Kedu ka BGP si arụ ọrụ

Taa, anyị ga-eleba anya na BGP protocol. Anyị agaghị ekwu ogologo oge maka ihe kpatara ya na ihe kpatara eji eji ya mee ihe dị ka naanị protocol. Enwere ọtụtụ ozi gbasara isiokwu a, dịka ọmụmaatụ ebe a.

Yabụ kedu ihe BGP? BGP bụ protocol ntugharị siri ike ma bụrụ naanị usoro EGP (Mpụga Gateway Protocol). A na-eji protocol eme ihe iji wuo ụzọ na ịntanetị. Ka anyị leba anya ka esi arụ agbataobi n'etiti ndị na-anya ụgbọ elu BGP abụọ.

Kedu ka BGP si arụ ọrụ
Tụlee agbata obi dị n'etiti Router1 na Router3. Ka anyị hazie ha site na iji iwu ndị a:

router bgp 10
  network 192.168.12.0
  network 192.168.13.0
  neighbor 192.168.13.3 remote-as 10

router bgp 10
  network 192.168.13.0
  network 192.168.24.0
  neighbor 192.168.13.1 remote-as 10

Agbata obi n'ime otu sistemu kwụụrụ onwe ya bụ AS 10. Mgbe itinyechara ozi na rawụta, dị ka Router1, rawụta ahụ na-anwa ịtọlite ​​mmekọrịta n'akụkụ ya na Router3. A na-akpọ steeti mbụ mgbe ọ nweghị ihe na-eme abaghị uru. Ozugbo emebere bgp na Router1, ọ ga-amalite ige ọdụ ụgbọ mmiri TCP 179 - ọ ga-abanye na steeti. jikọọ, na mgbe ọ na-agbalị imeghe nnọkọ na Router3, ọ ga-abanye na steeti Active.

Mgbe emechara nnọkọ n'etiti Router1 na Router3, a na-agbanwe ozi mepere emepe. Mgbe Router1 zigara ozi a, a ga-akpọ steeti a Mepee Ezitere. Ma mgbe ọ natara ozi Open site na Router3, ọ ga-abanye na steeti ahụ Mepee nkwenye. Ka anyị lebakwuo anya na ozi mepere emepe:

Kedu ka BGP si arụ ọrụ
Ozi a na-ebuga ozi gbasara protocol BGP n'onwe ya, nke rawụta na-eji. Site n'ịgbanwe ozi mepere emepe, Router1 na Router3 na-akpakọrịta ozi gbasara ntọala ha na ibe ha. Afefere paramita ndị a:

  • version: nke a gụnyere ụdị BGP nke rawụta na-eji. Ụdị BGP dị ugbu a bụ ụdị 4 nke akọwara na RFC 4271. Ndị na-anya ụgbọ elu BGP abụọ ga-anwa ịkparịta ụka n'ụdị dakọtara, mgbe enweghị nkwekọrịta mgbe ahụ agaghị enwe nnọkọ BGP.
  • M AS: nke a gụnyere AS nọmba nke BGP rawụta, routers ga-ekweta na AS nọmba(s) na ọ na-akọwa ma ọ bụrụ na ha ga-agba ọsọ iBGP ma ọ bụ eBGP.
  • Jide Oge: Ọ bụrụ na BGP enwetaghị ihe nchekwa ndụ ma ọ bụ melite ozi site n'akụkụ nke ọzọ maka oge njide ahụ, ọ ga-ekwupụta akụkụ nke ọzọ 'anwụ anwụ' ma ọ ga-akwatu nnọkọ BGP. Site na ndabara, atọrọ oge njide ka ọ bụrụ 180 sekọnd na ndị na-anya ụgbọ mmiri Cisco IOS, a na-eziga ozi ndebe ndụ kwa sekọnd 60 ọ bụla. Ndị na-anya ụgbọ elu abụọ ahụ ga-ekwenye na oge ejidere ma ọ bụ na a gaghị enwe nnọkọ BGP.
  • Ihe nchọpụta BGP: nke a bụ NJ rawụta BGP mpaghara nke a na-ahọpụta dịka OSPF si eme:
    • Jiri router-ID nke ejiri aka haziri site na iwu bgp router-id.
    • Jiri adreesị IP kachasị elu na interface loopback.
    • Jiri adreesị IP kachasị elu na interface anụ ahụ.
  • Nhọrọ nhọrọ: ebe a ị ga-ahụ ụfọdụ ike nhọrọ nke BGP rawụta. Agbakwụnyela mpaghara a ka e wee tinye atụmatụ ọhụrụ na BGP na-enweghị imepụta ụdị ọhụrụ. Ihe ị nwere ike ịhụ ebe a bụ:
    • nkwado maka MP-BGP (Multi Protocol BGP).
    • nkwado maka ume ọhụrụ ụzọ.
    • nkwado maka nọmba AS 4-octet.

