第一步划分地址172.16.0.0/16172.16.000 00000.0/19172.16.0.0/19----A0172.16.1.0/29---MA172.16.1.8/29172.16.1.16/29环回172.16.2.0/24172.16.3.0/24172.16.32.0/19---A1172.16.32.0/29172.16.32.4/29172.16.32.8/29172.16.33.0/24--环回172.16.64.0/19---A2172.16.65.0/29172.16.65.8/29172.16.66.0/24--环回172.16.96.0/19---A3172.16.97.0/29172.16.97.8/29172.168.98.0/24--环回172.16.128.0/19--A4172.16.129.0/29172.16.131.0/29172.16.130.0/24--环回172.16.160.0/24---RIP172.16.172.0/2445.0.0.0/24--ISP5.5.5.0/24--环回172.16.192.0/19172.16.224.0/19 备选第二步配地址[R1-GigabitEthernet0/0/0]ip add 172.16.33.1 29[R1-GigabitEthernet0/0/0]ip add 172.16.33.1 29[R1-LoopBack0]ip add 172.16.34.1 24[R2-GigabitEthernet0/0/0]ip add 172.16.33.2 29[R2-LoopBack0]ip add 172.16.35.1 24[R3-GigabitEthernet0/0/0]ip add 172.16.33.3 29[R3-LoopBack0]ip add 172.16.36.1 24[R3-GigabitEthernet0/0/1]ip add 172.16.1.1 29[R4-GigabitEthernet0/0/1]ip add 172.16.1.2 29[R4-GigabitEthernet0/0/2]ip add 172.16.1.9 29[R4-GigabitEthernet0/0/0]ip add 172.16.1.17 29[R4-GigabitEthernet2/0/0]ip add 45.0.0.1 24[R5-GigabitEthernet0/0/0]ip add 45.0.0.2 24[R5-LoopBack0]ip add 5.5.5.5 24[R6-GigabitEthernet0/0/1]ip add 172.16.1.10 29[R6-GigabitEthernet0/0/0]ip add 172.16.65.1 29[R7-GigabitEthernet0/0/0]ip add 172.16.1.18 29[R7-GigabitEthernet0/0/1]ip add 172.16.97.1 29[R8-GigabitEthernet0/0/0]ip add 172.16.97.2 29[R8-GigabitEthernet0/0/1]ip add 172.16.97.9 29[R8-LoopBack0]ip add 172.16.98.1 24[R9-GigabitEthernet0/0/0]ip add 172.16.97.10 29[R9-LoopBack0]ip add 172.16.130.1 24[R9-GigabitEthernet0/0/1]ip add 172.16.129.1 29[R10-GigabitEthernet0/0/0]ip add 172.16.129.2 29[R10-LoopBack0]ip add 172.16.131.1 24[R11-GigabitEthernet0/0/0]ip add 172.16.65.2 29[R11-GigabitEthernet0/0/1]ip add 172.16.65.9 29[R11-LoopBack0]ip add 172.16.66.1 24[R12-GigabitEthernet0/0/0]ip add 172.16.65.10 29[R12-LoopBack1]ip add 172.16.172.1 20[R12-LoopBack0]ip add 172.16.160.1 20第三步写OSPF第四步重发布和下发缺省路由[R9-ospf-1]import-route ospf 2[R12-ospf-1]import-route rip 1[R9-ospf-2]default-route-advertise always第五步 区域汇总域间汇总R3-ospf-1-area-0.0.0.1]abr-summary 172.16.32.0 255.255.224.0[R6-ospf-1-are2a-0.0.0.2]abr-summary 172.16.64.0 255.255.224.0[R7-ospf-1-area-0.0.0.3]abr-summary 172.16.96.0 255.255.224.0域外汇总[R12-ospf-1]asbr-summary 172.16.160.0 255.255.224.0[R9-ospf-1]asbr-summary 172.16.128.0 255.255.224.0第六步在非骨干做特殊区完全的末梢区域[R1-ospf-1-area-0.0.0.1]stub[R2-ospf-1-area-0.0.0.1]stub[R3-ospf-1-area-0.0.0.1]stub no-summary完全的NSSA区域[R6-ospf-1-area-0.0.0.2]nssa no-summary[R11-ospf-1-area-0.0.0.2]nssa[R12-ospf-1-area-0.0.0.2]nssa[R7-ospf-1-area-0.0.0.3]nssa no-summary[R8-ospf-1-area-0.0.0.3]nssa[R9-ospf-1-area-0.0.0.3]nssa第七步所有设备均可访问R5的环回做NAT[R4-acl-basic-2000]rule permit source 172.16.0. 