...
| Блок кода |
|---|
hostname R1 interface gigabitethernet 1/0/1 switchport forbidden default-vlan exit interface gigabitethernet 1/0/1.741 ip firewall disable ip address 192.168.0.2/24 vrrp id 10 vrrp ip address 192.168.0.1/24 vrrpenable exit interface gigabitethernet 1/0/2 switchport forbidden default-vlan exit interface gigabitethernet 1/0/2.742 ip firewall disable ip address 192.168.1.1/30 exit |
...
| Блок кода |
|---|
hostname R2 interface gigabitethernet 1/0/1 switchport forbidden default-vlan exit interface gigabitethernet 1/0/1.741 ip firewall disable ip address 192.168.0.3/24 vrrp id 10 vrrp ip address 192.168.0.1/24 vrrp enable exit interface gigabitethernet 1/0/2 switchport forbidden default-vlan exit interface gigabitethernet 1/0/2.742 ip firewall disable ip address 192.168.1.2/30 exit interface gigabitethernet 1/0/4 ip firewall disable ip address 10.0.1.1/24 exit |
...
| Блок кода |
|---|
master(config)# interface gigabitethernet 1/0/1 master(config-if-gi)# vrrp id 1 master(config-if-givrrp)# vrrpip ipaddress 192.0.2.1/24 master(config-if-givrrp)# vrrp priority 20 master(config-if-givrrp)# vrrp group 1 master(config-if-givrrp)# vrrp preempt delay 60 master(config-if-givrrp)# enable vrrp master(config-if-givrrp)# exit master(config)# interface gigabitethernet 1/0/3 master(config-if-gi)# vrrp id 3 master(config-if-givrrp)# vrrpip ipaddress 198.51.100.1/24 master(config-if-givrrp)# vrrp priority 20 master(config-if-givrrp)# vrrp group 1 master(config-if-givrrp)# vrrp preempt delay 60 master(config-if-givrrp)# vrrpenable master(config-if-givrrp)# exit |
Настроим общие параметры failover:
...
| Блок кода |
|---|
backup(config)# interface gigabitethernet 1/0/1 backup(config-if-gi)# security-zone trusted backup(config-if-gi)# ip address 192.0.2.2/24 backup(config-if-gi)# vrrp id 1 backup(config-if-givrrp)# vrrpip ipaddress 192.0.2.1/24 backup(config-if-givrrp)# vrrp priority 10 backup(config-if-givrrp)# vrrp group 1 backup(config-if-givrrp)# vrrpenable backup(config-if-givrrp)# exit |
| Блок кода |
|---|
backup(config)# interface gigabitethernet 1/0/2 backup(config-if-gi)# security-zone trusted backup(config-if-gi)# ip address 203.0.113.2/30 backup(config-if-gi)# exi |
...
| Блок кода |
|---|
backup(config)# interface gigabitethernet 1/0/3 backup(config-if-gi)# security-zone trusted backup(config-if-gi)# ip address 198.51.100.2/24 backup(config-if-gi)# vrrp id 3 backup(config-if-givrrp)# vrrpip ipaddress 198.51.100.1/24 backup(config-if-givrrp)# vrrp priority 10 backup(config-if-givrrp)# vrrp group 1 backup(config-if-givrrp)# enable vrrp backup(config-if-givrrp)# exit |
Настройка firewall failover:
...
| Блок кода |
|---|
master(config)# interface gigabitethernet 1/0/1 master(config-if-gi)# vrrp id 1 master(config-if-givrrp)# vrrpip ipaddress 192.0.2.1/24 master(config-if-givrrp)# vrrp priority 20 master(config-if-givrrp)# vrrp group 1 master(config-if-givrrp)# enable vrrp master(config-if-givrrp)# exit master(config)# interface gigabitethernet 1/0/3 master(config-if-gi)# vrrp id 3 master(config-if-givrrp)# vrrpip ipaddress 198.51.100.1/24 master(config-if-givrrp)# vrrp priority 20 master(config-if-givrrp)# vrrp group 1 master(config-if-givrrp)# enable vrrp master(config-if-givrrp)# exit |
| Scroll Pagebreak |
|---|
Настроим DHCP failover. Для DHCP failover необходимо настроить следующие параметры: mode, local-address, remote-address, принадлежность VRRP-маршрутизатора к группе.
...
| Блок кода |
|---|
backup(config)# interface gigabitethernet 1/0/1 backup(config-if-gi)# security-zone trusted backup(config-if-gi)# ip address 192.0.2.2/24 backup(config-if-gi)# vrrp id 1 backup(config-if-givrrp)# ip address vrrp ip 192.0.2.1/24 backup(config-if-givrrp)# vrrp priority 20 backup(config-if-givrrp)# vrrp group 1 backup(config-if-givrrp)# enable vrrp backup(config-if-givrrp)# exit backup(config)# interface gigabitethernet 1/0/2 backup(config-if-gi)# security-zone trusted backup(config-if-gi)# ip address 203.0.113.2/30 backup(config-if-gi)# exit backup(config)# interface gigabitethernet 1/0/3 backup(config-if-gi)# security-zone trusted backup(config-if-gi)# ip address 198.51.100.2/24 backup(config-if-gi)# vrrp id 3 backup(config-if-givrrp)# ip vrrp ipaddress 198.51.100.1/24 backup(config-if-givrrp)# vrrp priority 10 backup(config-if-givrrp)# vrrp group 1 backup(config-if-givrrp)# enable vrrp backup(config-if-givrrp)# exit |
Настройка DHCP failover:
...