一、實驗拓撲圖
1.實驗拓撲圖
二、實驗目的
1.配置HUB&SPOKE場景
三、HUB&SPOKE場景
1.site之間的通信要經過,總部。
四、簡單配置
AR1
sysname AR1
#
interface GigabitEthernet0/0/0
ip address 10.0.13.1 255.255.255.0
#
interface LoopBack1
ip address 1.1.1.1 255.255.255.255
#
ospf 1
area 0.0.0.0
network 1.1.1.1 0.0.0.0
network 10.0.13.0 0.0.0.255
#
return
AR2
sysname AR2
#
interface GigabitEthernet0/0/1
ip address 10.0.24.2 255.255.255.0
#
interface LoopBack1
ip address 2.2.2.2 255.255.255.255
#
ospf 1
area 0.0.0.0
network 2.2.2.2 0.0.0.0
network 10.0.24.0 0.0.0.255
#
return
AR3
sysname AR3
#
ip vpn-instance vpna
ipv4-family
route-distinguisher 1:3
vpn-target 1:3 export-extcommunity
vpn-target 1:3 5:6 import-extcommunity
#
mpls lsr-id 3.3.3.3
mpls
#
mpls ldp
#
interface GigabitEthernet0/0/0
ip binding vpn-instance vpna
ip address 10.0.13.3 255.255.255.0
#
interface GigabitEthernet0/0/1
ip address 10.0.35.3 255.255.255.0
mpls
mpls ldp
#
interface LoopBack1
ip address 3.3.3.3 255.255.255.255
#
bgp 100
peer 5.5.5.5 as-number 100
peer 5.5.5.5 connect-interface LoopBack1
#
ipv4-family unicast
undo synchronization
peer 5.5.5.5 enable
#
ipv4-family vpnv4
policy vpn-target
peer 5.5.5.5 enable
#
ipv4-family vpn-instance vpna
import-route ospf 2
#
ospf 1
area 0.0.0.0
network 3.3.3.3 0.0.0.0
network 10.0.35.0 0.0.0.255
#
ospf 2 vpn-instance vpna
import-route bgp
area 0.0.0.0
network 10.0.13.0 0.0.0.255
#
return
AR4
sysname AR4
#
ip vpn-instance vpna
ipv4-family
route-distinguisher 2:4
vpn-target 2:4 export-extcommunity
vpn-target 2:4 6:5 import-extcommunity
#
mpls lsr-id 4.4.4.4
mpls
#
mpls ldp
#
interface GigabitEthernet0/0/0
ip address 10.0.45.4 255.255.255.0
mpls
mpls ldp
#
interface GigabitEthernet0/0/1
ip binding vpn-instance vpna
ip address 10.0.24.4 255.255.255.0
#
interface LoopBack1
ip address 4.4.4.4 255.255.255.255
#
bgp 100
peer 5.5.5.5 as-number 100
peer 5.5.5.5 connect-interface LoopBack1
#
ipv4-family unicast
undo synchronization
peer 5.5.5.5 enable
#
ipv4-family vpnv4
policy vpn-target
peer 5.5.5.5 enable
#
ipv4-family vpn-instance vpna
import-route ospf 2
#
ospf 1
area 0.0.0.0
network 4.4.4.4 0.0.0.0
network 10.0.45.0 0.0.0.255
#
ospf 2 vpn-instance vpna
import-route bgp
area 0.0.0.0
network 10.0.24.0 0.0.0.255
#
return
AR5
sysname AR5
#
ip vpn-instance vpna
ipv4-family
route-distinguisher 5:6
vpn-target 5:6 export-extcommunity
vpn-target 1:3 import-extcommunity
#
ip vpn-instance vpnb
ipv4-family
route-distinguisher 6:5
vpn-target 6:5 export-extcommunity
vpn-target 2:4 import-extcommunity
#
mpls lsr-id 5.5.5.5
mpls
#
mpls ldp
#
isis 1 vpn-instance vpna
is-level level-2
network-entity 49.0000.0000.0000.0005.00
import-route bgp
#
isis 2 vpn-instance vpnb
is-level level-2
network-entity 49.0000.0000.0000.0051.00
import-route bgp
#
firewall zone Local
priority 15
#
interface GigabitEthernet0/0/0
ip address 10.0.45.5 255.255.255.0
mpls
mpls ldp
#
interface GigabitEthernet0/0/1
ip address 10.0.35.5 255.255.255.0
mpls
mpls ldp
#
interface GigabitEthernet0/0/2
#
interface GigabitEthernet3/0/0
ip binding vpn-instance vpna
ip address 10.0.53.3 255.255.255.0
isis enable 1
isis circuit-level level-2
#
interface GigabitEthernet4/0/0
ip binding vpn-instance vpnb
ip address 10.0.54.4 255.255.255.0
isis enable 2
#
interface LoopBack1
ip address 5.5.5.5 255.255.255.255
#
bgp 100
peer 3.3.3.3 as-number 100
peer 3.3.3.3 connect-interface LoopBack1
peer 4.4.4.4 as-number 100
peer 4.4.4.4 connect-interface LoopBack1
#
ipv4-family unicast
undo synchronization
peer 3.3.3.3 enable
peer 4.4.4.4 enable
#
ipv4-family vpnv4
policy vpn-target
peer 3.3.3.3 enable
peer 4.4.4.4 enable
#
ipv4-family vpn-instance vpna
import-route isis 1
#
ipv4-family vpn-instance vpnb
import-route isis 2
#
ospf 1
area 0.0.0.0
network 5.5.5.5 0.0.0.0
network 10.0.35.0 0.0.0.255
network 10.0.45.0 0.0.0.255
#
return
AR6
sysname AR6
#
isis 1
is-level level-2
network-entity 49.0000.0000.0000.0006.00
#
interface GigabitEthernet0/0/0
ip address 10.0.53.4 255.255.255.0
isis enable 1
isis circuit-level level-2
#
interface GigabitEthernet0/0/1
ip address 10.0.54.3 255.255.255.0
isis enable 1
isis circuit-level level-2
#
interface LoopBack1
ip address 6.6.6.6 255.255.255.255
isis enable 1
#
return