免费注册 查看新帖 |

Chinaunix

  平台 论坛 博客 文库
12下一页
最近访问板块 发新帖
查看: 3941 | 回复: 18
打印 上一主题 下一主题

公司一路由怪问题,谁帮我看下。 [复制链接]

论坛徽章:
0
跳转到指定楼层
1 [收藏(0)] [报告]
发表于 2005-03-03 09:20 |只看该作者 |倒序浏览
sh ip route rip
R    192.168.27.0/24 [120/2] via 10.145.31.13, 00:00:24, Serial0
     172.16.0.0/16 is variably subnetted, 2 subnets, 2 masks
R       *.*.*.*/30 [120/1] via 10.145.31.13, 00:00:24, Serial0
     10.0.0.0/8 is variably subnetted, 8 subnets, 3 masks
R       10.0.0.0/24 [120/2] via 10.145.31.13, 00:00:24, Serial0
R       10.145.31.4/30 [120/1] via 10.145.31.13, 00:00:24, Serial0
R       10.145.31.0/30 [120/1] via 10.145.31.13, 00:00:24, Serial0
R       10.145.31.8/30 [120/1] via 10.145.31.13, 00:00:24, Serial0
R       10.145.31.16/30 [120/1] via 10.145.31.13, 00:00:24, Serial0
R       10.144.0.0/16 [120/1] via 10.145.31.13, 00:00:24, Serial0
R    192.168.0.0/24 [120/2] via 10.145.31.13, 00:00:24, Serial0
R    192.168.2.0/24 [120/2] via 10.145.31.13, 00:00:24, Serial0
到10.144.25.100的就能通,到10.144.18.240却死活不通。telnet到 10.145.31.13 ping 10.144.18.240,却是通的
ip classless
ip route 0.0.0.0 0.0.0.0 192.168.10.252 140
ip route 10.0.0.0 255.255.255.0 10.145.31.13 125
ip route 10.0.0.0 255.255.255.0 192.168.10.252 130
ip route 10.144.0.0 255.255.0.0 10.145.31.13 125
ip route 10.145.31.0 255.255.255.0 10.145.31.13 125
ip route 10.145.31.0 255.255.255.0 192.168.10.252 130
ip route 172.16.152.0 255.255.255.0 10.145.31.13
ip route 192.168.0.0 255.255.255.0 10.145.31.13 125
ip route 192.168.0.0 255.255.255.0 192.168.10.252 130
ip route 192.168.1.0 255.255.255.0 10.145.31.13 125
ip route 192.168.2.0 255.255.255.0 10.145.31.13 125
ip route 192.168.2.0 255.255.255.0 192.168.10.252 130
ip route 192.168.27.0 255.255.255.0 10.145.31.13 125
ip route 192.168.27.0 255.255.255.0 192.168.10.252 130
ip route 192.168.235.0 255.255.255.0 10.145.31.13 125


sh ip route

Gateway of last resort is 192.168.10.252 to network 0.0.0.0

     69.0.0.0/32 is subnetted, 1 subnets
S       69.*.*.* [1/0] via 10.145.31.13
C    192.168.10.0/24 is directly connected, FastEthernet0
R    192.168.27.0/24 [120/2] via 10.145.31.13, 00:00:25, Serial0
     172.16.0.0/16 is variably subnetted, 2 subnets, 2 masks
S       172.16.152.0/24 [1/0] via 10.145.31.13
R       172.16.*.*/30 [120/1] via 10.145.31.13, 00:00:25, Serial0
S    192.168.235.0/24 [125/0] via 10.145.31.13
     10.0.0.0/8 is variably subnetted, 8 subnets, 3 masks
R       10.0.0.0/24 [120/2] via 10.145.31.13, 00:00:25, Serial0
R       10.145.31.4/30 [120/1] via 10.145.31.13, 00:00:25, Serial0
R       10.145.31.0/30 [120/1] via 10.145.31.13, 00:00:25, Serial0
S       10.145.31.0/24 [125/0] via 10.145.31.13
C       10.145.31.12/30 is directly connected, Serial0
R       10.145.31.8/30 [120/1] via 10.145.31.13, 00:00:27, Serial0
R       10.145.31.16/30 [120/1] via 10.145.31.13, 00:00:27, Serial0
R       10.144.0.0/16 [120/1] via 10.145.31.13, 00:00:27, Serial0
R    192.168.0.0/24 [120/2] via 10.145.31.13, 00:00:28, Serial0
S    192.168.1.0/24 [125/0] via 10.145.31.13
R    192.168.2.0/24 [120/2] via 10.145.31.13, 00:00:28, Serial0
S*   0.0.0.0/0 [140/0] via 192.168.10.252
不可能是默认路由啊,默认路由走的是防火墙,不过防火墙倒是起了虚拟ROUTER。

