生产区:
配置:
先建立eth- trunk
D-1
[D-1]int e
[D-1]int Eth-Trunk 1
[D-1-Eth-Trunk1]mode
[D-1-Eth-Trunk1]mode ma
[D-1-Eth-Trunk1]mode manual load
[D-1-Eth-Trunk1]mode manual load-balance
[D-1-Eth-Trunk1]tr
[D-1-Eth-Trunk1]trunkport g
[D-1-Eth-Trunk1]trunkport GigabitEthernet 0/0/6 0/0/5
D-2
[D-2]int e
[D-2]int Eth-Trunk 1
[D-2-Eth-Trunk1]mod
[D-2-Eth-Trunk1]mode man
[D-2-Eth-Trunk1]mode manual lo
[D-2-Eth-Trunk1]mode manual load-balance
[D-2-Eth-Trunk1]trunkport g
[D-2-Eth-Trunk1]trunkport GigabitEthernet 0/0/6 0/0/5
2. mstp name为SC
mstp实例映射:
[D-1]port-group group-member g0/0/2 g0/0/4 g0/0/3 Eth-Trunk 1
[D-1-port-group]p
[D-1-port-group]port l
[D-1-port-group]port link-
[D-1-port-group]port link-type trunk
[D-1-GigabitEthernet0/0/2]port link-type trunk
[D-1-GigabitEthernet0/0/4]port link-type trunk
[D-1-GigabitEthernet0/0/3]port link-type trunk
[D-1-Eth-Trunk1]port link-type trunk
[D-1-port-group]port trunk allow-pass vlan 100 110 120 255
[D-1-GigabitEthernet0/0/2]port trunk allow-pass vlan 100 110 120 255
[D-1-GigabitEthernet0/0/4]port trunk allow-pass vlan 100 110 120 255
[D-1-GigabitEthernet0/0/3]port trunk allow-pass vlan 100 110 120 255
[D-1-Eth-Trunk1]port trunk allow-pass vlan 100 110 120 255
[D-1-port-group]q
[D-1]vlan batch 100 110 120 255
[D-1]stp mod
[D-1]stp mode mstp
[D-1]stp region-configuration
[D-1-mst-region]reg
[D-1-mst-region]region-name
[D-1-mst-region]region-name SC
[D-1-mst-region]revision-level 10
[D-1-mst-region]instance 1 vlan
[D-1-mst-region]instance 1 vlan 100 255
[D-1-mst-region]instance 2 vlan
[D-1-mst-region]instance 2 vlan 110 120
[D-1-mst-region]active region-configuration
D-2同理:
[D-2]port-group group-member g0/0/1 g0/0/3 g0/0/4 Eth-Trunk 1
[D-2-port-group]port link-type trunk
[D-2-GigabitEthernet0/0/1]port link-type trunk
[D-2-GigabitEthernet0/0/3]port link-type trunk
[D-2-GigabitEthernet0/0/4]port link-type trunk
[D-2-Eth-Trunk1]port link-type trunk
[D-2-port-group]port trunk allow-pass vlan 100 110 120 255
[D-2-GigabitEthernet0/0/1]port trunk allow-pass vlan 100 110 120 255
[D-2-GigabitEthernet0/0/3]port trunk allow-pass vlan 100 110 120 255
[D-2-GigabitEthernet0/0/4]port trunk allow-pass vlan 100 110 120 255
[D-2-Eth-Trunk1]port trunk allow-pass vlan 100 110 120 255
[D-2]vlan batch 100 110 120 255
[D-2]stp mode mstp
[D-2]stp region-configuration
[D-2-mst-region]region-name SC
[D-2-mst-region]revision-level 10
[D-2-mst-region]instance 1 vlan 100 255
[D-2-mst-region]instance 2 vlan 110 120
[D-2-mst-region]active region-configuration
接下来是A-1
[A-1]port-group group-member g0/0/1 g0/0/2
[A-1-port-group]port link-type trunk
[A-1-GigabitEthernet0/0/1]port link-type trunk
[A-1-GigabitEthernet0/0/2]port link-type trunk
[A-1-port-group]port trunk allow-pass vlan 100 110 120 255
[A-1-GigabitEthernet0/0/1]port trunk allow-pass vlan 100 110 120 255
[A-1-GigabitEthernet0/0/2]port trunk allow-pass vlan 100 110 120 255
[A-1-port-group]q
[A-1]vlan batch 100 110 120 255
[A-1]stp mode mstp
[A-1]stp region
[A-1]stp region-configuration
[A-1-mst-region]region
[A-1-mst-region]region-name SC
[A-1-mst-region]rev
[A-1-mst-region]revision-level 10
[A-1-mst-region]ins
[A-1-mst-region]instance 1 vlan 100 255
[A-1-mst-region]ins
[A-1-mst-region]instance 2 vlan 110 120
[A-1-mst-region]active region-configuration
A-2:
[A-2]vlan batch 100 110 120 255
Info: This operation may take a few seconds. Please wait for a moment...done.
