无被动接口错误

网络工程 思科 路由 路由器 思科-ios eigrp
2021-08-03 06:31:28

我正在尝试在 GNS3 中的路由器上嵌套一些 EIGRP 配置。

我尝试将 SW01 中的 EIGRP 2801 连接到 RTR-01,将 EIGRP 2864 连接到 RTR-02。

当我no passive-interface FastEthernet 2/0使用 address-family vrf 4 时,会显示此错误:

%EIGRP: Interface FastEthernet2/0 is not a member of this routing table

为什么?

信息

图表

  • SW01 / RTR-01 之间的 10.28.79.4/30
  • SW02 / RTR-02 之间的 10.28.79.8/30
  • RTR-01 / RTR-02 之间的 10.28.79.0/30
  • 环回 0 在 RTR-01 10.28.254.1/32
  • RTR-02 10.28.254.2/32 处的环回 0
  • SW-ESA 中的 10.28.66.0/26
  • SW-ESA 中的 10.28.78.0/26
  • SW-01 中的 10.28.1.0/26

  • SW-01 和 RTR-01 中的 EIGRP 2801

  • SW-ESA 和 RTR-02 中的 EIGRP 2864
  • RTR-01 和 RTR-02 之间的 BGP 65001

RTR-01配置:

version 15.2
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
!
hostname RTR-01
!
boot-start-marker
boot-end-marker
!
no aaa new-model
ip cef
!
ip vrf 1
 description scada
 rd 65001:1
 route-target export 65001:1
 route-target import 65001:1
!
ip vrf 4
 description intranet
 rd 65001:4
 mdt default 239.1.1.1
 mdt data 238.2.2.0 0.0.0.255 threshold 1
 route-target export 65001:4
 route-target import 65001:4
!
ip domain name xx.xx.xxx
no ipv6 cef
!
multilink bundle-name authenticated
!
ip ssh version 2
!
interface Loopback0
 ip address 10.28.254.1 255.255.255.255
!
interface FastEthernet0/0
 no ip address
 shutdown
 duplex full
!
interface GigabitEthernet1/0
 ip address 10.28.79.1 255.255.255.252
 negotiation auto
!
interface FastEthernet2/0
 ip address 10.28.79.5 255.255.255.252
 speed auto
 duplex auto
!
interface FastEthernet2/1
 no ip address
 shutdown
 speed auto
 duplex auto
!
router eigrp 8000
 !
 address-family ipv4 vrf 4 autonomous-system 2801
  redistribute bgp 65001 metric 10000 100 255 1 1500
  network 10.0.0.0
  network 10.28.1.0 0.0.0.63
  distribute-list prefix default out
 exit-address-family
!
router bgp 65001
 bgp router-id 10.28.254.1
 bgp log-neighbor-changes
 network 10.28.1.0 mask 255.255.255.192
 network 10.28.254.0 mask 255.255.255.0
 redistribute eigrp 1094 route-map depurascada
 neighbor 10.28.254.2 remote-as 65001
 neighbor 10.28.254.2 update-source Loopback0
 !
 address-family vpnv4
  neighbor 10.28.254.2 activate
  neighbor 10.28.254.2 send-community extended
 exit-address-family
!
ip forward-protocol nd
!
no ip http server
no ip http secure-server
!
ip prefix-list default seq 5 permit 0.0.0.0/0 le 8
!
ip prefix-list depuraigp seq 5 permit 10.0.0.0/8 ge 32
ip prefix-list depuraigp seq 10 deny 10.0.0.0/8 ge 30
ip prefix-list depuraigp seq 15 permit 0.0.0.0/0 le 29
!
ip prefix-list depuravrf1 seq 5 deny 0.0.0.0/0 ge 30
ip prefix-list depuravrf1 seq 10 permit 0.0.0.0/0 le 29
!
ip prefix-list depuravrf4 seq 5 permit 10.0.0.0/8 ge 32
ip prefix-list depuravrf4 seq 10 deny 10.0.0.0/8 ge 30
ip prefix-list depuravrf4 seq 15 permit 0.0.0.0/0 le 29
access-list 103 deny   tcp any any eq 445
access-list 103 deny   tcp any any eq 139
access-list 103 permit ip any any
!
route-map depurascada permit 5
 match ip address prefix-list depuravrf1
!
route-map depuraintra permit 5
 match ip address prefix-list depuravrf4
!
route-map nobucle permit 5
 set extcommunity soo 65001:1
!
mpls ldp router-id Loopback0
!
control-plane
!
line con 0
 stopbits 1
line aux 0
 stopbits 1
line vty 0 4
 login
!
!
end

