1、实验拓扑图

VRF配置实例_ci

2、实验目的

通过VRF实现管理和生产之间的隔离

3、实验配置

R1:

<r1>display current-configuration  

[V200R003C00]

#

sysname r1

#

snmp-agent local-engineid 800007DB03000000000000

snmp-agent  

#

clock timezone China-Standard-Time minus 08:00:00

#

portal local-server load portalpage.zip

#

drop illegal-mac alarm

#

set cpu-usage threshold 80 restore 75

#

ip vpn-instance VPNA

ipv4-family

#

ip vpn-instance VPNB

ipv4-family

#

aaa  

authentication-scheme default

authorization-scheme default

accounting-scheme default

domain default  

domain default_admin  

local-user admin password cipher %$%$K8m.Nt84DZ}e#<0`8bmE3Uw}%$%$

local-user admin service-type http

#

firewall zone Local

priority 15

#

interface GigabitEthernet0/0/0

#

interface GigabitEthernet0/0/0.10

dot1q termination vid 10

ip binding vpn-instance VPNA

ip address 10.1.1.1 255.255.255.0  

arp broadcast enable

#

interface GigabitEthernet0/0/0.20

dot1q termination vid 20

ip binding vpn-instance VPNB

ip address 20.1.1.1 255.255.255.0  

arp broadcast enable

#

interface GigabitEthernet0/0/1

ip binding vpn-instance VPNA

ip address 30.1.1.1 255.255.255.0  

#

interface GigabitEthernet0/0/2

ip binding vpn-instance VPNB

ip address 50.1.1.1 255.255.255.0  

#

interface NULL0

#

ospf 100 vpn-instance VPNA

area 0.0.0.0  

 network 10.1.1.0 0.0.0.255  

 network 30.1.1.0 0.0.0.255  

#

ip route-static vpn-instance VPNB 60.1.1.0 255.255.255.0 50.1.1.2

#

user-interface con 0

authentication-mode password

user-interface vty 0 4

user-interface vty 16 20

#

wlan ac

#

return

<r1>

4、实验结果

VRF配置实例_ci_02