Iji guzobe mpaghara, a ga-emezurịrị ọnọdụ ndị a:

  • Nọmba ụdị. Ụdị dị ugbu a bụ 4.
  • Nọmba AS ga-adakọrịrị n'ihe ị haziri agbataobi 192.168.13.3 remote-dị ka 10.
  • NJ router ga-adị iche na onye agbata obi.

Ọ bụrụ na nke ọ bụla n'ime paramita emezughị ọnọdụ ndị a, rawụta ga-ezipụ Akwụkwọ edemede ozi na-egosi njehie. Mgbe izipu na nweta Open ozi, mmekọrịta agbata obi na-abanye na steeti EBUWU. Mgbe nke a gasịrị, ndị na-anya ụgbọ mmiri nwere ike gbanwee ozi gbasara ụzọ ma mee nke a site na iji update ozi. Nke a bụ ozi mmelite nke Router1 zitere na Router3:

Kedu ka BGP si arụ ọrụ

N'ebe a, ị ga-ahụ netwọkụ nke Router1 na njirimara ụzọ, nke na-adakọ na metrik. Anyị ga-ekwu maka njirimara ụzọ n'ụzọ zuru ezu karị. A na-ezigakwa ozi Keepalive n'ime oge TCP. A na-ebunye ha, na ndabara, kwa sekọnd iri isii ọ bụla. Nke a bụ ngụ oge Keepalive. Ọ bụrụ na anabataghị ozi Keepalive n'oge Ngụ oge , nke a ga-apụta enweghị nzikọrịta ozi gị na onye agbata obi. Na ndabara, ọ hà nhata 60 sekọnd.

Akara bara uru:

Kedu ka BGP si arụ ọrụ

Ọ dị ka anyị achọpụtala ka ndị na-anya ụgbọ mmiri na-ebufe ibe ha ozi, ugbu a, ka anyị gbalịa ịghọta echiche nke usoro BGP.

Iji kpọsaa ụzọ gaa na tebụl BGP, dị ka ọ dị na ụkpụrụ IGP, a na-eji iwu netwọkụ eme ihe, mana mgbagha arụ ọrụ dị iche. Ọ bụrụ na IGP, mgbe ịkọwapụta ụzọ na iwu netwọkụ, IGP na-eleba anya nke interface dị na subnet a ma tinye ha na tebụl ya, mgbe ahụ iwu netwọkụ dị na BGP na-ele anya na tebụl ntụgharị wee chọọ ya. kpomkwem dakọtara na ụzọ na iwu netwọk. Ọ bụrụ na achọpụtara nke a, ụzọ ndị a ga-apụta na tebụl BGP.

Chọọ ụzọ na tebụl ntụgharị IP nke rawụta ugbu a nke dabara na parampat nke iwu netwọkụ; ọ bụrụ na ụzọ IP dị, tinye NLRI nhata n'ime tebụl BGP mpaghara.

Ugbu a, ka anyị bulite BGP na ndị niile fọdụrụ wee hụ ka esi ahọrọ ụzọ n'ime otu AS. Ka onye rawụta BGP natachara ụzọ n'aka onye agbata obi ya, ọ na-amalite ịhọrọ ụzọ kacha mma. N'ebe a, ịkwesịrị ịghọta ụdị ndị agbata obi nwere ike ịbụ - n'ime na n'èzí. Onye rawụta ahụ ọ na-aghọta site na nhazi ma onye agbata obi ahaziri ọ bụ n'ime ma ọ bụ mpụga? Ọ bụrụ na otu:

neighbor 192.168.13.3 remote-as 10 

Remote-dị ka paramita na-akọwapụta AS, nke a na-ahazi na rawụta n'onwe ya na rawụta bgp 10 iwu. A na-ewere ụzọ ndị sitere na esịtidem AS dị n'ime, na ụzọ ndị sitere na mpụga AS ka a na-ewere na mpụga. Na nke ọ bụla, mgbagha dị iche iche nke ịnata na izipu ọrụ. Tụlee topology a:

Kedu ka BGP si arụ ọrụ

Onye ọ bụla rawụta nwere loopback interface ahazi ya na ip: xxxx 255.255.255.0 - ebe x bụ nọmba rawụta. Na Router9 anyị nwere loopback interface nwere adreesị - 9.9.9.9 255.255.255.0. Anyị ga-akpọsa ya site na BGP wee hụ ka ọ na-agbasa. A ga-ebufe ụzọ a na Router8 na Router12. Site na Router8, ụzọ a ga-aga na Router6, mana na Router5 ọ gaghị adị na tebụl ntụgharị. Ọzọkwa na Router12 ụzọ a ga-apụta na tebụl, mana na Router11 ọ gaghị adịkwa. Ka anyị gbalịa chọpụta nke a. Ka anyị tụlee ihe data na parameters Router9 na-ebunye ndị agbata obi ya, na-akọ ụzọ a. A ga-eziga ngwugwu dị n'okpuru site na Router9 gaa na Router8.

Kedu ka BGP si arụ ọrụ
Ozi ụzọ nwere njirimara ụzọ.

E kewara njiri mara ụzọ ụzọ ụzọ anọ:

  1. Amanyere nke ọma amanyere iwu - Ndị ọkwọ ụgbọ ala niile na-agba BGP ga-amarịrị njirimara ndị a. Ga-adịrịrị na mmelite niile.
  2. Ọkachamara ama ama - Ndị ọkwọ ụgbọ ala niile na-agba BGP ga-amarịrị njirimara ndị a. Ha nwere ike ịnọ na mmelite, mana ọnụnọ ha achọghị.
  3. Nhọrọ ntụgharị - nwere ike ọ gaghị amata site na mmemme BGP niile. Ọ bụrụ na rawụta ahụ amataghị njirimara ahụ, ọ na-akara mmelite ahụ dị ka akụkụ ma zigara ya ndị agbata obi ya, na-echekwa njirimara a na-amaghị.
  4. Nhọrọ anaghị agbanwe agbanwe - nwere ike ọ gaghị amata site na mmemme BGP niile. Ọ bụrụ na onye rawụta ahụ aghọtaghị àgwà ahụ, mgbe ahụ, a na-eleghara àgwà ahụ anya ma tụfuo ya mgbe a na-enyefe ndị agbata obi.

Ọmụmaatụ nke njirimara BGP:

  • Amanyere nke ọma amanyere iwu:
    • Ụzọ sistemụ kwụụrụ onwe ya
    • Na-esote-hop
    • Mmalite

  • Ọkachamara ama ama:
    • Mmasị mpaghara
    • Atọmk mkpokọta
  • Nhọrọ ntụgharị:
    • Onye nchịkọta
    • obodo
  • Nhọrọ anaghị agbanwe agbanwe:
    • Onye ịkpa oke ọpụpụ ọtụtụ (MED)
    • NJ onye mmalite
    • Ndepụta ụyọkọ

N'okwu a, maka ugbu a, anyị ga-enwe mmasị na Origin, Next-hop, AS Path. Ebe ọ bụ na ụzọ na-ebufe n'etiti Router8 na Router9, ya bụ, n'ime otu AS, a na-ewere ya dị n'ime ma anyị ga-aṅa ntị na Origin.

Njirimara mmalite - na-egosi ka esi nweta ụzọ na mmelite. Ụkpụrụ àgwà nwere ike:

  • 0 - IGP: NLRI natara n'ime usoro izizi nke mbụ;
  • 1 - EGP: A na-amụta NLRI site na iji Protocol Exterior Gateway (EGP). Onye bu ụzọ BGP, ejighi ya
  • 2 - Ezughị ezu: A mụtara NLRI n'ụzọ ọzọ

N'ọnọdụ anyị, dị ka a pụrụ ịhụ site na ngwugwu, ọ hà nhata 0. Mgbe a na-ebufe ụzọ a na Router12, koodu a ga-enwe koodu nke 1.

Na-esote, Next-hop. Njirimara na-esote-hop

  • Nke a bụ adreesị IP nke eBGP rawụta nke ụzọ na-aga netwọk na-aga.
  • Njirimara na-agbanwe mgbe ezigara prefix ahụ na AS ọzọ.

