实验题目:IPV6实验
实验目的:
- 两个局域网基于6to4tunnel可达
- R1可以访问R3的环回
实验拓扑:
实验内容:
1.ip地址的规划
先规划ipv4地址:
公网部分:23.1.1.0/24 34.1.10/24
Ipv4私网部分:r1:环回1:192.168.1.1/25 环回2:92.168.1.129/25 网段:192.168.0.0/30
R2环回:192.168.2.1/24
再规划ipv6部分:
因为要用到6to4 tunnel 所以 用r2的g0/0/1和r4的g0/0/0的ipv4地址来规划两个ipv6区域的ipv6地址
V4/v6区域:
R2的g0/0/1口ipv4地址:23.1.1.1 2002:1701:0101:0000::/64
v6区域:r4的g0/0/0口的ip地址:34.1.1.2 2002:2201:0102::/48
2002:2201:0102::0/49 as1
2002:2201:0102::0/64-2002:2201:0102:7ffff::/64
2002:2201:0102:8000::/49 as2
2002:2201:0102:8000::/64-2002:2201:0102:ffff::/64
2.ipv4公网部分的配置
[r2-GigabitEthernet0/0/1]ip add 23.1.1.1 24
[r3-LoopBack0]ip add 3.3.3.3 24
[r3-GigabitEthernet0/0/0]ip add 23.1.1.2 24
[r3-GigabitEthernet0/0/1]ip add 34.1.1.1 24
[r4-GigabitEthernet0/0/0]ip add 34.1.1.2 24
R3作为isp
所以r2和r4各配置一个缺省指向r3
[r2]ip route-static 0.0.0.0 0 23.1.1.2
[r4]ip route-static 0.0.0.0 0 34.1.1.1
此时公网已通
3.配置ipv4v6双栈区域的ipv4
让此区域能够访问公网
[r1-LoopBack0]ip add 192.168.1.1 25
[r1-LoopBack1]ip add 192.168.1.129 25
[r1-GigabitEthernet0/0/0]ip add 192.168.0.1 30
[r2-GigabitEthernet0/0/0]ip add 192.168.0.2 30
[r2-LoopBack0]ip add 192.168.2.1 24
配置静态路由 让私网部分通 然后再在r2的出口配置NAT 让私网能够访问公网
[r1]ip route-static 0.0.0.0 0 192.168.0.2 r1一条缺省指向r2
[r2]ip route-static 192.168.1.0 24 192.168.0.1
[r2]acl 2000
[r2-acl-basic-2000]rule permit source 192.168.0.0 0.0.255.255
[r2-GigabitEthernet0/0/1]nat outbound 2000
此时:r1已经可以访问r3的环回
4.ipv4v6双栈ipv6的配置
[r1]ipv6
[r1-LoopBack0]ipv6 enable
[r1-LoopBack0]ipv6 add 2002:1701:0101:0000::1 65
[r1-LoopBack1]ipv6 enable
[r1-LoopBack1]ipv6 add 2002:1701:0101:0000:8000::1 65
[r1-GigabitEthernet0/0/0]ipv6 enable
[r1-GigabitEthernet0/0/0]ipv6 add 2002:1701:0101:1::1 64
[r2]ipv6
[r2-GigabitEthernet0/0/0]ipv6 enable
[r2-GigabitEthernet0/0/0]ipv6 add 2002:1701:0101:1::2 64
[r2-LoopBack0]ipv6 enable
[r2-LoopBack0]ipv6 add 2002:1701:0101:2::1 64
启ripng:
[r1]ripng 1
[r1-LoopBack0]ripng 1 enable
[r1-LoopBack1]ripng 1 enable
[r1-GigabitEthernet0/0/0]ripng 1 enable
[r2]ripng 1
[r2-LoopBack0]ripng 1 enable
[r2-GigabitEthernet0/0/0]ripng 1 enable
优化汇总:[r1-GigabitEthernet0/0/0]ripng summary-address 2002:1701:0101:0000:: 64
此时:ripng的路由都只有一条
5.ipv4v6双栈的6to4tunnel
[r2]interface Tunnel 0/0/0
[r2-Tunnel0/0/0]ipv6 enable
