Documentos de Académico
Documentos de Profesional
Documentos de Cultura
TM HIU V IS-IS
MC LC
I.
I.1 M t
12
13
II.
14
Cu hnh IS-IS 15
15
II.2.1 Cc cu lnh....................................................................................................15
II.2.2 Cc v d khi cu hnh cho Router CISCO...........................................18
II.3 Trong Router Alcatel 7750 30
II.3.1 Cc cu lnh....................................................................................................30
II.3.2 Cc v d cu hnh trn Alcatel 7750.....................................................33
II.4 Cu hnh trong Juniper T1600
35
42
Bo co th vic
TM HIU V IS-IS
I.1 M t
Vic to ra IS-IS l mt phn trong s n lc to ra mt giao thc chun
quc t c th cnh tranh vi TCP/IP. IS-IS c pht trin p ng:
Mt giao thc khng mang tnh c quyn.
H tr di a ch rng v phn cp.
Mt giao thc hiu qu, cho php hi t nhanh, chun xc v t gy
qu ti mng.
Khi nc M yu cu mi h thng trong chnh ph u phi c kh nng
chy OSI, IS-IS c m rng gip chuyn i cc tuyn ng hc c t
IP vo OSI. Tuy nhin cui cng th Internet (c xy dng trn TCP/IP)
chim u th trong thc tin v c coi nh mt chun quc t. Khi IS-IS c
dng h tr IP, chnh xc n c gi l Integrated IS-IS (IS-IS tch hp)
nhng n gin thng gi tt l IS-IS.
Trong nhng nm gn y, ngi ta li nhc li nhng u im ca IS-IS:
IS-IS l mt giao thc c lp.
Kh nng m rng tt.
C kh nng xc lp nh tuyn theo ToS (Type of Service - Kiu dch
v) tuy nhin ToS khng c IOS h tr.
IS-IS vn ln nh mt giao thc nh tuyn cho IPv6 hay s dng vi
MPLS (Multi-Protocol Label Swiching).
IS-IS l mt giao thc nh tuyn kiu trng thi lin kt Link-state, ngha
l n hot ng trn s hiu bit chnh xc v thng tin topo mng xuyn qua
cc routers. Mi mt router s xy dng ring cho n mt m hnh topo mng.
Gi tin hoc n v d liu s c chuyn tip trn ng vn chuyn tt nht
da trn topo mng m router xy dng, truyn n v tr ch.
IS-IS s dng thut ton Dijkstra cho s tnh ton tuyn ng tt nht.
Bo co th vic
TM HIU V IS-IS
* C IS-IS v OSPF u l nhng giao thc nh tuyn kiu trng thi
lin kt Link-state routing protocol.
* V c hai cng s dng thut ton Dijksrta tnh ton tuyn ng
tt nht xuyn qua mng (thut ton SPF).
* C OSPF v IS-IS l giao thc nh tuyn trong min IGP.
* C hai cng h tr VLSM (Variable Length Subnet Masks), c th pht
hin nhng routers hng xm bng cch truyn multicast nhng bn tin Hello
packets, v c h tr chng thc cho qu trnh cp nht nh tuyn.
OSPF c trin khai trong hu ht cc mng cp cng ty, trong khi ISIS
c dng trong cc mng ISP (Internet Service Provider).
I.2.b Khc nhau:
Trc tin, d hiu, ta s map mt s khi nim bn OSPF qua IS-IS.
Bo co th vic
TM HIU V IS-IS
OSPF
IS-IS
Area
Stub area
Area ID
Area ID
Backbone area
Backbone area
DIS
(Designated
System)
Intermediate
DR (Designated Router)
Domain
Network
ES (End System)
Host
Router
Level 1
Level 1-2
Level 2
Backbone router
Packet
Bo co th vic
TM HIU V IS-IS
pht ra t cc router trong mng s dng giao thc nh tuyn trng thi lin
kt nhm lit k ra nhng router hng xm (neighbours).
Cc cng trong OSPF mi lin kt s thuc v mt khu vc area (mi
interface thuc v mt khu vc).