C:\Documents and Settings\Administrator>;tracert 10.144.25.100

Tracing route to 10.144.25.100 over a maximum of 30 hops

  1   <10 ms   <10 ms   <10 ms  192.168.10.253
  2    47 ms    47 ms    46 ms  10.145.31.13
  3    47 ms    47 ms    63 ms  10.144.25.100

C:\Documents and Settings\Administrator>;tracert 10.144.18.240

Tracing route to 10.144.18.240 over a maximum of 30 hops

  1   <10 ms   <10 ms   <10 ms  192.168.10.253
  2    78 ms    47 ms    63 ms  10.145.31.13
  3     *        *        *     Request timed out.
  4     *        *        *     Request timed out.

在我机器上做TRACERT,走的路由是一样的,只是10.144.18.240最后一跳不通。

论坛徽章:
0
2 [报告]
发表于 2005-03-03 12:32 |只看该作者

公司一路由怪问题,谁帮我看下。

ip route 10.145.31.0 255.255.255.0 10.145.31.13 125
ip route 10.145.31.0 255.255.255.0 192.168.10.252 130
这2条路由有问题,删除掉试试

论坛徽章:
0
3 [报告]
发表于 2005-03-03 13:17 |只看该作者

公司一路由怪问题,谁帮我看下。

10.144.0.0网段直接连在10.145.31.13上F0上。

10.145.31.13上有一段BGP的配置
router bgp 201
no synchronization
bgp log-neighbor-changes
network 10.144.0.0 mask 255.255.0.0
neighbor 172.16.*.* remote-as 200
no auto-summary
会不会是BGP造成的。

论坛徽章:
0
4 [报告]
发表于 2005-03-03 13:39 |只看该作者

公司一路由怪问题,谁帮我看下。

@.@看得这个晕呐……
木心思往下看了……

论坛徽章:
0
5 [报告]
发表于 2005-03-03 13:47 |只看该作者

公司一路由怪问题,谁帮我看下。

看不出网络结构,有图就好了

论坛徽章:
0
6 [报告]
发表于 2005-03-03 15:45 |只看该作者

公司一路由怪问题,谁帮我看下。

在10.145.31.13上加一条
ip route 10.144.0.0 255.255.0.0 null0试试
再就是最好贴出拓扑,这有利于快速解决问题

论坛徽章:
0
7 [报告]
发表于 2005-03-03 23:15 |只看该作者

公司一路由怪问题,谁帮我看下。

采用RIP V2,所以无AUTO SUMMARY,楼上的方法似乎没有必要.
明天把2个ROUTER的CONFIG贴出来.

