No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.


Configuration Guide - VPN

S1720, S2700, S5700, and S6720 V200R010C00

This document describes the VPN configuration procedures and provides configuration examples.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Configuring a Route on a Tunnel Interface

Configuring a Route on a Tunnel Interface


GRE-encapsulated packets can be correctly forwarded only when a local and a remote device on the backbone network have a reachable route between them and the route passes through the devices' tunnel interfaces. The route can be static or dynamic.

Switch_1 in Figure 2-10 illustrates the configuration.
Figure 2-10  Configuring a dynamic routing protocol for GRE

  • When configuring a static route, configure a route on both the local and the remote devices. Set the destination address of a static route to the original destination address of original packets (address of GE0/0/2 on Switch_2), and set the outbound interface to the tunnel interface on the local device (Tunnel1 on Switch_1).

  • When configuring a dynamic routing protocol, configure the protocol on both the tunnel interface and the interface connected to the network running the X protocol.

    For example, as in Figure 2-10, configure the dynamic routing protocol on the tunnel interface and GE0/0/2 connected to the network running the X protocol, and set the outbound interface to GE0/0/2 on Switch_2 in the routing table to Tunnel1.

    In practice, you must configure different types of routing protocols or different processes of the same type of routing protocol to advertise routes for the tunnel interface and the backbone network. This ensures user packets are forwarded by a physical interface rather than the tunnel interface.


  1. Run:


    The system view is displayed.

  2. Choose either of the following methods to configure a route passing through a tunnel interface:

    • Run:

      ip route-static ip-address { mask | mask-length } { nexthop-address | tunnel interface-number [ nexthop-address ] } [ description text ]

      A static route is configured.

    • Configure a dynamic routing protocol. Dynamic routing can be implemented using Interior Gateway Protocol (IGP) or Exterior Gateway Protocol (EGP), such as Open Shortest Path First (OSPF) and Routing Information Protocol (RIP). For details on how to configure a dynamic routing protocol, see S1720, S2700, S5700, and S6720 V200R010C00 Configuration Guide - IP Unicast Routing Configuration Guide.

Updated: 2019-08-21

Document ID: EDOC1000141944

Views: 109533

Downloads: 586

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Previous Next