![图片[1]-38.2 配置OptionC方式跨域VPN示例(方案二)-大赛人网](https://www.dsrw.com/wp-content/uploads/2023/03/图片4-18-1024x403.png)
1.CE1配置BGP
[CE1]bgp 100
[CE1-bgp]peer 12.1.1.2 as-number 234
[CE1-bgp]network 1.1.1.1 32
2.PE1配置OSPF
[PE1]ospf 1 router-id 2.2.2.2
[PE1-ospf-1]area 0
[PE1-ospf-1-area-0.0.0.0]network 2.2.2.2 0.0.0.0
[PE1-ospf-1-area-0.0.0.0]network 23.1.1.0 0.255.255.255
3.P1配置OSPF
[P1]ospf 1 router-id 3.3.3.3
[P1-ospf-1]area 0
[P1-ospf-1-area-0.0.0.0]network 3.3.3.3 0.0.0.0
[P1-ospf-1-area-0.0.0.0]network 23.1.1.0 0.255.255.255
[P1-ospf-1-area-0.0.0.0]network 34.1.1.0 0.255.255.255
4.ASBR1上的配置OSPF
[ASBR1]ospf 1 router-id 4.4.4.4
[ASBR1-ospf-1]import-route bgp
[ASBR1-ospf-1]area 0
[ASBR1-ospf-1-area-0.0.0.0]network 4.4.4.4 0.0.0.0
[ASBR1-ospf-1-area-0.0.0.0]network 34.1.1.0 0.255.255.255
5.PE1配置VPN实例
[PE1]ip vpn-instance dsrw
[PE1-vpn-instance-dsrw]route-distinguisher 100:100
[PE1-vpn-instance-dsrw-af-ipv4]vpn-target 100:1 export-extcommunity
[PE1-vpn-instance-dsrw-af-ipv4]vpn-target 200:1 import-extcommunity
[PE1]interface GigabitEthernet 0/0/0
[PE1-GigabitEthernet0/0/0]ip binding vpn-instance dsrw
[PE1-GigabitEthernet0/0/0]ip address 12.1.1.2 8
6.PE1配置MPLS、LDP
[PE1]mpls lsr-id 2.2.2.2
[PE1]mpls
[PE1-mpls]mpls ldp
[PE1]interface GigabitEthernet 0/0/1
[PE1-GigabitEthernet0/0/1]mpls
[PE1-GigabitEthernet0/0/1]mpls ldp
7.PE1配置BGP
[PE1]bgp 234
[PE1-bgp]ipv4-family vpn-instance dsrw
[PE1-bgp-dsrw]peer 12.1.1.1 as-number 100
[PE1-bgp-dsrw]import-route direct
[PE1-bgp]peer 7.7.7.7 as-number 567
[PE1-bgp]peer 7.7.7.7 connect-interface LoopBack 0
[PE1-bgp]peer 7.7.7.7 ebgp-max-hop
[PE1-bgp]ipv4-family vpnv4
[PE1-bgp-af-vpnv4]peer 7.7.7.7 enable
8.P1配置MPLS、LDP
[P1]mpls lsr-id 3.3.3.3
[P1]mpls
[P1-mpls]mpls ldp
[P1]interface GigabitEthernet 0/0/0
[P1-GigabitEthernet0/0/0]mpls
[P1-GigabitEthernet0/0/0]mpls ldp
[P1]interface GigabitEthernet 0/0/1
[P1-GigabitEthernet0/0/1]mpls
[P1-GigabitEthernet0/0/1]mpls ldp
9.ASBR1配置MPLS、LDP
[ASBR1]mpls lsr-id 4.4.4.4
[ASBR1]mpls
[ASBR1-mpls]lsp-trigger bgp-label-route
[ASBR1]mpls ldp
[ASBR1]interface GigabitEthernet 0/0/0
[ASBR1-GigabitEthernet0/0/0]mpls
[ASBR1-GigabitEthernet0/0/0]mpls ldp
[ASBR1]interface GigabitEthernet 0/0/1
[ASBR1-GigabitEthernet0/0/1]mpls
//ASBR1与ASBR2的直连接口只要开启mpls,不要运行LDP协议
10.ASBR1配置BGP
[ASBR1]route-policy policy1 permit node 1
[ASBR1-route-policy]apply mpls-label
[ASBR1]bgp 234
[ASBR1-bgp]peer 45.1.1.5 as-number 567
[ASBR1-bgp]peer 45.1.1.5 route-policy policy1 export
[ASBR1-bgp]peer 45.1.1.5 label-route-capability
[ASBR1-bgp]network 2.2.2.2 32
11.ASBR2上的配置OSPF
[ASBR2]ospf 1 router-id 5.5.5.5
[ASBR2-ospf-1]import-route bgp
[ASBR2-ospf-1]area 0
[ASBR2-ospf-1-area-0.0.0.0]network 5.5.5.5 0.0.0.0