Bo co th vic
TM HIU V IS-IS
* Loi router c y thng tin trong database l level 1-2. c im
ca n l tng t vi ABR trong OSPF. Router ny s c cc router lng ging
nm trong cc area khc nhau bi v n gi c hello loi 1 v hello loi 2. Router
level 1-2 ny s thng bo cho cc level-1 router khc v cc area m n ni v,
hn na n s thng bo cho cc level 2 router thng tin v area ca n. Router
loi ny s tiu tn nhiu b nh v CPU.
Thng tin nh tuyn ch c trao i gia cc routers cng level. Cc
Routers level 1-2 trao i thng tin vi c 2 loi router level khc v n c s
dng kt ni cc router lin ngoi vng v ni vng.
Bo co th vic
TM HIU V IS-IS
ny.
IS-IS c th thch nghi vi nhng thay i cn thit hoc cc ci tin
trong cng ngh bng cch nh ngha mt TLV mi. Cu trc ca trng TLV:
- Type: Xc nh thng tin qung b v cc c tnh lin quan.
V d: TLV c Type=128 l mt qung b ca IP.
- Length: di ca trng thng tin, y l mt trng quan trng
bi v di ca cc trng thng tin c th khc nhau.
- Value: Thng tin qung b, c th l cc tuyn ng, IS neighbor
hoc chng thc
Cu trc TLV gip vic qung b d dng phn nhm v qung b
cng nhau. Do , IS-IS cn t gi tin hn cho LSP v gip n c kh nng thch
ng so vi OSPF.
Mt iu quan trng na l nm r nhng kiu TLV m thit b ca
bn h tr v n quyt nh ti vic thit k v cu hnh mng, Router nhn s
b qua mi trng TLV m n khng h tr.
Mt s khc nhau kh r l qu trnh ng gi ca hai giao thc.
ISIS l c lp v n chy trc tip t lp datalink: trong IS-IS, PDU
(Protocol Data Unit n v d liu ca giao thc) c ng gi trc tip vo
cc Frame ca lp Datalink). S phn mnh (fragmentation) thuc v trch
nhim ca ISIS.
Ngc li OSPF c ng gi trong IP v v vy b gii hn bi giao
thc .
S khc bit ny gip cho IS-IS c th thch nghi vi hon cnh ch
bng cch thm mt TLV mi. Mt v d cho u im ny l vic ng gi d
liu trong IPv6. Khi mt giao thc Lp 3 mi c pht trin, IS-IS thch nghi
mt cch nhanh chng bng cch to mt trng IPv6 TLV mi. OSPF cn
nhiu thi gian hn thch nghi v dn ti vic hnh thnh mt phin bn mi
ca giao thc ny OSPFv3.
Ngoi ra, c mt im khc bit na, trong IS-IS nh ngha thm mt
kiu a ch: NSAP address (Network Service Access-point) m trong OSPF
khng c.
Bo co th vic
TM HIU V IS-IS
Hnh 4 a ch ISO NET address n gin
Bo co th vic
TM HIU V IS-IS
Bo co th vic
TM HIU V IS-IS
Bo co th vic
TM HIU V IS-IS
Trn cc kt ni broadcast, tt c cc router chy IS-IS s nhn packets
c gi bi mt router duy nht DIS. DIS c trch nhim pht tn (flooding)
tt c cc routers ang chy IS-IS. Mt cch din t khc l DIS s pht tn
cc LSP cho pseudonode.Mt paseudenode s tng trng cho mt mng LAN,
trong mi router ca LAN l mt interface o ca router o kia. Router o
ny gi l pseudonode. Cng ging nh router tht, router o s pht tn cc
LSP khi c mt thay i trong kt ni ca LSP (v d nh khi c mt router ln
cn online).
Cc quan h lin k vi cc routers khc s c duy tr bi DIS. DIS
s gi cc Hello mi 3.3 giy. C ch ny nhm m bo tnh ton vn ca cc
kt ni. Nu c mt vn vi DIS hin ti hoc c mt router khc c u
tin cao hn, router DIS hin hnh s b cho v hu. Qu trnh bu chn da trn
u tin. Nu tt c cc router c gi tr u tin mc nh l 64 th router
no c gi tr SNPA (hay n gin hn l MAC address) cao nht s l DIS.
