拓扑图大概是这样 右边是我们的msr路由器 上联通过ospf打通。ebgp 非物理连接 bgp对等体建立不成功 还有怎么查看bgp状态 。两边都已经学习到对端的业务路由了 。下边是配置
配置详情:dis ip routing-table vpn-instance rt
Route Flags: R - relay, D - download to fib
------------------------------------------------------------------------------
Routing Tables: rt
Destinations : 5 Routes : 5
Destination/Mask Proto Pre Cost Flags NextHop Interface
172.16.10.0/24 EBGP 255 0 RD 2.2.2.2 GigabitEthernet0/0/0
192.168.10.0/24 Direct 0 0 D 192.168.10.1 GigabitEthernet0/0/1.10
192.168.10.1/32 Direct 0 0 D 127.0.0.1 GigabitEthernet0/0/1.10
192.168.10.255/32 Direct 0 0 D 127.0.0.1 GigabitEthernet0/0/1.10
255.255.255.255/32 Direct 0 0 D 127.0.0.1 InLoopBack0
[Huawei]
[Huawei]
[Huawei]
[Huawei]
[Huawei]
[Huawei]dis cu
[Huawei]dis current-configuration
[V200R010C10SPC700]
#
board add 0/1 4ES2G-S
board add 0/2 4ES2G-S
#
drop illegal-mac alarm
#
authentication-profile name default_authen_profile
authentication-profile name dot1x_authen_profile
authentication-profile name mac_authen_profile
authentication-profile name portal_authen_profile
authentication-profile name dot1xmac_authen_profile
authentication-profile name multi_authen_profile
#
ecc peer-public-key 127.0.0.1 encoding-type der
public-key-code begin
040D0D35 E0EBC1BC 0BEC3835 2B6D1BCE 801A6BC4 DC013CE6 63942CEB 0D54143B
C8FF1AF1 261AD6B4 87E67F60 41B27993 714EDFD1 979F2BB2 FD39CE9E 5080885E
23
public-key-code end
peer-public-key end
#
ip vpn-instance nrt
ipv4-family
route-distinguisher 6411:2
vpn-target 20000:2 export-extcommunity
vpn-target 20000:2 import-extcommunity
#
ip vpn-instance rt
ipv4-family
route-distinguisher 6411:1
vpn-target 2000:1 export-extcommunity
vpn-target 2000:1 import-extcommunity
#
radius-server template default
#
mpls lsr-id 1.1.1.1
mpls
#
mpls ldp
#
#
pki realm default
#
ike proposal default
encryption-algorithm aes-256
dh group14
authentication-algorithm sha2-256
authentication-method pre-share
integrity-algorithm hmac-sha2-256
prf hmac-sha2-256
#
free-rule-template name default_free_rule
#
portal-access-profile name portal_access_profile
#
aaa
authentication-scheme default
authentication-scheme radius
authentication-mode radius
authorization-scheme default
accounting-scheme default
domain default
authentication-scheme default
domain default_admin
authentication-scheme default
local-user admin password irreversible-cipher $1a$SH*9OLO,!W$x{C;:PNOt9v,t\66Mt`VHJ/=GXu*_N;XL<+80i<-$
local-user admin privilege level 15
local-user admin service-type telnet ssh
local-user huawei password irreversible-cipher $1a$.h*3XRcsO5$zI\h'oy>)5a1&y)R!sSJCHDe6`mCeY\%|Z=~`I'Q$
local-user huawei privilege level 15
local-user huawei service-type http
#
firewall zone Local
#
interface GigabitEthernet0/0/0
ip address 10.10.10.1 255.255.255.252
mpls
mpls ldp
#
interface GigabitEthernet0/0/1
#
interface GigabitEthernet0/0/1.10
dot1q termination vid 10
ip binding vpn-instance rt
ip address 192.168.10.1 255.255.255.0
#
interface GigabitEthernet0/0/1.20
dot1q termination vid 20
ip binding vpn-instance nrt
ip address 192.168.100.1 255.255.255.0
#
interface GigabitEthernet0/0/2
#
interface GigabitEthernet0/0/3
description VirtualPort
shutdown
#
interface GigabitEthernet1/0/0
#
interface GigabitEthernet1/0/1
#
interface GigabitEthernet1/0/2
#
interface GigabitEthernet1/0/3
#
interface GigabitEthernet2/0/0
#
interface GigabitEthernet2/0/1
