[信息与通信]3操纵路由更新.ppt

上传人:sccc 文档编号:5614504 上传时间:2023-08-02 格式:PPT 页数:51 大小:1.33MB
返回 下载 相关 举报
[信息与通信]3操纵路由更新.ppt_第1页
第1页 / 共51页
[信息与通信]3操纵路由更新.ppt_第2页
第2页 / 共51页
[信息与通信]3操纵路由更新.ppt_第3页
第3页 / 共51页
[信息与通信]3操纵路由更新.ppt_第4页
第4页 / 共51页
[信息与通信]3操纵路由更新.ppt_第5页
第5页 / 共51页
点击查看更多>>
资源描述

《[信息与通信]3操纵路由更新.ppt》由会员分享,可在线阅读,更多相关《[信息与通信]3操纵路由更新.ppt(51页珍藏版)》请在三一办公上搜索。

1、多种路由选择协议,临时的运用应用特殊的路由选择协议 一种路由选择协议并不适合所有的设备平台行政边界 公司内部行政的需要不匹配的配置不同设备生产商,重分布路由信息,重分布概述,重分布是指连接到不同路由选择域的边界路由器在不同自主系统之间交换和通告路由选择信息的过程。路由必须位于路由选择表中才能进行重分发,重分发的过程可以解释为复制路由表的过程,种子度量值,首先重分发来的路由并不与路由器直接相连,它们是从其它路由选择协议那里获悉的.两种协议在重分发时路由器必须转换度量值来使路由选择协议能够理解另外一种路由协议的度量值.这种度量值被称为种子度量值,default-metric,也可以是重分发时定义的

2、,该度量值将在AS内部正常的递增。,Redistribution with Seed Metric,默认种子度量值,路由回馈次优路径选择路由选择信息不兼容会聚时间不一致的,重分布时的考虑,重分发技术,Manipulating Routing Updates,配置路由重分发,BSCI v2.26-9,重分发支持所有的路由选择协议,RtrA(config-router)#redistribute?bgp Border Gateway Protocol(BGP)connected Connectedegp Exterior Gateway Protocol(EGP)eigrp Enhanced In

3、terior Gateway Routing Protocol(EIGRP)igrp Interior Gateway Routing Protocol(IGRP)isis ISO IS-ISiso-igrp IGRP for OSI networksmobile Mobile routesodr On Demand stub Routesospf Open Shortest Path First(OSPF)rip Routing Information Protocol(RIP)static Static routes,RIP协议的重分发命令,RtrA(config)#router ripR

4、trA(config-router)#redistribute ospf?Process IDRtrA(config-router)#redistribute ospf 1?match Redistribution of OSPF routes metric Metric for redistributed routes route-map Route map reference,默认度量值为无穷大,配置到RIP中的重分发,OSPF中的重分发命令,默认度量值 20.默认外部链路类型为 2.默认只重分发主类的网络的路由,RtrA(config)#router ospf 1RtrA(config-

5、router)#redistribute eigrp?Autonomous system numberRtrA(config-router)#redistribute eigrp 100?metric Metric for redistributed routes metric-type OSPF/IS-IS exterior metric type for redistributed routes route-map Route map reference subnets Consider subnets for redistribution into OSPF tag Set tag fo

6、r routes redistributed into OSPF,配置到OSPF的重分发,EIGRP协议中的重分发命令,RtrA(config)#router eigrp 100RtrA(config-router)#redistribute ospf?Process IDRtrA(config-router)#redistribute ospf 1?match Redistribution of OSPF routes metric Metric for redistributed routes route-map Route map reference,默认度量值为无穷大,Bandwidt

7、h in kilobytes=10000Delay in 10s of microseconds=100Reliability=255(maximum)Load=1(minimum)MTU=1500 bytes,配置到EIGRP协议中的重分发,IS-IS协议中的重分发命令,RtrA(config)#router isisRtrA(config-router)#redistribute eigrp 100?level-1 IS-IS level-1 routes only level-1-2 IS-IS level-1 and level-2 routes level-2 IS-IS level

8、-2 routes only metric Metric for redistributed routes metric-type OSPF/IS-IS exterior metric type for redistributed routes route-map Route map reference,默认情况下,导入到IS-IS中的路由为L2的路由,度量值为0,路由重分发到IS-IS,示例:重分发之前,示例:重分发之前,示例:在B上配置重分发,示例:重分发后的路由表,示例:配置重分发和路由汇总,Manipulating Routing Updates,使用分发列表控制路由更新流量,BSCI