Bo co th vic
TM HIU V IS-IS
LSP c to ra khi c mt thay i trong mng, thng thng do cu
hnh mt router no thay i. Tuy nhin, bt c mt s kin no di y
cng kch hot to ra LSP:
Mt router lng ging up hoc down.
Mt interface trn router thay i trng thi hoc metric.
Mt ng i thay i.
Trong qu trnh pht tn, mt router s truyn v nhn cc LSPs.
* Gi v nhn LSP:
Khi nhn c mt LSP, router s lu trong database v nh du s
pht tn LSP ny. Nu LSP c trong database, router ch cn gi ack v sau
b qua LSP ny. Nu y l LSP mi, router s to ra mt LSP m t kt ni
ca n vi router lng ging. Sau , router s gi LSP mi v LSP do chnh n
to ra n cc neighbor. Cc neighbor kia, n lt n s pht tn n cc
neighbor k tip. Cc LSP level-1 c gi ra ton b area, trong khi cc level-2
LSP c gi ra tt c cc Level 2 routers.
Qu trnh truyn cc LSP trn cc kt ni vt l khc nhau s khc nhau.
* Truyn cc LSP trn cc interface point-to-point:
- Khi mt quan h adjacency c thit lp, c hai u u gi cc
CSNP packet trong c mt phin bn thu nh ca database.
- Nu c bt k mt LSP no khng c trong CSNP, router s gi mt
bng LSP cho router kia.
- Tng t, nu trong c s d liu b mt mt LSP no , router
nhn s yu cu gi li chnh xc LSP .
- Cc LSP c yu cu gi, nhn v cng nhn (ack) nh vo cc
PSNP.
- Khi mt LSP c gi, router s thit lp mt ng h. Nu sau mt
khong thi gian ht hiu lc (expire), LSP s c gi li.
Khong thi gian ny gi l minimumLSPTransmission-interval.
* Truyn cc LSP trn cc kt ni broadcast:
Cc update mc level 1 v level 2 dng cc a ch multicast. DIS c ba
cng vic sau:
To v duy tr cc quan h.
To v cp nht cc LSP.
Pht tn cc LSP trn mng LAN.
* Cc bc chnh trong qu trnh pht tn:
Khi nhn c CSNP, router s so snh LSP vi database.
Nu database c mt bn LSP mi hn hoc nu khng c phin
bn no ca LSP trong CSNP, router s pht tn cc LSP vo mng
LAN dng multicast.
T Chuyn mch i HCM
Thi Quc Khng
Bo co th vic
TM HIU V IS-IS
Nu database khng c LSP c gi trong CSNP, n s gi PSNP
yu cu mt LSP y .
Bo co th vic
TM HIU V IS-IS
Cc metric ty chn c tham kho trc khi default-metric c
chn. Tuy nhin Routers ch h tr default-metric.
Cc ng i bn trong (internal) c chn trc cc ng i
external.
Cc ng i level-1 bn trong mt area th c u tin hn.
a ch vi subnetmask di nht s c dng.
Nu ToS (Type of Service) c cu hnh, ng i c ToS s c
chn trc cc ng i khc.
Nu ToS l bng nhau, s c ti a 6 ng i c t trong bng
routing. Router s thc hin load-balancing trn cc ng i ny.
Nu khng c ng i no, router s chuyn packet n level-2 router
gn nht, l router mc nh.
* Metric or Cost
Metric nh ngha ph tn ca ng i. IS-IS c 4 metric, trong ch c
mt metric l c dng. Cc metric c nh ngha l:
Default: Thng thong cn c gi l cost. Tt c cc IS-IS router phi
h tr loi cost ny. Gi tr mc nh l 10.
Delay.
Expense: phn nh chi ph hin thi ca network.
Error: tin cy ca ng i.
Qu trnh forwarding:
Cc ng i c subnet mask di nht s c chn.
Qu trnh nhn:
Cha c m t chi tit.
Bo co th vic
TM HIU V IS-IS
V d:
ID.
Cho m hnh mng nh sau:
Bo co th vic
TM HIU V IS-IS
thi gian update, database s hi t nhanh hn nhng network c th thiu
resource route d liu.