[A-2]port-group group-member g0/0/1 g0/0/2
[A-2-port-group]port link-type trunk
[A-2-GigabitEthernet0/0/1]port link-type trunk
[A-2-GigabitEthernet0/0/2]port link-type trunk
[A-2-port-group]port trunk allow-pass vlan 100 110 120 255
[A-2-GigabitEthernet0/0/1]port trunk allow-pass vlan 100 110 120 255
[A-2-GigabitEthernet0/0/2]port trunk allow-pass vlan 100 110 120 255
[A-2-port-group]q
[A-2] stp mode mstp
[A-2]stp region-configuration
[A-2-mst-region]region-name SC
[A-2-mst-region]revision-level 10
[A-2-mst-region]instance 1 vlan 100 255
[A-2-mst-region]instance 2 vlan 110 120
[A-2-mst-region]active region-configuration
D-1 为实例1 0 的根 为实例2的备份
[D-1]stp instance 0 root primary
[D-1]stp instance 1 root primary
[D-1]stp instance 2 root secondary
D-2 为实例2的根 为实例1 0 的备份
[D-2]stp instance 2 root primary
[D-2]stp instance 1 root secondary
[D-2]stp instance 0 root secondary
所有access接口配置边缘接口,并且配置BPDU保护
[A-1]interface g0/0/3
[A-1-GigabitEthernet0/0/3]port link-type access
[A-1-GigabitEthernet0/0/3]port default vlan 100
[A-1-GigabitEthernet0/0/3]stp edged-port enable
[A-1-GigabitEthernet0/0/3]int g0/0/4
[A-1-GigabitEthernet0/0/4]port link-type access
[A-1-GigabitEthernet0/0/4]port default vlan 110
[A-1-GigabitEthernet0/0/4]stp edged-port enable
[A-1]stp bpdu-protection
D-1 为vlanif 100 的master , D-2 为backup
[D-1]int vlanif 100
[D-1-Vlanif100]
Aug 21 2022 15:54:09-08:00 D-1 %%01IFNET/4/IF_STATE(l)[0]:Interface Vlanif100 has turned into UP state.
[D-1-Vlanif100]ip address 10.1.100.1 24
[D-1-Vlanif100]vrrp vrid 1 virtual-ip 10.1.100.254
[D-1-Vlanif100]vrrp vrid 1 priority 110
[D-2]int Vlanif 100
[D-2-Vlanif100]
Aug 21 2022 15:56:29-08:00 D-2 %%01IFNET/4/IF_STATE(l)[0]:Interface Vlanif100 has turned into UP state.
[D-2-Vlanif100]ip address 10.1.100.2 24
[D-2-Vlanif100]vrrp vrid 1 virtual-ip 10.1.100.254
接下来是 vlanif120
[D-2]int Vlanif 120
[D-2-Vlanif120]
Aug 21 2022 16:00:48-08:00 D-2 %%01IFNET/4/IF_STATE(l)[2]:Interface Vlanif120 has turned into UP state.
[D-2-Vlanif120]ip address 10.1.120.2 24
Aug 21 2022 16:00:59-08:00 D-2 %%01IFNET/4/LINK_STATE(l)[3]:The line protocol IP on the interface Vlanif120 has entered the UP state.