9、 v2.26-24,passive-interface 命令,此命令用于防止通过路由器接口发送路由选择更新,但是仍然接收路由选择更新,多用于必须在network中指定一个接口,但是又不希望它参与路由选择协议,控制路由选择更新,分发列表的处理,distribute-list accesslist-number|name out interfacename|routingprocess|autonomoussystem-number,Router(config-router)#,配置分发列表,distribute-list accesslist-number|name in type number

10、,Router(config-router)#,应用ACL来控制路由条目的匹配.ACL可以应用于路由更新的发送 接收 和路由重分发.,出站更新:,入站更新:,The distribute-list out command cannot be used with link-state routing protocols for blocking outbound link-state advertisements(LSAs)on an interface.,This command prevents most routing protocols from placing the filtered

11、 routes in their database.When this command is used with OSPF,the routes are placed in the database but not the routing table,网络10.0.0.0对于网络192.168.5.0必须是隐藏的,IP路由过滤配置示例,使用分发列表控制重分发,Access-list 2 deny 10.8.0.0 0.3.255.255Access-list 2 deny 10.0.0.8 0.0.0.3Access-list 2 permit anyAccess-list 3 permit

12、10.8.0.0 0.3.255.255Access-list 3 permit 10.0.0.8 0.0.0.3,Manipulating Routing Updates,使用路由映射表控制路由选择更新,BSCI v2.26-31,路由映射的工作原理,路由映射表是复杂的访问列表,可以对分组或路由执行某些条件测试和设置属性 具有相同路由映射表名称的路由映射表语句集合被称为是一个路由映射表.从上到下的匹配,有一个匹配即退出通过行号,可以容易的分别进行编辑 单个匹配语句可以包含多个条件,匹配语句有一个条件为真时,就表示语句匹配.与访问列表一样,最后隐含一个拒绝语句,不同的是它有SET语句,可以来设

13、置路由.,路由映射的用途,一些最常见的路由映射表的应用:在重分布间进行路由过滤:尽管分发列表可以完成,但是路由映射有SET命令,提供操纵路由度量值的额外优点基于策略的路由选择:路由映射表可用于匹配源地址 目的地址 协议类型和最终用户程序,当发生匹配。可以使用SET命令指定将分组发送到接口和下一跳地址BGP策略:路由映射表是实现BGP策略的主要工具。,route-map my_bgp permit 10 match statements match statements set statements set statements route-map my_bgp deny 20:route-ma

14、p my_bgp permit 30:,Route Map 运作,多个列表组成一个路由映射表.路由映射表中的语句相当于访问列表中的各行.语句按从上到下的次序处理,第一个匹配的被执行序列号用于在路由映射表中的匹配顺序和后来在路由映射表中特定的位置插入和删除映射表语句.,The match statement may contain multiple references.Multiple match criteria in the same line use a logical OR.At least one reference must permit the route for it to b

15、e a candidate for redistribution.,Each vertical match uses a logical AND.All match statements must permit the route for it to remain a candidate for redistribution.Route map permit or deny determines if the candidate will be redistributed.,Route Map Operation(Cont.),redistribute protocol process id

16、route-map map-tag,router(config-router)#,可以更加详细的控制重分发路由,route-map 命令,route-map map-tag permit|deny sequence-number,router(config)#,定义路由映射表,match conditions,router(config-route-map)#,配制匹配条件,set actions,router(config-route-map)#,设置执行动作,match,router(config-route-map)#,Match options options:ip address i

17、p-access-list ip route-source ip-access-list ip next-hop ip-address-list interface type number metric metric-value route-type external|internal|level-1|level-2|local,用来设置匹配条件.和路由映射前的permit和deny是前后对应的.,set,router(config-route-map)#,set options options:metric metric-value metric-type type-1|type-2|int

18、ernal|external level level-1|level-2|stub-area|backbone ip next-hop next-hop-address,用来设置匹配条件后执行的动作用来修改重分布路由的属性,bgp specific options:origin bgp-origin-code weight bgp-weight local-preference bgp-path-attributes automatic-tag,路由重分发与路由映射的结合应用,Router(config)#router ospf 10Router(config-router)#redistri

