MPLS vpn OPTION B配置原理及数据通信分析

网友投稿 485 2022-09-21


MPLS vpn OPTION B配置原理及数据通信分析

一、ISP内部IGP全互通

R1: ospf 1 router-id 1.1.1.1 area 0.0.0.0 network 1.1.1.1 0.0.0.0 network 12.1.1.1 0.0.0.0 R2: ospf 1 router-id 2.2.2.2 area 0.0.0.0 network 2.2.2.2 0.0.0.0 network 12.1.1.2 0.0.0.0 network 23.1.1.2 0.0.0.0 network 24.1.1.2 0.0.0.0 R3: ospf 1 router-id 3.3.3.3 area 0.0.0.0 network 3.3.3.3 0.0.0.0 network 23.1.1.3 0.0.0.0 R4: ospf 1 router-id 4.4.4.4 area 0.0.0.0 network 4.4.4.4 0.0.0.0 network 24.1.1.4 0.0.0.0

R5: ospf 1 router-id 5.5.5.5 area 0.0.0.0 network 5.5.5.5 0.0.0.0 network 56.1.1.5 0.0.0.0 R6: ospf 1 router-id 6.6.6.6 area 0.0.0.0 network 6.6.6.6 0.0.0.0 network 56.1.1.6 0.0.0.0 network 67.1.1.6 0.0.0.0 network 68.1.1.6 0.0.0.0 R7: ospf 1 router-id 7.7.7.7 area 0.0.0.0 network 7.7.7.7 0.0.0.0 network 67.1.1.7 0.0.0.0 R8: ospf 1 router-id 8.8.8.8 area 0.0.0.0 network 8.8.8.8 0.0.0.0 network 68.1.1.8 0.0.0.0

R1: mpls lsr-id 1.1.1.1 mpls mpls ldp int g0/0/0 mpls mpls ldp R2: mpls lsr-id 2.2.2.2 mpls mpls ldp int g0/0/0 mpls mpls ldp int g0/0/1 mpls mpls ldp int g0/0/2 mpls mpls ldp R3: mpls lsr-id 3.3.3.3 mpls mpls ldp int g0/0/0 mpls mpls ldp R4: mpls lsr-id 4.4.4.4 mpls mpls ldp int g0/0/0 mpls mpls ldp

R5: mpls lsr-id 5.5.5.5 mpls mpls ldp int g0/0/0 mpls mpls ldp R6: mpls lsr-id 6.6.6.6 mpls mpls ldp int g0/0/0 mpls mpls ldp int g0/0/1 mpls mpls ldp int g0/0/2 mpls mpls ldp R7: mpls lsr-id 7.7.7.7 mpls mpls ldp int g0/0/0 mpls mpls ldp R8: mpls lsr-id 8.8.8.8 mpls mpls ldp int g0/0/0 mpls mpls ldp

R3: interface GigabitEthernet0/0/1 mpls R5: interface GigabitEthernet0/0/1 mpls

三、ISP内部建立MP-IBGP邻居,ISP之间建立MP-EBGP邻居,用于传递将来的vpnv4路由3.1、R1与R4、R3与R4建立MP-IBGP邻居关系,R1与R3是反射器R4的客户端,R4采用按组打包方式与R1、R3建立邻居关系:

R1: bgp 100 undo default ipv4-unicast peer 4.4.4.4 as-number 100 peer 4.4.4.4 connect-interface LoopBack0 ipv4-family unicast undo synchronization undo peer 4.4.4.4 enable ipv4-family vpnv4 policy vpn-target peer 4.4.4.4 enable R3: bgp 100 undo default ipv4-unicast peer 4.4.4.4 as-number 100 peer 4.4.4.4 connect-interface LoopBack0 ipv4-family unicast undo synchronization undo peer 4.4.4.4 enable ipv4-family vpnv4 undo policy vpn-target peer 4.4.4.4 enable