[D-2-Vlanif120]vrrp vrid 1 virtual-ip 10.1.120.254
[D-2-Vlanif120]vrrp vrid 1 priority 110
[D-1]int Vlanif 120
[D-1-Vlanif120]ip address 10.1.120.1 24
[D-1-Vlanif120]vrrp vrid 1 virtual-ip 10.1.120.254
D-1 和D-2 的VRRP 需要监控上行链路,双上行都down时切换网关,抢占延时为20s
[D-1]int Vlanif 100
[D-1-Vlanif100]vrrp vrid 1 track int g0/0/1 reduced 3
[D-1-Vlanif100]vrrp vrid 1 track int g0/0/2 reduced 3
[D-1-Vlanif100]q
[D-1]int Vlanif 120
[D-1-Vlanif120]vrrp vrid 1 preempt-mode timer delay 20
[D-2]interface Vlanif 100
[D-2-Vlanif100]vrrp vrid 1 preempt-mode timer delay 20
[D-2]interface Vlanif 120
[D-2-Vlanif120]vrrp vrid 1 track interface g0/0/1 reduced 3
[D-2-Vlanif120]vrrp vrid 1 track interface g0/0/2 reduced 3
二、配置办公区需求
二层使用MSTP+VRRP 实现破环和冗余
交换机之间trunk使用最少透传原则
D-5,D-6之间做链路聚合
[D-5]int Eth-Trunk 1
[D-5-Eth-Trunk1]mode lacp-static
[D-5-Eth-Trunk1]trunkport GigabitEthernet 0/0/4 0/0/5
[D-6]int e
[D-6]int Eth-Trunk 1
[D-6-Eth-Trunk1]mode lacp-static
[D-6-Eth-Trunk1]trunkport GigabitEthernet 0/0/4 0/0/5
MSTP name 为BG MSTP实例映射为:
instance 1 vlan 10 15
instance 2 vlan 21 22 23 255
[D-5]vlan batch 10 15 21 22 23 255
[D-5]port-group group-member g0/0/3 g0/0/6 Eth-Trunk 1
[D-5-port-group]port link-type trunk
[D-5-GigabitEthernet0/0/3]port link-type trunk
[D-5-GigabitEthernet0/0/6]port link-type trunk
[D-5-Eth-Trunk1]port link-type trunk
[D-5-port-group]port trunk allow-pass vlan 10 15 21 22 23 255
[D-5-GigabitEthernet0/0/3]port trunk allow-pass vlan 10 15 21 22 23 255
[D-5-GigabitEthernet0/0/6]port trunk allow-pass vlan 10 15 21 22 23 255
[D-5-Eth-Trunk1]port trunk allow-pass vlan 10 15 21 22 23 255
[D-5-port-group]q
[D-5]stp mode mstp
[D-5]stp region-configuration
[D-5-mst-region]region-name BG
[D-5-mst-region]revision-level 10
[D-5-mst-region]instance 1 vlan 10 15
[D-5-mst-region]instance 2 vlan 21 22 23 255
[D-5-mst-region]active region-configuration
D-6
[D-6]port-group group-member g0/0/3 g0/0/6 Eth-Trunk 1
ange number is 8, the change loop count is 0, and the maximum number of records is 4095.
[D-6-port-group]port link-type trunk
[D-6-GigabitEthernet0/0/3]port link-type trunk
[D-6-GigabitEthernet0/0/6]port link-type trunk
[D-6-Eth-Trunk1]port link-type trunk
[D-6-port-group]port trunk allow-pass vlan 10 15 21 22 23 255
[D-6-GigabitEthernet0/0/3]port trunk allow-pass vlan 10 15 21 22 23 255
[D-6-GigabitEthernet0/0/6]port trunk allow-pass vlan 10 15 21 22 23 255
[D-6-Eth-Trunk1]port trunk allow-pass vlan 10 15 21 22 23 255
[D-6-port-group]q
[D-6]stp enable
[D-6]stp mode mstp
[D-6]stp region-configuration
[D-6-mst-region]region-name BG
[D-6-mst-region]revision-level 10
[D-6-mst-region]instance 1 vlan 10 15
[D-6-mst-region]instance 2 vlan 21 22 23 255
[D-6-mst-region]active region-configuration
接下来是A-3 A-4
[A-3]VLAN batch 10 15 21 22 23 255
Info: This operation may take a few seconds. Please wait for a moment...done.
