• 全部
  • 经验案例
  • 典型配置
  • 技术公告
  • FAQ
  • 漏洞说明
  • 全部
  • 全部
  • 大数据引擎
  • 知了引擎
产品线
搜索
取消
案例类型
发布者
是否解决
是否官方
时间
搜索引擎
匹配模式
高级搜索

bgp+mpls

4天前提问
  • 0关注
  • 0收藏,87浏览
粉丝:0人 关注:0人

问题描述:

拓扑图大概是这样 右边是我们的msr路由器 上联通过ospf打通。ebgp 非物理连接   bgp对等体建立不成功  还有怎么查看bgp状态   。两边都已经学习到对端的业务路由了  。下边是配置

组网及组网描述:

配置详情:dis ip routing-table vpn-instance rt

Route Flags: R - relay, D - download to fib

------------------------------------------------------------------------------

Routing Tables: rt

         Destinations : 5        Routes : 5

 

Destination/Mask    Proto   Pre  Cost      Flags NextHop         Interface

 

    172.16.10.0/24  EBGP    255  0          RD   2.2.2.2         GigabitEthernet0/0/0

   192.168.10.0/24  Direct  0    0           D   192.168.10.1    GigabitEthernet0/0/1.10

   192.168.10.1/32  Direct  0    0           D   127.0.0.1       GigabitEthernet0/0/1.10

 192.168.10.255/32  Direct  0    0           D   127.0.0.1       GigabitEthernet0/0/1.10

255.255.255.255/32  Direct  0    0           D   127.0.0.1       InLoopBack0

 

[Huawei]

[Huawei]

[Huawei]

[Huawei]

[Huawei]

[Huawei]dis cu

[Huawei]dis current-configuration

[V200R010C10SPC700]

#

 board add 0/1 4ES2G-S

 board add 0/2 4ES2G-S

#

 drop illegal-mac alarm

#

authentication-profile name default_authen_profile

authentication-profile name dot1x_authen_profile

authentication-profile name mac_authen_profile

authentication-profile name portal_authen_profile

authentication-profile name dot1xmac_authen_profile

authentication-profile name multi_authen_profile

#

 ecc peer-public-key 127.0.0.1 encoding-type der

  public-key-code begin

    040D0D35 E0EBC1BC 0BEC3835 2B6D1BCE 801A6BC4 DC013CE6 63942CEB 0D54143B

    C8FF1AF1 261AD6B4 87E67F60 41B27993 714EDFD1 979F2BB2 FD39CE9E 5080885E

    23

  public-key-code end

 peer-public-key end

#

ip vpn-instance nrt

 ipv4-family

  route-distinguisher 6411:2

  vpn-target 20000:2 export-extcommunity

  vpn-target 20000:2 import-extcommunity

#

ip vpn-instance rt

 ipv4-family

  route-distinguisher 6411:1

  vpn-target 2000:1 export-extcommunity

  vpn-target 2000:1 import-extcommunity

#

radius-server template default

#

mpls lsr-id 1.1.1.1

mpls

#

mpls ldp

#

#

pki realm default

#

ike proposal default

 encryption-algorithm aes-256

 dh group14

 authentication-algorithm sha2-256

 authentication-method pre-share

 integrity-algorithm hmac-sha2-256

 prf hmac-sha2-256

#

free-rule-template name default_free_rule

#

portal-access-profile name portal_access_profile

#

aaa

 authentication-scheme default

 authentication-scheme radius

  authentication-mode radius

 authorization-scheme default

 accounting-scheme default

 domain default

  authentication-scheme default

 domain default_admin

  authentication-scheme default

 local-user admin password irreversible-cipher $1a$SH*9OLO,!W$x{C;:PNOt9v,t\66Mt`VHJ/=GXu*_N;XL<+80i<-$

 local-user admin privilege level 15

 local-user admin service-type telnet ssh

 local-user huawei password irreversible-cipher $1a$.h*3XRcsO5$zI\h'oy>)5a1&y)R!sSJCHDe6`mCeY\%|Z=~`I'Q$

