-GigabitEthernet0/0/0]ip address 78.1.1.7 8

18.PE2配置MPLS、LDP

[PE2]mpls lsr-id 7.7.7.7
[PE2]mpls
[PE2-mpls]mpls ldp
[PE2]interface GigabitEthernet 0/0/1
[PE2-GigabitEthernet0/0/1]mpls
[PE2-GigabitEthernet0/0/1]mpls ldp

19.PE2配置BGP

[PE2]bgp 567
[PE2-bgp]ipv4-family vpn-instance dsrw   
[PE2-bgp-dsrw]peer 78.1.1.8 as-number 800
[PE2-bgp-dsrw]import-route direct
[PE2-bgp]peer 2.2.2.2 as-number 234
[PE2-bgp]peer 2.2.2.2 connect-interface LoopBack 0
[PE2-bgp]peer 2.2.2.2 ebgp-max-hop
[PE2-bgp]ipv4-family vpnv4
[PE2-bgp-af-vpnv4]peer 2.2.2.2 enable 

20.CE2配置BGP

[CE2]bgp 800
[CE2-bgp]peer 78.1.1.7 as-number 567
[CE2-bgp]network 8.8.8.8 32

21.连通性测试

<CE1>ping 8.8.8.8
  PING 8.8.8.8: 56  data bytes, press CTRL_C to break
    Reply from 8.8.8.8: bytes=56 Sequence=1 ttl=249 time=50 ms
    Reply from 8.8.8.8: bytes=56 Sequence=2 ttl=249 time=60 ms
    Reply from 8.8.8.8: bytes=56 Sequence=3 ttl=249 time=80 ms
    Reply from 8.8.8.8: bytes=56 Sequence=4 ttl=249 time=50 ms
    Reply from 8.8.8.8: bytes=56 Sequence=5 ttl=249 time=70 ms
© 版权声明
THE END
喜欢就支持一下吧
点赞5 分享
评论 抢沙发
头像
欢迎您留下宝贵的见解!
提交
头像

昵称

取消
昵称

    请登录后查看评论内容