### Offset-list
-Routing Table에 등록된 특정 네트워크의 Metric값을 조정하여 최적 경로를 변경하는 기능
-Offset-list는 Metric의 증가만 가능하다. (기존의 Metric값을 감소 시킬수 없다.)
-Offset-list 설정 방법
.ACL을 사용하여 Metric값을 변경할 네트워크의 범위를 지정
.Routing Protocol Process에서 해당 네트워크의 Metric값을 조정
-"Offset-list"는 하나의 Routing Protocol Process에서 Interface당 "in/out" 각 한번씩만 적용이 가능하다.
EX1) R5의 13.13.5.0/24 네트워크가 R4의 13.13.4.0/24 네트워크로 통신시 R2를 경유하여 통신하도록 설정하시오
# R1
access-list 1 permit 13.13.4.0 0.0.0.255
!
router eigrp 100
offset-list 1 out 600000 serial 1/1
!
--------- OR ---------
# R3
access-list 1 permit 13.13.4.0 0.0.0.255
!
router eigrp 100
offset-list 1 in 600000 serial 1/1
!
정보 확인
R3# show ip route eigrp | begin 13.0.0.0 [Offset-list 적용 전]
13.0.0.0/24 is subnetted, 12 subnets
D 13.13.1.0 [90/2297856] via 13.13.10.1, 00:11:14, Serial1/1
D 13.13.2.0 [90/2297856] via 13.13.9.2, 00:11:40, Serial1/0
D 13.13.4.0 [90/2323456] via 13.13.10.1, 00:00:03, Serial1/1 <---- 최적 경로 = Serial 1/1
D 13.13.5.0 [90/409600] via 150.3.13.254, 00:11:14, FastEthernet0/0
D 13.13.11.0 [90/2195456] via 13.13.10.1, 00:11:14, Serial1/1
D 13.13.12.0 [90/2195456] via 13.13.9.2, 00:11:40, Serial1/0
D 13.13.14.0 [90/2221056] via 13.13.10.1, 00:11:14, Serial1/1
D 13.13.15.0 [90/307200] via 150.3.13.254, 00:11:14, FastEthernet0/0
R4# traceroute 13.13.5.5 source 13.13.4.4
1 150.3.13.1 36 msec 28 msec 28 msec R3 <--- R5
2 13.13.10.1 48 msec 56 msec 52 msec R1 <--- R3 <--- R5
3 150.1.13.254 56 msec * 56 msec R4 <--- R1 <--- R3 <--- R5
R3# show ip route eigrp | begin 13.0.0.0 [Offset-list 적용 후]
13.0.0.0/24 is subnetted, 12 subnets
D 13.13.1.0 [90/2297856] via 13.13.10.1, 00:10:48, Serial1/1
D 13.13.2.0 [90/2297856] via 13.13.9.2, 00:11:14, Serial1/0
D 13.13.4.0 [90/2835456] via 13.13.9.2, 00:01:18, Serial1/0 <---- 최적 경로 = Serial 1/0
D 13.13.5.0 [90/409600] via 150.3.13.254, 00:10:48, FastEthernet0/0
D 13.13.11.0 [90/2195456] via 13.13.10.1, 00:10:48, Serial1/1
D 13.13.12.0 [90/2195456] via 13.13.9.2, 00:11:14, Serial1/0
D 13.13.14.0 [90/2221056] via 13.13.10.1, 00:10:48, Serial1/1
D 13.13.15.0 [90/307200] via 150.3.13.254, 00:10:48, FastEthernet0/0
R5# traceroute 13.13.4.4 source 13.13.5.5
1 150.3.13.1 56 msec 32 msec 44 msec R3 <--- R5
2 13.13.9.2 44 msec 48 msec 44 msec R2 <--- R3 <--- R5
3 13.13.9.1 44 msec 56 msec 64 msec R1 <--- R2 <--- R3 <--- R5
4 150.1.13.254 68 msec * 56 msec R4 <--- R1 <--- R2 <--- R3 <--- R5
### 정보 확인 후 설정된 Offset-list 삭제
# R1
no access-list 1
!
router eigrp 100
no offset-list 1 out 600000 serial 1/1
!
--------- OR ---------
# R3
no access-list 1
!
router eigrp 100
no offset-list 1 in 600000 serial 1/1
!
=========================================================================================================================
### Distribute-list
-Distribute-list
: Routing Protocol (RIP , EIGRP , OSPF)을 사용하여 네트워크 정보를 업데이트시
List를 구성하여 지정된 네트워크 정보만 라우팅 업데이트하거나
특정 네트워크 정보를 제외한 나머지 네트워크 정보만 라우팅 업데이트하는 기능
-Distribute-list 설정 방법
.ACL을 사용하여 Routing Protocol로 수신/차단할 네트워크의 범위를 지정
.Routing Protocol Process에서 ACL로 지정한 범위의 네트워크를 "Distribute-list"를 사용하여 적용
-"Distribute-list"는 하나의 Routing Protocol Process에서 Interface당 "in/out" 각 한번씩만 적용이 가능하다.
