Cisco下的HSRP以及HUAWEI下的VRRP
HSRP:该协议中含有多台路由器,对应一个HSRP组。该组中只有一个路由器承担转发用户流量的职责,这就是活动路由器。当活动路由器失效后,备份路由器将承担该职责,成为新的活动路由器。这就是热备份的原理。我们通过一个小案例说明它的热备份原理。案例拓扑:实验原理:R1作为vlan10用户的的主路由器,即vlan10用户访问inter网时,数据都走r1通过,当r1坏掉时,vlan10用户的数据可以通过r2访问internetR2作为vlan20用户的的主路由器,即vlan20用户访问inter网时,数据都走r2通过,当r2坏掉时,vlan20用户的数据可以通过r1访问internet当然我们还可以在sw1和sw2之间做端口聚合,再做一次备份参考配置:r1# show runBuilding configuration...Current configuration : 1199 bytes!version 12.4!hostname r1!interface FastEthernet0/0ip address 1.1.1.1 255.255.255.0ip nat outside(作为nat的外部端口)ip virtual-reassemblyduplex autospeed auto!interface FastEthernet1/0no ip addressip nat inside(nat的内部端口)ip virtual-reassemblyduplex autospeed auto!interface FastEthernet1/0.10(划分子接口)encapsulation dot1Q 10(封装dot1q)ip address 192.168.10.1 255.255.255.0ip nat insideip virtual-reassemblystandby 10 ip 192.168.10.254standby 10 priority 120(作为vlan10的主路由器)standby 10 preemptstandby 10 track FastEthernet0/0 30(在fa0/0上做端口监听,若出现故障优先级减30)!interface FastEthernet1/0.20(划分子接口)encapsulation dot1Q 20(封装dot1q)ip address 192.168.20.1 255.255.255.0ip nat insideip virtual-reassemblystandby 20 ip 192.168.20.254(r1为vlan20的备份路由器)!ip http serverno ip http secure-server!ip route 0.0.0.0 0.0.0.0 1.1.1.2!ip nat inside source list 1 interface FastEthernet0/0 overload(nat端口复用)!access-list 1 permit any!line con 0exec-timeout 0 0logging synchronousline aux 0line vty 0 4!!Endr2#show runBuilding configuration...Current configuration : 1209 bytes!version 12.4!hostname r2!interface FastEthernet0/0no ip addressip nat inside(nat内部端口)ip virtual-reassemblyshutdownduplex autospeed auto!interface FastEthernet0/0.10(划分子接口)encapsulation dot1Q 10(封装dot1q)ip address 192.168.10.2 255.255.255.0ip nat insideip virtual-reassemblystandby 10 ip 192.168.10.254(r2作为vlan10的备份路由)!interface FastEthernet0/0.20(划分子接口)encapsulation dot1Q 20(封装dot1q)ip address 192.168.20.2 255.255.255.0ip nat insideip virtual-reassemblystandby 20 ip 192.168.20.254standby 20 priority 120(r2作为vlan10的主路由)standby 20 preemptstandby 20 track FastEthernet1/0 30(在fa1/0上监听当路由器出现故障优先级降低30)!interface FastEthernet1/0ip address 2.2.2.1 255.255.255.0ip nat outside(nat外部端口)ip virtual-reassemblyduplex autospeed auto!ip route 0.0.0.0 0.0.0.0 2.2.2.2!ip nat inside source list 1 interface FastEthernet1/0 overload(nat端口复用)!access-list 1 permit any!line con 0exec-timeout 0 0logging synchronousline aux 0line vty 0 4!Endsw1#show runBuilding configuration...Current configuration : 1060 bytes!version 12.4hostname sw1interface FastEthernet0/1switchport mode trunk!interface FastEthernet0/10switchport access vlan 10!interface FastEthernet0/14switchport access vlan 20!interface FastEthernet0/15switchport mode trunk!interface Vlan10no ip address!interface Vlan20no ip addressEndsw2#show runBuilding configuration...Current configuration : 987 bytes!version 12.4hostname sw2interface FastEthernet0/0switchport mode trunk!interface FastEthernet0/10switchport access vlan 10!interface FastEthernet0/14switchport access vlan 20!interface FastEthernet0/15switchport mode trunk!interface Vlan1no ip address!interface Vlan10no ip address!interface Vlan20no ip addressendisp#show runBuilding configuration...Current configuration : 669 bytes!version 12.4hostname isp!interface Loopback1ip address 3.3.3.3 255.255.255.0!interface FastEthernet0/0ip address 1.1.1.2 255.255.255.0duplex autospeed auto!interface FastEthernet10ip address 2.2.2.2 255.255.255.0duplex autospeed auto!line con 0exec-timeout 0 0logging synchronousline aux 0line vty 0 4!EndVRRP:它是一种路由容错协议,也可以叫做备份路由协议。