0 0.0.255.255[R4-GigabitEthernet0/0/0]nat outbound 2000ip route-static 0.0.0.0 0 45.0.0.2[R4-ospf-1]default-route-advertise第八步区域认证[AR1-ospf-1-area-0.0.0.1] authentication-mode md5 1 cipher 123456[AR2-ospf-1-area-0.0.0.1] authentication-mode md5 1 cipher 123456[AR3-ospf-1-area-0.0.0.1] authentication-mode md5 1 cipher 123456[AR3-ospf-1-area-0.0.0.0] authentication-mode md5 1 cipher 123456[AR4-ospf-1-area-0.0.0.0] authentication-mode md5 1 cipher 123456[AR6-ospf-1-area-0.0.0.0] authentication-mode md5 1 cipher 123456[AR7-ospf-1-area-0.0.0.0] authentication-mode md5 1 cipher 123456[AR6-ospf-1-area-0.0.0.2] authentication-mode md5 1 cipher 123456[AR12-ospf-1-area-0.0.0.2] authentication-mode md5 1 cipher 123456[AR11-ospf-1-area-0.0.0.2] authentication-mode md5 1 cipher 123456[AR1-ospf-7-area-0.0.0.3 authentication-mode md5 1 cipher 123456[AR2-ospf-8-area-0.0.0.3] authentication-mode md5 1 cipher 123456[AR3-ospf-9-area-0.0.0.3] authentication-mode md5 1 cipher 123456[AR9-ospf-1-area-0.0.0.4 authentication-mode md5 1 cipher 123456[AR10-ospf-1-area-0.0.0.4] authentication-mode md5 1 cipher 123456
OSPF总和实验
第一步划分地址172.16.0.0/16172.16.000 00000.0/19172.16.0.0/19----A0172.16.1.0/29---MA172.16.1.8/29172.16.1.16/29环回172.16.2.0/24172.16.3.0/24172.16.32.0/19---A1172.16.32.0/29172.16.32.4/29172.16.32.8/29172.16.33.0/24--环回172.16.64.0/19---A2172.16.65.0/29172.16.65.8/29172.16.66.0/24--环回172.16.96.0/19---A3172.16.97.0/29172.16.97.8/29172.168.98.0/24--环回172.16.128.0/19--A4172.16.129.0/29172.16.131.0/29172.16.130.0/24--环回172.16.160.0/24---RIP172.16.172.0/2445.0.0.0/24--ISP5.5.5.0/24--环回172.16.192.0/19172.16.224.0/19 备选第二步配地址[R1-GigabitEthernet0/0/0]ip add 172.16.33.1 29[R1-GigabitEthernet0/0/0]ip add 172.16.33.1 29[R1-LoopBack0]ip add 172.16.34.1 24[R2-GigabitEthernet0/0/0]ip add 172.16.33.2 29[R2-LoopBack0]ip add 172.16.35.1 24[R3-GigabitEthernet0/0/0]ip add 172.16.33.3 29[R3-LoopBack0]ip add 172.16.36.1 24[R3-GigabitEthernet0/0/1]ip add 172.16.1.1 29[R4-GigabitEthernet0/0/1]ip add 172.16.1.2 29[R4-GigabitEthernet0/0/2]ip add 172.16.1.9 29[R4-GigabitEthernet0/0/0]ip add 172.16.1.17 29[R4-GigabitEthernet2/0/0]ip add 45.0.0.1 24[R5-GigabitEthernet0/0/0]ip add 45.0.0.2 24[R5-LoopBack0]ip add 5.5.5.5 24[R6-GigabitEthernet0/0/1]ip add 172.16.1.10 29[R6-GigabitEthernet0/0/0]ip add 172.16.65.1 29[R7-GigabitEthernet0/0/0]ip add 172.16.1.18 29[R7-GigabitEthernet0/0/1]ip