?
一、實驗拓撲圖
二、配置
1.
R5為ISP,只能進行IP地址配置,其所有地址均配為公有IP地址
R1側為15.1.1.1,對應R5為15.1.1.2
R2側為25.1.1.2,對應R5為25.1.1.1
R3側為35.1.1.2,對應R5為35.1.1.1
R4側為45.1.1.2,對應R5為45.1.1.1
另一端:
R1 側為 192.168.1.1,PC1 為 192.168.1.2
R2 側為 192.168.2.1,PC3 為 192.168.2.2
R3 側為 192.168.3.1,PC4 為 192.168.3.2
R4 側為 192.168.4.1,PC2 為 192.168.4.2
2.
R1和R5間使用PPP的PAP認證,R5為主認證方;
R2與R5之間使用ppp的CHAP認證,R5為主認證方;
R3與R5之間使用HDLC封裝;
R1-R5
[R5]aaa[R5-aaa]local-user aaa password cipher aaa123[R5-aaa]local-user aaa service-type ppp[R5]int Serial 2/0/0 [R5-Serial2/0/0]ppp authentication-mode pap
[R1]interface Serial 2/0/0[R1-Serial2/0/0]ppp pap local-user aaa password cipher aaa123[R1-Serial2/0/0]ppp authentication-mode pap[R1-Serial2/0/0]undo shutdown
R2-R5
[R5]aaa[R5-aaa]local-user bbb password cipher bbb123[R5-aaa]local-user bbb service-type ppp[R5]int Serial 2/0/1 [R5-Serial2/0/1]ppp authentication-mode chap
[R2]interface Serial 2/0/1[R2-Serial2/0/1]ppp pap local-user bbb password cipher bbb123[R2-Serial2/0/1]ppp authentication-mode chap[R2-Serial2/0/1]undo shutdown
R3-R5
[R5]aaa[R5-aaa]local-user ccc password cipher ccc123[R5-aaa]local-user ccc service-type ppp[R5]int Serial 1/0/0 [R5-Serial1/0/0]ppp authentication-mode chap[R5-Serial1/0/0]link-protocol hdlc
[R3]interface Serial 1/0/0[R3-Serial1/0/0]ppp pap local-user ccc password cipher ccc123[R3-Serial1/0/0]ppp authentication-mode chap[R3-Serial1/0/0]undo shutdown
3.
R1、R2、R3構建一個MGRE環境,R1為中心站點,R1、R4間為點到點的GRE
[R1]int Tunnel 0/0/1[R1-Tunnel0/0/1]ip add 192.168.6.1 24[R1-Tunnel0/0/1]tunnel-protocol gre p2mp[R1-Tunnel0/0/1]source 15.1.1.1[R1-Tunnel0/0/1]nhrp network-id 100
[R2]int Tunnel 0/0/1[R2-Tunnel0/0/1]ip add 192.168.6.2 24[R2-Tunnel0/0/1]tunnel-protocol gre p2mp[R2-Tunnel0/0/1]source 25.1.1.2[R2-Tunnel0/0/1]q[R2]int Tunnel 0/0/1[R2-Tunnel0/0/1]nhrp network-id 100[R2-Tunnel0/0/1]nhrp entry 192.168.6.1 15.1.1.1 register
[R3]int Tunnel 0/0/1[R3-Tunnel0/0/1]ip add 192.168.6.3 24[R3-Tunnel0/0/1]tunnel-protocol gre p2mp[R3-Tunnel0/0/1]source 35.1.1.2[R3-Tunnel0/0/1]q[R3]int Tunnel 0/0/1[R3-Tunnel0/0/1]nhrp network-id 100[R3-Tunnel0/0/1]nhrp entry 192.168.6.1 15.1.1.1 register
?
?4.
整個私有網絡基本RIP全網可達
R1:ip route-static 0.0.0.0 0 15.1.1.2
R2:ip route-static 0.0.0.0 0 25.1.1.1
R3:ip route-static 0.0.0.0 0 35.1.1.1
R4:ip route-static 0.0.0.0 0 45.1.1.1
(互相ping通即可)