一个局域网络内的所有主机都设置缺省路由,当网内主机发出的目的地址不在本网段时,报文将被通过缺省路由发往外部路由器,从而实现了主机与外部网络的通信。当缺省路由器down掉(即端口关闭)之后,内部主机将无法与外部通信,如果路由器设置了VRRP时,那么这时,虚拟路由将启用备份路由器,从而实现全网通信。 案例拓扑:实验原理:Sw1作为实例10的主路由器,来自vlan10和vlan20的数据以sw1为根选举阻塞端口Sw2作为实例10的主路由器,来自vlan30和vlan40的数据以sw2为根选举阻塞端口若主路由器发生故障,可以使用备份路由器进行数据转发参考配置:Sw1dis cu#sysname Huawei#vlan batch 10 20 30 40#stp instance 10 root primarystp instance 20 root secondary#cluster enablestp region-configurationregion-name Arevision-level 1instance 10 vlan 10 20instance 20 vlan 30 40active region-configuration#interface Vlanif1#interface Vlanif10ip address 192.168.10.1 255.255.255.0vrrp vrid 10 virtual-ip 192.168.10.254vrrp vrid 10 priority 120vrrp vrid 20 virtual-ip 192.168.10.253#interface Vlanif20ip address 192.168.20.1 255.255.255.0vrrp vrid 21 virtual-ip 192.168.20.254vrrp vrid 22 virtual-ip 192.168.20.253vrrp vrid 22 priority 120#interface Vlanif30ip address 192.168.30.1 255.255.255.0vrrp vrid 31 virtual-ip 192.168.30.254vrrp vrid 31 priority 120vrrp vrid 32 virtual-ip 192.168.30.253#interface Vlanif40ip address 192.168.40.1 255.255.255.0vrrp vrid 41 virtual-ip 192.168.40.254vrrp vrid 42 virtual-ip 192.168.40.253vrrp vrid 42 priority 120#interface Ethernet0/0/1port link-type trunkport trunk allow-pass vlan 2 to 4094#interface Ethernet0/0/2port link-type trunkport trunk allow-pass vlan 2 to 4094#dis vrrp brief VRIDStateInterfaceTypeVirtual IP----------------------------------------------------------------10BackupVlanif10Normal192.168.10.253 20MasterVlanif10Normal192.168.10.254 21MasterVlanif20Normal192.168.20.253 22BackupVlanif20Normal192.168.20.254 31BackupVlanif30Normal192.168.30.253 32MasterVlanif30Normal192.168.30.254 41MasterVlanif40Normal192.168.40.253 42BackupVlanif40Normal192.168.40.254 ----------------------------------------------------------------Total:8Master:4Backup:4Non-active:0Sw2dis cu#sysname Huawei#vlan batch 10 20 30 40#stp instance 10 root secondarystp instance 20 root primary#drop illegal-mac alarm#diffserv domain default#stp region-configurationregion-name Arevision-level 1instance 10 vlan 10 20instance 20 vlan 30 40active region-configurationinterface Vlanif1#interface Vlanif10ip address 192.168.10.2 255.255.255.0vrrp vrid 10 virtual-ip 192.168.10.254vrrp vrid 20 virtual-ip 192.168.10.253vrrp vrid 20 priority 120#interface Vlanif20ip address 192.168.20.2 255.255.255.0vrrp vrid 21 virtual-ip 192.168.20.254vrrp vrid 21 priority 120vrrp vrid 22 virtual-ip 192.168.20.253#interface Vlanif30ip address 192.168.30.2 255.255.255.0vrrp vrid 31 virtual-ip 192.168.30.254vrrp vrid 32 virtual-ip 192.168.30.253vrrp vrid 32 priority 120#interface Vlanif40ip address 192.168.40.2 255.255.255.0vrrp vrid 41 virtual-ip 192.168.40.254vrrp vrid 41 priority 120vrrp vrid 42 virtual-ip 192.168.40.253#interface Ethernet0/0/1port link-type trunkport trunk allow-pass vlan 2 to 4094#interface Ethernet0/0/2port link-type trunkport trunk allow-pass vlan 2 to 4094#interface Ethernet0/0/21port link-type trunkport trunk allow-pass vlan 2 to 4094dis vrrp brief VRIDStateInterfaceTypeVirtual IP----------------------------------------------------------------10BackupVlanif10Normal192.168.10.254 