[r2-Tunnel0/0/0]ipv6 add 2002:1701:0101:3::1 64
[r2-Tunnel0/0/0]tunnel-protocol ipv6-ipv4
[r2-Tunnel0/0/0]source 23.1.1.1
[r2]ipv6 route-static 2002:: 16 Tunnel 0/0/0
[r2-GigabitEthernet0/0/0]ripng default-route only
此时r1上已经有一条缺省
6.ipv6区域的ip配置
[r4]ipv6
[r4-LoopBack0]ipv6 enable
[r4-LoopBack0]ipv6 add 2002:2201:0102::1 64
[r4-GigabitEthernet0/0/1]ipv6 enable
[r4-GigabitEthernet0/0/1]ipv6 add 2002:2201:0102:1::1 64
[r5]ipv6
[r5-GigabitEthernet0/0/0]ipv6 enable
[r5-GigabitEthernet0/0/0]ipv6 add 2002:2201:0102:1::2 64
[r5-LoopBack0]ipv6 enable
[r5-LoopBack0]ipv6 add 2002:2201:0102:8000::1 64
[r5-GigabitEthernet0/0/1]ipv6 enable
[r5-GigabitEthernet0/0/1]ipv6 add 2002:2201:0102:8001::1 64
[r6]ipv6
[r6-GigabitEthernet0/0/0]ipv6 enable
[r6-GigabitEthernet0/0/0]ipv6 add 2002:2201:0102:8001::2 64
[r6-LoopBack0]ipv6 enable
[r6-LoopBack0]ipv6 add 2002:2201:0102:8002::1 64
[r6-GigabitEthernet0/0/1]ipv6 enable
[r6-GigabitEthernet0/0/1]ipv6 add 2002:2201:0102:8003::1 64
[r7]ipv6
[r7-GigabitEthernet0/0/0]ipv6 enable
[r7-GigabitEthernet0/0/0]ipv6 add 2002:2201:0102:8003::2 64
[r7-LoopBack0]ipv6 enable
[r7-LoopBack0]ipv6 add 2002:2201:0102:8004::1 64
[r7-GigabitEthernet0/0/1]ipv6 enable
[r7-GigabitEthernet0/0/1]ipv6 add 2002:2201:0102:8005::1 64
[r8]ipv6
[r8-GigabitEthernet0/0/0]ipv6 enable
[r8-GigabitEthernet0/0/0]ipv6 add 2002:2201:0102:8005::2 64
[r8-LoopBack0]ipv6 enable
[r8-LoopBack0]ipv6 add 2002:2201:0102:8006::1 64
7.AS2的ospf
[r5]ospfv3 1
[r5-ospfv3-1]router-id 5.5.5.5
[r5-GigabitEthernet0/0/1]ospfv3 1 area 0
[r5-LoopBack0]ospfv3 1 area 0
[r6]ospfv3 1
[r6-ospfv3-1]router-id 6.6.6.6
[r6-LoopBack0]ospfv3 1 area 0
[r6-GigabitEthernet0/0/0]ospfv3 1 area 0
[r6-GigabitEthernet0/0/1]ospfv3 1 area 0
[r7]ospfv3 1
[r7-ospfv3-1]router-id 7.7.7.7
[r7-LoopBack0]ospfv3 1 area 0
[r7-GigabitEthernet0/0/0]ospfv3 1 area 0
[r7-GigabitEthernet0/0/1]ospfv3 1 area 0
[r8]ospfv3 1
[r8-ospfv3-1]router-id 8.8.8.8
[r8-GigabitEthernet0/0/0]ospfv3 1 area 0
[r8-LoopBack0]ospfv3 1 area 0
建邻成功
8.AS1 AS2的bgp
[r4]bgp 1
[r4-bgp]router-id 4.4.4.4
[r4-bgp]peer 2002:2201:0102:1::2 as-number 2
[r4-bgp]ipv6-family
[r4-bgp-af-ipv6]peer 2002:2201:0102:1::2 enable
[r5]bgp 64512
[r5-bgp]router-id 5.5.5.5