RTR-02配置:

version 15.2
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
!
hostname RTR-02
!
boot-start-marker
boot-end-marker
!
no aaa new-model
ip cef
!
ip vrf 1
 description scada
 rd 65001:1
 route-target export 65001:1
 route-target import 65001:1
!
ip vrf 4
 description intranet
 rd 65001:4
 mdt default 239.1.1.1
 mdt data 238.2.2.0 0.0.0.255 threshold 1
 route-target export 65001:4
!
ip domain name xx.xx.xxx
no ipv6 cef
!
multilink bundle-name authenticated
!
ip ssh version 2
!
interface Loopback0
 ip address 10.28.254.2 255.255.255.255
!
interface FastEthernet0/0
 no ip address
 shutdown
 duplex full
!
interface GigabitEthernet1/0
 ip address 10.28.79.2 255.255.255.252
 negotiation auto
!
interface FastEthernet2/0
 ip address 10.28.79.9 255.255.255.252
 speed auto
 duplex auto
!
interface FastEthernet2/1
 no ip address
 shutdown
 speed auto
 duplex auto
!
router eigrp 8000
 !
 address-family ipv4 vrf 4 autonomous-system 2864
  redistribute bgp 65001 metric 10000 100 255 1 1500
  network 10.0.0.0
  passive-interface default
  distribute-list prefix default out
 exit-address-family
!
router bgp 65001
 bgp router-id 10.28.254.2
 bgp log-neighbor-changes
 network 10.28.78.0 mask 255.255.255.192
 network 10.28.254.0 mask 255.255.255.0
 redistribute eigrp 1094 route-map depurascada
 neighbor 10.28.254.1 remote-as 65001
 neighbor 10.28.254.1 update-source Loopback0
 !
 address-family vpnv4
  neighbor 10.28.254.1 activate
  neighbor 10.28.254.1 send-community extended
 exit-address-family
!
ip forward-protocol nd
!
no ip http server
no ip http secure-server
!
ip prefix-list default seq 5 permit 0.0.0.0/0 le 8
!
ip prefix-list depuraigp seq 5 permit 10.0.0.0/8 ge 32
ip prefix-list depuraigp seq 10 deny 10.0.0.0/8 ge 30
ip prefix-list depuraigp seq 15 permit 0.0.0.0/0 le 29
!
ip prefix-list depuravrf1 seq 5 deny 0.0.0.0/0 ge 30
ip prefix-list depuravrf1 seq 10 permit 0.0.0.0/0 le 29
!
ip prefix-list depuravrf4 seq 5 permit 10.0.0.0/8 ge 32
ip prefix-list depuravrf4 seq 10 deny 10.0.0.0/8 ge 30
ip prefix-list depuravrf4 seq 15 permit 0.0.0.0/0 le 29
access-list 103 deny   tcp any any eq 445
access-list 103 deny   tcp any any eq 139
access-list 103 permit ip any any
!
route-map depurascada permit 5
 match ip address prefix-list depuravrf1
!
route-map depuraintra permit 5
 match ip address prefix-list depuravrf4
!
route-map nobucle permit 5
 set extcommunity soo 65001:1
!
mpls ldp router-id Loopback0
!
control-plane
!
line con 0
 stopbits 1
line aux 0
 stopbits 1
line vty 0 4
 login
!
end

这是显示的版本:

BOOTLDR:7200 软件 (C7200-ADVIPSERVICESK9-M),版本 15.2(4)S5,发布软件 (fc1)

2个回答

您必须将接口放入 vrf 4。

interface fa 2/0
ip vrf forwarding 4

一个接口只能在一个 vrf 中。否则,路由器如何知道使用哪个接口?

如果不指定 vrf,则将接口放入全局表中。但是您的 EIGRP 进程配置为使用 vrf 4。

从您的配置来看,接口 FastEthernet2/0 不是您的 EIGRP 为您的任一路由器配置的 vrf 4 的一部分。尝试使用以下命令将您的界面添加到 vrf。

interface FastEthernet2/0
ip vrf forwarding 4