No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.


Configuration Guide - VPN

S9300, S9300E, and S9300X V200R010C00

This document describes the VPN configuration procedures and provides configuration examples.

Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
(Optional) Creating a PW Template and Setting Attributes for the PW Template

(Optional) Creating a PW Template and Setting Attributes for the PW Template


A PW template defines common attributes for PWs, so it can be shared by different PWs. You can run the pw-template command to define some common attributes in a PW template to simplify PW configuration. After creating a PW on an interface, you can apply a PW template to the interface.

On the device, you can bind a PW template to a PW or reset the PW.

You can set the attributes for a PW through commands or a PW template. The attributes include the peer, tunnel policy, and control word. Importing the PW template can simplify the configuration of PWs with similar attributes.

  • Some PW attributes such as the MTU, PW type, and encapsulation type are obtained from the interface connecting the PE to the CE.

  • If you specify a PW attribute through a command, the same PW attribute specified in the PW template does not take effect on the PW to which this PW template is applied.

Perform the following operations on the PEs.


  1. Run:


    The system view is displayed.

  2. Run:

    pw-template pw-template-name

    A PW template is created and the PW template view is displayed.

  3. Run:

    peer-address ip-address

    A remote IP address is assigned to a PW template.

  4. Run:


    The control word function is enabled.

    By default, the control word function is disabled.

    For dynamic single-segment PWs, dynamic multi-segment PWs, and static single-segment PWs, VCCV in control word mode must be enabled on the UPEs. For static and mixed multi-segment PWs, VCCV in control word mode must be enabled on both the UPEs and SPEs.

  5. Run:

    mtu mtu-value

    The MTU in the PW template is specified.

    By default, the MTU in a PW template is 1500.

  6. Run:

    tnl-policy policy-name

    A tunnel policy is configured for the PW template.

    Configure a tunnel policy before you can apply this policy. If no tunnel policy is configured, an LSP tunnel is used and load balancing is not implemented. For details on how to configure a tunnel policy, see step 1 in Configuring and Applying a Tunnel Policy.

After modifying the attributes of a PW template, run the reset pw pw-template command in the user view to make the modification take effect. This will cause PW disconnection and reconnection. If multiple PWs use this template simultaneously, system operation is affected.

Updated: 2019-12-31

Document ID: EDOC1000142068

Views: 131396

Downloads: 220

Average rating:
This Document Applies to these Products

Related Version

Related Documents

Previous Next