個人理解,6VPE(IPv6*** Provider Edge)是承載IPv6的MPLS***,是在保持原有MPLS BGPv4骨幹不做大變動的情況下,一種IPv6 MPLS ***過渡技術。基本部署步驟如下:PE與CE之間存在IPv6 VRF,建立BGPv6的鄰居關係;PE與RR之間可以建立IPv6的BGP鄰居關係,也可以建立IPv4鄰居關係,同步複製***v4地址族到***v6地址族中,其他配置跟IPv4的MPLS ***沒有什麼大區別。
以下爲實驗室測試環境下部署6VPE案例實戰分析:
環境介紹:
1、R1爲某思科IOX設備、R4爲某華爲設備、R2和R3爲某思科IOS設備;
2、地址分佈:
R1 | g0/1/1/2.10 | 12.1.1.1/30 2001:1::7/127 | R4 | g1/0/5.10 | 34.1.1.2/30 2001:1::2/126 |
g0/1/1/1 | 14.1.1.1/30 | g1/0/7 | 14.1.1.2/30 | ||
Loopback0 | 1.1.1.1/32 | Loopback0 | 4.4.4.4/32 | ||
R2 | g3/0/2.10 | 12.1.1.2/30 2001:1::6/127 | R3 | g2/0/4.10 | 34.1.1.1/30 2001:1::1/126 |
Loopback0 | 2.2.2.2/32 | Loopback0 | 3.3.3.3/32 | ||
Loopback6 | 2010:2::1/128 | Loopback6 | 2010:3::1/128 |
3、拓撲圖
4、R1與R3之間是EBGP互聯,R4與R2之間是EBGP互聯,R1與R4之間的IBGP協議爲ISIS
實戰部署過程呈現:
1、 IPv4的MPLS ***基礎環境部署
關於R2與R3兩臺思科IOS設備部署BGP,可以參考我的其他博客文章,這裏重點列舉下R1與R4之間配置的情況。
(1) R1與R4之間實現ISIS互通
R1:
router isis1000
is-type level-2-only
net 49.0010.0000.0000.0001.00
log adjacency changes
address-family ipv4 unicast
metric-style wide//這個必須metric格式必須爲wide
interface Loopback0
circuit-type level-2-only
address-family ipv4 unicast
interface GigabitEthernet0/1/1/1
circuit-type level-2-only
address-family ipv4 unicast
(接口與ISIS進程綁定,IOX是在ISIS進程下進程下進行的,這一點跟IOS和下面的華爲設備不太一樣)
R4
isis 1000
is-level level-2
cost-style wide
network-entity 49.0010.0000.0000.0004.00
traffic-eng level-2
log-peer-change
###############################################################################
interface LoopBack0
description For Global Routing
ip address 4.4.4.4 255.255.255.255
isis enable 1000
isis circuit-level level-2
interface GigabitEthernet1/0/7
description To-R1-GSR
undo shutdown
ip address 14.1.1.2 255.255.255.252
isis enable 1000
isis circuit-level level-2
(2) R1與R4建立MPLS IBGP
R1#show run |be bgp
router bgp4809
bgp router-id 1.1.1.1
address-family ipv4 unicast
redistribute connected
redistribute static
address-family ***v4 unicast
neighbor 4.4.4.4
remote-as 4809
update-source Loopback0
address-family ***v4 unicast
next-hop-self
(IOX不需要再address-familyipv4地址族下建立鄰居關係,只需要在***v4地址建立鄰居關係即可)
R4
bgp 4809
router-id 4.4.4.4
peer 1.1.1.1 as-number 4809
peer 1.1.1.1 connect-interface LoopBack0
ipv4-familyunicast
undo synchronization
import-route direct
import-route static
peer 1.1.1.1 enable
peer 1.1.1.1 next-hop-local
(這裏也可以修改爲undo peer 1.1.1.1 enable也是可以的)
ipv4-family***v4
policy ***-target
peer 1.1.1.1 enable
peer 1.1.1.1 next-hop-local
(與IOX互聯時,這裏IPv4-family鄰居也可以不需要建立的)
(3)R1與R4建立LDP鄰居關係
R1
mpls ldp
router-id 1.1.1.1
interface GigabitEthernet0/1/1/1
(IOX同樣也是在MPLSLDP進程下將接口也放進來實現LDP與物理接口的綁定)
R4
mpls lsr-id4.4.4.4//華爲設備在全局下啓用MPLS時無法修改lsr-id,只有關閉mpls時纔可以修改)
mpls
mpls ldp//華爲設備在全局下啓用MPLS時,纔可以修改MPLS Ldp
interface GigabitEthernet1/0/7
mpls
mpls ldp
(接口下也是一樣,只有先啓用MPLS時,纔可以啓用MPLS ldp,且只有在全局下啓用MPLS ldp情況下,接口下纔可以生效)
(4)驗證
R2#ping 3.3.3.3
(3) Typeescape sequence to abort.
Sending 5,100-byte ICMP Echos to 3.3.3.3, timeout is 2 seconds:
!!!!!
Success rateis 100 percent (5/5), round-trip min/avg/max = 1/1/1 ms
2、6VPE部署
(1)R1與R4之間MPLS ***v6建立
R1
router bgp4809
bgp router-id 1.1.1.1
address-family ipv4 unicast
redistribute connected
redistribute static
address-family ***v4 unicast
address-family ***v4 unicast
address-family ipv6 unicast
address-family ***v6 unicast
neighbor 4.4.4.4
remote-as 4809
update-source Loopback0
address-family ***v4 unicast
next-hop-self
address-family ***v6 unicast
next-hop-self
(IOX的配置很簡單,即在v4鄰居進程下增加紅色部分即***v6地址族而已)
R4
bgp 4809
router-id 4.4.4.4
peer 1.1.1.1as-number 4809
peer 1.1.1.1 connect-interface LoopBack0
ipv4-family unicast
undo synchronization
peer 1.1.1.1 enable
peer 1.1.1.1 advertise-community
ipv6-family unicast
undo synchronization
peer 1.1.1.1 enable
peer 1.1.1.1 advertise-community
ipv4-family ***v4
policy ***-target
peer 1.1.1.1 enable
peer 1.1.1.1 next-hop-local
ipv6-family ***v6
policy ***-target
peer 1.1.1.1 enable
peer 1.1.1.1 next-hop-local
(華爲的配置也比較簡單,在ipv6地址族和***v6地址族下將ipv4地址族和***v4地址族下配置複製一份粘貼過來即可)
(2)R1與R4之間的ISIS、LDP鄰居都不需要做任何改變
(3)R1與R2之間、R3與R4之間的IPv6 VRF相關配置與IPv4VRF配置大同小異,唯一區別相應的修改下IPv4地址爲IPv6而已,這裏不做累贅。
(4)結果驗證
R2#show bgp ipv6
BGP tableversion is 8, local router ID is 2.2.2.2
Status codes:s suppressed, d damped, h history, * valid, > best, i - internal,
r RIB-failure, S Stale
Origin codes:i - IGP, e - EGP, ? - incomplete
Network Next Hop Metric LocPrf Weight Path
*>2001:1::/126 2001:1::7 0 4809 ?
* 2001:1::6/127 2001:1::7 0 0 4809 ?
*> :: 0 32768 ?
*>2001:2::2/128 :: 0 32768 ?
*>2010:2::1/128 :: 0 32768 i
*>2010:3::1/128 2001:1::7 0 4809 64863 i
R2#ping 2010:3::1
Type escapesequence to abort.
Sending 5,100-byte ICMP Echos to 2010:3::1, timeout is 2 seconds:
!!!!!
Success rateis 100 percent (5/5), round-trip min/avg/max = 0/0/0 ms