[ASBR2-ospf-1-area-0.0.0.0]network 56.1.1.0 0.255.255.255
12.P2配置OSPF
[P2]ospf 1 router-id 6.6.6.6
[P2-ospf-1]area 0
[P2-ospf-1-area-0.0.0.0]network 6.6.6.6 0.0.0.0
[P2-ospf-1-area-0.0.0.0]network 56.1.1.0 0.255.255.255
[P2-ospf-1-area-0.0.0.0]network 67.1.1.0 0.255.255.255
13.PE2上的配置OSPF
[PE2]ospf 1 router-id 7.7.7.7
[PE2-ospf-1]area 0
[PE2-ospf-1-area-0.0.0.0]network 7.7.7.7 0.0.0.0
[PE2-ospf-1-area-0.0.0.0]network 67.1.1.0 0.255.255.255
14.ASBR2配置MPLS、LDP
[ASBR2]mpls lsr-id 5.5.5.5
[ASBR2]mpls
[ASBR2-mpls]lsp-trigger bgp-label-route
[ASBR2]mpls ldp
[ASBR2]interface GigabitEthernet 0/0/1
[ASBR2-GigabitEthernet0/0/1]mpls
//ASBR1与ASBR2的直连接口只要开启mpls,不要运行LDP协议
[ASBR2]interface GigabitEthernet 0/0/0
[ASBR2-GigabitEthernet0/0/0]mpls
[ASBR2-GigabitEthernet0/0/0]mpls ldp
15.ASBR2配置BGP
[ASBR2]route-policy policy1 permit node 1
[ASBR2-route-policy]apply mpls-label
[ASBR2]bgp 567
[ASBR2-bgp]peer 45.1.1.4 as-number 234
[ASBR2-bgp]peer 45.1.1.4 route-policy policy1 export
[ASBR2-bgp]peer 45.1.1.4 label-route-capability
[ASBR2-bgp]network 7.7.7.7 32
16.P2配置MPLS、LDP
[P2]mpls lsr-id 6.6.6.6
[P2]mpls
[P2-mpls]mpls ldp
[P2]interface GigabitEthernet 0/0/0
[P2-GigabitEthernet0/0/0]mpls
[P2-GigabitEthernet0/0/0]mpls ldp
[P2]interface GigabitEthernet 0/0/1
[P2-GigabitEthernet0/0/1]mpls
[P2-GigabitEthernet0/0/1]mpls ldp
17.PE2配置VPN实例
[PE2]ip vpn-instance dsrw
[PE2-vpn-instance-dsrw]route-distinguisher 200:200
[PE2-vpn-instance-dsrw-af-ipv4]vpn-target 200:1 export-extcommunity
[PE2-vpn-instance-dsrw-af-ipv4]vpn-target 100:1 import-extcommunity
[PE2]interface GigabitEthernet 0/0/0
[PE2-GigabitEthernet0/0/0]ip binding vpn-instance dsrw
[PE2-GigabitEthernet0/0/0]ip address 78.1.1.7 8
18.PE2配置MPLS、LDP
[PE2]mpls lsr-id 7.7.7.7
[PE2]mpls
[PE2-mpls]mpls ldp
[PE2]interface GigabitEthernet 0/0/1
[PE2-GigabitEthernet0/0/1]mpls
[PE2-GigabitEthernet0/0/1]mpls ldp
19.PE2配置BGP
[PE2]bgp 567
[PE2-bgp]ipv4-family vpn-instance dsrw
[PE2-bgp-dsrw]peer 78.1.1.8 as-number 800
[PE2-bgp-dsrw]import-route direct
[PE2-bgp]peer 2.2.2.2 as-number 234
[PE2-bgp]peer 2.2.2.2 connect-interface LoopBack 0
[PE2-bgp]peer 2.2.2.2 ebgp-max-hop
[PE2-bgp]ipv4-family vpnv4
[PE2-bgp-af-vpnv4]peer 2.2.2.2 enable
20.CE2配置BGP
[CE2]bgp 800
[CE2-bgp]peer 78.1.1.7 as-number 567
[CE2-bgp]network 8.8.8.8 32
21.连通性测试
<CE1>ping 8.8.8.8
PING 8.8.8.8: 56 data bytes, press CTRL_C to break
Reply from 8.8.8.8: bytes=56 Sequence=1 ttl=249 time=50 ms
Reply from 8.8.8.8: bytes=56 Sequence=2 ttl=249 time=60 ms
Reply from 8.8.8.8: bytes=56 Sequence=3 ttl=249 time=80 ms
Reply from 8.8.8.8: bytes=56 Sequence=4 ttl=249 time=50 ms
Reply from 8.8.8.8: bytes=56 Sequence=5 ttl=249 time=70 ms
© 版权声明
文章版权归作者所有,未经允许请勿转载。
THE END
请登录后查看评论内容