[A-3]port-group group-member g0/0/1 g0/0/2
[A-3-port-group]port link-type trunk
[A-3-GigabitEthernet0/0/1]port link-type trunk
[A-3-GigabitEthernet0/0/2]port link-type trunk
[A-3-port-group]port trunk allow-pass vlan 10 15 21 22 23 255
[A-3-GigabitEthernet0/0/1]port trunk allow-pass vlan 10 15 21 22 23 255
[A-3-GigabitEthernet0/0/2]port trunk allow-pass vlan 10 15 21 22 23 255
[A-3]stp enable
[A-3]stp mode mstp
[A-3]stp region-configuration
[A-3-mst-region]region-name BG
[A-3-mst-region]revision-level 10
[A-3-mst-region]instance 1 vlan 10 15
[A-3-mst-region]instance 2 vlan 21 22 23 255
[A-3-mst-region]active region-configuration
A-4:
[A-4]vlan batch 10 15 21 22 23 255
Info: This operation may take a few seconds. Please wait for a moment...done.
[A-4]port-group group-member g0/0/1 g0/0/2
[A-4-port-group]port link-type trunk
[A-4-GigabitEthernet0/0/1]port link-type trunk
[A-4-GigabitEthernet0/0/2]port link-type trunk
[A-4-port-group]port trunk allow-pass vlan 10 15 21 22 23 255
[A-4-GigabitEthernet0/0/1]port trunk allow-pass vlan 10 15 21 22 23 255
[A-4-GigabitEthernet0/0/2]port trunk allow-pass vlan 10 15 21 22 23 255
[A-4] stp enable
[A-4]stp mode mstp
[A-4]stp region-configuration
[A-4-mst-region]region-name BG
[A-4-mst-region]revision-level 10
[A-4-mst-region]instance 1 vlan 10 15
[A-4-mst-region]instance 2 vlan 21 22 23 255
[A-4-mst-region]active region-configuration
D-5为实例1 ,0的根 , 实例2的备份根 再 D-6为实例2 的根 ,实例1 的备份根
[D-5]stp instance 0 root primary
[D-5]stp instance 1 root primary
[D-5]stp instance 2 root secondary
[D-6]stp instance 2 root primary
[D-6]stp instance 0 root secondary
[D-6]stp instance 1 root secondary
查看表:
在有access接口配置为边缘接口:
[A-3]interface g0/0/3
[A-3-GigabitEthernet0/0/3]port link-type access
[A-3-GigabitEthernet0/0/3]port default vlan 10
[A-3-GigabitEthernet0/0/3]stp edged-port enable
[A-3-GigabitEthernet0/0/4]port link-type access
[A-3-GigabitEthernet0/0/4]port default vlan 15
[A-3-GigabitEthernet0/0/4]stp edged-port enable
[A-3]stp bpdu-protection
[A-4]int g0/0/3
[A-4-GigabitEthernet0/0/3]port link-type access
[A-4-GigabitEthernet0/0/3]port default vlan 21
[A-4-GigabitEthernet0/0/3]stp edged-port enable
[A-4]int g0/0/4
[A-4-GigabitEthernet0/0/4]port link-type access
[A-4-GigabitEthernet0/0/4]port default vlan 22
[A-4-GigabitEthernet0/0/4]stp edged-port enable
[A-4-GigabitEthernet0/0/4]q
[A-4]interface GigabitEthernet 0/0/5
[A-4-GigabitEthernet0/0/5]port link-type access
[A-4-GigabitEthernet0/0/5]port default vlan 23
