H3CS7500EISATAP隧道和6to4隧道相结合使用的典型配置举例Copyright©2015杭州华三通信技术有限公司版权所有,保留一切权利。非经本公司书面许可,任何单位和个人不得擅自摘抄、复制本文档内容的部分或全部,并不得以任何形式传播。本文档中的信息可能变动,恕不另行通知。i目录1简介······················································································································································12配置前提···············································································································································13ISATAP隧道和6to4隧道相结合使用的典型配置举例···········································································13.1组网需求···············································································································································13.2配置思路···············································································································································23.3使用版本···············································································································································23.4配置注意事项········································································································································23.5配置步骤···············································································································································23.6验证配置···············································································································································53.7配置文件···············································································································································54相关资料···············································································································································711简介本文档介绍了ISATAP隧道和6to4隧道相结合使用的典型配置举例。2配置前提本文档中的配置均是在实验室环境下进行的配置和验证,配置前设备的所有参数均采用出厂时的缺省配置。如果您已经对设备进行了配置,为了保证配置效果,请确认现有配置和以下举例中的配置不冲突。本文假设您已了解ISATAP隧道和6to4隧道的相关特性。3ISATAP隧道和6to4隧道相结合使用的典型配置举例3.1组网需求如图1所示,要求:•通过配置6to4隧道使各6to4网络分支机构与总部中的主机能够互通。•DeviceA提供ISATAP接入服务使一些IPv4网络中的双协议栈主机可以访问总部。图1ISATAP隧道和6to4隧道相结合使用的配置组网图设设接口IP地址设设接口IP地址DeviceAVlan-int102.1.1.1/24DeviceBVlan-int103.1.1.1/24Vlan-int202002:0201:0101:1::1/64Vlan-int202002:0301:0101:1::1/64Vlan-int302002:0201:0101:2::1/64Vlan-int302002:0301:0101:2::1/64Tunnel13001::1/64Tunnel13001::2/64Tunnel22001::5EFE:0201:0101/6423.2配置思路•组网中的6to4网络可以表示为2002:IPv4地址::/64,其中内嵌在IPv6地址中的IPv4地址作为6to4隧道中封装后的IPv4报文头中的目的IP地址。•组网中的ISATAP主机地址的IPv6前缀可通过向ISATAP路由器发送请求得到,IPv4地址作为接口ID,其格式为:Prefix:0:5EFE:IPv4-destination-address。该IPv4地址可以作为ISATAP隧道的目的端地址。•为保证同一网络中的主机使用相同的地址前缀,在DeviceA和DeviceB上取消对RA消息发布的抑制,使得网络中的主机可以通过DeviceA和DeviceB发布的RA消息获取地址前缀等信息。3.3使用版本本举例是在S7500E-CMW710-R7150版本上进行配置和验证的。3.4配置注意事项隧道封装后的报文不能根据目的地址和路由表进行第二次三层转发,需要将封装后的报文发送给业务环回组,由业务环回组将报文回送给转发模块后,再进行三层转发。因此,需要创建tunnel类型的业务环回组,以实现隧道报文的接收和发送。3.5配置步骤配置之前,请确保网关设设之间IPv4报文路由可达。(1)配置DeviceA#配置接口Vlan-interface10的IP地址。DeviceAsystem-view[DeviceA]vlan10[DeviceA-vlan10]portGigabitEthernet1/0/1[DeviceA-vlan10]quit[DeviceA]interfacevlan-interface10[DeviceA-Vlan-interface10]ipaddress2.1.1.124[DeviceA-Vlan-interface10]quit#请参考以上方法配置3.1图1中DeviceA其它接口的IP地址,配置步骤这里省略。#创建业务环回组1,并配置服务类型为tunnel。[DeviceA]service-loopbackgroup1typetunnel#将接口GigabitEthernet1/0/4加入业务环回组1。[DeviceA]interfacegigabitethernet1/0/4[DeviceA-GigabitEthernet1/0/4]portservice-loopbackgroup1[DeviceA-GigabitEthernet1/0/4]quit3#创建模式为6to4隧道的接口Tunnel1。[DeviceA]interfacetunnel1modeipv6-ipv46to4#配置Tunnel1接口的IPv6地址。[DeviceA-Tunnel1]ipv6address3001::1/64#配置Tunnel1接口的源接口为Vlan-interface10(封装后的IPv4报文头中的源IP地址为配置的源接口的IP地址)。[DeviceA-Tunnel1]sourcevlan-interface10[DeviceA-Tunnel1]quit#配置到目的地址2002:0301:0101::/48,下一跳为Tunnel1接口的静态路由。[DeviceA]ipv6route-static2002:0301:0101::48tunnel1#创建模式为ISATAP隧道的接口Tunnel2。[DeviceA]interfacetunnel2modeipv6-ipv4isatap#配置Tunnel2接口的IPv6地址。[DeviceA-Tunnel2]ipv6address2001::5EFE:0201:010164#配置Tunnel2接口的源接口为Vlan-interface10(封装后的IPv4报文头中的源IP地址为配置的源接口的IP地址)。[DeviceA-Tunnel2]sourcevlan-interface10[DeviceA-Tunnel2]quit#配置到目的地址2001::/16,下一跳为Tunnel2接口的静态路由。[DeviceA]ipv6route-static2001::16tunnel2#取消对RA消息发布的抑制,使主机可以通过交换机发布的RA消息获取地址前缀等信息。[DeviceA]interfaceTunnel2[DeviceA-Tunnel2]undoipv6ndrahalt[DeviceA-Tunnel2]quit[DeviceA]interfacevlan-interface20[DeviceA-Vlan-interface20]undoipv6ndrahalt[DeviceA-Vlan-interface20]quit[DeviceA]interfacevlan-interface30[DeviceA-Vlan-interface30]undoipv6ndrahalt[DeviceA-Vlan-interface30]quit(2)配置DeviceB#配置接口Vlan-interface10的IP地址。DeviceBsystem-view[DeviceB]vlan10[DeviceB-vlan10]portGigabitEthernet1/0/1[DeviceB-vlan10]quit[DeviceB]interfacevlan-interface10[DeviceB-Vlan-interface10]ipaddress3.1.1.124[DeviceB-Vlan-interface10]quit#请参考以上方法配置3.1图1中DeviceB其它接口的IP地址,配置步骤这里省略。#创建业务环回组1,并配置服务类型为tunnel。[DeviceB]service-loopbackgroup1typetunnel#将接口GigabitEthernet1/0/4加入业务环回组1。4[DeviceB]interfacegigabitethernet1/0/4[DeviceB-GigabitEthernet1/0/4]portservice-loopbackgroup1[DeviceB-GigabitEthernet1/0/4]quit#创建模式为6to4隧道的接口Tunnel1。[DeviceB]interfacetunnel1modeipv6-ipv46to4#配置Tunnel1接口的IPv6地址。[DeviceB-Tunnel1]ipv6address3001::2/64#