N'ihe banyere iBGP, ya bụ, n'ime otu AS, Next-hop ga-egosi onye mụtara ma ọ bụ kọọrọ maka ụzọ a. N'ọnọdụ anyị, ọ ga-abụ 192.168.89.9. Mana mgbe a na-ebufe ụzọ a site na Router8 ruo Router6, Router8 ga-agbanwe ya ma jiri nke ya dochie ya. Na-esote-hop ga-abụ 192.168.68.8. Nke a na-eduga anyị n'iwu abụọ:

  1. Ọ bụrụ na rawụta na-ebuga ụzọ gaa na agbataobi ime ya, ọ naghị agbanwe oke na-esote-hop.
  2. Ọ bụrụ na onye rawụta na-ebufe ụzọ gaa na onye agbata obi ya dịpụrụ adịpụ, ọ na-agbanwe na-esote-hop na ip nke interface nke rawụta a na-ebufe.

Nke a na-eduga anyị ịghọta nsogbu mbụ - Gịnị kpatara na ọ gaghị enwe ụzọ na tebụl ntụgharị na Router5 na Router11. Ka anyị lebakwuo anya. Yabụ, Router6 nwetara ozi gbasara ụzọ 9.9.9.0/24 wee tinye ya nke ọma na tebụl ngagharị:

Router6#show ip route bgp
Codes: L - local, C - connected, S - static, R - RIP, M - mobile, B - BGP
       D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
       N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
       E1 - OSPF external type 1, E2 - OSPF external type 2
       i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
       ia - IS-IS inter area, * - candidate default, U - per-user static route
       o - ODR, P - periodic downloaded static route, H - NHRP, l - LISP
       a - application route
       + - replicated route, % - next hop override, p - overrides from PfR

Gateway of last resort is not set

      9.0.0.0/24 is subnetted, 1 subnets
B        9.9.9.0 [20/0] via 192.168.68.8, 00:38:25<source>
Теперь Router6 передал маршрут Router5 и первому правилу Next-hop не изменил. То есть, Router5 должен добавить  <b>9.9.9.0 [20/0] via 192.168.68.8</b> , но у него нет маршрута до 192.168.68.8 и поэтому данный маршрут добавлен не будет, хотя информация о данном маршруте будет храниться в таблице BGP:

<source><b>Router5#show ip bgp
BGP table version is 1, local router ID is 5.5.5.5
Status codes: s suppressed, d damped, h history, * valid, > best, i - internal,
              r RIB-failure, S Stale, m multipath, b backup-path, f RT-Filter,
              x best-external, a additional-path, c RIB-compressed,
Origin codes: i - IGP, e - EGP, ? - incomplete
RPKI validation codes: V valid, I invalid, N Not found

     Network          Next Hop            Metric LocPrf Weight Path
 * i 9.9.9.0/24       192.168.68.8             0    100      0 45 i</b>

Otu ọnọdụ ga-eme n'etiti Router11-Router12. Iji zere ọnọdụ a, ịkwesịrị ịhazi Router6 ma ọ bụ Router12, mgbe ị na-agafe ụzọ ndị agbata obi ha, iji dochie adreesị IP ha dị ka Next-hop. A na-eme nke a site na iji iwu:

neighbor 192.168.56.5 next-hop-self

Mgbe iwu a gasịrị, Router6 ga-eziga ozi mmelite, ebe a ga-akọwapụta IP nke interface Gi0/0 Router6 dị ka Next-hop maka ụzọ - 192.168.56.6, mgbe nke a gasịrị, a ga-etinyerịrị ụzọ a na tebụl ntụgharị.

Ka anyị gaa n'ihu hụ ma ụzọ a pụtara na Router7 na Router10. Ọ gaghị adị na tebụl ntụgharị ma anyị nwere ike iche na nsogbu ahụ bụ otu ihe ahụ dị na nke mbụ na-esote-hop parameter, ma ọ bụrụ na anyị eleba anya na mmepụta nke ihe ngosi ip bgp iwu, anyị ga-ahụ na Anabataghị ụzọ n'ebe ahụ ọbụna na-ezighị ezi Next-hop, nke pụtara na ọ dịghị ọbụna ebufe ụzọ. Na nke a ga-eduga anyị na ịdị adị nke ọzọ iwu:

A naghị agbasa ụzọ ndị a na-enweta site n'aka ndị agbata obi n'ime ndị agbata obi ndị ọzọ.

