欢迎来到天天文库
浏览记录
ID:52519198
大小:601.25 KB
页数:30页
时间:2020-03-28
《MPLS_VPN高级部署和设计.pdf》由会员上传分享,免费在线阅读,更多相关内容在教育资源-天天文库。
1、MPLS-VPN的高级部署RST-3109©2005CiscoSystems,Inc.Allrightsreserved.CiscoConfidential1MPLSVPNServices:1.负载均衡VPN(CE到两个PE之间)RRPE11CE2PE2CE1171.68.2.0/24PE12SiteASiteBMPLSBackboneRouteAdvertisement•VPN(suchasSiteA)会multihomed((连接多个(连接多个PE,可靠连接)•客户要求流量负载均衡,loadsharedCiscoConfidentialIII-2RST-3109©2005Cis
2、coSystems,Inc.Allrightsreserved.MPLSVPNServices:1.负载均衡:部署1.配置uniqueRDperVRFperPE2.在接收PE上上上,上,,,打开打开BGPmultipath(((BGPVRFaddress-family)))ipvrfgreen1rd300:112routerbgp1route-targetboth1:1RRaddress-familyipv4vrfgreenmaximum-pathseibgp2PE11CE2PE2CE1171.68.2.0/24PE12SiteAMPLSBackboneSiteB1ipvrfgre
3、enipvrfgreenrd300:12rd300:13route-targetboth1:11route-targetboth1:1CiscoConfidentialIII-3RST-3109©2005CiscoSystems,Inc.Allrightsreserved.MPLSVPNServices:1.负载均衡VPN(PE到两个PE之间)RRPE11CE2PE2CE1171.68.2.0/24PEPE12SiteASiteBMPLSBackboneRouteAdvertisement•PE双上联到骨干的其他PE•思科的PE设备缺省可以支持‘基于标记交换的负载均衡’。Cisco
4、ConfidentialIII-4RST-3109©2005CiscoSystems,Inc.Allrightsreserved.HSRP的MPLSVPN冗余配置•参考HSRP的配置样本CiscoConfidentialIII-5RST-3109©2005CiscoSystems,Inc.Allrightsreserved.MPLS-VPNServices:2.HubandSpoke业务方式•尽管MPLSVPN’s的常用连接方式是any-to-any,i.e,full-mesh的方式,HubandSpoke的业务方式也很容易实现通过控制import和和和exportRT值值值来实现
5、CiscoConfidentialIII-6RST-3109©2005CiscoSystems,Inc.Allrightsreserved.MPLS-VPNServices:2.HubandSpoke:配置routerbgpipvrfgreen-spoke1address-familyipv4vrfHUB-OUTdescriptionVRFforSPOKEAneighboras-overriderd300:111route-targetexport1:1ipvrfHUB-OUTroute-targetimport2:2descriptionVRFfortraffi
6、cfromHUBSpokeAPE-SArd300:11CE-SAroute-targetimport1:1171.68.1.0/24Eth0/0.1PE-HubEth0/0.2SpokeBPE-SBCE-SBMPLSVPNBackbone171.68.2.0/24ipvrfHUB-INipvrfgreen-spoke2descriptionVRFfortraffictoHUBdescriptionVRFforSPOKEBrd300:12rd300:112route-targetexport2:2route-targetexport1:1route-targetimport2:2ro
7、uterbgpaddress-familyipv4vrfHUB-INneighborallowas-in2CiscoConfidentialIII-7RST-3109©2005CiscoSystems,Inc.Allrightsreserved.MPLS-VPNServices:2.HubandSpoke:配置•BGP的邻接只需要spoke和HUB之间建立就可以,•在PE设备上需要配置as-override和allowas-inBGP属性以防止路由的
此文档下载收益归作者所有