EX1) R1은 R4로부터 수신하는 EIGRP 네트워크 정보중 "199.172.8.0/24 ~ 199.172.15.0/24" 네트워크 정보만 수신해야한다.
# R1
access-list 1 permit 199.172.8.0 0.0.7.255
!
router eigrp 100
distribute-list 1 in fastethernet 0/0
!
정보 확인
R1# show ip route eigrp | include FastEthernet0/0 [Distribute-list 적용 전]
D 199.172.11.0/24 [90/409600] via 150.1.13.254, 00:15:02, FastEthernet0/0
D 199.172.10.0/24 [90/409600] via 150.1.13.254, 00:15:02, FastEthernet0/0
D 199.172.9.0/24 [90/409600] via 150.1.13.254, 00:15:02, FastEthernet0/0
D 199.172.8.0/24 [90/409600] via 150.1.13.254, 00:15:02, FastEthernet0/0
D 192.168.8.0/24 [90/409600] via 150.1.13.254, 00:09:41, FastEthernet0/0
D 199.172.15.0/24 [90/409600] via 150.1.13.254, 00:15:02, FastEthernet0/0
D 192.168.9.0/24 [90/409600] via 150.1.13.254, 00:09:41, FastEthernet0/0
D 199.172.14.0/24 [90/409600] via 150.1.13.254, 00:15:02, FastEthernet0/0
D 192.168.10.0/24 [90/409600] via 150.1.13.254, 00:09:41, FastEthernet0/0
D 199.172.13.0/24 [90/409600] via 150.1.13.254, 00:15:02, FastEthernet0/0
D 172.16.4.0 [90/409600] via 150.1.13.254, 00:09:42, FastEthernet0/0
D 172.16.5.0 [90/409600] via 150.1.13.254, 00:09:41, FastEthernet0/0
D 172.16.6.0 [90/409600] via 150.1.13.254, 00:09:41, FastEthernet0/0
D 172.16.7.0 [90/409600] via 150.1.13.254, 00:09:41, FastEthernet0/0
D 192.186.11.0/24 [90/409600] via 150.1.13.254, 00:09:41, FastEthernet0/0
D 199.172.12.0/24 [90/409600] via 150.1.13.254, 00:15:02, FastEthernet0/0
D 199.172.3.0/24 [90/409600] via 150.1.13.254, 00:15:02, FastEthernet0/0
D 199.172.2.0/24 [90/409600] via 150.1.13.254, 00:15:02, FastEthernet0/0
D 10.1.3.0 [90/409600] via 150.1.13.254, 00:09:42, FastEthernet0/0
D 10.1.2.0 [90/409600] via 150.1.13.254, 00:09:42, FastEthernet0/0
D 10.1.1.0 [90/409600] via 150.1.13.254, 00:09:42, FastEthernet0/0
D 10.1.0.0 [90/409600] via 150.1.13.254, 00:09:42, FastEthernet0/0
D 199.172.1.0/24 [90/409600] via 150.1.13.254, 00:15:02, FastEthernet0/0
D 199.172.16.0/24 [90/409600] via 150.1.13.254, 00:15:03, FastEthernet0/0
D 199.172.7.0/24 [90/409600] via 150.1.13.254, 00:15:03, FastEthernet0/0
D 199.172.6.0/24 [90/409600] via 150.1.13.254, 00:15:03, FastEthernet0/0
D 13.13.4.0 [90/409600] via 150.1.13.254, 00:04:10, FastEthernet0/0
D 13.13.14.0 [90/307200] via 150.1.13.254, 00:15:03, FastEthernet0/0
D 199.172.5.0/24 [90/409600] via 150.1.13.254, 00:15:03, FastEthernet0/0
D 150.100.1.0 [90/409600] via 150.1.13.254, 00:15:03, FastEthernet0/0
D 199.172.4.0/24 [90/409600] via 150.1.13.254, 00:15:03, FastEthernet0/0
### 정보 확인 후 설정된 Offset-list 삭제
# R1
no access-list 1
!
router eigrp 100
no distribute-list 1 in fastethernet 0/0
!
EX2) R3은 R5와 연결된 FastEthernet0/0으로 수신하는 EIGRP 네트워크 정보중
"198.198.x.0/24" 네트워크 정보를 제외한 나머지 네트워크 정보만 수신해야한다. [x = 모든 경우의 수]
# R3
access-list 1 permit 198.198.0.0 0.0.255.255
!
router eigrp 100
distribute-list 1 in fastethernet 0/0
!