Ebe ọ bụ na Router5 nwetara ụzọ site na Router6, a gaghị ebufe ya na ndị agbata obi ya ọzọ. Ka mbufe ahụ wee mee, ịkwesịrị ịhazi ọrụ ahụ Ntugharị ụzọ, ma ọ bụ hazie mmekọrịta agbata obi jikọtara kpamkpam (Full Mesh), ya bụ, Router5-7 onye ọ bụla ga-abụ onye agbata obi onye ọ bụla. N'okwu a, anyị ga-eji Route Reflector. Na Router5 ịkwesịrị iji iwu a:

neighbor 192.168.57.7 route-reflector-client

Route-Reflector na-agbanwe omume nke BGP mgbe ị na-agafe ụzọ gaa na onye agbata obi ime. Ọ bụrụ na akọwapụtara onye agbata obi dị n'ime ka ụzọ-ntụgharị-aka-ahịa, mgbe ahụ, a ga-akpọsa ndị ahịa a ụzọ ime.

Ụzọ ahụ egosighi na Router7? Echefula maka Next-hop ma. Mgbe mmeghari ndị a gasịrị, ụzọ ahụ kwesịkwara ịga na Router7, mana nke a anaghị eme. Nke a na-ewetara anyị iwu ọzọ:

Iwu hop na-esote na-arụ ọrụ naanị maka ụzọ Mpụga. Maka ụzọ ime, anaghị edochi àgwà na-esote-hop.

Anyị na-enwetakwa ọnọdụ nke ọ dị mkpa iji mepụta gburugburu ebe obibi site na iji static routing ma ọ bụ IGP protocols iji gwa ndị na-anya ụgbọ ala banyere ụzọ niile dị n'ime AS. Ka anyị deba aha ụzọ kwụ ọtọ na Router6 na Router7 na mgbe nke ahụ gasịrị, anyị ga-enweta ụzọ achọrọ na tebụl rawụta. Na AS 678, anyị ga-eme ya ntakịrị iche - anyị ga-edebanye aha ụzọ static maka 192.168.112.0/24 na Router10 na 192.168.110.0/24 na Router12. Ọzọ, anyị ga-eguzobe mmekọrịta agbata obi n'etiti Router10 na Router12. Anyị ga-ahazikwa Router12 ka iziga hop ya na-esote na Router10:

neighbor 192.168.110.10 next-hop-self

Nsonaazụ ga-abụ na Router10 ga-enweta ụzọ 9.9.9.0/24, a ga-enweta ya site na Router7 na Router12. Ka anyị hụ ihe nhọrọ Router10 na-eme:

Router10#show ip bgp
BGP table version is 3, local router ID is 6.6.6.6
Status codes: s suppressed, d damped, h history, * valid, > best, i - internal,
              r RIB-failure, S Stale, m multipath, b backup-path, f RT-Filter,
              x best-external, a additional-path, c RIB-compressed,
Origin codes: i - IGP, e - EGP, ? - incomplete
RPKI validation codes: V valid, I invalid, N Not found

     Network              Next Hop            Metric LocPrf Weight Path
 *>i 9.9.9.0/24       192.168.112.12           0    100       0      45 i

                               192.168.107.7                                0     123 45 i  

Dịka anyị nwere ike ịhụ, ụzọ abụọ na akụ (>) pụtara na ahọpụtara ụzọ site na 192.168.112.12.
Ka anyị hụ ka usoro nhọrọ ụzọ si arụ ọrụ:

  1. Nzọụkwụ mbụ mgbe ị na-anata ụzọ bụ ịlele na ọ dị na-esote-hop ya. Ọ bụ ya mere, mgbe anyị nwetara ụzọ na Router5 na-enweghị ntọala Next-hop-self, a naghị edozi ụzọ a ọzọ.
  2. Nke na-esote oke ibu. Oke a abụghị àgwà Ụzọ (PA) ma ezipụghị ya na ozi BGP. A na-ahazi ya na mpaghara ọ bụla na rawụta ọ bụla, a na-ejikwa ya naanị iji megharịa nhọrọ ụzọ na rawụta n'onwe ya. Ka anyị lee otu ihe atụ. Naanị n'elu ị nwere ike ịhụ na Router10 ahọrọla ụzọ maka 9.9.9.0/24 site na Router12 (192.168.112.12). Ka ịgbanwee paramita Wieight, ị nwere ike iji ụzọ-map tọọ ụzọ ụfọdụ, ma ọ bụ kenye onye agbata obi ya ibu site na iji iwu:
     neighbor 192.168.107.7 weight 200       