论坛徽章:
0
8 [报告]
发表于 2005-03-04 11:10 |只看该作者

公司一路由怪问题,谁帮我看下。

CENTRAL ROUTER和SH ROUTER用专线相连。

Central router config

Current configuration : 3868 bytes
!
version 12.3
service timestamps debug uptime
service timestamps log uptime
service password-encryption
!
hostname
!
boot-start-marker
boot-end-marker
!
!
no network-clock-participate slot 1
no network-clock-participate wic 0
no aaa new-model
ip subnet-zero
ip cef
!
no ip domain lookup
!
!
!
!
class-map match-all Voip
  match access-group 180
class-map match-all data-backup
  match access-group 190
!
!
policy-map QoS-Policy
  class Voip
   priority 160 3000
   set precedence 4
  class class-default
   fair-queue
policy-map Data-QoS
  class data-backup
   bandwidth 250
  class Voip
   priority 100 3000
   set precedence 4
!
!
!
interface FastEthernet0/0
description connected to EthernetLAN
no ip address
ip access-group 102 in
duplex auto
speed auto
!
interface Serial0/0
description connected to TW
bandwidth 1024
ip address 172.16.*.* 255.255.255.252
service-policy output QoS-Policy
!
interface FastEthernet0/1
ip address 10.144.18.254 255.255.0.0
ip access-group 120 in
duplex auto
speed auto
interface Serial0/1
description connected to China-SZ-1721
ip address 10.145.31.1 255.255.255.252
!
interface Serial0/2
description connected to China-DNG-1721
ip address 10.145.31.5 255.255.255.252
!
interface Serial0/3
description connected to China-KS-1721
ip address 10.145.31.9 255.255.255.252
service-policy output QoS-Policy
!
interface Serial1/0
description connected to China-SH-1721
ip address 10.145.31.13 255.255.255.252
service-policy output QoS-Policy
!
interface Serial1/1
description connected to China-XM-1721
ip address 10.145.31.17 255.255.255.252
service-policy output Data-QoS
router rip
version 2
network 10.0.0.0
network 172.16.0.0
no auto-summary
!
router bgp 201
no synchronization
bgp log-neighbor-changes
network 10.144.0.0 mask 255.255.0.0
neighbor 172.16.*.* remote-as 200
no auto-summary
!
no ip http server
ip classless
ip route 0.0.0.0 0.0.0.0 10.144.18.253 140
ip route 10.0.0.0 255.255.255.0 10.144.18.253 130
ip route 172.16.*.0 255.255.255.0 172.16.*.*
ip route 192.168.0.0 255.255.255.0 10.144.18.253 130
ip route 192.168.1.0 255.255.255.0 172.16.*.*
ip route 192.168.2.0 255.255.255.0 10.144.18.253 130
ip route 192.168.10.0 255.255.255.0 10.144.18.253 130
ip route 192.168.27.0 255.255.255.0 10.144.18.253 130
ip route 192.168.235.0 255.255.255.0 172.16.*.*
ip route 203.160.234.0 255.255.255.240 172.16.*.*
!
!
access-list 120 deny   tcp any any eq 135
access-list 120 deny   tcp any any eq 137
access-list 120 deny   tcp any any eq 138
access-list 120 deny   tcp any any eq 139
access-list 120 deny   tcp any any eq 445
access-list 120 deny   tcp any any eq 389
access-list 120 deny   tcp any any eq 593
access-list 120 deny   tcp any any eq 4444
access-list 120 deny   udp any any eq tftp
access-list 120 deny   udp any any eq 135
access-list 120 deny   udp any any eq netbios-ns
access-list 120 deny   udp any any eq netbios-dgm
access-list 120 deny   udp any any eq netbios-ss
access-list 120 deny   udp any any eq 445
access-list 120 deny   udp any any eq 389
access-list 120 deny   udp any any eq 593
access-list 120 deny   udp any any eq 1434
access-list 120 deny   udp any any eq 1433
access-list 120 permit ip any any
access-list 120 permit ip any any
access-list 180 permit ip host 192.168.0.250 any
access-list 180 permit ip host 10.144.18.250 any
access-list 180 permit ip host 192.168.10.251 any
access-list 180 permit ip host 192.168.235.251 any
access-list 180 permit ip host 10.0.0.251 any
access-list 190 permit ip host 10.144.25.100 host 10.0.0.240
snmp-server community * RW
snmp-server community * RO
snmp-server enable traps tty
!
!
!
end