 local-user huawei privilege level 15

 local-user huawei service-type http

#

firewall zone Local

#

interface GigabitEthernet0/0/0

 ip address 10.10.10.1 255.255.255.252

 mpls

 mpls ldp

#

interface GigabitEthernet0/0/1

#

interface GigabitEthernet0/0/1.10

 dot1q termination vid 10

 ip binding vpn-instance rt

 ip address 192.168.10.1 255.255.255.0

#

interface GigabitEthernet0/0/1.20

 dot1q termination vid 20

 ip binding vpn-instance nrt

 ip address 192.168.100.1 255.255.255.0

#

interface GigabitEthernet0/0/2

#

interface GigabitEthernet0/0/3

 description VirtualPort

 shutdown

#

interface GigabitEthernet1/0/0

#

interface GigabitEthernet1/0/1

#

interface GigabitEthernet1/0/2

#

interface GigabitEthernet1/0/3

#

interface GigabitEthernet2/0/0

#

interface GigabitEthernet2/0/1

#

interface GigabitEthernet2/0/2

#

interface GigabitEthernet2/0/3

#

interface Cellular0/0/0

 link-protocol ppp

 ppp ipcp dns admit-any

 ppp ipcp dns request

#

interface Cellular0/0/1

 link-protocol ppp

 ppp ipcp dns admit-any

 ppp ipcp dns request

#

interface NULL0

#

interface LoopBack1

 ip address 1.1.1.1 255.255.255.255

#

bgp 100

 peer 2.2.2.2 as-number 200

 peer 2.2.2.2 ebgp-max-hop 10

 peer 2.2.2.2 connect-interface LoopBack1

 #

 ipv4-family unicast

  undo synchronization

  peer 2.2.2.2 enable

 #

 ipv4-family vpnv4

  policy vpn-target

  peer 2.2.2.2 enable

 #

 ipv4-family vpn-instance nrt

  import-route direct

  peer 2.2.2.2 as-number 200

 #

 ipv4-family vpn-instance rt

  import-route direct

  peer 2.2.2.2 as-number 200

#

ospf 1 router-id 1.1.1.1

 area 0.0.0.0

  network 1.1.1.1 0.0.0.0

  network 10.10.10.0 0.0.0.3

#

 snmp-agent local-engineid 800007DB0330D17EB0BF1D

 snmp-agent sys-info version all

 snmp-agent trap enable feature-name MPLS_LSPM trap-name hwMplsLspThresholdExceed

 snmp-agent trap enable feature-name MPLS_LSPM trap-name hwMplsLspThresholdExceedClear

 snmp-agent trap enable feature-name MPLS_LSPM trap-name hwMplsLspTotalCountExceed

 snmp-agent trap enable feature-name MPLS_LSPM trap-name hwMplsLspTotalCountExceedClear

 snmp-agent

#

 ssh client 127.0.0.1 assign ecc-key 127.0.0.1

 ssh server compatible-ssh1x enable

 ssh client first-time enable

 stelnet server enable

 telnet server enable

 telnet ipv6 server enable

#

 http timeout 3

 http server enable

 http secure-server enable

#

fib regularly-refresh disable

#

user-interface con 0

 authentication-mode password

 set authentication password cipher %^%#`>pf3;y!I0A*xs~*t\87}3Yo%H*VcM$s<,OYW/"*`/p<~OV3/B4ZOdGU3xk5%^%#

user-interface vty 0 4

 authentication-mode aaa

#

wlan ac

 traffic-profile name default

 security-profile name default

 security-profile name default-wds

  security wpa2 psk pass-phrase %^%#=o/I5[q"jP'$=w;HAq=I{'Iv=wMOyX:@\o!!8;%X%^%# aes

 ssid-profile name default

 vap-profile name default

 wds-profile name default

 regulatory-domain-profile name default

 air-scan-profile name default

 rrm-profile name default

 radio-2g-profile name default

 radio-5g-profile name default

 wids-spoof-profile name default

 wids-profile name default

 ap-system-profile name default

 port-link-profile name default

 wired-port-profile name default

 ap-group name default

#

dot1x-access-profile name dot1x_access_profile

#

mac-access-profile name mac_access_profile

#

voice

 #

 diagnose

#

ops

#

autostart

#

secelog

#

return

[Huawei]

[Huawei]

[Huawei]

[Huawei]

[Huawei]

[Huawei]dis ospf pe

[Huawei]dis ospf peer

 

         OSPF Process 1 with Router ID 1.1.1.1

                 Neighbors

 

 Area 0.0.0.0 interface 10.10.10.1(GigabitEthernet0/0/0)'s neighbors

 Router ID: 2.2.2.2          Address: 10.10.10.2

   State: Full  Mode:Nbr is  Master  Priority: 1

   DR: 10.10.10.2  BDR: 10.10.10.1  MTU: 0

   Dead timer due in 37  sec

   Retrans timer interval: 5

   Neighbor is up for 00:29:37

   Authentication Sequence: [ 0 ]

 

[Huawei]dis bgp pe

[Huawei]dis bgp peer

 

 Status codes: * - Dynamic

 

 BGP local router ID : 10.10.10.1

 Local AS number : 100

 Total number of peers : 1                Peers in established state : 0

 Total number of dynamic peers : 0

 