Mt vi thit k tiu biu bao gm:
Mt mng dng flat ch dng level-1 routing. Thit k ny s khng
mang tnh m rng v bt k mt thay i no trong mng cng to
ra mt s pht tn cc LSPs n tt c cc routers. Tuy nhin, thit
k n gin ny c u im l ch c mt c s d liu v khng c
vn v suboptimal routing.
Mt mng flat dng level-2 routing: Khi h thng mng pht trin,
cc level-1 c th thm vo.
Mt h thng mng c cu trc, trong phn core chy level-2
routing cn level-1 kt ni n core. Level 1-2 router c dng
kt ni cc area.
I.6.b Route Summarization
Cc level 1-2 routers c th tm lc cc routes bn trong area ca n.
Route tng (summarize route) c lan truyn n level-2 routers.
Level 1 routes khng th c summarize bn trong areas bi v ISIS khng cho
php iu ny.
Bo co th vic
TM HIU V IS-IS
Hot ng mt cch tng t OSPF (Open Shortest Path First),
nhng IS-IS ngy cng ng c quan tm, v:
o OSPF ch h tr ti a vi chc Router (khong 50 node
mng), cn IS-IS c th ln n vi trm. Trong khi mng
truyn dn trc ti VTN l rt ln.
o S hiu qu trong cch thc ng gi ca IS-IS so vi OSPF.
Vi nhng dch v khc nhau, OSPF phi ng thnh nhng
kiu gi tin khc nhau (v OSPF ng gi ti lp 3 Network,
nn ph thuc vo giao thc IP). Ngc li, IS-IS lm vic
ti nh ca lp 2 Datalink, vic ng gi cho cc loi dch
v khc nhau ch sai khc nhau phn TLV pha sau Header
chun.
o Cc trng TLV (Type-Length-Value) gip IS-IS d dng h
tr cho IPv6, trong khi OSPF mun h tr cho IPv6 phi m
rng ln thnh 1 giao thc mi OSPFv3.
o Giao thc IS-IS m rng c th h tr trn nn MPLS, v c
th p dng tin hnh vic nh tuyn kt hp vi iu
khin lu lng Traffic Engineering.
* Kt lun: Giao thc nh tuyn IS-IS l mt giao thc ng c quan
tm v ngy cng c p dng rng ri hn trong mi trng mng ng
trc, h tr cho mng ca cc nh cung cp dch v Internet (ISP).
Sa
i
t a ch OSI
(Area Address)
* Ci t cc chng thc.
* nh timer cho cc bn tin xc thc.
t a ch IP address
p cho Interface vo
IS-IS, chn level
Hin th v X l
(Show & Debug)
n
g
* Thit lp cc ng Route.
* Thc hin Redistribute (nu cn)
END
Sau y ta s i tm hiu vo mt vi loi Router ang c s dng:
Thc hin:
c thc hin trong mode Config., tc dng enable giao thc
nh tuyn IS-IS cho Router.
Ghi ch:
Nu nh tuyn cho gi CLNS packets, cn thm cu lnh:
Host(config)#clns routing
b. Cu hnh cc tham s tng qut:
t a ch NET:
Cu lnh:
Host(config-router)#net network-entity-title
Thc hin:
Cu hnh 1 a ch NSAP address.
Cu hnh level cho Router:
Cu lnh:
Host(config-router)#is-type {level-1 | level-1-2 | level-2-only}
Thc hin:
Cu hnh cho Router ng vi level ca n trong m hnh mng.
Ghi ch:
Mc nh ca CISCO, n s p cho router vo Level-1-2.
Cu hnh level trong IS-IS l mc Router, ch khng nh
OSPF l mc tng Interface.
c. Cu hnh cho cc Interfaces:
Ci t vic nh tuyn cho gi IP hay CLNS.
Cu lnh:
Host(config-if)#ip router isis
Host(config-if)#clns router isis
Thc hin:
Vo mode interface, ngha l ta phi vo 1 interface, sau ,
dung cu lnh Ip router isis p cho interface ny s dng giao
thc IS-IS nh tuyn gi tin IP; nu vic nh tuyn c thc
hin bng gi tin OSI (CLNS packets), th cu lnh clns router
isis c s dng.