[A-4-GigabitEthernet0/0/5]stp edged-port enable
[A-4-GigabitEthernet0/0/5]q
[A-4]stp bpdu-protection
D-5 为vlanif 10 15 的master, D-6为backup
[D-5]interface Vlanif 10
[D-5-Vlanif10]ip address 10.2.10.1 24
[D-5-Vlanif10]vrrp vrid 1 virtual-ip 10.2.10.254
[D-5-Vlanif10]vrrp vrid 1 priority 105
[D-5]interface Vlanif 15
[D-5-Vlanif15]ip adD-5-Vlanif15]ip address 10.2.15.1 24
[D-5-Vlanif15]vrrp vrid 1 virtual-ip 10.2.15.254
[D-5-Vlanif15]vrrp vrid 1 priority 105
[D-6]interface Vlanif 10
[D-6-Vlanif10]ip address 10.2.10.2 24
[D-6-Vlanif10]vrrp vrid 1 virtual-ip 10.2.10.254
反过来 D-6为master D-5为backup
[D-5]interface Vlanif 21
[D-5-Vlanif21]ip address 10.2.21.1 24
[D-5-Vlanif21]vrrp vrid 1 virtual-ip 10.2.21.254
[D-5-Vlanif21]q
[D-5]int Vlanif 22
[D-5-Vlanif22]ip address 10.2.22.1 24
[D-5-Vlanif22]vrrp vrid 1 virtual-ip 10.2.22.254
[D-5-Vlanif22]q
[D-5]interface Vlanif 23
[D-5-Vlanif23]ip address 10.2.23.1 24
[D-5-Vlanif23]vrrp vrid 1 virtual-ip 10.2.23.254
[D-6]interface Vlanif 21
[D-6-Vlanif21]ip address 10.2.21.2 24
[D-6-Vlanif21]vrrp vrid 1 virtual-ip 10.2.21.254
[D-6-Vlanif21]vrrp vrid 1 priority 105
[D-6-Vlanif21]q
[D-6]interface Vlanif 22
[D-6-Vlanif22]ip address 10.2.22.2 24
[D-6-Vlanif22]vrrp vrid 1 virtual-ip 10.2.22.254
[D-6-Vlanif22]vrrp vrid 1 priority 105
[D-6-Vlanif22]q
[D-6]interface Vlanif 23
[D-6-Vlanif23]ip address 10.2.23.2 24
[D-6-Vlanif23]vrrp vrid 1 virtual-ip 10.2.23.254
[D-6-Vlanif23]vrrp vrid 1 priority 105
D-5和D-6的vrrp 需要监控上行链路 ,双上行都down时切换网关。抢占延时为20s
[D-6]interface Vlanif 10
[D-6-Vlanif10]vrrp vrid 1 preempt-mode timer delay 20
[D-5]int Vlanif 10
[D-5-Vlanif10]vrrp vrid 1 track interface g0/0/1 reduced 3
[D-5-Vlanif10]vrrp vrid 1 track interface g0/0/6 reduced 3
[D-5]interface Vlanif 21
[D-5-Vlanif21]vrrp vrid 1 preempt-mode timer delay 20
[D-6]interface Vlanif 21
[D-6-Vlanif21]vrrp vrid 1 track interface g0/0/1 reduced 3
[D-6-Vlanif21]vrrp vrid 1 track interface g0/0/6 reduced 3
[D-5-Vlanif21]interface vlanif 22
[D-5-Vlanif22]vrrp vrid 1 preempt-mode timer delay 20
[D-6-Vlanif21]int vlanif 22
[D-6-Vlanif22]vrrp vrid 1 track interface g0/0/2 reduced 3
[D-6-Vlanif22]vrrp vrid 1 track interface g0/0/1 reduced 3
[D-6]int Vlanif 23
[D-6-Vlanif23]vrrp vrid 1 track interface g0/0/1 reduced 3
[D-6-Vlanif23]vrrp vrid 1 track interface g0/0/2 reduced 3
[D-6-Vlanif23]vrrp vrid 1 track interface g0/0/7 reduced 3
[D-6-Vlanif23]vrrp vrid 1 track interface g0/0/6 reduced 3
[D-6-Vlanif23]vrrp vrid 1 preempt-mode timer delay 20
配置服务器区域需求:
二层使用MSTP+VRRP 实现破环和冗余
交换机之间trunk 使用最少透传原则
C-1,C-2 之间链路做聚合
D-3,D-4之间做聚合
[C-1]int
[C-1]interface e
[C-1]interface Eth-Trunk 1
[C-1-Eth-Trunk1]trunkport GigabitEthernet 0/0/9 0/0/8
[C-2]int e
[C-2]int Eth-Trunk 1
[C-2-Eth-Trunk1]trunkport GigabitEthernet 0/0/9 0/0/8
[D-3]int
[D-3]int Eth-Trunk 1
[D-3-Eth-Trunk1]trunkport GigabitEthernet 0/0/5 0/0/6
[D-4]int
[D-4]interface Eth-Trunk 1
[D-4-Eth-Trunk1]trunkport GigabitEthernet 0/0/5 0/0/6
MSTP name配置为FWQ 实例映射为: instance 1 vlan 80 81 90
instance 2 vlan 85 86
[D-3]vlan batch 80 81 85 86 90
[D-3]interface Eth-Trunk 1
[D-3-Eth-Trunk1]port link-type trunk
[D-3-Eth-Trunk1]port trunk allow-pass vlan 80 81 85 86 90
[D-3]stp enable
[D-3]stp mode mstp
[D-3]stp region-configuration
[D-3-mst-region]region-name FWQ
[D-3-mst-region]revision-level 10
[D-3-mst-region]instance 1 vlan 80 81 90
[D-3-mst-region]instance 2 vlan 85 86
[D-3-mst-region]active region-configuration
D-4:
[D-4]VLAN batch 80 81 85 86 90
Info: This operation may take a few seconds. Please wait for a moment...done.
[D-4]interface Eth-Trunk 1
[D-4-Eth-Trunk1]port link-type trunk
[D-4-Eth-Trunk1]port trunk allow-pass vlan 80 81 85 86 90
[D-4]stp enable
[D-4]stp mode mstp
[D-4]stp region-configuration
[D-4-mst-region]region-name FWQ
[D-4-mst-region]revision-level 10
[D-4-mst-region]instance 1 vlan 80 81 90
[D-4-mst-region]instance 2 vlan 85 86
[D-4-mst-region]active region-configuration
D-3 为实例1 ,0 的根 ,实例2的备份根
D-4 为实例2的根 ,实例1,0的备份根
[D-4]stp instance 1 root secondary
[D-4]stp instance 2 root primary
[D-4]stp instance 0 root secondary
[D-3]stp instance 1 root primary
[D-3]stp instance 0 root primary
[D-3]stp instance 2 root secondary
所有access接口配置为边缘接口:
[D-3]interface GigabitEthernet 0/0/3
[D-3-GigabitEthernet0/0/3]port link-type access
[D-3-GigabitEthernet0/0/3]port default vlan 80
[D-3-GigabitEthernet0/0/3]stp edged-port enable
[D-3-GigabitEthernet0/0/4]port link-type access
[D-3-GigabitEthernet0/0/4]port default vlan 81
[D-3-GigabitEthernet0/0/4]stp edged-port enable
[D-3]stp bpdu-protection
[D-4]int GigabitEthernet 0/0/3
[D-4-GigabitEthernet0/0/3]port link-type access
[D-4-GigabitEthernet0/0/3]port default vlan 85
[D-4-GigabitEthernet0/0/3]stp edged-port enable
[D-4-GigabitEthernet0/0/3]int g0/0/4
[D-4-GigabitEthernet0/0/4]port link-type access
[D-4-GigabitEthernet0/0/4]port default vlan 86
[D-4-GigabitEthernet0/0/4]stp edged-port enable
[D-4]stp bpdu-protection
D-3为vlanif 80 81 90 的master ,D-4为backup
[D-3]interface Vlanif 80
