No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

FAQ-How to Realize the MPLS VPN of Simply Making Branch Sites Access the Central Site Only

Publication Date:  2012-07-27 Views:  20 Downloads:  0
Issue Description
Q:
How to realize the MPLS VPN network of simply making branch CEs access central CE only?
Networking requirements: 
1. The logic structure of MPLS network is in heartshape. 
2. The brand sites can only access the central, and they cannot access each other. 
3. It is required to reduce the network load by best efforts.
Alarm Information
Null
Handling Process
A:
1. Correctly configure IGP, BGP, MPLS and LDP of routers.
2. Configure VPN instance at the central node PE, and set export-extcommunity and import-extcommunity to different values, as follows:
ip vpn-instance TEST
 route-distinguisher 1:1
 vpn-target 200:1 export-extcommunity
 vpn-target 100:1 import-extcommunity
3. Configure the branch nodes (PEs) with VPN instance, and set export-extcommunity to the same as the import-extcommunity of central node; set  import-extcommunity to the same as the export-extcommunity of central site, as follows: 
ip vpn-instance TEST
 route-distinguisher 2:1
 vpn-target 100:1 export-extcommunity
 vpn-target 200:1 import-extcommunity
Note: the topology is different from HUB-SPOKEN. 
Root Cause
Null
Suggestions
Null

END