Ghi ch:
Vic thc hin cu lnh ny l cn thit. Nu khng thc hin cu
lnh trn, Interface s khng apply vo giao thc IS-IS, s khng
thc hin c qu trnh nh tuyn.
Trong thc t th vic nh tuyn gi tin IP ph bin hn so vi
CLSN.
(1)
(2)
(3)
(4)
(5)
thc
IS-IS.
Ghi ch:
Dng show ? tm kim nhng cu lnh show tng ng vi
mc ch cc tham s m ta ang cn hin th.
II.2.2 Cc v d khi cu hnh cho Router CISCO
II.2.2.a Ci t IS-IS c bn trong cng mt Area
Ta c s mng nh sau:
Trn R2:
Trn R3:
Trn R3:
R3(config)# router isis
R3(config-router)# net 49.0001.3333.3333.3333.00
R3(config-router)# interface fastethernet 0/0
R3(config-if)# ip router isis
R3(config-if)# interface loopback 0
R3(config-if)# ip router isis
Bc 2: Thc hin vic ci t cc a ch IP addres trn looback, v trn
Interfaces ca cc Router (thc hin n gin b qua); sau dng cc cu
lnh show hin th cc thng tin trong giao thc nh tuyn IS-IS:
R1# show ip protocols
Routing Protocol is "isis"
Invalid after 0 seconds, hold down 0, flushed after 0
Outgoing update filter list for all interfaces is not set
Incoming update filter list for all interfaces is not set
Redistributing: isis
Address Summarization:
None
Maximum path: 4
Routing for Networks:
FastEthernet0/0
Loopback0
Routing Information Sources:
Gateway
Distance
Last Update
192.168.30.1
115
00:00:36
192.168.20.1
115
00:00:36
Distance: (default is 115)
Giao thc ang c chy trn R1 chnh l IS-IS.
R1# show clns protocols
IS-IS Router: <Null Tag>
System Id: 1111.1111.1111.00 IS-Type: level-1-2
Manual area address(es):
49.0001
Routing for area address(es):
49.0001
State
Up
Up
Holdtime
9
29
Type Protocol
L1L2 IS-IS
L1L2 IS-IS
Up
27
L1L2 IS-IS
Interface
SNPA
Fa0/0
Fa0/0
0004.9ad2.d0c0
0002.16f4.1ba0
System Id Interface
SNPA
R2
Fa0/0
0004.9ad2.d0c0
R3
Fa0/0
0002.16f4.1ba0
end
R2# show run
Building configuration...
!
hostname R2
!
interface Loopback0
ip address 192.168.20.1 255.255.255.0
ip router isis
!
interface FastEthernet0/0
ip address 172.16.0.2 255.255.255.0
ip router isis
isis password cisco
isis priority 100
isis hello-interval 5
no shutdown
!
router isis
net 49.0001.2222.2222.2222.00
is-type level-1
domain-password cisco
!
end
R3# show run
Building configuration...
!
version 12.4
!
hostname R3
!
interface Loopback0
ip address 192.168.30.1 255.255.255.0
ip router isis
!
interface Serial0/0/0
ip address 10.0.0.1 255.255.255.252
ip router isis
clock rate 128000
no shutdown
!
router isis
net 49.0002.3333.3333.3333.00
is-type level-2-only
domain-password cisco
!
End
ch Level 2 m thi.
c. Cu hnh ISO Area Addresses:
Cu lnh:
config>router# isis
area-id area-address
Thc hin:
t a ch NSAP (NET) cho router.
d. Cu hnh cc thng s tng qut cho IS-IS:
Cc cu lnh:
config>router# isis
config>router>isis#
config>router>isis# level-capability level-2
config>router>isis# authentication-check
config>router>isis# authentication-type password
config>router>isis# authentication-key test
config>router>isis# overload timeout 90
config>router>isis# traffic-engineering
Thc hin:
- Chn cp cho Router l Level-n ; n=1, 2 hay 1/2.
- C chng thc bng cu lnh authentication-check.
- t password = do ngi cu hnh t vo,
password ny cn ging nhau gia nhng Router k cn
cng chy IS-IS.
- Thi gian overload = 90s.