[D-3-Vlanif80]ip address 10.1.80.1 24
[D-3-Vlanif80]vrrp vrid 1 virtual-ip 10.1.80.254
[D-3-Vlanif80]vrrp vrid 1 priority 105
[D-3-Vlanif80]int vlanif 81
[D-3-Vlanif81]ip ad
[D-3-Vlanif81]ip address 10.1.81.1 24
[D-3-Vlanif81]vrrp vrid 1 virtual-ip 10.1.81.254
[D-3-Vlanif81]vrrp vrid 1 priority 105
[D-3-Vlanif81]int vlanif 90
[D-3-Vlanif90] ip ad
[D-3-Vlanif90] ip address 10.1.90.1 24
[D-3-Vlanif90]vrrp vrid 1 virtual-ip 10.1.90.254
[D-3-Vlanif90]vrrp vrid 1 priority 105
[D-3-Vlanif90]int vlanif 85
[D-3-Vlanif85]ip address 10.1.85.1 24
[D-3-Vlanif85]vrrp vrid 1 virtual-ip 10.1.85.254
[D-3]int vlanif 86
[D-3-Vlanif86]ip address 10.1.86.1 24
[D-3-Vlanif86]vrrp vrid 1 virtual-ip 10.1.86.254
D-4 为vlanif 85 86 的master ,D-3 为backup
[D-4]interface vlanif 80
[D-4-Vlanif80]ip address 10.1.80.2 24
[D-4-Vlanif80]vrrp vrid 1 virtual-ip 10.1.80.254
[D-4-Vlanif80]int vlanif 81
[D-4-Vlanif81]ip address 10.1.81.2 24
[D-4-Vlanif81]vrrp vrid 1 virtual-ip 10.1.81.254
[D-4-Vlanif81]int vlanif 90
[D-4-Vlanif90]ip address 10.1.90.2 24
[D-4-Vlanif90]vrrp vrid 1 virtual-ip 10.1.90.254
[D-4-Vlanif90]int vlanif 85
[D-4-Vlanif85]ip address 10.1.85.2 24
[D-4-Vlanif85]vrrp vrid 1 virtual-ip 10.1.85.254
[D-4-Vlanif85]vrrp vrid 1 priority 105
[D-4-Vlanif85]int vlanif 86
[D-4-Vlanif86]ip address 10.1.86.2 24
[D-4-Vlanif86]vrrp vrid 1 virtual-ip 10.1.86.254
[D-4-Vlanif86]vrrp vrid 1 priority 105
D-3 和D-4的vrrp需要监控上行链路,双上行都down时切换网关,抢占延时为20s
[D-3]interface vlanif 80
[D-3-Vlanif80]vrrp vrid 1 track interface g0/0/1 reduced 3
[D-3-Vlanif80]int vlanif 81
[D-3-Vlanif81]vrrp vrid 1 track interface g0/0/1 reduced 3
[D-3-Vlanif81]vrrp vrid 1 track interface g0/0/2 reduced 3
[D-3-Vlanif81]vrrp vrid 1 preempt-mode timer delay 20
[D-3-Vlanif81]int vlanif 90
[D-3-Vlanif90]vrrp vrid 1 track interface g0/0/1 reduced 3
[D-3-Vlanif90]vrrp vrid 1 track interface g0/0/2 reduced 3
[D-3-Vlanif90]int vlanif 85
[D-3-Vlanif85]vrrp vrid 1 preempt-mode timer delay 20
[D-3-Vlanif85]int vlanif 86
[D-3-Vlanif86]vrrp vrid 1 preempt-mode timer delay 20
D-4:
[D-4]int vlanif 80
[D-4-Vlanif80]vrrp vrid 1 preempt-mode timer delay 20
[D-4-Vlanif80]int vlanif 81
[D-4-Vlanif81]vrrp vrid 1 preempt-mode timer delay 20
[D-4-Vlanif81]int vlanif 90
[D-4-Vlanif90]vrrp vrid 1 preempt-mode timer delay 20
[D-4-Vlanif90]int vlanif 85
[D-4-Vlanif85]vrrp vrid 1 track interface g0/0/1 reduced 3
[D-4-Vlanif85]vrrp vrid 1 track interface g0/0/2 reduced 3
[D-4-Vlanif85]int vlanif 86
[D-4-Vlanif86]vrrp vrid 1 track interface g0/0/1 reduced 3