19、bute rip route-map redis-rip,Router(config)#route-map redis-rip permit 10match ip address 23 29set metric 500set metric-type type-1route-map redis-rip deny 20match ip address 37route-map redis-rip permit 30set metric 5000set metric-type type-2,Routes matching either access list 23 or 29 are redistri

20、buted with an OSPF cost of 500,external type 1.Routes permitted by access list 37 are not redistributed.All other routes are redistributed with an OSPF cost metric of 5000,external type 2.,Router(config)#access-list 23 permit 10.1.0.0 0.0.255.255access-list 29 permit 172.16.1.0 0.0.0.255access-list

21、37 permit 10.0.0.0 0.255.255.255,示例,Manipulating Routing Updates,使用管理距离影响路由选择过程,BSCI v2.26-41,实验1(route-map),10.1.1.1/30,S1,S1,S0,S0,London,Denver,172.16.1.1/24172.16.2.1/24172.16.3.1/24172.16.4.1/24172.16.5.1/24172.16.6.1/24172.16.7.1/24172.16.8.1/24,Loopback0-7,Loopback0-7,10.1.1.2/30,10.1.1.6/30,

22、10.1.1.5/30,ISIS Area 1,OSPF Area 0,Florence,192.168.1.1/24192.168.2.1/24192.168.3.1/24192.168.4.1/24192.168.5.1/24192.168.6.1/24192.168.7.1/24192.168.8.1/24,London想看到 192.168.1.0、192.168.3.0、192.168.5.0、192.168.7.0 Denver不想看到 172.16.2.0、172.16.4.0、172.16.6.0、172.16.8.0,实验1 配置示例,router ospf 9 redist

23、ribute isis level-1 subnets route-map isis-ospf!router isis redistribute ospf 9 route-map ospf-isis!access-list 1 permit 192.168.1.0 0.0.0.255access-list 1 permit 192.168.3.0 0.0.0.255access-list 1 permit 192.168.5.0 0.0.0.255access-list 1 permit 192.168.7.0 0.0.0.255!access-list 2 permit 172.16.2.0

24、 0.0.0.255access-list 2 permit 172.16.4.0 0.0.0.255access-list 2 permit 172.16.6.0 0.0.0.255access-list 2 permit 172.16.8.0 0.0.0.255!route-map isis-ospf permit 10 match ip address 1!route-map ospf-isis deny 10 match ip address 2route-map ospf-isis permit 20,实验2(distribute-list),10.1.1.1/30,S1,S1,S0

25、,S0,London,Denver,172.16.1.1/24172.16.2.1/24172.16.3.1/24172.16.4.1/24172.16.5.1/24172.16.6.1/24172.16.7.1/24172.16.8.1/24,Loopback0-7,Loopback0-7,10.1.1.2/30,10.1.1.6/30,10.1.1.5/30,EIGRP 50,OSPF Area 0,Florence,192.168.1.1/24192.168.2.1/24192.168.3.1/24192.168.4.1/24192.168.5.1/24192.168.6.1/24192

26、.168.7.1/24192.168.8.1/24,London想看到 192.168.1.0、192.168.3.0、192.168.5.0、192.168.7.0 Denver不想看到 172.16.2.0、172.16.4.0、172.16.6.0、172.16.8.0,实验2 配置示例,router eigrp 50 redistribute ospf 9 metric 10000 100 1 255 1500 distribute-list 12 out ospf 9!router ospf 9 redistribute eigrp 50 subnets distribute-lis

27、t 11 out eigrp 50!access-list 11 permit 192.168.1.0 0.0.0.255access-list 11 permit 192.168.3.0 0.0.0.255access-list 11 permit 192.168.5.0 0.0.0.255access-list 11 permit 192.168.7.0 0.0.0.255!access-list 12 deny 172.16.2.0 0.0.0.255access-list 12 deny 172.16.4.0 0.0.0.255access-list 12 deny 172.16.6.