#
interface GigabitEthernet2/0/2
#
interface GigabitEthernet2/0/3
#
interface Cellular0/0/0
link-protocol ppp
ppp ipcp dns admit-any
ppp ipcp dns request
#
interface Cellular0/0/1
link-protocol ppp
ppp ipcp dns admit-any
ppp ipcp dns request
#
interface NULL0
#
interface LoopBack1
ip address 1.1.1.1 255.255.255.255
#
bgp 100
peer 2.2.2.2 as-number 200
peer 2.2.2.2 ebgp-max-hop 10
peer 2.2.2.2 connect-interface LoopBack1
#
ipv4-family unicast
undo synchronization
peer 2.2.2.2 enable
#
ipv4-family vpnv4
policy vpn-target
peer 2.2.2.2 enable
#
ipv4-family vpn-instance nrt
import-route direct
peer 2.2.2.2 as-number 200
#
ipv4-family vpn-instance rt
import-route direct
peer 2.2.2.2 as-number 200
#
ospf 1 router-id 1.1.1.1
area 0.0.0.0
network 1.1.1.1 0.0.0.0
network 10.10.10.0 0.0.0.3
#
snmp-agent local-engineid 800007DB0330D17EB0BF1D
snmp-agent sys-info version all
snmp-agent trap enable feature-name MPLS_LSPM trap-name hwMplsLspThresholdExceed
snmp-agent trap enable feature-name MPLS_LSPM trap-name hwMplsLspThresholdExceedClear
snmp-agent trap enable feature-name MPLS_LSPM trap-name hwMplsLspTotalCountExceed
snmp-agent trap enable feature-name MPLS_LSPM trap-name hwMplsLspTotalCountExceedClear
snmp-agent
#
ssh client 127.0.0.1 assign ecc-key 127.0.0.1
ssh server compatible-ssh1x enable
ssh client first-time enable
stelnet server enable
telnet server enable
telnet ipv6 server enable
#
http timeout 3
http server enable
http secure-server enable
#
fib regularly-refresh disable
#
user-interface con 0
authentication-mode password
set authentication password cipher %^%#`>pf3;y!I0A*xs~*t\87}3Yo%H*VcM$s<,OYW/"*`/p<~OV3/B4ZOdGU3xk5%^%#
user-interface vty 0 4
authentication-mode aaa
#
wlan ac
traffic-profile name default
security-profile name default
security-profile name default-wds
security wpa2 psk pass-phrase %^%#=o/I5[q"jP'$=w;HAq=I{'Iv=wMOyX:@\o!!8;%X%^%# aes
ssid-profile name default
vap-profile name default
wds-profile name default
regulatory-domain-profile name default
air-scan-profile name default
rrm-profile name default
radio-2g-profile name default
radio-5g-profile name default
wids-spoof-profile name default
wids-profile name default
ap-system-profile name default
port-link-profile name default
wired-port-profile name default
ap-group name default
#
dot1x-access-profile name dot1x_access_profile
#
mac-access-profile name mac_access_profile
#
voice
#
diagnose
#
ops
#
autostart
#
secelog
#
return
[Huawei]
[Huawei]
[Huawei]
[Huawei]
[Huawei]
[Huawei]dis ospf pe
[Huawei]dis ospf peer
OSPF Process 1 with Router ID 1.1.1.1
Neighbors
Area 0.0.0.0 interface 10.10.10.1(GigabitEthernet0/0/0)'s neighbors
Router ID: 2.2.2.2 Address: 10.10.10.2
State: Full Mode:Nbr is Master Priority: 1
DR: 10.10.10.2 BDR: 10.10.10.1 MTU: 0
Dead timer due in 37 sec
Retrans timer interval: 5
Neighbor is up for 00:29:37
Authentication Sequence: [ 0 ]
[Huawei]dis bgp pe
[Huawei]dis bgp peer
Status codes: * - Dynamic
BGP local router ID : 10.10.10.1
Local AS number : 100
Total number of peers : 1 Peers in established state : 0
Total number of dynamic peers : 0
Peer V AS MsgRcvd MsgSent OutQ Up/Down State PrefRcv
2.2.2.2 4 200 40 2197 0 00:29:38 No neg 0
[H3C]dis current-configuration
#
version 7.1.064, Release 0605P18
#
sysname H3C
#
ip vpn-instance nrt
route-distinguisher 6411:2
vpn-target 20000:2 import-extcommunity