- C h tr traffic-engineering.
e. Cu hnh IS-IS trn tng Interface ca Router:
Cu lnh:
PEx>config>router>isis# interface system
PEx>config>router>isis>if# back
PEx>config>router>isis# interface <topex>
PEx>config>router>isis>if# interface-type point-to-point
Thc hin:
Apply cho tng Interface chy IS-IS.
Cu lnh:
PEx>config>router>isis# reference-bandwidth 100000000
Thc hin:
Chn BW(ref)=100.000.000bps = 100Mbps
Ghi ch:
Metric = BW(ref) / BW
f. Cu hnh IPv6 h tr trn IS-IS:
Cu lnh:
config>router# isis
multi-topology
ipv6-unicast
Thc hin:
Thc hin giao thc nh tuyn i vi IPv6.
Ghi ch:
IPv6-unicast-address = l a ch n hng, xc
nh 1 node mng n (router), c th l khi mt gi tin
c gi ti 1 mt a ch n hng unicast s c
chuyn ti ng node mng mang a ch Unicast .
g. Cc cu lnh Show h tr IS-IS trong Alcatel 7750:
Cu lnh:
PEx# show router isis status
(1)
PEx# show router isis interface
(2)
PEx# show router route-table protocol isis(3)
PEx# show router isis adjacency
(4)
PEx# show router isis database
(5)
Thc hin:
(1) Xem trng thi hin ti ca giao thc IS-IS.
(2) Xem thng s ca cc Interfaces chy IS-IS.
(3) Xem bng nh tuyn c thc hin bng IS-IS.
(4) Xem cc Adjacencies cng chy IS-IS.
(5) Xem c s d liu trng thi lin kt ca IS-IS.
Ghi ch:
Cu lnh (1) gip ta thy c area-id ca node mng.
Cu lnh (2) hin th metric trn tng Interface.
h. Cc cu lnh h tr chng thc trong IS-IS trn Alcatel 7750:
Cu lnh:
PEx>config>router>isis>if#
hello-authentication-type password
PEx>config>router>isis>if#
hello-authentication-key <your_password>
Thc hin:
Thc hin vic chng thc bng password trong qu trnh
truyn nhn bn tin Hello xc lp cc neighbors cng chy IS-IS.
PEx>show>router# policy
6. ng thi phi apply giao thc nh tuyn tng ng vo bng Policies
trn:
PEx>config>router>isis># export <policy_name>
II.3.2 Cc v d cu hnh trn Alcatel 7750
II.3.2.a V d cu hnh trong Area Level 1
Cho s mng nh sau, cc Router u Level 1:
A:ALA-B>config>router>isis>if# exit
A:ALA-B>config>router>isis#
Trn ALA-C:
A:ALA-C>config>router# isis
A:ALA-C>config>router>isis# area-id 49. 0180.0001
A:ALA-C>config>router>isis# level-capability level-1
A:ALA-C>config>router>isis# interface system
A:ALA-C>config>router>isis>if# exit
A:ALA-C>config>router>isis# interface C-A
A:ALA-C>config>router>isis>if# exit
A:ALA-C>config>router>isis# interface C-B
A:ALA-C>config>router>isis>if# exit
Ghi ch:
Khi cu hnh IS-IS cn xc nh level cho Router, t a ch NET.
Sau , cn apply cho cc Interfaces vo giao thc IS-IS.
II.3.2.b V d cu hnh trong Multi-Area
Lc ny, ta c s mng nh bn di. Router ALA-A tr thnh
Level-1/2. Vic cu hnh hon ton tng t trng hp II.2.3.a, ch cn set
cho ALA-A ln thnh Router L1/2 nh sau:
A:ALA-A>config>router# isis
A:ALA-A>config>router>isis# level-capability level-1/2
4. Mt chnh sch nh tuyn cho php nhng tuyn routes ca BGP t EDU
giao tip c, v t chng vo trong IS-IS vi metric=14:
y, "Edu memeber 666:5" = target c to ra trc trong giao
thc nh tuyn BGP.
Vi cu hnh ny, bt k tuyn routes no c qung b nh vo giao thc
nh tuyn BGP vo trong IS-IS th n u t vo bng nh tuyn vi metric
thm l 14.