OSPF雙點雙規與雙歸屬實驗
當左邊黑色叉線路斷裂,R5訪問R1會出現兩條負載均衡;但是不希望占用辦公路由到辦公的帶寬;所以最佳選擇就是增加R1~R2之間的開銷,這樣使得生產走生產路由,

當生產與生產之間的鏈路斷裂,不希望因為私網內部的斷裂導致公網R5到生產路由的帶寬閑置,理由:私網內部帶寬相對較大,而公網帶寬資源十分珍貴,所以還是希望生產通過生產路由到達R5,R5去往R1(R2)直接使用靜態指向生產(辦公)路由,

R5去R1或R2
ip route-static 10.1.1.0 255.255.255.0 10.1.35.1 preference 5
ip route-static 10.2.2.0 255.255.255.0 10.1.45.1 preference 5


但是從R1(R2)到達R5使用靜態路由指向時,會出現一個問題:當鏈路R3和R5之間出現故障因為ospf和靜態相互指向,從而導致出現環路,所以需要檢測下行鏈路是否運行正常;當下行鏈路故障時,則靜態路由失效,根據需求采用bfd策略,

######################R3#################################
#
bfd 2 bind peer-ip 10.1.45.2 source-ip 10.1.34.1
discriminator local 3
discriminator remote 4
commit
#
ip route-static 10.2.3.0 255.255.255.0 10.1.34.2 preference 5 track bfd-session
2
#
#########################R4####################
#
bfd 1 bind peer-ip 10.1.35.2 source-ip 10.1.34.2
discriminator local 1
discriminator remote 2
commit
#
ip route-static 10.1.3.0 255.255.255.0 10.1.34.1 preference 5 track bfd-session
1
#
######################R5########################
#
bfd 1 bind peer-ip 10.1.34.2 source-ip 10.1.35.2
discriminator local 2
discriminator remote 1
commit
#
bfd 2 bind peer-ip 10.1.34.1 source-ip 10.1.45.2
discriminator local 4
discriminator remote 3
commit
#
測驗:





增加冗余
使用VRF虛擬路由轉發實體技術
R1
#
ip vpn-instance BG
ipv4-family
route-distinguisher 2:2
#
ip vpn-instance SC
ipv4-family
route-distinguisher 1:1
#
interface GigabitEthernet0/0/0.1
dot1q termination vid 1
ip binding vpn-instance SC
ip address 10.1.12.1 255.255.255.0
arp broadcast enable
#
interface GigabitEthernet0/0/0.2
dot1q termination vid 2
ip binding vpn-instance BG
ip address 10.1.112.1 255.255.255.0
arp broadcast enable
#
#
ospf 1 router-id 1.1.1.1 vpn-instance SC
area 0.0.0.0
network 10.1.1.0 0.0.0.255
network 10.1.12.0 0.0.0.255
network 10.1.13.0 0.0.0.255
#
ospf 2 router-id 11.11.11.11 vpn-instance BG
area 0.0.0.0
network 10.1.14.0 0.0.0.255
network 10.1.112.0 0.0.0.255
network 10.2.1.1 0.0.0.0
#
R2
#
ip vpn-instance BG
ipv4-family
route-distinguisher 2:2
#
ip vpn-instance SC
ipv4-family
route-distinguisher 1:1
#
#
interface GigabitEthernet0/0/0.1
dot1q termination vid 1
ip binding vpn-instance SC
ip address 10.1.12.2 255.255.255.0
arp broadcast enable
#
interface GigabitEthernet0/0/0.2
dot1q termination vid 2
ip binding vpn-instance BG
ip address 10.1.112.2 255.255.255.0
arp broadcast enable
#
#
ospf 1 router-id 2.2.2.2 vpn-instance SC
area 0.0.0.0
network 10.1.2.0 0.0.0.255
network 10.1.12.0 0.0.0.255
network 10.1.23.0 0.0.0.255
#
ospf 2 router-id 22.22.22.22 vpn-instance BG
area 0.0.0.0
network 10.1.24.0 0.0.0.255
network 10.1.112.0 0.0.0.255
network 10.2.2.0 0.0.0.255
#
測驗:









轉載請註明出處,本文鏈接:https://www.uj5u.com/qita/256722.html
標籤:其他