    Ugbu a ụzọ niile sitere na onye agbata obi a ga-enwe ibu a. Ka anyị hụ ka nhọrọ nke ụzọ si agbanwe mgbe emechara ihe a:

    Router10#show bgp
    *Mar  2 11:58:13.956: %SYS-5-CONFIG_I: Configured from console by console
    BGP table version is 2, local router ID is 6.6.6.6
    Status codes: s suppressed, d damped, h history, * valid, > best, i - internal,
                  r RIB-failure, S Stale, m multipath, b backup-path, f RT-Filter,
                  x best-external, a additional-path, c RIB-compressed,
    Origin codes: i - IGP, e - EGP, ? - incomplete
    RPKI validation codes: V valid, I invalid, N Not found
    
         Network          Next Hop            Metric LocPrf Weight      Path
     *>  9.9.9.0/24       192.168.107.7                        200      123 45 i
     * i                          192.168.112.12           0          100      0 45 i

    Dịka ị na-ahụ, a na-ahọrọ ụzọ Router7 ugbu a, mana nke a agaghị enwe mmetụta ọ bụla na ndị na-anya ụgbọ ala ndị ọzọ.

  3. N'ọkwa nke atọ anyị nwere Mmasị Mpaghara. Oke a bụ njirimara akọ ama ama nke ọma, nke pụtara na ọnụnọ ya bụ nhọrọ. Oke a dị irè naanị n'ime otu AS ma na-emetụta nhọrọ nke ụzọ naanị maka ndị agbata obi ime. Ya mere a na-ebufe ya naanị na ozi Nwelite ezubere maka onye agbata obi ime. Ọ dịghị na Nwelite ozi maka ndị agbata obi mpụga. Ya mere, a na-ekewa ya dị ka amamihe ama ama. Ka anyị gbalịa itinye ya na Router5. Na Router5 anyị kwesịrị inwe ụzọ abụọ maka 9.9.9.0/24 - otu site na Router6 na nke abụọ site na Router7.

    Anyị na-ele:

    Router5#show bgp
    BGP table version is 2, local router ID is 5.5.5.5
    Status codes: s suppressed, d damped, h history, * valid, > best, i - internal,
                  r RIB-failure, S Stale, m multipath, b backup-path, f RT-Filter,
                  x best-external, a additional-path, c RIB-compressed,
    Origin codes: i - IGP, e - EGP, ? - incomplete
    RPKI validation codes: V valid, I invalid, N Not found
    
         Network          Next Hop            Metric LocPrf Weight Path
     *>i 9.9.9.0/24       192.168.56.6             0    100      0 45 i

    Mana dịka anyị na-ahụ otu ụzọ site na Router6. Ebee ka ụzọ site na Router7 dị? Ma eleghị anya, Router7 enweghịkwa ya? Ka anyị lee:

    Router#show bgp
    BGP table version is 10, local router ID is 7.7.7.7
    Status codes: s suppressed, d damped, h history, * valid, > best, i - internal,
                  r RIB-failure, S Stale, m multipath, b backup-path, f RT-Filter,
                  x best-external, a additional-path, c RIB-compressed,
    Origin codes: i - IGP, e - EGP, ? - incomplete
    RPKI validation codes: V valid, I invalid, N Not found
    
         Network                Next Hop            Metric LocPrf  Weight    Path
     *>i 9.9.9.0/24       192.168.56.6             0     100           0      45 i
    
                                  192.168.107.10                                  0     678 45 i 

    Iju, ihe niile yiri ka ọ dị mma. Gịnị kpatara na anaghị ebufe ya na Router5? Ihe bụ na BGP nwere iwu:

    Ndị rawụta na-ebufe naanị ụzọ ndị ahụ ọ na-eji.