vpn-target 20000:2 export-extcommunity
#
ip vpn-instance rt
route-distinguisher 6411:1
vpn-target 2000:1 import-extcommunity
vpn-target 2000:1 export-extcommunity
#
telnet server enable
#
ospf 1 router-id 2.2.2.2
area 0.0.0.0
network 2.2.2.2 0.0.0.0
network 10.10.10.0 0.0.0.3
#
mpls lsr-id 2.2.2.2
#
dhcp enable
dhcp server always-broadcast
#
dns proxy enable
#
password-recovery enable
#
vlan 1
#
dhcp server ip-pool lan1
gateway-list 192.168.0.1
network 192.168.0.0 mask 255.255.254.0
address range 192.168.1.2 192.168.1.254
dns-list 192.168.0.1
#
mpls ldp
#
controller Cellular0/0
#
interface Serial1/0
#
interface Serial1/1
#
interface Serial3/0
#
interface Serial5/0
#
interface Serial5/1
#
interface Serial5/2
#
interface Serial5/3
#
interface Serial5/4
#
interface Serial5/5
#
interface Serial5/6
#
interface Serial5/7
#
interface NULL0
#
interface LoopBack1
ip address 2.2.2.2 255.255.255.255
#
interface Vlan-interface1
ip address 10.10.1.1 255.255.255.0
#
interface Ethernet2/0
port link-mode bridge
#
interface Ethernet2/1
port link-mode bridge
#
interface Ethernet2/2
port link-mode bridge
#
interface Ethernet2/3
port link-mode bridge
#
interface Ethernet4/0
port link-mode bridge
#
interface Ethernet4/1
port link-mode bridge
#
interface Ethernet4/2
port link-mode bridge
#
interface Ethernet4/3
port link-mode bridge
#
interface GigabitEthernet0/0
port link-mode route
combo enable copper
ip address 192.168.0.1 255.255.254.0
tcp mss 1280
#
interface GigabitEthernet0/1
port link-mode route
combo enable copper
#
interface GigabitEthernet0/1.1
ip binding vpn-instance rt
ip address 172.16.10.1 255.255.255.0
vlan-type dot1q vid 10
#
interface GigabitEthernet0/1.2
ip binding vpn-instance nrt
ip address 172.16.100.1 255.255.255.0
vlan-type dot1q vid 20
#
interface GigabitEthernet0/1.10
#
interface GigabitEthernet0/2
port link-mode route
combo enable copper
#
interface GigabitEthernet0/3
port link-mode route
combo enable copper
#
interface GigabitEthernet0/4
port link-mode route
#
interface GigabitEthernet0/5
port link-mode route
#
interface GigabitEthernet6/0
port link-mode route
ip address 10.10.10.2 255.255.255.252
mpls enable
#
interface GigabitEthernet6/1
port link-mode route
#
interface GigabitEthernet6/1.10
#
interface GigabitEthernet6/2
port link-mode route
#
interface GigabitEthernet6/3
port link-mode route
#
bgp 200
peer 1.1.1.1 as-number 100
peer 1.1.1.1 connect-interface LoopBack1
peer 1.1.1.1 ebgp-max-hop 10
#
address-family vpnv4
peer 1.1.1.1 enable
#
ip vpn-instance nrt
#
address-family ipv4 unicast
import-route direct
#
ip vpn-instance rt
#
address-family ipv4 unicast
import-route direct
#
scheduler logfile size 16
#
line class console
user-role network-admin
#
line class tty
user-role network-operator
#
line class vty
user-role network-operator
#
line con 0
user-role network-admin
#
line vty 0 63
authentication-mode scheme
user-role network-operator
#
domain system
#
domain default enable system
#
role name level-0
description Predefined level-0 role
#
role name level-1
description Predefined level-1 role
#
role name level-2
description Predefined level-2 role
#
role name level-3
description Predefined level-3 role
#
role name level-4
description Predefined level-4 role
#
role name level-5
description Predefined level-5 role
#
role name level-6
description Predefined level-6 role
