拓扑图

VRRP负载分担_IP

配置

1)部署VRRP实现VLAN流量负载分担

S1负责VLAN10的转发,S2负责VLAN20的转发

VRRP选举主备:

优先级值越高越优先(默认优先级值100)注意优先级为0(不参与VRRP)或255(Virtual-IP为设备接口IP地址)

优先级相同,接口主IP地址越大越优先

Master设备发送VRRP通告报文,默认时间间隔1s,3s未收到通告报文,主备切换

Master设备发送免费ARP报文,MAC地址为虚拟MAC地址0000-005e-01VRID,时间间隔20s

sysname SW1
#
vlan batch 10 to 11 20
#
interface Vlanif10
 ip address 10.1.1.254 255.255.255.0
 vrrp vrid 10 virtual-ip 10.1.1.1
 vrrp vrid 10 priority 120
#
interface Vlanif11
 ip address 10.1.11.2 255.255.255.0
#
interface Vlanif20
 ip address 10.1.2.254 255.255.255.0
 vrrp vrid 20 virtual-ip 10.1.2.1
#
interface GigabitEthernet0/0/1
 port link-type trunk
 port trunk pvid vlan 11
 port trunk allow-pass vlan 2 to 4094
#
interface GigabitEthernet0/0/2
 port link-type trunk
 port trunk allow-pass vlan 2 to 4094
#
ospf 1 router-id 10.1.1.1
 silent-interface Vlanif10
 silent-interface Vlanif20
 area 0.0.0.0
  network 10.1.11.2 0.0.0.0
  network 10.1.1.254 0.0.0.0
  network 10.1.2.254 0.0.0.0
sysname SW2
#
vlan batch 10 12 20
#
interface Vlanif10
 ip address 10.1.1.253 255.255.255.0
 vrrp vrid 10 virtual-ip 10.1.1.1
#
interface Vlanif12
 ip address 10.1.12.2 255.255.255.0
#
interface Vlanif20
 ip address 10.1.2.253 255.255.255.0
 vrrp vrid 20 virtual-ip 10.1.2.1
 vrrp vrid 20 priority 120
#
interface GigabitEthernet0/0/1
 port link-type access
 port default vlan 12
#
interface GigabitEthernet0/0/2
 port link-type trunk
 port trunk allow-pass vlan 2 to 4094
#
ospf 1 router-id 10.1.2.1
 silent-interface Vlanif10
 silent-interface Vlanif20
 area 0.0.0.0
  network 10.1.12.2 0.0.0.0
  network 10.1.1.253 0.0.0.0
  network 10.1.2.253 0.0.0.0
#
sysname SW3
#
vlan batch 10 20
#
interface GigabitEthernet0/0/1
 port link-type trunk
 port trunk allow-pass vlan 2 to 4094
#
interface GigabitEthernet0/0/2
 port link-type trunk
 port trunk allow-pass vlan 2 to 4094
#
interface GigabitEthernet0/0/3
 port link-type access
 port default vlan 10
#
interface GigabitEthernet0/0/4
 port link-type access
 port default vlan 20
#
sysname AR1
#
interface GigabitEthernet0/0/0
 ip address 10.1.11.1 255.255.255.0 
#
interface GigabitEthernet0/0/1
 ip address 10.1.12.1 255.255.255.0 
#
interface LoopBack0
 ip address 10.10.1.1 255.255.255.255 
#
ospf 1 router-id 10.10.1.1 
 area 0.0.0.0 
  network 0.0.0.0 255.255.255.255 
#

VRRP负载分担_优先级_02

VRRP负载分担_时间间隔_03

查看配置结果

VRRP负载分担_优先级_04

VRRP负载分担_IP_05

PC1属于VLAN10,访问AR1走SW1

VRRP负载分担_时间间隔_06

PC2属于VLAN10,访问AR1走SW2

VRRP负载分担_时间间隔_07

2)其中VLAN10的VRRP通告报文需要认证

interface Vlanif10
 vrrp vrid 10 authentication-mode md5 huawei

查看配置结果

VRRP负载分担_优先级_08

VRRP负载分担_优先级_09

拓展: 如果SW1配置了认证,而SW2没有配置认证,SW1和SW2都认为自己是VLAN10的Master,发送免费ARP,SW3上将出现MAC地址漂移

3)对于VLAN10的业务,若S1上行接口故障,自动切换路径通过S2转发,若接口恢复,则在10s后将路径修改为S1转发

抢占默认开启,默认抢占延迟为0

主备切换时,切换后的Master设备发送免费ARP刷新下联交换机的MAC地址表

interface Vlanif10
 vrrp vrid 10 preempt-mode timer delay 10
 vrrp vrid 10 track interface GigabitEthernet0/0/1 reduced 21

删除SW1的G0/0/1连线,查看VRRP,可以看出当前优先级为99,主设备优先级为100,VLAN10的Master设备为SW2

VRRP负载分担_IP_10

VRRP负载分担_优先级_11

VRRP负载分担_时间间隔_12

发送免费ARP刷新下游交换机的MAC-地址表

VRRP负载分担_IP_13

PC1访问AR1已经切换到SW2

VRRP负载分担_优先级_14

4)修改VLAN20的VRRP通告报文的时间间隔为默认的2倍

通告报文的时间间隔默认为1s

interface Vlanif20
 vrrp vrid 20 timer advertise 2