HSRP 切换活动状态但目标不可达

网络工程 思科 数据包追踪器 高铁
2021-08-01 04:19:17

我一直在这个网络上工作,我有 2 个路由器,主路由器和故障转移路由器。两台路由器都通过fa0/0连接到主交换机,fa0/0分为3个子接口,fa0/0.10、fa0/0.20和fa0/0.30。然后,主开关连接到我想象中的公司中充当“部门”的其他 3 个开关。交换机共有4个vlan,其中IT 10个vlan 20营销vlan 30会计vlan 99管理vlan。抬头一看,你会看到一个占位符电脑充当我的“互联网”,它也通过交换机连接到两个路由器。其正下方的服务器也是如此。所有接口都启用了 HSRP,每当我终止链接时,它似乎都能正确切换活动路由器。但,

网络图如下:

网络图

以下是所有路由器和交换机的运行配置:

主路由器:

Current configuration : 1731 bytes
!
version 15.1
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname Router
!
!
!
!
!
!
!
!
no ip cef
no ipv6 cef
!
!
!
!
license udi pid CISCO2811/K9 sn FTX1017580O-
!
!
!
!
!
!
!
!
!
!
!
spanning-tree mode pvst
!
!
!
!
!
!
interface FastEthernet0/0
 no ip address
 duplex auto
 speed auto
!
interface FastEthernet0/0.10
 encapsulation dot1Q 10
 ip address 192.168.10.2 255.255.255.0
 ip helper-address 192.168.0.2
 standby 1 ip 192.168.10.1
 standby 1 priority 120
 standby 1 preempt
!
interface FastEthernet0/0.20
 encapsulation dot1Q 20
 ip address 192.168.20.2 255.255.255.0
 ip helper-address 192.168.0.2
 standby 2 ip 192.168.20.1
 standby 2 priority 120
 standby 2 preempt
!
interface FastEthernet0/0.30
 encapsulation dot1Q 30
 ip address 192.168.30.2 255.255.255.0
 ip helper-address 192.168.0.2
 standby 3 ip 192.168.30.1
 standby 3 priority 120
 standby 3 preempt
!
interface FastEthernet0/0.99
 encapsulation dot1Q 99
 ip address 192.168.99.10 255.255.255.0
 standby 4 ip 192.168.99.1
 standby 4 priority 120
 standby 4 preempt
!
interface FastEthernet0/1
 ip address 192.168.0.3 255.255.255.248
 duplex auto
 speed auto
 standby 5 ip 192.168.0.1
 standby 5 priority 120
 standby 5 preempt
!
interface FastEthernet1/0
 ip address 172.16.1.2 255.255.0.0
 duplex auto
 speed auto
 standby 6 ip 172.16.1.1
 standby 6 priority 120
 standby 6 preempt
!
interface FastEthernet1/1
 no ip address
 duplex auto
 speed auto
 shutdown
!
interface Vlan1
 no ip address
 shutdown
!
ip classless
!
ip flow-export version 9
!
!
!
!
!
!
!
!
logging trap debugging
logging 192.168.0.2
line con 0
!
line aux 0
!
line vty 0 4
 login
!
!
ntp server 192.168.0.2
!
end

故障转移路由器:

Current configuration : 1473 bytes
!
version 15.1
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname Router
!
!
!
!
!
!
!
!
no ip cef
no ipv6 cef
!
!
!
!
license udi pid CISCO2811/K9 sn FTX10179AZO-
!
!
!
!
!
!
!
!
!
!
!
spanning-tree mode pvst
!
!
!
!
!
!
interface FastEthernet0/0
 no ip address
 duplex auto
 speed auto
!
interface FastEthernet0/0.10
 encapsulation dot1Q 10
 ip address 192.168.10.3 255.255.255.0
 ip helper-address 192.168.0.2
 standby 1 ip 192.168.10.1
!
interface FastEthernet0/0.20
 encapsulation dot1Q 20
 ip address 192.168.20.3 255.255.255.0
 ip helper-address 192.168.0.2
 standby 2 ip 192.168.20.1
!
interface FastEthernet0/0.30
 encapsulation dot1Q 30
 ip address 192.168.30.3 255.255.255.0
 ip helper-address 192.168.0.2
 standby 3 ip 192.168.30.1
!
interface FastEthernet0/0.99
 encapsulation dot1Q 99
 ip address 192.168.99.11 255.255.255.0
 standby 4 ip 192.168.99.1
!
interface FastEthernet0/1
 ip address 192.168.0.4 255.255.255.248
 duplex auto
 speed auto
 standby 5 ip 192.168.0.1
!
interface FastEthernet1/0
 ip address 172.16.1.3 255.255.0.0
 duplex auto
 speed auto
 standby 6 ip 172.16.1.1
!
interface FastEthernet1/1
 no ip address
 duplex auto
 speed auto
 shutdown
!
interface Vlan1
 no ip address
 shutdown
!
ip classless
!
ip flow-export version 9
!
!
!
!
!
!
!
!
logging trap debugging
logging 192.168.0.2
line con 0
!
line aux 0
!
line vty 0 4
 login
!
!
ntp server 192.168.0.2
!
end

主开关:

Current configuration : 1314 bytes
!
version 15.0
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname Switch
!
!
!
!
!
!
spanning-tree mode pvst
spanning-tree extend system-id
!
interface FastEthernet0/1
 switchport access vlan 10
 switchport mode trunk
!
interface FastEthernet0/2
 switchport mode trunk
!
interface FastEthernet0/3
 switchport mode trunk
!
interface FastEthernet0/4
!
interface FastEthernet0/5
!
interface FastEthernet0/6
!
interface FastEthernet0/7
!
interface FastEthernet0/8
!
interface FastEthernet0/9
!
interface FastEthernet0/10
!
interface FastEthernet0/11
!
interface FastEthernet0/12
!
interface FastEthernet0/13
!
interface FastEthernet0/14
!
interface FastEthernet0/15
!
interface FastEthernet0/16
!
interface FastEthernet0/17
!
interface FastEthernet0/18
!
interface FastEthernet0/19
!
interface FastEthernet0/20
!
interface FastEthernet0/21
!
interface FastEthernet0/22
!
interface FastEthernet0/23
!
interface FastEthernet0/24
!
interface GigabitEthernet0/1
 switchport mode trunk
!
interface GigabitEthernet0/2
 switchport mode trunk
!
interface Vlan1
 no ip address
 shutdown
!
interface Vlan99
 ip address 192.168.99.2 255.255.255.0
!
ip default-gateway 192.168.99.1
!
!
!
!
line con 0
!
line vty 0 4
 login
line vty 5 15
 login
!
!
!
!
end

营销开关:

Current configuration : 2419 bytes
!
version 15.0
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname Switch
!
!
!
!
!
!
spanning-tree mode pvst
spanning-tree extend system-id
!
interface FastEthernet0/1
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/2
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/3
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/4
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/5
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/6
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/7
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/8
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/9
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/10
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/11
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/12
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/13
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/14
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/15
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/16
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/17
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/18
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/19
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/20
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/21
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/22
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/23
 switchport access vlan 20
 switchport mode access
!
interface FastEthernet0/24
 switchport access vlan 20
 switchport mode access
!
interface GigabitEthernet0/1
!
interface GigabitEthernet0/2
 switchport mode trunk
!
interface Vlan1
 no ip address
 shutdown
!
interface Vlan99
 ip address 192.168.99.3 255.255.255.0
!
ip default-gateway 192.168.99.1
!
!
!
!
line con 0
!
line vty 0 4
 login
line vty 5 15
 login
!
!
!
!
end

IT交换机:

Current configuration : 2368 bytes
!
version 15.0
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname Switch
!
!
!
!
!
!
spanning-tree mode pvst
spanning-tree extend system-id
!
interface FastEthernet0/1
 switchport mode trunk
!
interface FastEthernet0/2
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/3
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/4
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/5
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/6
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/7
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/8
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/9
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/10
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/11
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/12
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/13
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/14
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/15
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/16
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/17
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/18
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/19
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/20
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/21
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/22
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/23
 switchport access vlan 10
 switchport mode access
!
interface FastEthernet0/24
 switchport access vlan 10
 switchport mode access
!
interface GigabitEthernet0/1
!
interface GigabitEthernet0/2
!
interface Vlan1
 no ip address
 shutdown
!
interface Vlan99
 ip address 192.168.99.4 255.255.255.0
!
ip default-gateway 192.168.99.1
!
!
!
!
line con 0
!
line vty 0 4
 login
line vty 5 15
 login
!
!
!
!
end

会计切换:

Current configuration : 2368 bytes
!
version 15.0
no service timestamps log datetime msec
no service timestamps debug datetime msec
no service password-encryption
!
hostname Switch
!
!
!
!
!
!
spanning-tree mode pvst
spanning-tree extend system-id
!
interface FastEthernet0/1
 switchport mode trunk
!
interface FastEthernet0/2
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/3
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/4
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/5
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/6
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/7
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/8
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/9
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/10
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/11
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/12
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/13
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/14
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/15
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/16
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/17
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/18
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/19
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/20
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/21
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/22
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/23
 switchport access vlan 30
 switchport mode access
!
interface FastEthernet0/24
 switchport access vlan 30
 switchport mode access
!
interface GigabitEthernet0/1
!
interface GigabitEthernet0/2
!
interface Vlan1
 no ip address
 shutdown
!
interface Vlan99
 ip address 192.168.99.5 255.255.255.0
!
ip default-gateway 192.168.99.1
!
!
!
!
line con 0
!
line vty 0 4
 login
line vty 5 15
 login
!
!
!
!
end

这里的问题是主路由器按预期工作,而故障转移路由器即使将状态切换为活动状态也无法提供连接。我仔细检查了主交换机中的连接,连接到交换机和路由器的所有 5 个接口都设置为中继(我真的希望是这样)。

感谢所有输入,我期待听到您的回复。我对这个网站很陌生,所以请随时发表评论,让我知道如何更好地制定/格式化这个问题。干杯。

编辑:我正在尝试从部门的 PC 上 ping 互联网。例如,如果我尝试从 Marketing ping 通,192.168.30.1 会响应:“目标主机无法访问”。所有部门也会失去与服务器的连接。

EDIT2:我已经设法隔离了这个问题。我有 6 个 HSRP 组,组 1、2、3 和 4,分别监听 192.168.10.1、192.168.20.1、192.168.30.1 和 192.168.99.1。第 5 组正在侦听 192.168.0.1(服务器网络),第 6 组正在侦听 172.16.1.1(互联网)。当我关闭主路由器和主交换机之间的链接时,故障转移路由器中的组 1-4 激活,但组 5 和 6 未激活。这就是 PC 无法 ping 互联网和服务器的原因。关于如何解决此问题的任何建议?

1个回答

在将问题隔离到第 5 组和第 6 组后,通过按照评论建议跟踪路由到我的目的地,未在故障转移路由器上激活。我设法通过跟踪组 5 和 6 上的接口 fa0/0 并将它们的优先级更改为 105 来解决它。当接口 fa0/0 挂掉时,主路由器的优先级降低,故障转移路由器中的组 5 和 6 被激活。我还在故障转移路由器上为组 5 和 6 添加了抢占,以确保它在主路由器的优先级降低时切换到活动状态。我已经对此进行了测试,并确认现在一切正常。感谢您的输入。