华为NP课程笔记5-中间系统到中间系统实验
一、实验要求
1、客户网络所有路由器路由协议要求启用IS-IS,使得全部路由可达
2、R1、R2、R3网段是10.1.123.0/24,R2与R4网段是10.1.24.0/24,其余同,R1的环回口是10.1.1.1/32,R2的环回口是10.1.2.2/32,其余同
3、全部IS-IS进程号统一为100
R1,R2,R3是在区域49.0001下,R4,R5是在区域49.0002下,R1为L1路由器,R2、R3为L1/L2路由器,AR4,AR5为L2路由器
4、其中R1在Area49.0001区域为DIS
5、要求R3、R4建立邻接关系仅仅使用三次握手
6、R4与R5之间要求采用P2P网络类型,R5引入直连链路192.168.X.X
7、R2与R4的开销值是1,要求R1访问R5的环回口走最优路径。(用路由泄露)
二、配置
1、基础配置,配置路由器接口地址和ISIS,使得全部路由可达
R1:
isis 100
is-level level-1
network-entity 49.0001.0000.0000.1111.00
int lo0
ip address 10.1.1.1 32
isis enable 100
int g0/0/0
ip address 10.1.123.1 24
isis enable 100
R2:
isis 100
is-level level-1-2
network-entity 49.0001.0000.0000.2222.00
int lo0
ip address 10.1.2.2 32
isis enable 100
int g0/0/0
ip address 10.1.123.2 24
isis enable 100
int g0/0/1
ip address 10.1.24.2 24
isis enable 100
R3:
isis 100
is-level level-1-2
network-entity 49.0001.0000.0000.3333.00
int lo0
ip address 10.1.3.3 32
isis enable 100
int g0/0/0
ip address 10.1.123.3 24
isis enable 100
int s1/0/0
ip address 10.1.24.2 24
isis enable 100
R4:
isis 100
is-level level-2
network-entity 49.0001.0000.0000.3333.00
int lo0
ip address 10.1.4.4 32
isis enable 100
int g0/0/0
ip address 10.1.45.4 24
isis enable 100
int g0/0/1
ip address 10.1.24.4 24
isis enable 100
int s1/0/0
ip address 10.1.34.4 24
isis enable 100
R5:
isis 100
is-level level-2
network-entity 49.0001.0000.0000.3333.00
int lo0
ip address 10.1.5.5 32
isis enable 100
int g0/0/0
ip address 10.1.45.5 24
isis enable 100
2、设置DIS
dis isis peer 其中circuit id前6个字节就是DIS
配置R1的g0/0/0优先级为120(默认为60,数值越大,优先越高):
int g0/0/0
isis dis-priority 120 //同时修改L1、L2优先级,也可以指定
3、设置只用三次握手
AR4:
int s1/0/0
isis ppp-negotiation 3-way only
AR3:
int s1/0/0
isis ppp-negotiation 3-way only
4、设置R4、R5的P2P网络类型
R4:
int g0/0/0
isis circuit-type p2p
R5:
int g0/0/0
isis circuit-type p2p
5、设置R5的直连引入路由
R5:
int lo1
ip address 192.168.1.5 24
int lo2
ip address 192.168.2.5 24
int lo3
ip address 192.168.3.5 24
isis 100
imort-route direct level-2 //默认就是引入到Level-2,而level-1的路由只能在本区域内通告。
6、配置R1访问R5最优路径
配置开销值
A2:
int g0/0/1
isis cost 1
A4:
int g0/0/1
isis cost 1
配置引入路由:
A2:
acl 2000
rule permit source 192.168.0.0 0.0.3.255
rule deny source any
isis 100
import-route isis level-2 into level-1 filter-policy 2000
A3:
acl 2000
rule permit source 192.168.0.0 0.0.3.255
rule deny source any
isis 100
import-route isis level-2 into level-1 filter-policy 2000
R2-R4的isis开销值为1时,去往192.168.1.0等网段的下一跳为R2:
R2-R4开销值改为50时,去往192.168.1.0等网段的下一跳为R3: