学习精彩网络技术老师:华为HCIA和HCIP数通eNSP实战视频课
点击学习精彩网络技术老师:华为HCIA和HCIP数通eNSP实战视频课、华三、锐捷、WLAN、IPv6等全套视频课程
介绍IS-IS基本功能的配置过程,包括在各设备上指定网络实体名、配置level级别和使能IS-IS。
组网需求
如图1所示:
DeviceA、DeviceB、DeviceC和DeviceD之间通过IS-IS协议实现IP网络互连。
DeviceA、DeviceB和DeviceC属于区域10,DeviceD属于区域20。
DeviceA和DeviceB是Level-1设备,DeviceC是Level-1-2设备,DeviceD是Level-2设备。
设备名称 | 接口 | IP地址 |
DeviceA | GE0/1/0 | 10.1.1.2/24 |
DeviceB | GE0/1/0 | 10.1.2.2/24 |
DeviceC | GE0/1/0 | 10.1.1.1/24 |
GE0/2/0 | 10.1.2.1/24 | |
GE0/3/0 | 192.168.0.1/24 | |
DeviceD | GE0/1/0 | 192.168.0.2/24 |
GE0/2/0 | 172.16.1.1/16 |
配置思路
采用如下的思路配置IS-IS的基本功能:
在各NE上使能IS-IS,配置level级别,指定网络实体。
配置DeviceA和DeviceC以指定的方式和密码验证Hello报文。
查看各NE的IS-IS数据库信息及路由表信息。
数据准备
为完成此配置例,需准备如下的数据:
DeviceA、DeviceB、DeviceC和DeviceD的区域地址。
DeviceA、DeviceB、DeviceC和DeviceD的级别。
操作步骤
- 配置各接口的IP地址(略)
请根据图1配置接口的IP地址,具体配置请参见配置文件。
- 配置IS-IS基本功能
# 配置DeviceA。
[~DeviceA] isis 1
[*DeviceA-isis-1] is-level level-1
[*DeviceA-isis-1] network-entity 10.0000.0000.0001.00
[*DeviceA-isis-1] quit
[*DeviceA] interface gigabitethernet 0/1/0
[*DeviceA-GigabitEthernet0/1/0] isis enable 1
[*DeviceA-GigabitEthernet0/1/0] isis circuit-type p2p
[*DeviceA-GigabitEthernet0/1/0] commit
[~DeviceA-GigabitEthernet0/1/0] quit
# 配置DeviceB。
[~DeviceB] isis 1
[*DeviceB-isis-1] is-level level-1
[*DeviceB-isis-1] network-entity 10.0000.0000.0002.00
[*DeviceB-isis-1] quit
[*DeviceB] interface gigabitethernet 0/1/0
[*DeviceB-GigabitEthernet0/1/0] isis enable 1
[*DeviceB-GigabitEthernet0/1/0] isis circuit-type p2p
[*DeviceA-GigabitEthernet0/1/0] commit
[~DeviceB-GigabitEthernet0/1/0] quit
# 配置DeviceC。
[~DeviceC] isis 1
[*DeviceC-isis-1] is-level level-1-2
[*DeviceC-isis-1] network-entity 10.0000.0000.0003.00
[*DeviceC-isis-1] quit
[*DeviceC] interface gigabitethernet 0/1/0
[*DeviceC-GigabitEthernet0/1/0] isis enable 1
[*DeviceC-GigabitEthernet0/1/0] isis circuit-type p2p
[*DeviceC-GigabitEthernet0/1/0] quit
[*DeviceC] interface gigabitethernet 0/2/0
[*DeviceC-GigabitEthernet0/2/0] isis enable 1
[*DeviceC-GigabitEthernet0/2/0] isis circuit-type p2p
[*DeviceC-GigabitEthernet0/2/0] quit
[*DeviceC] interface gigabitethernet 0/3/0
[*DeviceC-GigabitEthernet0/3/0] isis enable 1
[*DeviceC-GigabitEthernet0/3/0] isis circuit-type p2p
[*DeviceC-GigabitEthernet0/3/0] commit
[~DeviceC-GigabitEthernet0/3/0] quit
# 配置DeviceD。
[~DeviceD] isis 1
[*DeviceD-isis-1] is-level level-2
[*DeviceD-isis-1] network-entity 20.0000.0000.0004.00
[*DeviceD-isis-1] quit
[*DeviceD] interface gigabitethernet 0/2/0
[*DeviceD-GigabitEthernet0/2/0] isis enable 1
[*DeviceD-GigabitEthernet0/2/0] isis circuit-type p2p
[*DeviceD-GigabitEthernet0/2/0] quit
[*DeviceD] interface gigabitethernet 0/1/0
[*DeviceD-GigabitEthernet0/1/0] isis enable 1
[*DeviceD-GigabitEthernet0/1/0] isis circuit-type p2p
[*DeviceD-GigabitEthernet0/1/0] commit
[~DeviceD-GigabitEthernet0/1/0] quit
- 配置DeviceA和DeviceC验证Hello报文的认证模式和密码。
# 配置DeviceA。
[~DeviceA] interface gigabitethernet 0/1/0
[~DeviceA-GigabitEthernet0/1/0] isis authentication-mode simple cipher N`C55QK<`=/Q=^Q`MAF4<1!!
[*DeviceA-GigabitEthernet0/1/0] commit
[~DeviceA-GigabitEthernet0/1/0] quit
# 配置DeviceC。
[~DeviceC] interface gigabitethernet 0/1/0
[~DeviceC-GigabitEthernet0/1/0] isis authentication-mode simple cipher N`C55QK<`=/Q=^Q`MAF4<1!!
[*DeviceC-GigabitEthernet0/1/0] commit
[~DeviceC-GigabitEthernet0/1/0] quit
- 验证配置结果
# 显示各NE的IS-IS LSDB信息。
[~DeviceA] display isis lsdb
Database information for ISIS(1)
--------------------------------
Level-1 Link State Database
LSPID Seq Num Checksum Holdtime Length ATT/P/OL
-------------------------------------------------------------------------------
0000.0000.0001.00-00* 0x00000006 0xbf7d 649 68 0/0/0
0000.0000.0002.00-00 0x00000003 0xef4d 545 68 0/0/0
0000.0000.0003.00-00 0x00000008 0x3340 582 111 0/1/0
Total LSP(s): 3
*(In TLV)-Leaking Route, *(By LSPID)-Self LSP, +-Self LSP(Extended),
ATT-Attached, P-Partition, OL-Overload
[~DeviceB] display isis lsdb
Database information for ISIS(1)
--------------------------------
Level-1 Link State Database
LSPID Seq Num Checksum Holdtime Length ATT/P/OL
-------------------------------------------------------------------------------
0000.0000.0001.00-00 0x00000006 0xbf7d 642 68 0/0/0
0000.0000.0002.00-00* 0x00000003 0xef4d 538 68 0/0/0
0000.0000.0003.00-00 0x00000008 0x3340 574 111 0/1/0
Total LSP(s): 3
*(In TLV)-Leaking Route, *(By LSPID)-Self LSP, +-Self LSP(Extended),
ATT-Attached, P-Partition, OL-Overload
[~DeviceC] display isis lsdb
Database information for ISIS(1)
--------------------------------
Level-1 Link State Database
LSPID Seq Num Checksum Holdtime Length ATT/P/OL
-------------------------------------------------------------------------------
0000.0000.0001.00-00 0x00000006 0xbf7d 638 68 0/0/0
0000.0000.0002.00-00 0x00000003 0xef4d 533 68 0/0/0
0000.0000.0003.00-00* 0x00000008 0x3340 569 111 0/1/0
Total LSP(s): 3
*(In TLV)-Leaking Route, *(By LSPID)-Self LSP, +-Self LSP(Extended),
ATT-Attached, P-Partition, OL-Overload
Level-2 Link State Database
LSPID Seq Num Checksum Holdtime Length ATT/P/OL
-------------------------------------------------------------------------------
0000.0000.0003.00-00* 0x00000008 0x55bb 650 100 0/0/0
0000.0000.0004.00-00 0x00000005 0x651 629 84 0/0/0
Total LSP(s): 2
*(In TLV)-Leaking Route, *(By LSPID)-Self LSP, +-Self LSP(Extended),
ATT-Attached, P-Partition, OL-Overload
[~DeviceD] display isis lsdb
Database information for ISIS(1)
--------------------------------
Level-2 Link State Database
LSPID Seq Num Checksum Holdtime Length ATT/P/OL
-------------------------------------------------------------------------------
0000.0000.0003.00-00 0x00000008 0x55bb 644 100 0/0/0
0000.0000.0004.00-00* 0x00000005 0x651 624 84 0/0/0
Total LSP(s): 2
*(In TLV)-Leaking Route, *(By LSPID)-Self LSP, +-Self LSP(Extended),
ATT-Attached, P-Partition, OL-Overload
# 显示各NE的IS-IS路由信息。Level-1设备的路由表中应该有一条缺省路由,且下一跳为Level-1-2设备,Level-2设备应该有所有Level-1和Level-2的路由。
[~DeviceA] display isis route
Route information for ISIS(1)
-----------------------------
ISIS(1) Level-1 Forwarding Table
--------------------------------
IPV4 Destination IntCost ExtCost ExitInterface NextHop Flags
-------------------------------------------------------------------------
10.1.1.0/24 10 NULL GE0/1/0 Direct D/-/L/-/-
10.1.2.0/24 20 NULL GE0/1/0 10.1.1.1 A/-/-/-/-
192.168.0.0/24 20 NULL GE0/1/0 10.1.1.1 A/-/-/-/-
0.0.0.0/0 10 NULL GE0/1/0 10.1.1.1 A/-/-/-/-
Flags: D-Direct, A-Added to URT, L-Advertised in LSPs, S-IGP Shortcut,
U-Up/Down Bit Set
Protect Type: L-Link Protect, N-Node Protect
[~DeviceC] display isis route
Route information for ISIS(1)
-----------------------------
ISIS(1) Level-1 Forwarding Table
--------------------------------
IPV4 Destination IntCost ExtCost ExitInterface NextHop Flags
-------------------------------------------------------------------------
10.1.1.0/24 10 NULL GE0/1/0 Direct D/-/L/-/-
10.1.2.0/24 10 NULL GE0/2/0 Direct D/-/L/-/-
192.168.0.0/24 10 NULL GE0/3/0 Direct D/-/L/-/-
Flags: D-Direct, A-Added to URT, L-Advertised in LSPs, S-IGP Shortcut,
U-Up/Down Bit Set
Protect Type: L-Link Protect, N-Node Protect
ISIS(1) Level-2 Forwarding Table
--------------------------------
IPV4 Destination IntCost ExtCost ExitInterface NextHop Flags
-------------------------------------------------------------------------
10.1.1.0/24 10 NULL - Direct D/-/L/-/-
10.1.2.0/24 10 NULL - Direct D/-/L/-/-
192.168.0.0/24 10 NULL - Direct D/-/L/-/-
172.16.0.0/16 20 NULL GE0/3/0 192.168.0.2 A/-/-/-/-
Flags: D-Direct, A-Added to URT, L-Advertised in LSPs, S-IGP Shortcut,
U-Up/Down Bit Set
Protect Type: L-Link Protect, N-Node Protect
[~DeviceD] display isis route
Route information for ISIS(1)
-----------------------------
ISIS(1) Level-2 Forwarding Table
--------------------------------
IPV4 Destination IntCost ExtCost ExitInterface NextHop Flags
--------------------------------------------------------------------------
192.168.0.0/24 10 NULL GE0/3/0 Direct D/-/L/-/-
10.1.1.0/24 20 NULL GE0/3/0 192.168.0.1 A/-/-/-/-
10.1.2.0/24 20 NULL GE0/3/0 192.168.0.1 A/-/-/-/-
172.16.0.0/16 10 NULL GE0/2/0 Direct D/-/L/-/-
Flags: D-Direct, A-Added to URT, L-Advertised in LSPs, S-IGP Shortcut,
U-Up/Down Bit Set
Protect Type: L-Link Protect, N-Node Protect
配置文件
DeviceA的配置文件
#
sysname DeviceA
#
isis 1
is-level level-1
network-entity 10.0000.0000.0001.00
#
interface GigabitEthernet0/1/0
undo shutdown
ip address 10.1.1.2 255.255.255.0
isis enable 1
isis circuit-type p2p
isis authentication-mode simple cipher N`C55QK<`=/Q=^Q`MAF4<1!!
#
return
DeviceB的配置文件
#
sysname DeviceB
#
isis 1
is-level level-1
network-entity 10.0000.0000.0002.00
#
interface GigabitEthernet0/1/0
undo shutdown
ip address 10.1.2.2 255.255.255.0
isis enable 1
isis circuit-type p2p
#
return
DeviceC的配置文件
#
sysname DeviceC
#
isis 1
is-level level-1-2
network-entity 10.0000.0000.0003.00
#
interface GigabitEthernet0/1/0
undo shutdown
ip address 10.1.1.1 255.255.255.0
isis enable 1
isis circuit-type p2p
isis authentication-mode simple cipher N`C55QK<`=/Q=^Q`MAF4<1!!
#
interface GigabitEthernet0/2/0
undo shutdown
ip address 10.1.2.1 255.255.255.0
isis enable 1
isis circuit-type p2p
#
interface GigabitEthernet0/3/0
undo shutdown
ip address 192.168.0.1 255.255.255.0
isis enable 1
isis circuit-type p2p
#
return
DeviceD的配置文件
#
sysname DeviceD
#
isis 1
is-level level-2
network-entity 20.0000.0000.0004.00
#
interface GigabitEthernet0/1/0
undo shutdown
ip address 192.168.0.2 255.255.255.0
isis enable 1
isis circuit-type p2p
#
interface GigabitEthernet0/2/0
undo shutdown
ip address 172.16.1.1 255.255.0.0
isis enable 1
isis circuit-type p2p
#
return