SE800ÅäÖÃÖ¸ÄÏ - ͼÎÄ(2)

2019-04-02 18:38

1. PPPOE ¿Í»§¶Ë²¦ºÅÈí¼þ³õʼ»¯²¢·¢ËÍPPPoE Active Discovery Initiation(PADI)¹ã²¥Ö¡¡£ ¸ÃÖ¡´«Ë͵½PPPoE ·þÎñÆ÷¡£ 2. PPPoE·þÎñÆ÷¼ì²éÊÕµ½µÄPADIÖ¡ÖеÄTAGÊÇ·ñ·ûºÏÒªÇó£¬ÈôÊÇÔò·µ»ØPPPoE Acive Discovery Offer £¨PADO£©µ¥²¥Ö¡¡£ 3. PPPoE ¿Í»§¶ËÈí¼þÔÚÊÕµ½PADO°üÒÔºó£¬Ëæ¼´·¢³öPPPoE Active Discovery Request(PADR)µ¥²¥Ö¡¡£ 4. PPPoE·þÎñÆ÷ÊÕµ½ÕýÈ·µÄPADRÖ¡ÒÔºó£¬ Ëæ¼´Éú³ÉÒ»¸öSession Id£¬²¢°Ñ¸ÃIDÌîÈëÖ¡Í·ÏàӦλÅZ,·¢ËÍÒ»¸öPPPoE Active Discovery Confirmation(PADS)µ¥²¥Ö¡¸ø¿Í»§¶Ë£¬´Ó¶ø½áÊøPPPoEµÄDiscovery¹ý³Ì¡£ 5. PPPoEµÄPPP½×¶Î³õʼ»¯Íê±Ïºó£¬PPPoE ClientºÍPPPoE ServerÖ®¼äÏ໥¶Ô·¢LCP Configure Request°ü¡£ÒòΪPPPÊÇÒ»¸öPeer to PeerµÄЭÒ飬ClientºÍServerÖ®¼äµÄµØÎ»ÊǶԵȵġ£´Ó¶øË«·½¶¼Ó¦¸Ã·¢ÆðÅäÅZÇëÇó°üÀ´¸ú¶Ô·½½øÐÐЭÉÌ¡£ 6. ClientºÍServerÏ໥³ÐÈ϶Է½µÄÅäÅZÇëÇ󣬶Է¢LCP Configure Ack°ü£¬´Ó¶ø½¨Á¢ÆðLCPÁ´Â·¡£´Ëʱ£¬Ó¦¸ÃÒѾ­Ð­É̺ÃÁËLCPµÄ¸÷¸ö²ÎÊý£¬°üÀ¨ÈÏÖ¤ÀàÐͲÎÊý¡£ 7. LCPÁ´Â·½¨Á¢ÒԺ󣬸ù¾ÝЭÉ̺õÄÈÏÖ¤ÀàÐÍ£¨ÕâÀï¼Ù¶¨ÎªPAPÈÏÖ¤£©£¬PPPoE ClientÏò·þÎñÆ÷·¢ÆðPAP Authenticate ÇëÇó°ü£¬¸ÃÇëÇó°üÖаüº¬ÁËClient´«Ë͹ýÀ´µÄÓû§ÃûºÍ¿ÚÁîµÈÓÐÓÃÐÅÏ¢¡£ 8. PPPoE ServerÊÕµ½ClientµÄPAPÈÏÖ¤ÇëÇóºó£¬°ÑÓû§ÃûºÍ¿ÚÁîµÈÐÅÏ¢Ë͵½AAA·þÎñÆ÷½øÐÐÈÏÖ¤¡£ 9. AAA·þÎñÆ÷°ÑÈÏÖ¤½á¹û£¨ÕâÀïΪÈÏ֤ͨ¹ý£©·¢»Ø¸øPPPoE Server¡£ 10. PPPoE ServerÊÕµ½¸ÃÏûÏ¢Ö®ºó£¬¾ÍÏò¿Í»§¶Ë·¢ËÍPAP Authenticate Ack°ü£¬ÒÔ±íʾ¸ÃÓû§ÒѾ­ÈÏ֤ͨ¹ýÁË¡£ 