    Router7 na-eji ụzọ site na Router5, yabụ agaghị ebufe ụzọ site na Router10. Ka anyị laghachi na Mmasị Mpaghara. Ka anyị tọọ mmasị mpaghara na Router7 wee hụ ka Router5 si emeghachi omume na nke a:

    route-map BGP permit 10
     match ip address 10
     set local-preference 250
    access-list 10 permit any
    router bgp 123
     neighbor 192.168.107.10 route-map BGP in</b>

    Yabụ, anyị mepụtara maapụ ụzọ nke nwere ụzọ niile wee gwa Router7 ka ọ gbanwee paramita Mmasị Mpaghara na 250 mgbe enwetara ya, ndabara bụ 100. Ka anyị hụ ihe mere na Router5:

    Router5#show bgp
    BGP table version is 8, local router ID is 5.5.5.5
    Status codes: s suppressed, d damped, h history, * valid, > best, i - internal,
                  r RIB-failure, S Stale, m multipath, b backup-path, f RT-Filter,
                  x best-external, a additional-path, c RIB-compressed,
    Origin codes: i - IGP, e - EGP, ? - incomplete
    RPKI validation codes: V valid, I invalid, N Not found
    
         Network          Next Hop            Metric LocPrf Weight        Path
     *>i 9.9.9.0/24       192.168.57.7             0          250      0 678 45 i

    Dị ka anyị nwere ike ịhụ ugbu a Router5 na-ahọrọ ụzọ site na Router7. Otu foto ahụ ga-adị na Router6, n'agbanyeghị na ọ bara uru karịa ka ọ họrọ ụzọ site na Router8. Anyị na-agbakwụnye na ịgbanwe oke a chọrọ ịmalitegharị agbata obi ka mgbanwe ahụ wee dị irè. Gụọ ebe a. Anyị ahaziela Mmasị Mpaghara. Ka anyị gaa n'ihu na oke nke ọzọ.

  4. Họrọ ụzọ na-esote-hop parameter 0.0.0.0, ya bụ, mpaghara ma ọ bụ ekpokọtara ụzọ. A na-ekenye ụzọ ndị a na-akpaghị aka oke nha nha nhata kacha-32678-mgbe itinyechara iwu netwọkụ:
    Router#show bgp
    BGP table version is 2, local router ID is 9.9.9.9
    Status codes: s suppressed, d damped, h history, * valid, > best, i - internal,
                  r RIB-failure, S Stale, m multipath, b backup-path, f RT-Filter,
                  x best-external, a additional-path, c RIB-compressed,
    Origin codes: i - IGP, e - EGP, ? - incomplete
    RPKI validation codes: V valid, I invalid, N Not found
    
         Network          Next Hop            Metric LocPrf Weight    Path
     *>  9.9.9.0/24       0.0.0.0                  0            32768    i
  5. Ụzọ kacha nso site na AS. ahọpụtara oke AS_Path kacha dị mkpụmkpụ. Obere AS ụzọ na-aga, ka ọ ka mma. Tụlee ụzọ na-aga 9.9.9.0/24 na Router10:
    Router10#show bgp
    BGP table version is 2, local router ID is 6.6.6.6
    Status codes: s suppressed, d damped, h history, * valid, > best, i - internal,
                  r RIB-failure, S Stale, m multipath, b backup-path, f RT-Filter,
                  x best-external, a additional-path, c RIB-compressed,
    Origin codes: i - IGP, e - EGP, ? - incomplete
    RPKI validation codes: V valid, I invalid, N Not found
    
         Network          Next Hop            Metric LocPrf Weight Path
     *   9.9.9.0/24     192.168.107.7                           0           123 45 i
     *>i                     192.168.112.12           0    100       0       45 i

    Dị ka ị pụrụ ịhụ, Router10 họọrọ ụzọ site 192.168.112.12 n'ihi na ụzọ a AS_Path paramita nwere naanị 45, na ọzọ ikpe 123 na 45. N'ụzọ doro anya doro anya.

  6. Oke ọzọ bụ Mmalite. IGP (ụzọ a na-enweta site na iji BGP) dị mma karịa EGP (ụzọ a na-enweta site na iji BGP bu ụzọ, anaghịzi eji ya), na EGP dị mma karịa Ezughị ezu? (enwetara site na usoro ọzọ, dịka ọmụmaatụ site na nkesa ọzọ).
  7. Oke ọzọ bụ MED. Anyị nwere Wieight nke na-arụ ọrụ naanị na mpaghara na rawụta. Enwere Mmasị Mpaghara, nke na-arụ ọrụ naanị n'ime otu sistemu kwụụrụ onwe ya. Dịka ị nwere ike iche, MED bụ oke nke a ga-ebufe n'etiti sistemu kwụụrụ onwe ya. Ọ dị ezigbo mma otu isiokwu banyere nke a oke.