정보 확인
R3# show ip route eigrp | include FastEthernet0/0 [Distribute-list 적용 전]
D 4.1.1.0 [90/409600] via 150.3.13.254, 00:54:57, FastEthernet0/0
D 128.28.2.0 [90/409600] via 150.3.13.254, 00:54:57, FastEthernet0/0
D 128.128.1.0 [90/409600] via 150.3.13.254, 00:54:57, FastEthernet0/0
D 198.2.3.0/24 [90/409600] via 150.3.13.254, 00:54:57, FastEthernet0/0
D 198.1.1.4 [90/409600] via 150.3.13.254, 00:54:57, FastEthernet0/0
D 198.2.1.0/24 [90/409600] via 150.3.13.254, 00:54:57, FastEthernet0/0
D 198.198.1.0/24 [90/409600] via 150.3.13.254, 00:54:57, FastEthernet0/0
D 198.198.22.0/24 [90/409600] via 150.3.13.254, 00:54:57, FastEthernet0/0
D 13.13.5.0 [90/409600] via 150.3.13.254, 00:54:57, FastEthernet0/0
D 13.13.15.0 [90/307200] via 150.3.13.254, 00:54:57, FastEthernet0/0
D 198.198.4.0/24 [90/409600] via 150.3.13.254, 00:54:57, FastEthernet0/0
D 198.198.21.0/24 [90/409600] via 150.3.13.254, 00:54:57, FastEthernet0/0
D 198.2.5.0/24 [90/409600] via 150.3.13.254, 00:54:57, FastEthernet0/0
D 198.198.5.0/24 [90/409600] via 150.3.13.254, 00:54:57, FastEthernet0/0
R3# show ip route eigrp | include FastEthernet0/0 [Distribute-list 적용 후]
D 198.198.1.0/24 [90/409600] via 150.3.13.254, 00:55:04, FastEthernet0/0
D 198.198.22.0/24 [90/409600] via 150.3.13.254, 00:55:04, FastEthernet0/0
D 198.198.4.0/24 [90/409600] via 150.3.13.254, 00:55:04, FastEthernet0/0
D 198.198.21.0/24 [90/409600] via 150.3.13.254, 00:55:04, FastEthernet0/0
D 198.198.5.0/24 [90/409600] via 150.3.13.254, 00:55:04, FastEthernet0/0
### 정보 확인 후 설정된 Offset-list 삭제
# R3
no access-list 1
!
router eigrp 100
no distribute-list 1 in fastethernet 0/0
!
EX3) R1은 R4와 연결된 FastEthernet0/0으로 수신하는 EIGRP 네트워크 정보중
모든 사설 네트워크 정보를 제외한 나머지 네트워크 정보만 수신해야한다.
# R1
access-list 3 deny 10.0.0.0 0.255.255.255
access-list 3 deny 172.16.0.0 0.15.255.255
access-list 3 deny 192.168.0.0 0.0.255.255
access-list 3 permit any
!
router eigrp 100
distribute-list 3 in fastethernet 0/0
!
--------- OR ---------
# R4
access-list 3 deny 10.0.0.0 0.255.255.255
access-list 3 deny 172.16.0.0 0.15.255.255
access-list 3 deny 192.168.0.0 0.0.255.255
access-list 3 permit any
!
router eigrp 100
distribute-list 3 out fastethernet 0/0
!
정보 확인
R1# show ip route eigrp | include FastEthernet0/0 [Distribute-list 적용 후]
D 197.110.9.0/24 [90/409600] via 150.1.13.254, 00:00:09, FastEthernet0/0
D 197.110.8.0/24 [90/409600] via 150.1.13.254, 00:00:09, FastEthernet0/0
D 197.110.11.0/24 [90/409600] via 150.1.13.254, 00:00:09, FastEthernet0/0
D 197.110.10.0/24 [90/409600] via 150.1.13.254, 00:00:09, FastEthernet0/0
D 197.110.13.0/24 [90/409600] via 150.1.13.254, 00:00:09, FastEthernet0/0
D 197.110.12.0/24 [90/409600] via 150.1.13.254, 00:00:09, FastEthernet0/0
D 197.110.15.0/24 [90/409600] via 150.1.13.254, 00:00:09, FastEthernet0/0
D 197.110.14.0/24 [90/409600] via 150.1.13.254, 00:00:09, FastEthernet0/0
D 13.13.4.0 [90/409600] via 150.1.13.254, 00:00:09, FastEthernet0/0
D 13.13.14.0 [90/307200] via 150.1.13.254, 00:00:09, FastEthernet0/0
### 정보 확인 후 설정된 Offset-list 삭제
# R1
no access-list 3
!
router eigrp 100
no distribute-list 3 in fastethernet 0/0
!
--------- OR ---------
# R4
no access-list 3
!
router eigrp 100
no distribute-list 3 out fastethernet 0/0
!
'물리서버' 카테고리의 다른 글
Route-map (0) | 2021.11.24 |
---|---|
Prefix-list (0) | 2021.11.24 |
NTP (Network Time Protocol) (0) | 2021.11.24 |
TCP Intercept (0) | 2021.11.24 |
Telnet Session (0) | 2021.11.24 |