28、0 0.0.0.255access-list 12 deny 172.16.8.0 0.0.0.255access-list 12 permit any,实验(route-summary/route-map/distribute-list),Cisco,London,Denver,S1,E0,E0,S0,S0,S1,192.168.3.33/27,192.168.3.34/27,192.168.3.129/27,192.168.3.130/27,192.168.3.97/27192.168.3.65/27192.168.1.1/24,192.168.3.161/27,192.168.3.193

29、/27,192.168.2.1/24,172.16.4.1/24,172.16.4.2/24,172.16.5.1/24172.16.6.1/24172.16.7.1/24,OSPF Area 0,EIGRP 20,EIGRP 10,Juniper,实验 答案(Summary:Juniper部分配置),router ospf 1 summary-address 192.168.3.128 255.255.255.128 summary-address 172.16.4.0 255.255.252.0!interface Ethernet 0 ip summary-address eigrp 1

30、0 172.16.4.0 255.255.252.0 ip summary-address eigrp 10 192.168.3.0 255.255.255.128!interface serial 0 ip summary-address eigrp 20 192.168.0.0 255.255.252.0,实验 答案(route-map:Juniper部分配置),access-l 1 per 192.168.3.128 0.0.0.127access-l 1 per 192.168.2.0 0.0.0.255access-l 2 per 172.16.4.0 0.0.3.255access

31、-l 3 per 192.168.1.0 0.0.0.255access-l 3 per 192.168.3.0 0.0.0.127!route-map eigrp10 permit 10 match ip address 1!route-map eigrp20 permit 10 match ip address 2!route-map ospf1 permit 10 match ip address 3!router ospf 1 redistribute eigrp 10 subnets route-map eigrp10 redistribute eigrp 20 subnets ro

32、ute-map eigrp20!router eigrp 10 redistribute eigrp 20 route-map eigrp20 redistribute ospf 1 metric 1000 100 255 1 1500 route-map ospf1!router eigrp 20 redistribute eigrp 10 route-map eigrp10 redistribite ospf 1 metric 1000 100 255 1 1500 route-map ospf1,实验 答案(Distribute-list:Juniper部分配置),access-l 1

33、per 192.168.3.128 0.0.0.127access-l 1 per 192.168.2.0 0.0.0.255access-l 2 per 172.16.4.0 0.0.3.255access-l 3 per 192.168.1.0 0.0.0.255access-l 3 per 192.168.3.0 0.0.0.127!router eigrp 10 distribute-list 2 out eigrp 20 distribute-list 3 out ospf 1!router eigrp 20 distribute-list 1 out eigrp 10 distri

34、bute-list 3 out ospf 1!router ospf 1 distribute-list 1 out eigrp 10 distribute-list 2 out eigrp 20,去掉route-map部分所有配置,用distribute-list实现,实验2 路由标记,10.1.1.1/30,S1,S1,S0,S0,London,Denver,Loopback0-3,10.1.1.2/30,10.1.1.6/30,10.1.1.5/30,Florence,131.8.1.1/24131.8.2.1/24131.8.3.1/24131.8.4.1/24,Juniper,10.

35、1.1.9/30,10.1.1.10/30,S0,S1,OSPF Area 0,RIP version 2,EIGRP 50,131.8.1.1/24 tag 1131.8.2.1/24 tag 1131.8.3.1/24 tag 2131.8.4.1/24 tag 2,实验2 路由标记 答案,juniper(config)#access-l 1 permit 131.8.1.0 0.0.0.255 juniper(config)#access-l 1 permit 131.8.2.0 0.0.0.255juniper(config)#access-l 2 permit 131.8.3.0 0

36、.0.0.255juniper(config)#access-l 2 permit 131.8.4.0 0.0.0.255juniper(config)#route-map set-tag permit 10juniper(config-route-map)#match ip address 1juniper(config-route-map)#set tag 1juniper(config-route-map)#exitjuniper(config)#route-map set-tag permit 20juniper(config-route-map)#match ip address 2

37、juniper(config-route-map)#set tag 2juniper(config-route-map)#exitjuniper(config)#route-map set-tag permit 30juniper(config-route-map)#exitjuniper(config)#router ospf 1juniper(config-router)#redistribute eigrp 50 subnets route-map set-tagFlorence(config)#route-map match-tag permit 10Florence(config-route-map)#match tag 1Florence(config-route-map)#exitFlorence(config)#router ripFlorence(config-router)#redistribute ospf 1 metric 5 route-map match-tag,

展开阅读全文
相关资源
猜你喜欢
相关搜索

当前位置:首页 > 建筑/施工/环境 > 农业报告


备案号:宁ICP备20000045号-2

经营许可证:宁B2-20210002

宁公网安备 64010402000987号