11. PPPoE ServerÏòAAA·þÎñÆ÷·¢ËͼƷѿªÊ¼°ü¸æËßAAA·þÎñÆ÷´ÓÏÖÔÚ¿ªÊ¼¾Í¿ÉÒÔ¶Ô¸ÃÓû§½øÐмƷÑÁË¡£ 12. AAA·þÎñÆ÷Ó¦´ðPPPoE ServerËüÒѾ­ÊÕµ½Á˸üƷѿªÊ¼ÇëÇó°ü²¢ÇÒÒѾ­¿ªÊ¼¶Ô¸ÃÓû§½øÐмƷѡ£ 13. PPPµÄÈÏÖ¤¹ý³Ì½áÊøºó£¬¾Í½øÈëÁËIPCPЭÉ̽׶Ρ£¸úÇ°ÃæµÄLCP½×¶ÎÒ»Ñù£¬PPPoE ClientºÍPPPoE ServerÖ®¼äÏ໥¶Ô·¢IPCP Configure Request°üÀ´½øÐÐIPCP²ÎÊýµÄЭÉÌ¡£ 14. Ò»°ãÇé¿öÏÂÓÉÓÚClient·¢Ë͸øServerµÄIPCP Configure Request°üÖаüº¬µÄIPµØÖ·²ÎÊýÖµ²»·ûºÏServerµÄÒªÇ󣬴ӶøPPPoE Server·¢IPCP Configure Nak°ü¸øClient£¬±íʾËü²»ÈϿɸÃIPµØÖ·²ÎÊýÖµ£¬¶ø¸ÃNak°üÖаüº¬ServerÈÏΪÕýÈ·µÄIPµØÖ·²ÎÊýÖµ¡£ 15. PPPoE¿Í»§¶ËÓÉÓÚÊÕµ½ÁË·þÎñÆ÷¶ËµÄNak°ü£¬Ëü»á³éÈ¡ÖÐÆäÖÐServerÈϿɵÄIPµØÖ·²ÎÊýÖµ,²¢°ÑÕâ¸ö²ÎÊýÖµÌîÈëµ½Ò»¸öеÄIPCP Configure Request°üÖÐÔÙÒ»´Î´«Ë͸øServer¡£ 16. Õâ´ÎPPPoE ServerÈÏ¿ÉClientµÄ¸÷¸öIPCP²ÎÊýÁË£¬´Ó¶ø·¢ËÍÒ»¸öIPCP Configure Ack°ü¸øClientÍê³ÉÁËÒ»´ÎPPPoEµÄ½ÓÈë¹ý³Ì 1.2 VLAN STACKING½éÉÜ 1.2.1 VLAN STACKING ±ê×¼ VLAN STACKING Ò²³ÆQ IN Q£¬±ê×¼³ö×ÔIEEE802.1ad£¬Ä¿Ç°¸Ã±ê×¼ÈÔ´¦Óڲݰ¸½×¶Î¡£ 1.2.2 VLAN STACKING ¼¼ÊõʵÏÖÔ­Àí VLAN STACKING ʵÏÖÊÇÔÚ802.1Q ЭÒé±êÇ©ºóÔٴηâ×°802.1Q ЭÒé±êÇ©£¬ÆäÖÐÒ»²ã±êʶÓû§ÏµÍ³ÍøÂ磨customer network£©£¬Ò»²ã±êʶҵÎñÔËÓªÍøÂ磨service provider network£©£¬½«ÆäÀ©Õ¹ÊµÏÖÓû§Ïß·±êʶ¡£´øÓÐQ-in-Q VLAN tag±êÇ©µÄÒÔ̫֡¸ñʽÈçÏ£º ͼ3.7 ´øÓÐQ-in-Q VLAN tag ±êÇ©µÄÒÔ̫֡ ÆäÖУ¬C-VLAN ID ±íʾÓû§ÍøÂçÒÔ̫֡µÄVLAN