  Peer            V          AS  MsgRcvd  MsgSent  OutQ  Up/Down       State PrefRcv

 

  2.2.2.2         4            200       40     2197     0 00:29:38      No neg       0

 

 

[H3C]dis current-configuration

#

 version 7.1.064, Release 0605P18

#

 sysname H3C

#

ip vpn-instance nrt

 route-distinguisher 6411:2

 vpn-target 20000:2 import-extcommunity

 vpn-target 20000:2 export-extcommunity

#

ip vpn-instance rt

 route-distinguisher 6411:1

 vpn-target 2000:1 import-extcommunity

 vpn-target 2000:1 export-extcommunity

#

 telnet server enable

#

ospf 1 router-id 2.2.2.2

 area 0.0.0.0

  network 2.2.2.2 0.0.0.0

  network 10.10.10.0 0.0.0.3

#

 mpls lsr-id 2.2.2.2

#

 dhcp enable

 dhcp server always-broadcast

#

 dns proxy enable

#

 password-recovery enable

#

vlan 1

#

dhcp server ip-pool lan1

 gateway-list 192.168.0.1

 network 192.168.0.0 mask 255.255.254.0

 address range 192.168.1.2 192.168.1.254

 dns-list 192.168.0.1

#

mpls ldp

#

controller Cellular0/0

#

interface Serial1/0

#

interface Serial1/1

#

interface Serial3/0

#

interface Serial5/0

#

interface Serial5/1

#

interface Serial5/2

#

interface Serial5/3

#

interface Serial5/4

#

interface Serial5/5

#

interface Serial5/6

#

interface Serial5/7

#

interface NULL0

#

interface LoopBack1

 ip address 2.2.2.2 255.255.255.255

#

interface Vlan-interface1

 ip address 10.10.1.1 255.255.255.0

#

interface Ethernet2/0

 port link-mode bridge

#

interface Ethernet2/1

 port link-mode bridge

#

interface Ethernet2/2

 port link-mode bridge

#

interface Ethernet2/3

 port link-mode bridge

#

interface Ethernet4/0

 port link-mode bridge

#

interface Ethernet4/1

 port link-mode bridge

#

interface Ethernet4/2

 port link-mode bridge

#

interface Ethernet4/3

 port link-mode bridge

#

interface GigabitEthernet0/0

 port link-mode route

 combo enable copper

 ip address 192.168.0.1 255.255.254.0

 tcp mss 1280

#

interface GigabitEthernet0/1

 port link-mode route

 combo enable copper

#

interface GigabitEthernet0/1.1

 ip binding vpn-instance rt

 ip address 172.16.10.1 255.255.255.0

 vlan-type dot1q vid 10

#

interface GigabitEthernet0/1.2

 ip binding vpn-instance nrt

 ip address 172.16.100.1 255.255.255.0

 vlan-type dot1q vid 20

#

interface GigabitEthernet0/1.10

#

interface GigabitEthernet0/2

 port link-mode route

 combo enable copper

#

interface GigabitEthernet0/3

 port link-mode route

 combo enable copper

#

interface GigabitEthernet0/4

 port link-mode route

#

interface GigabitEthernet0/5

 port link-mode route

#

interface GigabitEthernet6/0

 port link-mode route

 ip address 10.10.10.2 255.255.255.252

 mpls enable

#

interface GigabitEthernet6/1

 port link-mode route

#

interface GigabitEthernet6/1.10

#

interface GigabitEthernet6/2

 port link-mode route

#

interface GigabitEthernet6/3

 port link-mode route

#

bgp 200

 peer 1.1.1.1 as-number 100

 peer 1.1.1.1 connect-interface LoopBack1

 peer 1.1.1.1 ebgp-max-hop 10

 #

 address-family vpnv4

  peer 1.1.1.1 enable

 #

 ip vpn-instance nrt

  #

  address-family ipv4 unicast

   import-route direct

 #

 ip vpn-instance rt

  #

  address-family ipv4 unicast

   import-route direct

#

 scheduler logfile size 16

#

line class console

 user-role network-admin

#

line class tty

 user-role network-operator

#

line class vty

 user-role network-operator

#

line con 0

 user-role network-admin

#

line vty 0 63

 authentication-mode scheme

 user-role network-operator

#

domain system

#

 domain default enable system

#

role name level-0

 description Predefined level-0 role

#

role name level-1

 description Predefined level-1 role

#

role name level-2

 description Predefined level-2 role

#

role name level-3

 description Predefined level-3 role

#

role name level-4

 description Predefined level-4 role

#

role name level-5

 description Predefined level-5 role