#因为R3上不需要创建VRF实例,所以不存在RT值,使用undo policy vpn-target保证可以收发vpnv4路由

R4: bgp 100 undo default ipv4-unicast peer 1.1.1.1 as-number 100 peer 3.3.3.3 as-number 100 group ibgp internal peer ibgp connect-interface LoopBack0 ipv4-family unicast undo synchronization undo peer ibgp enable undo peer 1.1.1.1 enable undo peer 3.3.3.3 enable ipv4-family vpnv4 undo policy vpn-target peer ibgp enable peer ibgp reflect-client peer 1.1.1.1 enable peer 1.1.1.1 group ibgp peer 3.3.3.3 enable peer 3.3.3.3 group ibgp

R5: bgp 200 undo default ipv4-unicast peer 8.8.8.8 as-number 200 peer 8.8.8.8 connect-interface LoopBack0 ipv4-family unicast undo synchronization undo peer 8.8.8.8 enable ipv4-family vpnv4 undo policy vpn-target peer 8.8.8.8 enable

#因为R5上不需要创建VRF实例,所以不存在RT值,使用undo policy vpn-target保证可以收发vpnv4路由

R7: bgp 200 undo default ipv4-unicast peer 8.8.8.8 as-number 200 peer 8.8.8.8 connect-interface LoopBack0 ipv4-family unicast undo synchronization undo peer 8.8.8.8 enable ipv4-family vpnv4 policy vpn-target peer 8.8.8.8 enable R8: bgp 200 undo default ipv4-unicast peer 5.5.5.5 as-number 200 peer 7.7.7.7 as-number 200 group ibgp internal peer ibgp connect-interface LoopBack0 ipv4-family unicast undo synchronization undo peer ibgp enable undo peer 5.5.5.5 enable undo peer 7.7.7.7 enable ipv4-family vpnv4 undo policy vpn-target peer ibgp enable peer ibgp reflect-client peer 5.5.5.5 enable peer 5.5.5.5 group ibgp peer 7.7.7.7 enable peer 7.7.7.7 group ibgp

R3: bgp 100 undo default ipv4-unicast peer 35.1.1.5 as-number 200 ipv4-family unicast undo synchronization undo peer 35.1.1.5 enable ipv4-family vpnv4 undo policy vpn-target peer 35.1.1.5 enable R5: bgp 200 undo default ipv4-unicast peer 35.1.1.3 as-number 100 ipv4-family unicast undo synchronization undo peer 35.1.1.3 enable ipv4-family vpnv4 undo policy vpn-target peer 35.1.1.3 enable

R1: ip vpn-instance 9 ipv4-family route-distinguisher 1:1 vpn-target 9:10 export-extcommunity vpn-target 10:9 import-extcommunity interface GigabitEthernet0/0/1 ip binding vpn-instance 9 ip address 192.168.1.1 255.255.255.0 bgp 100 ipv4-family vpn-instance 9 peer 192.168.1.9 as-number 9 R9: bgp 9 peer 192.168.1.1 as-number 100 ipv4-family unicast undo synchronization peer 192.168.1.1 enable

R7: ip vpn-instance 10 ipv4-family route-distinguisher 7:7 vpn-target 10:9 export-extcommunity vpn-target 9:10 import-extcommunity interface GigabitEthernet0/0/1 ip binding vpn-instance 10 ip address 192.168.7.7 255.255.255.0 bgp 200 ipv4-family vpn-instance 10 peer 192.168.7.10 as-number 10 R10: bgp 10 peer 192.168.7.7 as-number 200 ipv4-family unicast undo synchronization peer 192.168.7.7 enable

R9: bgp 9 network 192.168.9.9 255.255.255.255 R10: bgp 10 network 192.168.10.10 255.255.255.255


版权声明:本文内容由网络用户投稿,版权归原作者所有,本站不拥有其著作权,亦不承担相应法律责任。如果您发现本站中有涉嫌抄袭或描述失实的内容,请联系我们jiasou666@gmail.com 处理,核实后本网站将在24小时内删除侵权内容。

上一篇:路由交换学习笔记(二十一)SNMP(路由与交换技术笔记)
下一篇:接口设计规范有哪些要求?最全的API 接口设计规范,值得收藏!
相关文章

 发表评论

暂时没有评论,来抢沙发吧~