ID£»P-VLAN ID ±íʾÔËÓªÉÌÍøÂçÒÔ̫֡µÄVLAN ID¡£Ã¿¸öP-VLAN Tag ±êÇ©°üº¬£º P-EtherType Óòͨ³£Ê¹Óóý8100h Ö®ÍâµÄÊýÖµ, ±íÃ÷ÕâÒ»¸ö P-VLAN Tag ±êÇ©,²»ÊÇÒ»¸ö±ê×¼µÄIEEE 802.1Q VLAN Tag ±êÇ©£» [local]zhzh-hhl-se800(config-port)#dot1q tunnel ethertype ? 0x0-0xffff specify custom ether type (hexadecimal) 8100 8100 ether type (hexadecimal) 88a8 88a8 ether type (hexadecimal) 9100 9100 ether type (hexadecimal) 9200 9200 ether type (hexadecimal) P-VLAN CoS Óò°üº¬3 λ£¬Ö§³Ö8 ¸ö¼¶±ðµÄÓÅÏȼ¶£» P-VLAN ID Óò°üº¬12 룬¿ÉÖ§³Ö4096 ¸öVLAN ʵÀý£» P-CFI ÓòÉ趨ΪÁã¡£ VLAN STACKING Ó¦Óõ½ADSL ½ÓÈëÍøÂçʵÏÖ·½Ê½ÈçÏ£¬»ùÓÚADSL ½ÓÈë¶Ë¿Ú£¬ÉèÅZ¶Ë¿ÚÊôÐÔΪÆÕͨģʽ,¸÷¶Ë¿ÚºÅvlan±êʶÓû§,DSLAM »òÒÔÌ«Íø½»»»»úÉÏÁª³ö¿Ú´¦Í³´òÉϵڶþ²ãVLAN Êä³ö£¬ÆäÖÐÍâ²ãVLAN ±êʶDSLAM£¬ÕâÑù²»Í¬µÄDSLAM ÔÚ¶þ²ãÖ®¼äÏ໥¸ôÀ룻ÄÚ²ãVLAN ÓÃ×÷Óû§ÈÏÖ¤£¬²»Í¬µÄ¶Ë¿ÚÓ벻ͬµÄVLAN °ó¶¨£¬Á½²ãVLAN ×éºÏ±êʶÓû§¡£BRAS ÈÏÖ¤Óû§Í¨¹ýÁ½²ãVLAN À´ÊµÏÖ£¬¼È½â¾öÁË4K VLAN ÏÞÖÆµÄÎÊÌ⣬ÓÖ½â¾öÁËDSLAM ±êʶµÄÎÊÌâ¡£ 1.2.3 VLAN STACKING ¼¼ÊõÌØµã VLAN STACKING ·½°¸¶ÔÏÖÔÚʹÓõÄÁ½ÖÖÈÏÖ¤·½Ê½¶¼ÊÊÓᣠÓŵ㣺 1. ûÓÐЭÒé½»»¥¹ý³Ì£¬¶ÔÓû§À´ºÍ½ÓÈë²ã½»»»»ú˵²»ÐèÒª¸ü¸ÄÅäÅZ£» 2. ²»½öʵÏÖÁËÓû§¶Ë¿Úʶ±ð£¬Í¬Ê±¿É¶ÔÓû§ÒµÎñʵÏÖÂß¼­¸ôÀ룻 3. À©Õ¹ÁË4K VLAN£¬Ê¹Óû§VLANÊýÄ¿À©Õ¹µ½4096*4096¸ö¡£ ȱµã£º 1. ¶þ²ãVLAN ͳһ¹æ»®£¬Í¬Ê±ÒªÇóÔËÓªÉ̶þ²ãÍøÂç±ØÐëÖ§³Ö¶þ²ãVLANtag 2. ±¨ÎÄÓÐÐ§ÔØºÉ½µµÍ£¬Í¬Ê±¿ÉÄÜÔì³É·ÖƬ¡¢ÖØ×飻 