#

role name level-6

 description Predefined level-6 role

#

role name level-7

 description Predefined level-7 role

#

role name level-8

 description Predefined level-8 role

#

role name level-9

 description Predefined level-9 role

#

role name level-10

 description Predefined level-10 role

#

role name level-11

 description Predefined level-11 role

#

role name level-12

 description Predefined level-12 role

#

role name level-13

 description Predefined level-13 role

#

role name level-14

 description Predefined level-14 role

#

user-group system

#

local-user admin class manage

 password hash $h$6$8nXpvGwPMG8jOgpA$2JBQH5/cOFGK38d97qAkOAKgI1/DjiQWQyMzBAarI34ipBhv0gucKSPql5CA0Q1Bap4eflfQVs+k1Vmtv5N9Cw==

 service-type ssh telnet http

 authorization-attribute user-role network-admin

#

 ip http enable

#

wlan global-configuration

 control-address disable

#

wlan ap-group default-group

#

return

[H3C] dis ip rout

[H3C]dis ip routing-table v

[H3C]dis ip routing-table verbose

[H3C]dis ip routing-table vpn-instance rt

 

Destinations : 13       Routes : 13

 

Destination/Mask   Proto   Pre Cost        NextHop         Interface

0.0.0.0/32         Direct  0   0           127.0.0.1       InLoop0

127.0.0.0/8        Direct  0   0           127.0.0.1       InLoop0

127.0.0.0/32       Direct  0   0           127.0.0.1       InLoop0

127.0.0.1/32       Direct  0   0           127.0.0.1       InLoop0

127.255.255.255/32 Direct  0   0           127.0.0.1       InLoop0

172.16.10.0/24     Direct  0   0           172.16.10.1     GE0/1.1

172.16.10.0/32     Direct  0   0           172.16.10.1     GE0/1.1

172.16.10.1/32     Direct  0   0           127.0.0.1       InLoop0

172.16.10.255/32   Direct  0   0           172.16.10.1     GE0/1.1

192.168.10.0/24    BGP     255 0           1.1.1.1         GE6/0

224.0.0.0/4        Direct  0   0           0.0.0.0         NULL0

224.0.0.0/24       Direct  0   0           0.0.0.0         NULL0

255.255.255.255/32 Direct  0   0           127.0.0.1       InLoop0

[H3C]

 

请大佬指点

2 个回答
粉丝:140人 关注:0人

暂无评论

粉丝:211人 关注:1人

1 BGP

1.1 BGP配置命令

1.1.1 address-family ipv4

1.1.2 advertise-rib-active

1.1.3 aggregate

1.1.4 balance

1.1.5 balance as-path-neglect

1.1.6 bestroute as-path-neglect

1.1.7 bestroute compare-med

1.1.8 bestroute med-confederation

1.1.9 bgp

1.1.10 compare-different-as-med

1.1.11 bgp update-delay on-startup

1.1.12 confederation id

1.1.13 confederation nonstandard

1.1.14 confederation peer-as

1.1.15 dampening

1.1.16 default local-preference

1.1.17 default med

1.1.18 default-route imported

1.1.19 display bgp dampening parameter ipv4 unicast

1.1.20 display bgp group ipv4 unicast

1.1.21 display bgp network

1.1.22 display bgp non-stop-routing status

1.1.23 display bgp paths

1.1.24 display bgp peer ipv4 unicast

1.1.25 display bgp routing-table dampened ipv4 unicast

1.1.26 display bgp routing-table flap-info ipv4 unicast

1.1.27 display bgp routing-table ipv4 unicast

1.1.28 display bgp routing-table ipv4 unicast advertise-info

1.1.29 display bgp routing-table ipv4 unicast as-path-acl

1.1.30 display bgp routing-table ipv4 unicast community-list

1.1.31 display bgp routing-table ipv4 unicast peer

1.1.32 display bgp routing-table ipv4 unicast statistics

1.1.33 display bgp update-group ipv4 unicast

1.1.34 ebgp-interface-sensitive

1.1.35 fast-reroute route-policy

1.1.36 filter-policy export

1.1.37 filter-policy import

1.1.38 graceful-restart

1.1.39 graceful-restart timer purge-time

1.1.40 graceful-restart timer restart

1.1.41 graceful-restart timer wait-for-rib

1.1.42 group

1.1.43 ignore-first-as

1.1.44 import-route

1.1.45 ip vpn-instance (BGP view)

1.1.46 log-peer-change

1.1.47 network

1.1.48 network short-cut

1.1.49 non-stop-routing

1.1.50 peer advertise-community

1.1.51 peer advertise-ext-community

1.1.52 peer allow-as-loop

1.1.53 peer as-number (for a BGP peer group)