[D-4-Vlanif86]vrrp vrid 1 track interface g0/0/2 reduced 3
进行第三次配置----路由设计:
配置ip
C-1和 C-2
[C-1]vlan 1101
[C-1]int vlanif 1101
[C-1-Vlanif1101]ip address 10.0.12.129 30
[C-2]vlan 1101
[C-2]int vlanif 1101
[C-2-Vlanif1101]ip address 10.0.12.130 30
D--1 和D-2
[D-1]vlan 1102
[D-1-vlan1102]
[D-1]int vlanif 1102
[D-1-Vlanif1102]ip address 10.1.13.129 30
[D-2]vlan 1102
[D-2]int Vlanif 1102
[D-2-Vlanif1102]ip address 10.1.13.129 30
其他配置也是如此
D-3 D-4
[D-3]vlan 1103
[D-3-vlan1103]int
[D-3-vlan1103]int vlanif 1103
[D-3-Vlanif1103]ip ad
[D-3-Vlanif1103]ip address 10.1.14.129 30
[D-4]vlan 1103
[D-4-vlan1103]int vlanif 1103
[D-4-Vlanif1103]ip ad
[D-4-Vlanif1103]ip address 10.1.14.130 30
D-5 D-6
[D-5]vlan 1104
[D-5-vlan1104]int vlanif 1104
[D-5-Vlanif1104]ip ad
[D-5-Vlanif1104]ip address 10.1.15.129 30
[D-6]vlan 1104
[D-6-vlan1104]int vlanif 1104
[D-6-Vlanif1104]ip ad
[D-6-Vlanif1104]ip address 10.1.15.130 30
OSPF 区域划分:
F-1 C-1 C-2 互联链路为area 0
[C-2]ospf 1 router-id 3.3.3.3
[C-2-ospf-1]area 0
[C-2-ospf-1-area-0.0.0.0]network 10.0.0.0 0.0.255.255
[C-2-ospf-1-area-0.0.0.0]q
[C-1]ospf 1 router-id 2.2.2.2
[C-1-ospf-1]are
[C-1-ospf-1]area 0
[C-1-ospf-1-area-0.0.0.0]ne
[C-1-ospf-1-area-0.0.0.0]network 10.0.0.0 0.0.255.255
[F-1]ospf 1 router-id 1.1.1.1
[F-1-ospf-1]area 0
[F-1-ospf-1-area-0.0.0.0]network 10.0.0.0 0.0.255.255
C-1 与 D-1 、D-2 链路,C-2与D-1、D-2, D-1与D-2链路属于area1 生产区vlan网段属于 area1
[D-1]ospf 1 router-id 4.4.4.4
[D-1-ospf-1]are
[D-1-ospf-1]area 1
[D-1-ospf-1-area-0.0.0.1]ne
[D-1-ospf-1-area-0.0.0.1]network 10.1.0.0 0.0.255.255
[D-2]ospf 1 router-id 5.5.5.5
[D-2-ospf-1]are
[D-2-ospf-1]area 1
[D-2-ospf-1-area-0.0.0.1]ne
[D-2-ospf-1-area-0.0.0.1]network 10.1.0.0 0.0.255.255
[C-1]ospf 1 router-id 2.2.2.2
[C-1-ospf-1]area 1
[C-1-ospf-1-area-0.0.0.1]network 10.1.0.0 0.0.255.255
[C-2-ospf-1]area 1
[C-2-ospf-1-area-0.0.0.1]network 10.1.0.0 0.0.255.255
C-1 与D-5、 D-6 链路 ,C-2与D-5 、D-6,D-5 与D-6链路 属于area2 办公区 vlan网段属于area2
[D-5]ospf 1 router-id 6.6.6.6
[D-5-ospf-1]os
[D-5-ospf-1]are
[D-5-ospf-1]area 2
[D-5-ospf-1-area-0.0.0.2]ne
[D-5-ospf-1-area-0.0.0.2]network 10.2.0.0 0.0.255.255
[D-6]ospf 1 router-id 7.7.7.7
[D-6-ospf-1]are
[D-6-ospf-1]area 2
[D-6-ospf-1-area-0.0.0.2]ne
[D-6-ospf-1-area-0.0.0.2]network 10.2.0.0 0.0.255.255
[C-1-ospf-1]area 2
[C-1-ospf-1-area-0.0.0.2]ne
[C-1-ospf-1-area-0.0.0.2]network 10.2.0.0 0.0.255.255
[C-2-ospf-1]area 2
[C-2-ospf-1-area-0.0.0.2]ne
[C-2-ospf-1-area-0.0.0.2]network 10.2.0.0 0.0.255.255
修改C-1 C-2 D-1 D-2 D-5 D-6 上行接口为access