第一步划分地址
172.16.0.0/16
172.16.000 00000.0/19
172.16.0.0/19----A0
172.16.1.0/29---MA
172.16.1.8/29
172.16.1.16/29
环回
172.16.2.0/24
172.16.3.0/24
172.16.32.0/19---A1
172.16.32.0/29
172.16.32.4/29
172.16.32.8/29
172.16.33.0/24--环回
172.16.64.0/19---A2
172.16.65.0/29
172.16.65.8/29
172.16.66.0/24--环回
172.16.96.0/19---A3
172.16.97.0/29
172.16.97.8/29
172.168.98.0/24--环回
172.16.128.0/19--A4
172.16.129.0/29
172.16.131.0/29
172.16.130.0/24--环回
172.16.160.0/24---RIP
172.16.172.0/24
45.0.0.0/24--ISP
5.5.5.0/24--环回
172.16.192.0/19
172.16.224.0/19 备选
第二步配地址
[R1-GigabitEthernet0/0/0]ip add 172.16.33.1 29
[R1-GigabitEthernet0/0/0]ip add 172.16.33.1 29
[R1-LoopBack0]ip add 172.16.34.1 24
[R2-GigabitEthernet0/0/0]ip add 172.16.33.2 29
[R2-LoopBack0]ip add 172.16.35.1 24
[R3-GigabitEthernet0/0/0]ip add 172.16.33.3 29
[R3-LoopBack0]ip add 172.16.36.1 24
[R3-GigabitEthernet0/0/1]ip add 172.16.1.1 29
[R4-GigabitEthernet0/0/1]ip add 172.16.1.2 29
[R4-GigabitEthernet0/0/2]ip add 172.16.1.9 29
[R4-GigabitEthernet0/0/0]ip add 172.16.1.17 29
[R4-GigabitEthernet2/0/0]ip add 45.0.0.1 24
[R5-GigabitEthernet0/0/0]ip add 45.0.0.2 24
[R5-LoopBack0]ip add 5.5.5.5 24
[R6-GigabitEthernet0/0/1]ip add 172.16.1.10 29
[R6-GigabitEthernet0/0/0]ip add 172.16.65.1 29
[R7-GigabitEthernet0/0/0]ip add 172.16.1.18 29
[R7-GigabitEthernet0/0/1]ip add 172.16.97.1 29
[R8-GigabitEthernet0/0/0]ip add 172.16.97.2 29
[R8-GigabitEthernet0/0/1]ip add 172.16.97.9 29
[R8-LoopBack0]ip add 172.16.98.1 24
[R9-GigabitEthernet0/0/0]ip add 172.16.97.10 29
[R9-LoopBack0]ip add 172.16.130.1 24
[R9-GigabitEthernet0/0/1]ip add 172.16.129.1 29
[R10-GigabitEthernet0/0/0]ip add 172.16.129.2 29
[R10-LoopBack0]ip add 172.16.131.1 24
[R11-GigabitEthernet0/0/0]ip add 172.16.65.2 29
[R11-GigabitEthernet0/0/1]ip add 172.16.65.9 29
[R11-LoopBack0]ip add 172.16.66.1 24
[R12-GigabitEthernet0/0/0]ip add 172.16.65.10 29
[R12-LoopBack1]ip add 172.16.172.1 20
[R12-LoopBack0]ip add 172.16.160.1 20
第三步写OSPF
第四步重发布和下发缺省路由
[R9-ospf-1]import-route ospf 2
[R12-ospf-1]import-route rip 1
[R9-ospf-2]default-route-advertise always
第五步 区域汇总
域间汇总
R3-ospf-1-area-0.0.0.1]abr-summary 172.16.32.0 255.255.224.0
[R6-ospf-1-are2a-0.0.0.2]abr-summary 172.16.64.0 255.255.224.0
[R7-ospf-1-area-0.0.0.3]abr-summary 172.16.96.0 255.255.224.0
域外汇总
[R12-ospf-1]asbr-summary 172.16.160.0 255.255.224.0
[R9-ospf-1]asbr-summary 172.16.128.0 255.255.224.0
第六步在非骨干做特殊区
完全的末梢区域
[R1-ospf-1-area-0.0.0.1]stub
[R2-ospf-1-area-0.0.0.1]stub
[R3-ospf-1-area-0.0.0.1]stub no-summary
完全的NSSA区域
[R6-ospf-1-area-0.0.0.2]nssa no-summary
[R11-ospf-1-area-0.0.0.2]nssa
[R12-ospf-1-area-0.0.0.2]nssa
[R7-ospf-1-area-0.0.0.3]nssa no-summary
[R8-ospf-1-area-0.0.0.3]nssa
[R9-ospf-1-area-0.0.0.3]nssa
第七步所有设备均可访问R5的环回做NAT
[R4-acl-basic-2000]rule permit source 172.16.0. 0 0.0.255.255
[R4-GigabitEthernet0/0/0]nat outbound 2000
ip route-static 0.0.0.0 0 45.0.0.2
[R4-ospf-1]default-route-advertise
第八步区域认证
[AR1-ospf-1-area-0.0.0.1] authentication-mode md5 1 cipher 123456
[AR2-ospf-1-area-0.0.0.1] authentication-mode md5 1 cipher 123456
[AR3-ospf-1-area-0.0.0.1] authentication-mode md5 1 cipher 123456
[AR3-ospf-1-area-0.0.0.0] authentication-mode md5 1 cipher 123456
[AR4-ospf-1-area-0.0.0.0] authentication-mode md5 1 cipher 123456
[AR6-ospf-1-area-0.0.0.0] authentication-mode md5 1 cipher 123456
[AR7-ospf-1-area-0.0.0.0] authentication-mode md5 1 cipher 123456
[AR6-ospf-1-area-0.0.0.2] authentication-mode md5 1 cipher 123456
[AR12-ospf-1-area-0.0.0.2] authentication-mode md5 1 cipher 123456
[AR11-ospf-1-area-0.0.0.2] authentication-mode md5 1 cipher 123456
[AR1-ospf-7-area-0.0.0.3 authentication-mode md5 1 cipher 123456
[AR2-ospf-8-area-0.0.0.3] authentication-mode md5 1 cipher 123456
[AR3-ospf-9-area-0.0.0.3] authentication-mode md5 1 cipher 123456
[AR9-ospf-1-area-0.0.0.4 authentication-mode md5 1 cipher 123456
[AR10-ospf-1-area-0.0.0.4] authentication-mode md5 1 cipher 123456