(central router)#sh ip route
Gateway of last resort is 10.144.18.253 to network 0.0.0.0

     203.160.234.0/28 is subnetted, 1 subnets
S       203.160.234.0 [1/0] via 172.16.*.*
R    192.168.10.0/24 [120/1] via 10.145.31.14, 00:00:22, Serial1/0
R    192.168.27.0/24 [120/1] via 10.145.31.6, 00:00:14, Serial0/2
     172.16.0.0/16 is variably subnetted, 2 subnets, 2 masks
S       172.16.*.0/24 [1/0] via 172.16.*.*
C       172.16.*.*/30 is directly connected, Serial0/0
S    192.168.235.0/24 [1/0] via 172.16.152.9
     10.0.0.0/8 is variably subnetted, 7 subnets, 3 masks
R       10.0.0.0/24 [120/1] via 10.145.31.18, 00:00:19, Serial1/1
C       10.145.31.4/30 is directly connected, Serial0/2
C       10.145.31.0/30 is directly connected, Serial0/1
C       10.145.31.12/30 is directly connected, Serial1/0
C       10.145.31.8/30 is directly connected, Serial0/3
C       10.145.31.16/30 is directly connected, Serial1/1
C       10.144.0.0/16 is directly connected, FastEthernet0/1
R    192.168.0.0/24 [120/1] via 10.145.31.10, 00:00:28, Serial0/3
S    192.168.1.0/24 [1/0] via 172.16.152.9
R    192.168.2.0/24 [120/1] via 10.145.31.2, 00:00:21, Serial0/1
S*   0.0.0.0/0 [140/0] via 10.144.18.253


SH ROUTER config

Current configuration : 2851 bytes
!
! Last configuration change at 20:49:35 UTC Mon Feb 28 2005
!
version 12.2
service timestamps debug uptime
service timestamps log uptime
service password-encryption
!
!
logging count
logging queue-limit 100
logging buffered 4096 notifications

!
ip subnet-zero
!
!
no ip domain lookup
!
ip cef
class-map match-all Voip
  match access-group 180
!
!
policy-map QoS-Policy
  class Voip
   priority 160 3000
   set precedence 4
  class class-default
   fair-queue
!
!
!
interface Ethernet0
no ip address
shutdown
half-duplex
!
interface FastEthernet0
ip address 192.168.10.253 255.255.255.0
ip access-group 120 in
speed auto
!
interface Serial0
description connected to China-SZ-Center-2621
ip address 10.145.31.14 255.255.255.252
service-policy output QoS-Policy
!
router rip
version 2
network 10.0.0.0
network 192.168.10.0
no auto-summary
!
ip classless
ip route 0.0.0.0 0.0.0.0 192.168.10.252 140
ip route 10.0.0.0 255.255.255.0 10.145.31.13 125
ip route 10.0.0.0 255.255.255.0 192.168.10.252 130
ip route 10.144.0.0 255.255.0.0 10.145.31.13 125
ip route 10.145.31.0 255.255.255.0 10.145.31.13 125
ip route 10.145.31.0 255.255.255.0 192.168.10.252 130
ip route 172.16.152.0 255.255.255.0 10.145.31.13
ip route 192.168.0.0 255.255.255.0 10.145.31.13 125
ip route 192.168.0.0 255.255.255.0 192.168.10.252 130
ip route 192.168.1.0 255.255.255.0 10.145.31.13 125
ip route 192.168.2.0 255.255.255.0 10.145.31.13 125
ip route 192.168.2.0 255.255.255.0 192.168.10.252 130
ip route 192.168.27.0 255.255.255.0 10.145.31.13 125
ip route 192.168.27.0 255.255.255.0 192.168.10.252 130
ip route 192.168.235.0 255.255.255.0 10.145.31.13 125
no ip http server
!
!
access-list 120 deny   tcp any any eq 135
access-list 120 deny   tcp any any eq 137
access-list 120 deny   tcp any any eq 138
access-list 120 deny   tcp any any eq 139
access-list 120 deny   tcp any any eq 445
access-list 120 deny   tcp any any eq 389
access-list 120 deny   tcp any any eq 593
access-list 120 deny   tcp any any eq 4444
access-list 120 deny   udp any any eq tftp
access-list 120 deny   udp any any eq 135
access-list 120 deny   udp any any eq netbios-ns
access-list 120 deny   udp any any eq netbios-dgm
access-list 120 deny   udp any any eq netbios-ss
access-list 120 deny   udp any any eq 445
access-list 120 deny   udp any any eq 389
access-list 120 deny   udp any any eq 593
access-list 120 deny   udp any any eq 1434
access-list 120 deny   udp any any eq 1433
access-list 120 permit ip any any
access-list 180 permit ip host 192.168.10.251 any
snmp-server community public RO
snmp-server enable traps tty
!