Agaghị eji njirimara ọzọ, mana ọ bụrụ na ụzọ abụọ nwere otu njirimara, mgbe ahụ, a na-eji iwu ndị a:

  1. Họrọ ụzọ site na onye agbata obi IGP kacha nso.
  2. Họrọ ụzọ kacha ochie maka ụzọ eBGP.
  3. Họrọ ụzọ site na onye agbata obi nwere NJ rawụta BGP kacha nta.
  4. Họrọ ụzọ site na onye agbata obi nwere adreesị IP kacha ala.

Ugbu a, ka anyị leba anya n'okwu gbasara njikọta BGP.

Ka anyị hụ ihe ga-eme ma ọ bụrụ na Router6 tụfuru ụzọ 9.9.9.0/24 site na Router9. Ka anyị gbanyụọ interface Gi0/1 nke Router6, nke ga-aghọta ozugbo na akwụsịla nnọkọ BGP na Router8 na onye agbata obi apụọla, nke pụtara na ụzọ enwetara ya adịghị mma. Router6 na-eziga ozi Nwelite ozugbo, ebe ọ na-egosi netwọkụ 9.9.9.0/24 n'ime oghere ụzọ ewepụrụ. Ozugbo Router5 nwetara ụdị ozi ahụ, ọ ga-eziga ya na Router7. Mana ebe Router7 nwere ụzọ site na Router10, ọ ga-eji ụzọ ọhụrụ zaghachi ozugbo na Mmelite. Ọ bụrụ na ọ gaghị ekwe omume ịchọpụta ọdịda nke onye agbata obi dabere na ọnọdụ nke interface ahụ, mgbe ahụ, ị ​​​​ga-echere ka Timer jide ọkụ.

Njikọ aka.

Ọ bụrụ na ị na-echeta, anyị na-ekwu maka eziokwu ahụ bụ na ị na-ejikarị topology ejikọrọ eme ihe. Na ọnụ ọgụgụ dị ukwuu nke ndị na-anya ụgbọ ala na otu AS nke a nwere ike ịkpata nnukwu nsogbu, iji zere nke a ịkwesịrị iji confederations. Otu AS na-ekewa n'ime ọtụtụ sub-AS, nke na-enye ha ohere ịrụ ọrụ na-enweghị ihe achọrọ nke topology zuru ezu.

Kedu ka BGP si arụ ọrụ

Nke a bụ njikọ na nke a labuna ebe a nhazi maka GNS3.

Dịka ọmụmaatụ, site na topology a, anyị ga-ejikọta ndị niile na-anya ụgbọ mmiri na AS 2345 na ibe ha, mana iji Confederation, anyị nwere ike ịmepụta mmekọrịta dị n'etiti naanị n'etiti ndị na-anya ụgbọ mmiri jikọtara onwe ha. Ka anyị kwuo banyere nke a n'ụzọ zuru ezu. Ọ bụrụ na anyị nwere AS 2345, mgbe ahụ laForge ọ natara March si Picard ga-agwa ya ndị rawụta data и Worf, ma ha agaghị agwa ndị rawụta banyere ya Nwunye . Ọzọkwa ụzọ ndị rawụta n'onwe ya kesara laForge, agaraghị ebufe ya Nwunye abughikwa Worf-oh, mba data.

Ị ga-ahazi Route-Reflector ma ọ bụ mmekọrịta agbata obi nwere njikọ zuru oke. Site n'ikewa otu AS 2345 n'ime 4 sub-AS (2,3,4,5) maka rawụta ọ bụla, anyị na-ejedebe na mgbagha arụ ọrụ dị iche. A kọwara ihe niile nke ọma ebe a.

Isi mmalite:

  1. CCIE Routing and Switching v5.0 Ntuziaka Asambodo gọọmentị, Mpịakọta 2, Mbipụta nke ise, Narbik Kocharians, Terry Vinson.
  2. website xgu.ru
  3. website GNS3Vault.

isi: www.habr.com

Tinye a comment