#
role name level-7
description Predefined level-7 role
#
role name level-8
description Predefined level-8 role
#
role name level-9
description Predefined level-9 role
#
role name level-10
description Predefined level-10 role
#
role name level-11
description Predefined level-11 role
#
role name level-12
description Predefined level-12 role
#
role name level-13
description Predefined level-13 role
#
role name level-14
description Predefined level-14 role
#
user-group system
#
local-user admin class manage
password hash $h$6$8nXpvGwPMG8jOgpA$2JBQH5/cOFGK38d97qAkOAKgI1/DjiQWQyMzBAarI34ipBhv0gucKSPql5CA0Q1Bap4eflfQVs+k1Vmtv5N9Cw==
service-type ssh telnet http
authorization-attribute user-role network-admin
#
ip http enable
#
wlan global-configuration
control-address disable
#
wlan ap-group default-group
#
return
[H3C] dis ip rout
[H3C]dis ip routing-table v
[H3C]dis ip routing-table verbose
[H3C]dis ip routing-table vpn-instance rt
Destinations : 13 Routes : 13
Destination/Mask Proto Pre Cost NextHop Interface
0.0.0.0/32 Direct 0 0 127.0.0.1 InLoop0
127.0.0.0/8 Direct 0 0 127.0.0.1 InLoop0
127.0.0.0/32 Direct 0 0 127.0.0.1 InLoop0
127.0.0.1/32 Direct 0 0 127.0.0.1 InLoop0
127.255.255.255/32 Direct 0 0 127.0.0.1 InLoop0
172.16.10.0/24 Direct 0 0 172.16.10.1 GE0/1.1
172.16.10.0/32 Direct 0 0 172.16.10.1 GE0/1.1
172.16.10.1/32 Direct 0 0 127.0.0.1 InLoop0
172.16.10.255/32 Direct 0 0 172.16.10.1 GE0/1.1
192.168.10.0/24 BGP 255 0 1.1.1.1 GE6/0
224.0.0.0/4 Direct 0 0 0.0.0.0 NULL0
224.0.0.0/24 Direct 0 0 0.0.0.0 NULL0
255.255.255.255/32 Direct 0 0 127.0.0.1 InLoop0
[H3C]
请大佬指点
(0)
1.1.6 bestroute as-path-neglect
1.1.8 bestroute med-confederation
1.1.10 compare-different-as-med
1.1.11 bgp update-delay on-startup
1.1.13 confederation nonstandard
1.1.16 default local-preference
1.1.19 display bgp dampening parameter ipv4 unicast
1.1.20 display bgp group ipv4 unicast
1.1.22 display bgp non-stop-routing status
1.1.24 display bgp peer ipv4 unicast
1.1.25 display bgp routing-table dampened ipv4 unicast
1.1.26 display bgp routing-table flap-info ipv4 unicast
1.1.27 display bgp routing-table ipv4 unicast
1.1.28 display bgp routing-table ipv4 unicast advertise-info
1.1.29 display bgp routing-table ipv4 unicast as-path-acl
1.1.30 display bgp routing-table ipv4 unicast community-list
1.1.31 display bgp routing-table ipv4 unicast peer
1.1.32 display bgp routing-table ipv4 unicast statistics
1.1.33 display bgp update-group ipv4 unicast
1.1.34 ebgp-interface-sensitive
1.1.35 fast-reroute route-policy
1.1.39 graceful-restart timer purge-time
1.1.40 graceful-restart timer restart
1.1.41 graceful-restart timer wait-for-rib
1.1.45 ip vpn-instance (BGP view)
1.1.50 peer advertise-community
1.1.51 peer advertise-ext-community
1.1.53 peer as-number (for a BGP peer group)
1.1.54 peer as-number (for a BGP peer)
1.1.57 peer capability-advertise conventional
1.1.58 peer capability-advertise route-refresh
1.1.59 peer capability-advertise suppress-4-byte-as
1.1.61 peer default-route-advertise
1.1.69 peer ignore-originatorid
1.1.80 peer route-update-interval
1.1.85 reflect between-clients
1.1.87 refresh bgp ipv4 unicast
1.1.89 reset bgp dampening ipv4 unicast
1.1.90 reset bgp flap-info ipv4 unicast
1.1.94 router-id (BGP-VPN view)
1.1.95 snmp-agent trap enable bgp
(0)
暂无评论
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论