no scheduler allocate
end

(sh router)#sh ip route
     69.0.0.0/32 is subnetted, 1 subnets
S       69.2.*.* [1/0] via 10.145.31.13
C    192.168.10.0/24 is directly connected, FastEthernet0
R    192.168.27.0/24 [120/2] via 10.145.31.13, 00:00:22, Serial0
     172.16.0.0/16 is variably subnetted, 2 subnets, 2 masks
S       172.16.*.0/24 [1/0] via 10.145.31.13
R       172.16.*.*/30 [120/1] via 10.145.31.13, 00:00:22, Serial0
S    192.168.235.0/24 [125/0] via 10.145.31.13
     10.0.0.0/8 is variably subnetted, 8 subnets, 3 masks
R       10.0.0.0/24 [120/2] via 10.145.31.13, 00:00:22, Serial0
R       10.145.31.4/30 [120/1] via 10.145.31.13, 00:00:22, Serial0
R       10.145.31.0/30 [120/1] via 10.145.31.13, 00:00:22, Serial0
S       10.145.31.0/24 [125/0] via 10.145.31.13
C       10.145.31.12/30 is directly connected, Serial0
R       10.145.31.8/30 [120/1] via 10.145.31.13, 00:00:10, Serial0
R       10.145.31.16/30 [120/1] via 10.145.31.13, 00:00:10, Serial0
R       10.144.0.0/16 [120/1] via 10.145.31.13, 00:00:10, Serial0
R    192.168.0.0/24 [120/2] via 10.145.31.13, 00:00:10, Serial0
S    192.168.1.0/24 [125/0] via 10.145.31.13
R    192.168.2.0/24 [120/2] via 10.145.31.13, 00:00:10, Serial0
S*   0.0.0.0/0 [140/0] via 192.168.10.252

论坛徽章:
0
9 [报告]
发表于 2005-03-04 12:28 |只看该作者

公司一路由怪问题,谁帮我看下。

问题是啥?

从哪儿到哪儿不通?

论坛徽章:
0
10 [报告]
发表于 2005-03-04 13:02 |只看该作者

公司一路由怪问题,谁帮我看下。

目前问题是,CENTRAL局域网内一台FTP SERVER,IP 10.144.18.240,一台应用服务器10.144.25.100,从SH本地PING10.144.18.240不通,PING 10.145.25.100却通。在CENTRAL ROUTER上PING 10.144.18.240也是通的。
您需要登录后才可以回帖 登录 | 注册

本版积分规则 发表回复

  

北京盛拓优讯信息技术有限公司. 版权所有 京ICP备16024965号-6 北京市公安局海淀分局网监中心备案编号:11010802020122 niuxiaotong@pcpop.com 17352615567
未成年举报专区
中国互联网协会会员  联系我们:huangweiwei@itpub.net
感谢所有关心和支持过ChinaUnix的朋友们 转载本站内容请注明原作者名及出处

清除 Cookies - ChinaUnix - Archiver - WAP - TOP