本案例采用ENSP来模拟华为路由器OSPF区域明文认证,通过区域认证确保路由器之间互联的合法性,保障网络互联的安全。
1、按照网络拓扑图配置IP地址。
2、分别配置R1与R2的OSPF,并配置区域明文认证。
R1:
<Huawei>u t m
Info: Current terminal monitor is off.
<Huawei>u t d
Info: Current terminal debugging is off.
<Huawei>sys
Enter system view, return user view with Ctrl+Z.
[Huawei]sysname R1
[R1]int gi 0/0/1
[R1-GigabitEthernet0/0/1]ip address 192.168.1.1 24
[R1-GigabitEthernet0/0/1]quit
[R1]int gi 0/0/0
[R1-GigabitEthernet0/0/0]ip address 10.0.0.1 30
[R1-GigabitEthernet0/0/0]quit
[R1]ospf 1
[R1-ospf-1]area 0.0.0.0
[R1-ospf-1-area-0.0.0.0]authentication-mode simple plain Aa123456
//在区域area 0.0.0.0中配置认证模式为明文认证,密钥为weijianing
[R1-ospf-1-area-0.0.0.0]network 10.0.0.0 0.0.0.3
[R1-ospf-1-area-0.0.0.0]network 192.168.1.0 0.0.0.255
[R1-ospf-1-area-0.0.0.0]quit
[R1-ospf-1]quit
R2;
<Huawei>u t m
Info: Current terminal monitor is off.
<Huawei>u t d
Info: Current terminal debugging is off.
<Huawei>sys
Enter system view, return user view with Ctrl+Z.
[Huawei]sysname R2
[R2]int gi 0/0/1
[R2-GigabitEthernet0/0/1]ip address 192.168.2.1 24
[R2-GigabitEthernet0/0/1]quit
[R2]int gi 0/0/0
[R2-GigabitEthernet0/0/0]ip address 10.0.0.2 30
[R2-GigabitEthernet0/0/0]quit
[R2]ospf 1
[R2-ospf-1]area 0.0.0.0
[R2-ospf-1-area-0.0.0.0]authentication-mode simple plain Aa123456
[R2-ospf-1-area-0.0.0.0]network 10.0.0.0 0.0.0.3
[R2-ospf-1-area-0.0.0.0]network 192.168.2.0 0.0.0.255
[R2-ospf-1-area-0.0.0.0]quit
[R2-ospf-1]quit
检查R1与R2已经建立了OSPF邻居关系:
检查R1与R2已经学习到对端的业务路由:
终端分别填写IP地址,且能相互PING通:
至此,华为路由器OSPF区域明文认证典型组网配置案例已完成!
该案例暂时没有网友评论
✖
案例意见反馈
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作