3. ²»ÄÜÖ±½ÓÌåÏÖ³öÉ豸¡¢¶Ë¿ÚµÄÎïÀíλÅZ¡£ 2 ×éÍø·½°¸ 2.1 ×éÍø·½°¸ ¸ù¾ÝBAS×éÍø·½°¸´óÈÝÁ¿¡¢Éپֵ㡢¹ã¸²¸ÇµÄÇ÷ÊÆ£¬×éÍø³õÆÚ¿É²ÉÓÃÉÙÁ¿¸ßÐÔÄÜ¡¢´óÈÝÁ¿¡¢¸ßÃܶȵÄBASÉ豸£¬ÔÚÿ¸öÅäÅZGSRµÄ³ÇÓòÍø¹Ç¸É½Úµã£¨¹²60¸ö£©ÉèÅZ1̨BASÉ豸£¬Èç¹ûͶ×ÊÐí¿É£¬½«Êʵ±À©´ó·¶Î§¡£¸ù¾ÝÎÒÊ¡¿í´øIPÍøÏÖ×´£¬±¾ÆÚ¹¤³ÌBASÉ豸×éÍø²ÉÓÃÒÔÏÂÁ½ÖÖ·½°¸¡£ 2.1.1 ·½°¸Ò» BASÉÏÁªÎªË«ÉÏÁª£¬ÆôÓö¯Ì¬Â·ÓÉЭÒ飬²ÉÓÃGEÁ´Â·Á¬½ÓGSRºÍBASËùÔÚ¾Ö6509/7609É豸£¬ÏÂÐвÉÓÃGE¶þ²ãÁ´Â·Á¬½ÓÆäËû»ã¾Û½»»»»ú£¨6509/7609£©¡£ÆäÖÐBASÉÏÐÐÁ÷Á¿£¨³ýCDN£©Í¨¹ýµ¥GEÁ´Â·Ö±½ÓÉÏGSR£»BASÓëBASËùÔÚÖ÷¾Ö»ã¾Û½»»»»úÖ®¼ä¸ù¾ÝÁ÷Á¿´óС£¬¿É²ÉÓõ¥GE£¨Í¬Ê±Æð¶þ¡¢Èý²ã£¬¶þ²ãÅÜPPPOEÁ÷Á¿£¬Èý²ãÅÜÉÏÐÐÖÁCDNµÄ·ÃÎÊÁ÷Á¿£¬BASͬһ¶Ë¿Ú¿ÉÒÔ¶Ô¶þ¡¢Èý²ãÁ÷Á¿´ø¿í½øÐв»Í¬µÄÏÞÖÆÏÞÖÆ£©»òË«GEÁ´Â·£¨·Ö±ðÅܶþ¡¢Èý²ãÁ÷Á¿£©ÏàÁ¬¡£ ÒÔÏÂÒÔÊÇ¿ª·âµÄÁ¬½ÓÇé¿ö£¬´Ë´ÎÏîÄ¿Öд󲿷ֵØÊвÉÓÃÕâÖÖ×éÍø·½°¸¡£ ÖÁÖ£ÖÝÖÐԭ·¾Ö¿ª·¢Çø¾Ö ÐÂËη¾ÖÖÁÂåÑôÎ÷¹¤¾ÖÉè¼Æ×ܸºÔðÉó ºËÈÕ ÆÚ2005.10ͼ ºÅ05062KF-SJ/Y-02Éè ¼Æ±È ÀýÉè¼Æ¸ºÔ𵥠λ ÖÆ ͼͼ Àý£º±íʾ12016É豸ºÓÄÏÊ¡µçÐŹ滮Éè¼ÆÔº ±íʾ6509É豸±íÊ¾Íø¹ÜÉ豸±íʾBRASÉ豸±íʾBRASÍø¹Ü±íʾԭÓеç·±íʾпªGEµç· ¿ª·âBRASÉ豸×éÍøÍ¼ 6509ѧԺÃÅ 6509±õºÓ· 6509Æ»¹ûÔ° ͼ2-2-1 ¿ª·â×éÍø·½°¸Ê¾Òâͼ ·½°¸µÄÓŵ㣺£¨1£©ÉÏÁªÁ´Â·²ÉÓÃË«ÉÏÁª£¬Æðµ½±¸·Ý×÷Óã¬Á÷Á¿¸ü¼ÓºÏÀí£¬·ÃÎÊ6509ÉϵÄCDN·þÎñÆ÷Á÷Á¿²»¾­¹ýGSR£¬ÆäËûÁ÷Á¿Ö±½ÓÊèͨÖÁÊ¡¹Ç¸ÉÍø£»£¨2£©ÓëGSR£¨P·ÓÉÆ÷£©ÏàÁ¬½â¾öÁËBASÉÏMPLS