1.1.54 peer as-number (for a BGP peer)

1.1.55 peer as-path-acl

1.1.56 peer bfd

1.1.57 peer capability-advertise conventional

1.1.58 peer capability-advertise route-refresh

1.1.59 peer capability-advertise suppress-4-byte-as

1.1.60 peer connect-interface

1.1.61 peer default-route-advertise

1.1.62 peer description

1.1.63 peer ebgp-max-hop

1.1.64 peer enable

1.1.65 peer fake-as

1.1.66 peer filter-policy

1.1.67 peer group

1.1.68 peer ignore

1.1.69 peer ignore-originatorid

1.1.70 peer keep-all-routes

1.1.71 peer low-memory-exempt

1.1.72 peer next-hop-local

1.1.73 peer password

1.1.74 peer preferred-value

1.1.75 peer prefix-list

1.1.76 peer public-as-only

1.1.77 peer reflect-client

1.1.78 peer route-limit

1.1.79 peer route-policy

1.1.80 peer route-update-interval

1.1.81 peer substitute-as

1.1.82 peer timer

1.1.83 pic

1.1.84 preference

1.1.85 reflect between-clients

1.1.86 reflector cluster-id

1.1.87 refresh bgp ipv4 unicast

1.1.88 reset bgp all

1.1.89 reset bgp dampening ipv4 unicast

1.1.90 reset bgp flap-info ipv4 unicast

1.1.91 reset bgp ipv4 unicast

1.1.92 router id

1.1.93 router-id (BGP view)

1.1.94 router-id (BGP-VPN view)

1.1.95 snmp-agent trap enable bgp

1.1.96 summary automatic

1.1.97 timer

 

暂无评论

编辑答案

你正在编辑答案

如果你要对问题或其他回答进行点评或询问,请使用评论功能。

分享扩散:

提出建议

    +

亲~登录后才可以操作哦!

确定

亲~检测到您登陆的账号未在http://hclhub.h3c.com进行注册

注册后可访问此模块

跳转hclhub

你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作

举报

×

侵犯我的权益 >
对根叔社区有害的内容 >
辱骂、歧视、挑衅等(不友善)

侵犯我的权益

×

泄露了我的隐私 >
侵犯了我企业的权益 >
抄袭了我的内容 >
诽谤我 >
辱骂、歧视、挑衅等(不友善)
骚扰我

泄露了我的隐私

×

您好,当您发现根叔知了上有泄漏您隐私的内容时,您可以向根叔知了进行举报。 请您把以下内容通过邮件发送到pub.zhiliao@h3c.com 邮箱,我们会尽快处理。
  • 1. 您认为哪些内容泄露了您的隐私?(请在邮件中列出您举报的内容、链接地址,并给出简短的说明)
  • 2. 您是谁?(身份证明材料,可以是身份证或护照等证件)

侵犯了我企业的权益

×

您好,当您发现根叔知了上有关于您企业的造谣与诽谤、商业侵权等内容时,您可以向根叔知了进行举报。 请您把以下内容通过邮件发送到 pub.zhiliao@h3c.com 邮箱,我们会在审核后尽快给您答复。
  • 1. 您举报的内容是什么?(请在邮件中列出您举报的内容和链接地址)
  • 2. 您是谁?(身份证明材料,可以是身份证或护照等证件)
  • 3. 是哪家企业?(营业执照,单位登记证明等证件)
  • 4. 您与该企业的关系是?(您是企业法人或被授权人,需提供企业委托授权书)
我们认为知名企业应该坦然接受公众讨论,对于答案中不准确的部分,我们欢迎您以正式或非正式身份在根叔知了上进行澄清。

抄袭了我的内容

×

原文链接或出处

诽谤我

×

您好,当您发现根叔知了上有诽谤您的内容时,您可以向根叔知了进行举报。 请您把以下内容通过邮件发送到pub.zhiliao@h3c.com 邮箱,我们会尽快处理。
  • 1. 您举报的内容以及侵犯了您什么权益?(请在邮件中列出您举报的内容、链接地址,并给出简短的说明)
  • 2. 您是谁?(身份证明材料,可以是身份证或护照等证件)
我们认为知名企业应该坦然接受公众讨论,对于答案中不准确的部分,我们欢迎您以正式或非正式身份在根叔知了上进行澄清。

对根叔社区有害的内容

×

垃圾广告信息
色情、暴力、血腥等违反法律法规的内容
政治敏感
不规范转载 >
辱骂、歧视、挑衅等(不友善)
骚扰我
诱导投票

不规范转载

×

举报说明