天天看點

HUB&SPOKE場景

一、實驗拓撲圖

1.實驗拓撲圖

二、實驗目的

1.配置HUB&SPOKE場景
           

三、HUB&SPOKE場景

1.site之間的通信要經過,總部。
           

四、簡單配置

AR1

sysname AR1
#
interface GigabitEthernet0/0/0
 ip address 10.0.13.1 255.255.255.0 
#
interface LoopBack1
 ip address 1.1.1.1 255.255.255.255 
#
ospf 1 
 area 0.0.0.0 
  network 1.1.1.1 0.0.0.0 
  network 10.0.13.0 0.0.0.255 
#
return
           

AR2

sysname AR2
#
interface GigabitEthernet0/0/1
 ip address 10.0.24.2 255.255.255.0 
#
interface LoopBack1
 ip address 2.2.2.2 255.255.255.255 
#
ospf 1 
 area 0.0.0.0 
  network 2.2.2.2 0.0.0.0 
  network 10.0.24.0 0.0.0.255 
#
return
           

AR3

sysname AR3
#
ip vpn-instance vpna
 ipv4-family
  route-distinguisher 1:3
  vpn-target 1:3 export-extcommunity
  vpn-target 1:3 5:6 import-extcommunity
#
mpls lsr-id 3.3.3.3
mpls
#
mpls ldp
#
interface GigabitEthernet0/0/0
 ip binding vpn-instance vpna
 ip address 10.0.13.3 255.255.255.0 
#
interface GigabitEthernet0/0/1
 ip address 10.0.35.3 255.255.255.0 
 mpls
 mpls ldp
#
interface LoopBack1
 ip address 3.3.3.3 255.255.255.255 
#
bgp 100
 peer 5.5.5.5 as-number 100 
 peer 5.5.5.5 connect-interface LoopBack1
 #
 ipv4-family unicast
  undo synchronization
  peer 5.5.5.5 enable
 # 
 ipv4-family vpnv4
  policy vpn-target
  peer 5.5.5.5 enable
 #
 ipv4-family vpn-instance vpna 
  import-route ospf 2
#
ospf 1 
 area 0.0.0.0 
  network 3.3.3.3 0.0.0.0 
  network 10.0.35.0 0.0.0.255 
#
ospf 2 vpn-instance vpna
 import-route bgp
 area 0.0.0.0 
  network 10.0.13.0 0.0.0.255 
#
return
           

AR4

sysname AR4
#
ip vpn-instance vpna
 ipv4-family
  route-distinguisher 2:4
  vpn-target 2:4 export-extcommunity
  vpn-target 2:4 6:5 import-extcommunity
#
mpls lsr-id 4.4.4.4
mpls
#
mpls ldp
#
interface GigabitEthernet0/0/0
 ip address 10.0.45.4 255.255.255.0 
 mpls
 mpls ldp
#
interface GigabitEthernet0/0/1
 ip binding vpn-instance vpna
 ip address 10.0.24.4 255.255.255.0 
#
interface LoopBack1
 ip address 4.4.4.4 255.255.255.255 
#
bgp 100
 peer 5.5.5.5 as-number 100 
 peer 5.5.5.5 connect-interface LoopBack1
 #
 ipv4-family unicast
  undo synchronization
  peer 5.5.5.5 enable
 # 
 ipv4-family vpnv4
  policy vpn-target
  peer 5.5.5.5 enable
 #
 ipv4-family vpn-instance vpna 
  import-route ospf 2
#
ospf 1 
 area 0.0.0.0 
  network 4.4.4.4 0.0.0.0 
  network 10.0.45.0 0.0.0.255 
#
ospf 2 vpn-instance vpna
 import-route bgp
 area 0.0.0.0 
  network 10.0.24.0 0.0.0.255 
#
return
           

AR5

sysname AR5
#
ip vpn-instance vpna
 ipv4-family
  route-distinguisher 5:6
  vpn-target 5:6 export-extcommunity
  vpn-target 1:3 import-extcommunity
#
ip vpn-instance vpnb
 ipv4-family
  route-distinguisher 6:5
  vpn-target 6:5 export-extcommunity
  vpn-target 2:4 import-extcommunity
#
mpls lsr-id 5.5.5.5
mpls
#
mpls ldp
#
isis 1 vpn-instance vpna
 is-level level-2
 network-entity 49.0000.0000.0000.0005.00
 import-route bgp 
#
isis 2 vpn-instance vpnb
 is-level level-2
 network-entity 49.0000.0000.0000.0051.00
 import-route bgp 
#
firewall zone Local
 priority 15
#
interface GigabitEthernet0/0/0
 ip address 10.0.45.5 255.255.255.0 
 mpls
 mpls ldp
#
interface GigabitEthernet0/0/1
 ip address 10.0.35.5 255.255.255.0 
 mpls
 mpls ldp
#
interface GigabitEthernet0/0/2
#
interface GigabitEthernet3/0/0
 ip binding vpn-instance vpna
 ip address 10.0.53.3 255.255.255.0 
 isis enable 1
 isis circuit-level level-2
#
interface GigabitEthernet4/0/0
 ip binding vpn-instance vpnb
 ip address 10.0.54.4 255.255.255.0 
 isis enable 2
#
interface LoopBack1
 ip address 5.5.5.5 255.255.255.255 
#
bgp 100
 peer 3.3.3.3 as-number 100 
 peer 3.3.3.3 connect-interface LoopBack1
 peer 4.4.4.4 as-number 100 
 peer 4.4.4.4 connect-interface LoopBack1
 #
 ipv4-family unicast
  undo synchronization
  peer 3.3.3.3 enable
  peer 4.4.4.4 enable
 # 
 ipv4-family vpnv4
  policy vpn-target
  peer 3.3.3.3 enable
  peer 4.4.4.4 enable
 #
 ipv4-family vpn-instance vpna 
  import-route isis 1
 #
 ipv4-family vpn-instance vpnb 
  import-route isis 2
#
ospf 1 
 area 0.0.0.0 
  network 5.5.5.5 0.0.0.0 
  network 10.0.35.0 0.0.0.255 
  network 10.0.45.0 0.0.0.255 
#
return
           

AR6

sysname AR6
#
isis 1
 is-level level-2
 network-entity 49.0000.0000.0000.0006.00
#
interface GigabitEthernet0/0/0
 ip address 10.0.53.4 255.255.255.0 
 isis enable 1
 isis circuit-level level-2
#
interface GigabitEthernet0/0/1
 ip address 10.0.54.3 255.255.255.0 
 isis enable 1
 isis circuit-level level-2
#
interface LoopBack1
 ip address 6.6.6.6 255.255.255.255 
 isis enable 1
#
return
           

繼續閱讀