VPN£¨ÓÈÆäÊÇADSL½ÓÈëVPN£©ÒµÎñµÄ¿ª·ÅÎÊÌ⣻£¨3£©´Ë·½°¸¸ü½Ó½üÓÚ¼¯ÍŹ«Ë¾µÄ³ÇÓòÍø½¨ÉèÖ¸µ¼Òâ¼ûµÄÄ¿±ê×éÍø·½°¸£¨BASÈ¡ÏûÅÔ¹Ò£¬¸ÄΪֱ¹Ò£¬Ôö¼ÓÒµÎñ·ÓÉÆ÷AR/SR£©£¬±ãÓÚ½«À´ÏòÄ¿±êÍøÂçÑݽø¡£ ·½°¸È±µã£ºÄ¿Ç°GSR¶Ë¿Ú½ôÕÅ£¬´Ë·½°¸Õ¼ÓÃGSR¶Ë¿Ú¹ý¶à¡£ 2.1.2 ·½°¸¶þ BAS²ÉÓÃË«GE£¨»ò¶àGE£©Á¬½ÓÖ÷¾Ö½»»»»úÉ豸£¬BASµÄÉÏ¡¢ÏÂÐÐÁ÷Á¿¸÷Õ¼Óõ¥¶ÀµÄGEͨµÀ£¬ÆäËûºËÐÄ»ã¾Û½»»»»ú²ÉÓÃGEÁ¬½ÓÖ÷¾Ö»ã¾Û½»»»»ú£¬Ö÷¾Ö»ã¾Û½»»»»ú»ã¾ÛËùÓеÄPPPoEÓû§Á÷Á¿¡£ ·½°¸µÄÓŵ㣺£¨1£©²»Õ¼ÓÃGSR¶Ë¿Ú×ÊÔ´£¨2£©Í¨¹ýÖ÷¾Ö½»»»»ú»ã¾ÛÆäËû½»»»»úPPPoEÓû§Á÷Á¿£¬½ÚÊ¡BAS ¶Ë¿Ú£¬½ÚʡͶ×Ê£» ·½°¸µÄȱµã£º£¨1£©Ôö´óÖ÷¾Ö»ã¾Û½»»»»úÁ÷Á¿Ñ¹Á¦£¨2£©Ó뼯ÍųÇÓòÍø¹æ»®Ä¿±êÍøÂç·½°¸¾àÀë½Ï´ó¡£²»ÀûÓÚÏòÄ¿±êÍøÂçÑݽø¡£ ͼ2-2-2 ¼ÃÔ´BAS×éÍøÍ¼ 3 BRASÒµÎñÅäÅZ¹æ·¶ 3.1 É豸»ù±¾ÅäÅZ É豸µÄ»ù±¾ÅäÅZ°üÀ¨Ö÷»úÃû£¬Ê±ÖÓУ׼£¬ÉèÅZ¹ÜÀíÔ±¡£ ÉèÅZÖ÷»úÃû É豸ÃüÃû¹æÔò »úÆ÷ÃüÃû¹æÔò£º µØÊÐÃûËõд£­¾ÖÏòËõд£­BX£¨XΪÐòºÅ£¬Èç1,2,3,4£© È磺֣Öݰٻ¨Â·se800 µÄ Ãû×ÖΪzhzh£­bhl£­B1 [local]byq800(config)#system hostname word »úÆ÷ÃüÃû¹æÔò£º ʱÖÓУ׼ ʱÖÓУ׼ÈçÏ£º [local]SE-2#clock set yyyy:mm:dd:hh:mm[:ss] ÅäÅZ¹ÜÀíÔ±¼°ÆäÃÜÂë [local]se800(config-ctx)#administrator word password word [local]se800(config-ctx-admin)#privil start 10 ÉèÅZ³õʼ»¯È¨ÏÞ [local]se800(config-ctx-admin)#privil max 15 ÉèÅZÓû§×î¸ßȨÏÞ ÅäÅZenable secret ÃÜÂë [local]se800(config-ctx)# enable password word ÆôÓÃssh ·þÎñ ÓÉÓÚSE800ËùÓеķþÎñ¶¼È±Ê¡¹Ø±Õ£¬Ïñtelnet ,ftp µÈµÈ [local]xch-qyl-se800(config-ctx)#service