add 172.16.97.1 29[R8-GigabitEthernet0/0/0]ip add 172.16.97.2 29[R8-GigabitEthernet0/0/1]ip add 172.16.97.9 29[R8-LoopBack0]ip add 172.16.98.1 24[R9-GigabitEthernet0/0/0]ip add 172.16.97.10 29[R9-LoopBack0]ip add 172.16.130.1 24[R9-GigabitEthernet0/0/1]ip add 172.16.129.1 29[R10-GigabitEthernet0/0/0]ip add 172.16.129.2 29[R10-LoopBack0]ip add 172.16.131.1 24[R11-GigabitEthernet0/0/0]ip add 172.16.65.2 29[R11-GigabitEthernet0/0/1]ip add 172.16.65.9 29[R11-LoopBack0]ip add 172.16.66.1 24[R12-GigabitEthernet0/0/0]ip add 172.16.65.10 29[R12-LoopBack1]ip add 172.16.172.1 20[R12-LoopBack0]ip add 172.16.160.1 20第三步写OSPF第四步重发布和下发缺省路由[R9-ospf-1]import-route ospf 2[R12-ospf-1]import-route rip 1[R9-ospf-2]default-route-advertise always第五步 区域汇总域间汇总R3-ospf-1-area-0.0.0.1]abr-summary 172.16.32.0 255.255.224.0[R6-ospf-1-are2a-0.0.0.2]abr-summary 172.16.64.0 255.255.224.0[R7-ospf-1-area-0.0.0.3]abr-summary 172.16.96.0 255.255.224.0域外汇总[R12-ospf-1]asbr-summary 172.16.160.0 255.255.224.0[R9-ospf-1]asbr-summary 172.16.128.0 255.255.224.0第六步在非骨干做特殊区完全的末梢区域[R1-ospf-1-area-0.0.0.1]stub[R2-ospf-1-area-0.0.0.1]stub[R3-ospf-1-area-0.0.0.1]stub no-summary完全的NSSA区域[R6-ospf-1-area-0.0.0.2]nssa no-summary[R11-ospf-1-area-0.0.0.2]nssa[R12-ospf-1-area-0.0.0.2]nssa[R7-ospf-1-area-0.0.0.3]nssa no-summary[R8-ospf-1-area-0.0.0.3]nssa[R9-ospf-1-area-0.0.0.3]nssa第七步所有设备均可访问R5的环回做NAT[R4-acl-basic-2000]rule permit source 172.16.0. 0 0.0.255.255[R4-GigabitEthernet0/0/0]nat outbound 2000ip route-static 0.0.0.0 0 45.0.0.2[R4-ospf-1]default-route-advertise第八步区域认证[AR1-ospf-1-area-0.0.0.1] authentication-mode md5 1 cipher 123456[AR2-ospf-1-area-0.0.0.1] authentication-mode md5 1 cipher 123456[AR3-ospf-1-area-0.0.0.1] authentication-mode md5 1 cipher 123456[AR3-ospf-1-area-0.0.0.0] authentication-mode md5 1 cipher 123456[AR4-ospf-1-area-0.0.0.0] authentication-mode md5 1 cipher 123456[AR6-ospf-1-area-0.0.0.0] authentication-mode md5 1 cipher 123456[AR7-ospf-1-area-0.0.0.0] authentication-mode md5 1 cipher 123456[AR6-ospf-1-area-0.0.0.2] authentication-mode md5 1 cipher 123456[AR12-ospf-1-area-0.0.0.2] authentication-mode md5 1 cipher 123456[AR11-ospf-1-area-0.0.0.2] authentication-mode md5 1 cipher 123456[AR1-ospf-7-area-0.0.0.3 authentication-mode md5 1 cipher 123456[AR2-ospf-8-area-0.0.0.3] authentication-mode md5 1 cipher 123456[AR3-ospf-9-area-0.0.0.3] authentication-mode md5 1 cipher 123456[AR9-ospf-1-area-0.0.0.4 authentication-mode md5 1 cipher 123456[AR10-ospf-1-area-0.0.0.4] authentication-mode md5 1 cipher 123456