20MasterVlanif10Normal192.168.10.253 21MasterVlanif20Normal192.168.20.254 22BackupVlanif20Normal192.168.20.253 31BackupVlanif30Normal192.168.30.254 32MasterVlanif30Normal192.168.30.253 41MasterVlanif40Normal192.168.40.254 42BackupVlanif40Normal192.168.40.253 ----------------------------------------------------------------Total:8Master:4 Backup:4Non-active:0Sw3dis cu#sysname Huawei#vlan batch 10 20 30 40#stp region-configurationregion-name Arevision-level 1instance 10 vlan 10 20instance 20 vlan 30 40active region-configurationinterface Vlanif1#interface MEth0/0/1#interface Ethernet0/0/1port link-type trunkport trunk allow-pass vlan 2 to 4094#interface Ethernet0/0/2port link-type trunkport trunk allow-pass vlan 2 to 4094#returnsw4<Huawei>dis cu#sysname Huawei#vlan batch 10 20 30 40#interface Vlanif1#interface MEth0/0/1#interface Ethernet0/0/1port link-type trunkport trunk allow-pass vlan 2 to 4094#interface Ethernet0/0/2port link-type trunkport trunk allow-pass vlan 2 to 4094#验证信息:Sw2Instance 10dis stp instance 10--------------MSTI Bridge ID:4096.4c1f-ccb1-8c98MSTI RegRoot/IRPC:0.4c1f-cc38-a98d / 1MSTI RootPortId:128.21MSTI Root Type:Secondary rootMaster Bridge:32768.4c1f-cc17-56edCost to Master:1TC received:4TC count per hello:0Time since last TC:0 days 0h:0m:25sNumber of TC:6Last TC occurred:Ethernet0/0/21--------Port Role:Designated PortPort Priority:128Port Cost(Dot1T ):Config=auto / Active=1Designated Bridge/Port:4096.4c1f-ccb1-8c98 / 128.1Port Times:RemHops 19TC or TCN send:5TC or TCN received:0--------Port Role:Designated PortPort Priority:128Port Cost(Dot1T ):Config=auto / Active=1Designated Bridge/Port:4096.4c1f-ccb1-8c98 / 128.2Port Times:RemHops 19TC or TCN send:5TC or TCN received:2--------Port Role:Root PortPort Priority:128Port Cost(Dot1T ):Config=auto / Active=1Designated Bridge/Port:0.4c1f-cc38-a98d / 128.21Port Times:RemHops 20TC or TCN send:2TC or TCN received:2--------Port Role:Alternate PortPort Priority:128Port Cost(Dot1T ):Config=auto / Active=1Designated Bridge/Port:0.4c1f-cc38-a98d / 128.22Port Times:RemHops 20TC or TCN send:0TC or TCN received:0Instance 20dis stp instance 20--------------MSTI Bridge ID:0.4c1f-ccb1-8c98MSTI RegRoot/IRPC:0.4c1f-ccb1-8c98 / 0MSTI RootPortId:0.0MSTI Root Type:Primary rootMaster Bridge:32768.4c1f-cc17-56edCost to Master:1TC received:7TC count per hello:0Time since last TC:0 days 0h:0m:59sNumber of TC:6Last TC occurred:Ethernet0/0/22--------Port Role:Designated PortPort Priority:128Port Cost(Dot1T ):Config=auto / Active=1Designated Bridge/Port:0.4c1f-ccb1-8c98 / 128.1Port Times:RemHops 20TC or TCN send:8TC or TCN received:0--------Port Role:Designated PortPort Priority:128Port Cost(Dot1T ):Config=auto / Active=1Designated Bridge/Port:0.4c1f-ccb1-8c98 / 128.2Port Times:RemHops 20TC or TCN send:9TC or TCN received:3--------Port Role:Designated PortPort Priority:128Port Cost(Dot1T ):Config=auto / Active=1Designated Bridge/Port:0.4c1f-ccb1-8c98 / 128.21Port Times:RemHops 20TC or TCN send:3TC or TCN received:4--------Port Role:Designated PortPort Priority:128Port Cost(Dot1T ):Config=auto / Active=1Designated Bridge/Port:0.4c1f-ccb1-8c98 / 128.22Port Times:RemHops 20TC or TCN send:2TC or TCN received:0
男人与女人,终究也只是欲望的动物吧!真的可以因为爱而结合吗?对不起,我也不知道。。 修养的艺术,其实就是说谎的艺术。 找到好贴不容易,我顶你了,谢了 我不在江湖,但江湖中有我的传说。 男人偷腥时的智商仅次于爱因斯坦! 如果有一双眼睛陪我一同哭泣,就值得我为生命受苦。
页:
[1]