ssh ¶Ô¹ÜÀíÔ±µØÖ··¶Î§½øÐÐÏÞ¶¨ ¶¨Òå·ÃÎÊ¿ØÖÆÁÐ±í£º ip access-list admin-acl description This is a sample access control list seq 10 permit ip host 10.10.10.2 seq 20 permit ip host 10.10.10.3 seq 25 permit ip host 10.10.10.4 seq 60 deny ip any È»ºóÓ¦Ó÷ÃÎÊ¿ØÖÆÁбí admin-access-group admin-acl in 3.2 ½Ó¿ÚÅäÅZ ¶ÔÓÚÉÏÁª½Ó¿Ú£¬Í¨¹ý½«Ðé½Ó¿ÚÓëÎïÀí¶Ë¿ÚµÄPVC½øÐаó¶¨À´Íê³É¡£ ¶ÔÓÚÓû§½Ó¿Ú£¬Í¨¹ý¶ÔÎïÀí¶Ë¿ÚµÄPVC½øÐж¯Ì¬°ó¶¨À´Íê³É£¬ÅäÅZ¼û3.7¡£ »¥ÁªµØÖ·ÃüÃû¹æ·¶ interface contextname-to-¶Ô¶ËÉ豸ÐͺÅA/B (A/B´ú±í¶Ô¶Ë¶Ë¿ÚºÅ,Èç6/1) Èç °Ù»¨Â·context iptvÉÏÁ¬µ½°Ù»¨Â·gsr Interface iptv-to-bhlgsr1/2 loopback ½Ó¿ÚµÄÃüÃû¹æÔò interface contextname£­loopback loopback È磺 localµÄloopbackµÄÃüÃû interface local-loopback loopback ÎïÀí¶Ë¿ÚÃèÊö¹æÔò Description to-¾ÖÏòËõд-É豸Ãû¶Ë¿ÚºÅ Èç ¶Ë¿Ú2/1Á¬½Óµ½°Ù»¨Â·gsr3/1 µÄÃèÊöÈçÏ£º Description to-bhl-gsr3/1 ÅäÅZ·ÖÒÔÏÂÁ½²½£º ÔÚÌØ¶¨contextϽ¨interface ÔÚʵ¼ÊÎïÀí½Ó¿Úϰó¶¨interface


SE800ÅäÖÃÖ¸ÄÏ - ͼÎÄ(2).doc ½«±¾ÎĵÄWordÎĵµÏÂÔØµ½µçÄÔ ÏÂÔØÊ§°Ü»òÕßÎĵµ²»ÍêÕû£¬ÇëÁªÏµ¿Í·þÈËÔ±½â¾ö£¡

ÏÂһƪ£ºÒ»Äê¼¶ÏÂѧÆÚÊýѧÆÚÄ©½â¾öÎÊÌâÓ¦ÓÃÌâ´óÈ« - ͼÎÄ

Ïà¹ØÔĶÁ
±¾ÀàÅÅÐÐ
¡Á ×¢²á»áÔ±Ãâ·ÑÏÂÔØ£¨ÏÂÔØºó¿ÉÒÔ×ÔÓɸ´ÖƺÍÅŰ棩

ÂíÉÏ×¢²á»áÔ±

×¢£ºÏÂÔØÎĵµÓпÉÄÜ¡°Ö»ÓÐĿ¼»òÕßÄÚÈݲ»È«¡±µÈÇé¿ö£¬ÇëÏÂÔØÖ®Ç°×¢Òâ±æ±ð£¬Èç¹ûÄúÒѸ¶·ÑÇÒÎÞ·¨ÏÂÔØ»òÄÚÈÝÓÐÎÊÌ⣬ÇëÁªÏµÎÒÃÇЭÖúÄã´¦Àí¡£
΢ÐÅ£º QQ£º