MSTP+VRRP综合实验
实验需求:
1、将交换机连接PC和路由器的端口划分进相应VLAN。
2、将交换机互联端口配置为Trunk并允许除了VLAN 1以外的其他VLAN通过。
3、SW1为VLAN 10、30的根桥,VLAN 20 40的备份根桥;SW2为VLAN 10、30的备份根桥,VLAN 20 40的根桥。
4、配置IP地址。
5、在R1,SW1,SW2之间开启OSPF 1,通告互联网段以及R1的Loop0接口和SW1,SW2的VLANIF 10、20、30、40网段。
6、配置VRRP,使得SW1为VLAN 10、30的Master网关,SW2为VLAN 10、30的Backup网关;SW1为VLAN 20、40的Backup网关,SW2为VLAN 20、40的Master网关。
7、验证,PC1、PC2、PC3、PC4访问1.1.1.1的路径
具体配置:
1、将交换机连接PC和路由器的端口划分进相应VLAN。
SW1: [SW1]vlan batch 10 to 11 20 22 30 4
[SW1]int g0/0/4
[SW1-GigabitEthernet0/0/4]port link-type access
[SW1-GigabitEthernet0/0/4]port default vlan 11
SW2: [SW2]vlan batch 10 to 11 20 22 30 40
[SW2]int g0/0/4
[SW2-GigabitEthernet0/0/4]port link-type access
[SW2-GigabitEthernet0/0/4]port default vlan 22
SW3: [SW3]vlan batch 10 to 11 20 22 30 40
[SW3]int e0/0/3
[SW3-Ethernet0/0/3]port link-type access
[SW3-Ethernet0/0/3]port default vlan 10
[SW3]int e0/0/4
[SW3-Ethernet0/0/4]port link-type access
[SW3-Ethernet0/0/4]port default vlan 20
SW4: [SW4]vlan batch 10 to 11 20 22 30 40
[SW4]int e0/0/3
[SW4-Ethernet0/0/3]port link-type access
[SW4-Ethernet0/0/3]port default vlan 30
[SW4]int e0/0/4
[SW4-Ethernet0/0/4]port link-type access
[SW4-Ethernet0/0/4]port default vlan 40
2、将交换机互联端口配置为Trunk并允许除了VLAN 1以外的其他VLAN通过。
SW1: [SW1]int g0/0/1
[SW1-GigabitEthernet0/0/1]port link-type trunk
[SW1-GigabitEthernet0/0/1]port trunk allow-pass vlan all
[SW1-GigabitEthernet0/0/1]undo port trunk allow-pass vlan 1
[SW1]int g0/0/2
[SW1-GigabitEthernet0/0/2]port link-type trunk
[SW1-GigabitEthernet0/0/2]port trunk allow-pass vlan all
[SW1-GigabitEthernet0/0/2]undo port trunk allow-pass vlan 1
[SW1]int g0/0/3
[SW1-GigabitEthernet0/0/3]port link-type trunk
[SW1-GigabitEthernet0/0/3]port trunk allow-pass vlan all
[SW1-GigabitEthernet0/0/3]undo port trunk allow-pass vlan 1
SW2: [SW2]int g0/0/1
[SW2-GigabitEthernet0/0/1]port link-type trunk
[SW2-GigabitEthernet0/0/1]port trunk allow-pass vlan all
[SW2-GigabitEthernet0/0/1]undo port trunk allow-pass vlan 1
[SW2]int g0/0/2
[SW2-GigabitEthernet0/0/2]port link-type trunk
[SW2-GigabitEthernet0/0/2]port trunk allow-pass vlan all
[SW2-GigabitEthernet0/0/2]undo port trunk allow-pass vlan 1
[SW2]int g0/0/3
[SW2-GigabitEthernet0/0/3]port link-type trunk
[SW2-GigabitEthernet0/0/3]port trunk allow-pass vlan all
[SW2-GigabitEthernet0/0/3]undo port trunk allow-pass vlan 1
SW3: [SW3]int e0/0/1
[SW3-Ethernet0/0/1]port link-type trunk
[SW3-Ethernet0/0/1]port trunk allow-pass vlan all
[SW3-Ethernet0/0/1]undo port trunk allow-pass vlan 1
[SW3]int g0/0/2
[SW3-Ethernet0/0/2]port link-type trunk
[SW3-Ethernet0/0/2]port trunk allow-pass vlan all
[SW3-Ethernet0/0/2]undo port trunk allow-pass vlan 1
SW4: [SW4]int g0/0/1
[SW4-Ethernet0/0/1]port link-type trunk
[SW4-Ethernet0/0/1]port trunk allow-pass vlan all
[SW4-Ethernet0/0/1]undo port trunk allow-pass vlan 1
[SW4]int g0/0/2
[SW4-Ethernet0/0/2]port link-type trunk
[SW4-Ethernet0/0/2]port trunk allow-pass vlan all
[SW4-Ethernet0/0/2]undo port trunk allow-pass vlan 1
