1、拓扑
2、 配置
SW1
VLAN 100
interface GigabitEthernet1/0/1
port link-mode bridge
port access vlan 100
combo enable fiber
stp edged-port
#
interface GigabitEthernet1/0/2
port link-mode bridge
port access vlan 100
combo enable fiber
stp edged-port
SW2
VLAN 100
interface GigabitEthernet1/0/1
port link-mode bridge
port access vlan 100
combo enable fiber
stp edged-port
#
interface GigabitEthernet1/0/2
port link-mode bridge
port access vlan 100
combo enable fiber
stp edged-port
AR1
(1) 构建底层网络
ospf 1 router-id 1.1.1.1
area 0.0.0.0
network 1.1.1.1 0.0.0.0
network 10.0.0.1 0.0.0.0
interface LoopBack0
ip address 1.1.1.1 255.255.255.255
interface GigabitEthernet0/1
port link-mode route
combo enable copper
ip address 10.0.0.1 255.255.255.252
(2)配置vxlan
l2vpn enable #开启二层vpn
interface Tunnel0 mode vxlan #配置隧道接口类型和源目IP
source 1.1.1.1
destination 3.3.3.3
vsi vxlan #配置xsi vxlan只是名字,可随便定义
vxlan 100 # 配置VNI(vxlan network identifier vxlan网络标识符)
tunnel 0 #绑定隧道口
interface GigabitEthernet0/0 #在连接终端的接口调用
port link-mode route
combo enable copper
xconnect vsi vxlan
AR3 #和AR1配置类似
interface LoopBack0
ip address 3.3.3.3 255.255.255.255
#
interface GigabitEthernet0/0
port link-mode route
combo enable copper
ip address 10.0.0.6 255.255.255.252
ospf 1 router-id 3.3.3.3
area 0.0.0.0
network 3.3.3.3 0.0.0.0
network 10.0.0.6 0.0.0.0
l2vpn enable
interface Tunnel0 mode vxlan
source 3.3.3.3
destination 1.1.1.1
#
vsi vxlan
vxlan 100
tunnel 0
interface GigabitEthernet0/1
port link-mode route
combo enable copper
xconnect vsi vxlan
AR2 #只需配置底层网络,无需配置vxlan
ospf 1 router-id 2.2.2.2
area 0.0.0.0
network 2.2.2.2 0.0.0.0
network 10.0.0.2 0.0.0.0
network 10.0.0.5 0.0.0.0
interface LoopBack0
ip address 2.2.2.2 255.255.255.255
#
interface GigabitEthernet0/0
port link-mode route
combo enable copper
ip address 10.0.0.2 255.255.255.252
#
interface GigabitEthernet0/1
port link-mode route
combo enable copper
ip address 10.0.0.5 255.255.255.252
3、验证 PC6 ping PC7
在AR1的G0/1接口抓包