华为路由器BGP实验
http://bbs.sdbj.cn/attachments/month_1006/10062410009e09449a15b9eb7d.jpg
在R1上的主要配置:
acl number 3000
rule 0 permit ip source 1.1.1.1 0
rule 1 permit ip source 1.1.2.1 0
rule 2 permit ip source 1.1.5.1 0
#
interface Ethernet0/1/0
ip address 12.1.1.1 255.255.255.0
#
interface LoopBack0
ip address 1.1.1.1 255.255.255.255
#
interface LoopBack1
ip address 1.1.2.1 255.255.255.255
#
interface LoopBack2
ip address 1.1.5.1 255.255.255.255
#
bgp 100
network 1.1.1.1 255.255.255.255
network 1.1.2.1 255.255.255.255
network 1.1.5.1 255.255.255.255
undo synchronization
peer 12.1.1.2 as-number 200
group e external
peer 12.1.1.2 group e
peer 12.1.1.2 route-policy 1 export
peer 12.1.1.2 advertise-community
#
route-policy 1 permit node 10
if-match acl 3000
apply community no-export
在R2上的主要配置:
acl number 3000
rule 0 permit ip source 1.0.0.0 0.0.0.255
#
interface Ethernet0/1/0
ip address 12.1.1.2 255.255.255.0
#
interface Ethernet0/1/1
ip address 23.1.1.1 255.255.255.0
#
interface Ethernet0/1/2
ip address 24.1.1.1 255.255.255.0
#
bgp 200
aggregate 1.0.0.0 255.0.0.0 as-set attribute-policy 1
undo synchronization
peer 12.1.1.1 as-number 100
peer 23.1.1.2 as-number 300
peer 24.1.1.2 as-number 400
group e external
peer 12.1.1.1 group e
peer 23.1.1.2 group e
peer 24.1.1.2 group e
#
route-policy 1 permit node 10
if-match acl 3000
apply community none
在R3上的主要配置:
interface Ethernet0/1/0
ip address 23.1.1.2 255.255.255.0
#
bgp 300
summary automatic
undo synchronization
peer 23.1.1.1 as-number 200
group e external
peer 23.1.1.1 group e
在R4上的主要配置:
acl number 3000
rule 0 permit ip source 1.1.4.1 0
#
interface Ethernet0/1/0
ip address 24.1.1.2 255.255.255.0
interface LoopBack0
ip address 1.1.3.1 255.255.255.255
#
interface LoopBack1
ip address 1.1.4.1 255.255.255.255
bgp 400
network 1.1.3.1 255.255.255.255
network 1.1.4.1 255.255.255.255
undo synchronization
peer 24.1.1.1 as-number 200
group e external
peer 24.1.1.1 group e
peer 24.1.1.1 route-policy 1 export
peer 24.1.1.1 advertise-community
#
route-policy 1 permit node 10
if-match acl 3000
apply community no-export
route-policy 1 permit node 20
说明:上述配置主要用BGP的团体属性和路由聚会配置来完成的。在R1 上要做匹配3条环回IP的bgp中community的no-export属性,然后传递给R2。
在R4上只要做匹配1.1.4.1的bgp中community的no-export属性,传递给R2,然后在执行route-policy 1 permit node 20。
在R2上首先要做一条聚合路由1.0.0.0/8的route-policy 然后匹配bgp中community的none属性,同时在BGP 200中利用路由聚合属性使其传递=aggregate 1.0.0.0 255.0.0.0 as-set attribute-policy 1.(意思在路由1.0.0.0 聚合上可以传递给EBGP邻居体)。
呵希望和大家共同进步!!!!!
楼主辛苦了。感谢分享。 {:6_276:} {:6_265:} 图挂了 thanks for sharing 谢谢共享资料,下载学习了 谢谢共享资料,下载学习了
页:
[1]