No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

Configuration Guide - VPN

S1720, S2700, S5700, and S6720 V200R010C00

This document describes the VPN configuration procedures and provides configuration examples.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Configuration Tasks

Configuration Tasks

Table 3-6  Basic BGP/MPLS IP VPN configuration tasks

Configuration Task

Sub-task

Configuration

Configure the MPLS VPN backbone network.

Confirm requirements of VPN users.

  1. Determine number of devices and interfaces based on the network scale, including:
    • Number of users
    • Number of VPNs for each user
    • Number of VPN instances for each VPN
  2. Routing protocol used on the backbone network
    NOTE:

    When RIP-1 runs on the backbone network, you need to enable LDP to search for routes to establish LSPs based on the longest match rule. For details, see Configuring LDP Extensions for Inter-Area LSPs in "MPLS LDP Configuration" in the S1720, S2700, S5700, and S6720 V200R010C00 Configuration Guide - MPLS.

    Configuring a Dynamic MPLS TE Tunnel in "MPLS TE Configuration" in the S1720, S2700, S5700, and S6720 V200R010C00 Configuration Guide - MPLS.

Configure routing between backbone devices.

Configure an Interior Gateway Protocol (IGP) on the PE and P devices of the MPLS backbone network to achieve IP connectivity on the backbone network.

For detailed configuration, see S1720, S2700, S5700, and S6720 V200R010C00 Configuration Guide - IP Unicast Routing Configuration Guide.

Enable MPLS on backbone devices.

Enable MPLS and configure a Label Distribution Protocol (LDP) to set up public network tunnels. The LDP can be MPLS LDP or Resource Reservation Protocol-Traffic Engineering (RSVP-TE).
  • For detailed configuration, see the MPLS LDP Configuration in the S1720, S2700, S5700, and S6720 V200R010C00 Configuration Guide - MPLS.
  • For detailed configuration, see the Configuring a Dynamic MPLS TE Tunnel in "MPLS TE Configuration" in the S1720, S2700, S5700, and S6720 V200R010C00 Configuration Guide - MPLS.

You also need to configure VPN tunnel policies when VPN services need to be transmitted over TE tunnels or when multiple tunnels need to perform load balancing to fully use network resources. For detailed configuration, see Configuring Tunnel Policies.

Configure MP-IBGP between PE devices.

See Establishing MP-IBGP Peer Relationships Between PE Devices.

Connect MPLS VPN users.

Configure VPN instances on PE devices.

See Configuring a VPN Instance on a PE Device.

Bind VPN instances to interfaces.

See Binding a VPN Instance to an Interface.

Configure route exchange between PE and CE devices.

See Configuring Route Exchange Between PE and CE Devices.

Translation
Download
Updated: 2019-08-21

Document ID: EDOC1000141944

Views: 110119

Downloads: 588

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next