vrrp配置

1.配置VRRP,使得SW 1和SW 2共同组成一台虚拟设备
​ 1)划分好vlan
​ 2)配置好端口类型
​ 3)给三层交换机的vlanif 配置ip
​ 4)实施vrrp命令

vrrp配置
SW 1的配置
[Huawei]vlan batch 2 to 4
[Huawei]int g0/0/2
[Huawei-GigabitEthernet0/0/2]port link-type trunk
[Huawei-GigabitEthernet0/0/2]port trunk allow-pass vlan all
[Huawei-GigabitEthernet0/0/2]int g0/0/3
[Huawei-GigabitEthernet0/0/3]port link-type trunk
[Huawei-GigabitEthernet0/0/3]port trunk allow-pass vlan all
[Huawei-GigabitEthernet0/0/3]int vlan 2
[Huawei-Vlanif2]ip add 10.1.10.13 28
[Huawei-Vlanif3]int vlan3
[Huawei-Vlanif3]ip add 10.1.10.29 28
[Huawei-Vlanif3]int vlan4
[Huawei-Vlanif4]ip add 10.1.10.45 28
[Huawei]int vlan 2
[Huawei-Vlanif2]vrrp vrid 2 virtual-ip 10.1.10.12 //相当于用默认的优先级100,可以使用vrrp vrid 2 priority 110来设置优先级
[Huawei-Vlanif2]int vlan3
[Huawei-Vlanif3]vrrp vrid 3 virtual-ip 10.1.10.28
[Huawei-Vlanif3]int vlan4
[Huawei-Vlanif4]vrrp vrid 4 virtual-ip 10.1.10.44

SW 2的配置:
[Huawei]vlan batch 2 to 4
[Huawei]int g0/0/2
[Huawei-GigabitEthernet0/0/2]port link-type trunk
[Huawei-GigabitEthernet0/0/2]port trunk allow-pass vlan all
[Huawei-GigabitEthernet0/0/2]int g0/0/3
[Huawei-GigabitEthernet0/0/3]port link-type trunk
[Huawei-GigabitEthernet0/0/3]port trunk allow-pass vlan all
[Huawei-GigabitEthernet0/0/3]int vlan 2
[Huawei-Vlanif2]ip add 10.1.10.14 28
[Huawei-Vlanif3]int vlan3
[Huawei-Vlanif3]ip add 10.1.10.30 28
[Huawei-Vlanif3]int vlan4
[Huawei-Vlanif4]ip add 10.1.10.46 28
[Huawei-Vlanif4]quit
[Huawei]int vlan 2
[Huawei-Vlanif2]vrrp vrid 2 virtual-ip 10.1.10.12 //相当于用默认的优先级100,可以使用vrrp vrid 2 priority 110来设置优先级
[Huawei-Vlanif2]int vlan3
[Huawei-Vlanif3]vrrp vrid 3 virtual-ip 10.1.10.28
[Huawei-Vlanif3]int vlan4
[Huawei-Vlanif4]vrrp vrid 4 virtual-ip 10.1.10.44

SW 3 的配置:
[Huawei]int g0/0/1
[Huawei-GigabitEthernet0/0/1]port link-type trunk
[Huawei-GigabitEthernet0/0/1]port trunk allow-pass vlan all
[Huawei-GigabitEthernet0/0/1]int g0/0/2
[Huawei-GigabitEthernet0/0/2]port link-type trunk
[Huawei-GigabitEthernet0/0/2]port trunk allow-pass vlan all
[Huawei-GigabitEthernet0/0/2]q
[Huawei]int g0/0/3
[Huawei-GigabitEthernet0/0/3]port link-type access
[Huawei-GigabitEthernet0/0/3]port default vlan 2
[Huawei-GigabitEthernet0/0/3]int g0/0/4
[Huawei-GigabitEthernet0/0/4]port link-type access
[Huawei-GigabitEthernet0/0/4]port default vlan 3
[Huawei-GigabitEthernet0/0/4]int g0/0/5
[Huawei-GigabitEthernet0/0/5]port link-type access
[Huawei-GigabitEthernet0/0/5]port default vlan 4

测试:

PC 1ping虚拟路由器10.1.10.12
vrrp配置

发现:

在做这个实验时,由于忘记配置交换机SW 2的g 0/0/3接口,使用PC 3 ping 10.1.10.14(即交换机SW2的vlan2 的IP地址),出现了request timeout。问题就出现在当时g 0/0/3接口的类型为hybrid,当来到该接口时会被打上vlan 1的标签,但本身的arp请求已有vlan 4 的标签,因此arp请求没有到达交换机SW 2,所以SW 2没有发出arp响应,PC 3长时间没有收到arp响应,报错request timeout。

在g 0/0/3的抓包如下,只有arp请求,没有arp响答。因此可以看出在接口进行抓包,抓到的数据是达到该接口的数据,不是到达设备的数据。

vrrp配置
vrrp配置