[r5-bgp]confederation id 2
[r5-bgp]peer 2002:2201:0102:1::1 as-number 1
[r5-bgp]ipv6-family
[r5-bgp-af-ipv6]peer 2002:2201:0102:1::1 enable
[r5-bgp]peer 2002:2201:0102:8002::1 as-number 64512
[r5-bgp]peer 2002:2201:0102:8002::1 connect-interface LoopBack 0
[r5-bgp]ipv4-family
[r5-bgp-af-ipv6]peer 2002:2201:0102:8002::1 enable
[r6]bgp 64512
[r6-bgp]router-id 6.6.6.6
[r6-bgp]confederation id 2
[r6-bgp]peer 2002:2201:0102:8000::1 as-number 64512
[r6-bgp]peer 2002:2201:0102:8000::1 connect-interface LoopBack 0
[r6-bgp]ipv6-family
[r6-bgp-af-ipv6]peer 2002:2201:0102:8000::1 enable
[r6-bgp]peer 2002:2201:0102:8004::1 as-number 64512
[r6-bgp]peer 2002:2201:0102:8004::1 connect-interface LoopBack 0
[r6-bgp]ipv6-family
[r6-bgp-af-ipv6]peer 2002:2201:0102:8004::1 enable
[r7]bgp 64512
[r7-bgp]router-id 7.7.7.7
[r7-bgp]confederation id 2
[r7-bgp]confederation peer-as 64513
[r7-bgp]peer 2002:2201:0102:8002::1 as-number 64512
[r7-bgp]peer 2002:2201:0102:8002::1 connect-interface LoopBack 0
[r7-bgp]peer 2002:2201:0102:8002::1 ebgp-max-hop 2
[r7-bgp]ipv6-family
[r7-bgp-af-ipv6]peer 2002:2201:0102:8002::1 enable
[r7-bgp]peer 2002:2201:0102:8006::1 as-number 64513
[r7-bgp]peer 2002:2201:0102:8006::1 connect-interface LoopBack 0
[r7-bgp]ipv6-family
[r7-bgp-af-ipv6]peer 2002:2201:0102:8006::1 enable
[r8]bgp 64513
[r8-bgp]router-id 8.8.8.8
[r8-bgp]confederation id 2
[r8-bgp]confederation peer-as 64512
[r8-bgp]peer 2002:2201:0102:8004::1 as-number 64512
[r8-bgp]peer 2002:2201:0102:8004::1 connect-interface LoopBack 0
[r8-bgp]peer 2002:2201:0102:8004::1 ebgp-max-hop 2
[r8-bgp]ipv6-family
[r8-bgp-af-ipv6]peer 2002:2201:0102:8004::1 enable
此时BGP邻居已经建立成功
9.AS1处的tunnel
[r4]interface t
[r4]interface Tunnel 0/0/0
[r4-Tunnel0/0/0]ipv6 enable
[r4-Tunnel0/0/0]ipv6 add 2002:2201:0102:2::1 64
[r4-Tunnel0/0/0]tunnel-protocol ipv6-ipv4
[r4-Tunnel0/0/0]source 34.1.1.2
[r4]ipv6 route-static 2002:: 16 Tunnel 0/0/0
10.AS2的宣告 as1要学到as2的路由
我们用空接口来宣告整个as2的路由
[r5]ipv6 route-static 2002:2201:0102:8000:: 49 NULL 0
[r5]bgp 64512
[r5-bgp]ipv6-family
[r5-bgp-af-ipv6]network 2002:2201:0102:8000:: 49
11.AS2学到右边所有的路由
所以让r4宣告2002:: 16 网段
[r4]bgp 1
[r4-bgp]ipv6
[r4-bgp-af-ipv6]net
[r4-bgp-af-ipv6]network 2002:: 16