ipv6之6to4配置案例
需求分析
1、pc1和pc2为ipv6孤岛
2、r1和r2为ipv6和ipv4双栈
3、r1和r2上部署6to4隧道使用pc1和pc2互通
4、r1、r2、r3上配置6to4中继,实现6to4站点和非6to4站点之间能互防
6to4知识理解
6to4地址网络前缀长度为64位,前48位位是路由上的ipv4决定,不能改,其中第前16位固定为2002,后32位是ipv4地址,如r1的公网地址为100.0.0.2,那么6to4地址就是2002:c800:2::/48,只要ping 2002:c800:2::1就把17-48位转成目标公网ipv4地址100.0.0.2
r1
ipv6
interface GigabitEthernet0/0/0
ip address 100.0.0.2 255.255.255.0
interface GigabitEthernet0/0/1
ipv6 enable
ipv6 address 2002:6400:2::1/64
interface Tunnel0/0/0 //不用配目标地址,因为会直接把ping里面的目地ipv6地址中取前17-48位的ipv6地址转换目的ipv4的公网地址
ipv6 enable
ipv6 address 2001:12::1/64 //配链路本地地址也行
tunnel-protocol ipv6-ipv4 6to4 //如果是简单的
source 100.0.0.2
ip route-static 0.0.0.0 0.0.0.0 100.0.0.1
ipv6 route-static 2001:3:: 64 2002:303:303::1 //和普通ipv6通信用
ipv6 route-static 2002:: 16 Tunnel0/0/0 //引流进tunnel口
r2
ipv6
interface GigabitEthernet0/0/0
ip address 200.0.0.2 255.255.255.0
interface GigabitEthernet0/0/1
ipv6 enable
ipv6 address 2002:C800:2::1/64
interface Tunnel0/0/0
ipv6 enable
ipv6 address 2001:12::2/64
tunnel-protocol ipv6-ipv4 6to4
source 200.0.0.2
ip route-static 0.0.0.0 0.0.0.0 200.0.0.1
ipv6 route-static 2001:3:: 64 2002:303:303::1
ipv6 route-static 2002:: 16 Tunnel0/0/0
r3
ipv6
interface GigabitEthernet0/0/0
ip address 100.0.0.1 255.255.255.0
interface GigabitEthernet0/0/1
ip address 200.0.0.1 255.255.255.0
interface GigabitEthernet0/0/2
ipv6 enable
ipv6 address 2001:3::1/64
interface LoopBack0
ip address 3.3.3.3 255.255.255.255
interface LoopBack1
ipv6 enable
ipv6 address 2000::1/64
interface Tunnel0/0/0
ipv6 enable
ipv6 address 2001:12::3/64
tunnel-protocol ipv6-ipv4 6to4
source 3.3.3.3
ipv6 route-static 2002:: 16 Tunnel0/0/0
查看r1和r2的6to4建立完成
测试pc1和pc2互通,6to4互通
测试6to4网络和普通ipv6网络通信