1、实验拓扑图

VRRP配置实验_ci

2、实验目的

确定配置PC1、PC2访问路由器R1的路径

3、实验配置

3.1 SW1配置

<sw1>display current-configuration  

#

sysname sw1

#

vlan batch 10 20 30 40 50 60 100

#

cluster enable

ntdp enable

ndp enable

#

drop illegal-mac alarm

#

diffserv domain default

#

drop-profile default

#

aaa

authentication-scheme default

authorization-scheme default

accounting-scheme default

domain default

domain default_admin

local-user admin password simple admin

local-user admin service-type http

#

interface Vlanif1

#

interface Vlanif10

ip address 10.1.1.1 255.255.255.0

vrrp vrid 1 virtual-ip 10.1.1.254

vrrp vrid 1 priority 120

vrrp vrid 1 preempt-mode timer delay 20

vrrp vrid 1 track interface GigabitEthernet0/0/2 reduced 30

#

interface Vlanif20

ip address 20.1.1.1 255.255.255.0

vrrp vrid 2 virtual-ip 20.1.1.254

#

interface Vlanif30

ip address 30.1.1.1 255.255.255.0

#

interface MEth0/0/1

#

interface GigabitEthernet0/0/1

port link-type trunk

port trunk allow-pass vlan 2 to 4094

#

interface GigabitEthernet0/0/2

port link-type access

port default vlan 30

#

interface GigabitEthernet0/0/3

#

interface GigabitEthernet0/0/4

#

interface GigabitEthernet0/0/5

#

interface GigabitEthernet0/0/6

#

interface GigabitEthernet0/0/7

#

interface GigabitEthernet0/0/8

#

interface GigabitEthernet0/0/9

#

interface GigabitEthernet0/0/10

#

interface GigabitEthernet0/0/11

#

interface GigabitEthernet0/0/12

#

interface GigabitEthernet0/0/13

#

interface GigabitEthernet0/0/14

#

interface GigabitEthernet0/0/15

#

interface GigabitEthernet0/0/16

#

interface GigabitEthernet0/0/17

#

interface GigabitEthernet0/0/18

#

interface GigabitEthernet0/0/19

#

interface GigabitEthernet0/0/20

#

interface GigabitEthernet0/0/21

#

interface GigabitEthernet0/0/22

#

interface GigabitEthernet0/0/23

#

interface GigabitEthernet0/0/24

#

interface NULL0

#

ospf 100

import-route direct

area 0.0.0.0

 network 30.1.1.0 0.0.0.255

#

user-interface con 0

user-interface vty 0 4

#

return

<sw1>

3.2 SW4配置

<sw4>display current-configuration  

#

sysname sw4

#

vlan batch 10 20 30 40 50 60 100

#

cluster enable

ntdp enable

ndp enable

#

drop illegal-mac alarm

#

diffserv domain default

#

drop-profile default

#

aaa

authentication-scheme default

authorization-scheme default

accounting-scheme default

domain default

domain default_admin

local-user admin password simple admin

local-user admin service-type http

#

interface Vlanif1

#

interface Vlanif10

ip address 10.1.1.2 255.255.255.0

vrrp vrid 1 virtual-ip 10.1.1.254

#

interface Vlanif20

ip address 20.1.1.2 255.255.255.0

vrrp vrid 2 virtual-ip 20.1.1.254

vrrp vrid 2 priority 120

vrrp vrid 2 preempt-mode timer delay 20

vrrp vrid 2 track interface GigabitEthernet0/0/2 reduced 30

#

interface Vlanif40

ip address 40.1.1.1 255.255.255.0

#

interface MEth0/0/1

#

interface GigabitEthernet0/0/1

port link-type trunk

port trunk allow-pass vlan 2 to 4094

#

interface GigabitEthernet0/0/2

port link-type access

port default vlan 40

#

interface GigabitEthernet0/0/3

#

interface GigabitEthernet0/0/4

#

interface GigabitEthernet0/0/5

#

interface GigabitEthernet0/0/6

#

interface GigabitEthernet0/0/7

#

interface GigabitEthernet0/0/8

#

interface GigabitEthernet0/0/9

#

interface GigabitEthernet0/0/10

#

interface GigabitEthernet0/0/11

#

interface GigabitEthernet0/0/12

#

interface GigabitEthernet0/0/13

#

interface GigabitEthernet0/0/14

#

interface GigabitEthernet0/0/15

#

interface GigabitEthernet0/0/16

#

interface GigabitEthernet0/0/17

#

interface GigabitEthernet0/0/18

#

interface GigabitEthernet0/0/19

#

interface GigabitEthernet0/0/20

#

interface GigabitEthernet0/0/21

#

interface GigabitEthernet0/0/22

#

interface GigabitEthernet0/0/23

#

interface GigabitEthernet0/0/24

#

interface NULL0

#

ospf 100

import-route direct

area 0.0.0.0

 network 40.1.1.0 0.0.0.255

#

user-interface con 0

user-interface vty 0 4

#

return

<sw4>

3.3 R1配置

<r1>display current-configuration  

[V200R003C00]

#

sysname r1

#

board add 0/4 4GET  

#

snmp-agent local-engineid 800007DB03000000000000

snmp-agent  

#

clock timezone China-Standard-Time minus 08:00:00

#

portal local-server load portalpage.zip

#

drop illegal-mac alarm

#

set cpu-usage threshold 80 restore 75

#

aaa  

authentication-scheme default

authorization-scheme default

accounting-scheme default

domain default  

domain default_admin  

local-user admin password cipher %$%$K8m.Nt84DZ}e#<0`8bmE3Uw}%$%$

local-user admin service-type http

#

firewall zone Local

priority 15

#

interface GigabitEthernet0/0/0

ip address 30.1.1.2 255.255.255.0  

#

interface GigabitEthernet0/0/1

#

interface GigabitEthernet0/0/2

#

interface GigabitEthernet4/0/0

ip address 40.1.1.2 255.255.255.0  

#

interface GigabitEthernet4/0/1

#

interface GigabitEthernet4/0/2

#

interface GigabitEthernet4/0/3

#

interface NULL0

#

interface LoopBack0

ip address 1.1.1.1 255.255.255.255  

#

ospf 100 router-id 1.1.1.1  

area 0.0.0.0  

 network 1.1.1.1 0.0.0.0  

 network 30.1.1.0 0.0.0.255  

 network 40.1.1.0 0.0.0.255  

#

user-interface con 0

authentication-mode password

user-interface vty 0 4

user-interface vty 16 20

#

wlan ac

#

return

<r1>

3.4 SW5配置

<sw5>display current-configuration  

#

sysname sw5

#

vlan batch 10 20 30 40 50 60 100

#

cluster enable

ntdp enable

ndp enable

#

drop illegal-mac alarm

#

diffserv domain default

#

drop-profile default

#

aaa

authentication-scheme default

authorization-scheme default

accounting-scheme default

domain default

domain default_admin

local-user admin password simple admin

local-user admin service-type http

#

interface Vlanif1

#

interface MEth0/0/1

#

interface Ethernet0/0/1

port link-type access

port default vlan 10

#

interface Ethernet0/0/2

port link-type access

port default vlan 20

#

interface Ethernet0/0/3

port link-type trunk

port trunk allow-pass vlan 2 to 4094

#

interface Ethernet0/0/4

port link-type trunk

port trunk allow-pass vlan 2 to 4094

#

interface Ethernet0/0/5

port link-type trunk

port trunk allow-pass vlan 2 to 4094

#

interface Ethernet0/0/6

port link-type trunk

port trunk allow-pass vlan 2 to 4094

#

interface Ethernet0/0/7

#

interface Ethernet0/0/8

#

interface Ethernet0/0/9

#

interface Ethernet0/0/10

#

interface Ethernet0/0/11

#

interface Ethernet0/0/12

#

interface Ethernet0/0/13

#

interface Ethernet0/0/14

#

interface Ethernet0/0/15

#

interface Ethernet0/0/16

#

interface Ethernet0/0/17

#

interface Ethernet0/0/18

#

interface Ethernet0/0/19

#

interface Ethernet0/0/20

#

interface Ethernet0/0/21

#

interface Ethernet0/0/22

#

interface GigabitEthernet0/0/1

#

interface GigabitEthernet0/0/2

#

interface NULL0

#

user-interface con 0

user-interface vty 0 4

#

return

<sw5>

4、vrrp知识

interface Vlanif20 //创建三层接口

ip address 20.1.1.2 255.255.255.0 //配置vlanif接口地址

vrrp vrid 2 virtual-ip 20.1.1.254 //配置虚拟组2的默认网关

vrrp vrid 2 priority 120 //配置虚拟组2的优先级

vrrp vrid 2 preempt-mode timer delay 20 //配置虚拟组2的拿回主位置的间隔

vrrp vrid 2 track interface GigabitEthernet0/0/2 reduced 30//配置监视G0/0/2接口,接口挂了优先级减少30(120-30=90<100,需要改变路径)