3、SW1为VLAN 10、30的根桥,VLAN 20 40的备份根桥;SW2为VLAN 10、30的备份根桥,VLAN 20 40的根桥。
SW1、SW2、SW3、SW4: [SW1]stp mode mstp
[SW1]stp region-configuration
[SW1-mst-region]region name HUAWEI
[SW1-mst-region]instance 1 vlan 10 30
[SW1-mst-region]instance 2 vlan 20 40
[SW1-mst-region]active region-configuration
SW1: [SW1]stp instance 1 root primary
[SW1]stp instance 2 root secondary
SW2: [SW2]stp instance 1 root secondary
[SW2]stp instance 2 root primary
验证现象:display stp brief
4、配置IP地址。
R1: interface GigabitEthernet0/0/0
ip address 10.1.111.1 24
interface GigabitEthernet0/0/1
ip address 10.1.122.1 24
interface LoopBack0
ip address 1.1.1.1 32
SW1: interface Vlanif10
ip address 192.168.10.253 24
vrrp vrid 1 virtual-ip 192.168.10.254
vrrp vrid 1 priority 120
interface Vlanif11
ip address 10.1.111.11 24
interface Vlanif20
ip address 192.168.20.253 24
interface Vlanif30
ip address 192.168.30.253 24
vrrp vrid 3 virtual-ip 192.168.30.254
vrrp vrid 3 priority 120
interface Vlanif40
ip address 192.168.40.253 24
vrrp vrid 4 virtual-ip 192.168.40.254
SW2: interface Vlanif10
ip address 192.168.10.252 24
vrrp vrid 1 virtual-ip 192.168.10.254
interface Vlanif20
ip address 192.168.20.252 24
vrrp vrid 2 virtual-ip 192.168.20.254
vrrp vrid 2 priority 120
interface Vlanif22
ip address 10.1.122.22 24
interface Vlanif30
ip address 192.168.30.252 24
vrrp vrid 3 virtual-ip 192.168.30.254
interface Vlanif40
ip address 192.168.40.252 24
vrrp vrid 4 virtual-ip 192.168.40.254
vrrp vrid 4 priority 120
pc :
5、在R1,SW1,SW2之间开启OSPF 1,通告互联网段以及R1的Loop0接口和SW1,SW2的VLANIF 10、20、30、40网段。
R1:
ospf 1 router-id 1.1.1.1
area 0.0.0.0
network 1.1.1.1 0.0.0.0
network 10.1.111.1 0.0.0.0
network 10.1.122.1 0.0.0.0
SW1:
ospf 1 router-id 11.11.11.11
area 0.0.0.0
network 192.168.10.253 0.0.0.0
network 192.168.20.253 0.0.0.0
network 192.168.30.253 0.0.0.0
network 192.168.40.253 0.0.0.0
network 10.1.111.11 0.0.0.0
SW2:
ospf 1 router-id 22.22.22.22
area 0.0.0.0
network 192.168.10.252 0.0.0.0
network 192.168.20.252 0.0.0.0
network 192.168.30.252 0.0.0.0
network 192.168.40.252 0.0.0.0
network 10.1.122.22 0.0.0.0
6、配置VRRP,使得SW1为VLAN 10、30的Master网关,SW2为VLAN 10、30的Backup网关;SW1为VLAN 20、40的Backup网关,SW2为VLAN 20、40的Master网关。
SW1: [SW1]int vlan 10
[SW1-vlanif10]vrrp vrid 1 virtual-ip 192.168.10.254
[SW1-vlanif10]vrrp vrid 1 priority 120
[SW1]int vlan 20
[SW1-vlanif20]vrrp vrid 2 virtual-ip 192.168.20.254
[SW1]int vlan 30
[SW1-vlanif30]vrrp vrid 3 virtual-ip 192.168.30.254
[SW1-vlanif30]vrrp vrid 3 priority 120
[SW1]int vlan 40
[SW1-vlanif40]vrrp vrid 4 virtual-ip 192.168.10.254
SW2: [SW2]int vlan 10
[SW2-vlanif10]vrrp vrid 1 virtual-ip 192.168.10.254
[SW2]int vlan 20
[SW2-vlanif20]vrrp vrid 2 virtual-ip 192.168.20.254
[SW2-vlanif20]vrrp vrid 2 priority 120
[SW2]int vlan 30
[SW2-vlanif30]vrrp vrid 3 virtual-ip 192.168.30.254
[SW2]int vlan 40
[SW2-vlanif40]vrrp vrid 4 virtual-ip 192.168.10.254
[SW2-vlanif40]vrrp vrid 4 priority 120
验证现象:display vrrp brief
7、验证,PC1、PC2、PC3、PC4访问1.1.1.1的路径
——·扫描下方微信二维码,回复“实验手册”。即可领取完整电子版手册或为你答疑解惑。·——
|