No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

CLI-based Configuration Guide - VPN

AR100, AR120, AR150, AR160, AR200, AR1200, AR2200, AR3200, and AR3600 V200R010

This document describes VPN features on the device and provides configuration procedures and configuration examples.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Binding VSIs to AC Interfaces

Binding VSIs to AC Interfaces

Context

Based on the type of link between a PE and a CE, a VSI is bound to an AC interface on the PE in one of the following modes:
  • Binding the VSI with the Ethernet interface or GE interface when the PE and the CE are connected through the Ethernet interface

  • Binding the VSI with the Ethernet sub-interface or GE sub-interface when the PE and the CE are connected through the Ethernet sub-interface

The sub-interfaces can be dotlq sub-interfaces, QinQ sub-interfaces, VLAN mapping sub-interfaces, or VLAN stacking sub-interfaces. For details on how to access the VPLS through a sub-interface, see Configuring a Dot1q Termination Sub-interface and Connecting It to an L2VPN and Configuring a QinQ Termination Sub-interface and Connecting It to an L2VPN in the Huawei AR Series Access Routers Configuration Guide - Ethernet.

When Ethernet or GE interfaces are used as AC interfaces, the outer Tags carried in the packets sent from the AC to the PW are U Tags (inserted by user devices, which are meaningless to the SP) by default.

When sub-interfaces are used as AC interfaces, the outer Tags carried in the packets sent from the AC to the PW are P Tags (inserted by SP devices, which are used to differentiate user traffic) by default.

NOTE:
  • In the VPLS application, different CEs are transparently connected in the same LAN segment through VSIs, and the IP addresses of the CEs must be different. The IP address of the interface that connects the PE to the CE and the IP address of the CE must be in different network segments. Otherwise, the local CE may learn incorrect ARP entries. This leads to traffic loss between CEs in the same VSI.

  • When used on an AC-side interface, the qinq protocol command enables the system to identify incoming packets and Tag outgoing packets with the TPID. The TPID must use the default value 8100. Do not change the TPID.

Procedure

  • Bind a VSI to an Ethernet interface.

    Do as follows on the PEs at both ends of a PW:

    1. Run system-view

      The system view is displayed.

    2. Run interface interface-type interface-number

      The Ethernet interface view is displayed.

    3. (Optional) Run undo portswitch

      The Layer 2 interface is configured as a Layer 3 interface.

    4. (Optional) Run mpls l2vpn default vlan

      The default VLAN of the Ethernet interface is set to VLAN 0.

      By default, no default VLAN is configured for an Ethernet interface.

      If the remote PE device can only receive packets with VLAN tags, this step is required before you bind a VSI to the local Ethernet interface.

    5. Run l2 binding vsi vsi-name

      The VSI is bound to the Ethernet interface.

  • Bind a VSI to an Ethernet sub-interface.

    Do as follows on the PEs at both ends of a PW:

    1. Run system-view

      The system view is displayed.

    2. Run interface interface-type interface-number.subinterface-number

      The Ethernet sub-interface view is displayed.

    3. Run one of the following commands to configure an Ethernet sub-interface based on site requirements.

      • Run dot1q termination vid low-pe-vid

        The single VLAN ID for dot1q encapsulation on a sub-interface is configured.

      • Run qinq termination pe-vid pe-vid ce-vid ce-vid1 [ to ce-vid2 ]

        The Double VLAN IDs for QinQ encapsulation on a sub-interface is configured.

      • Run vlan mapping vid vlan-id1 map-vlan vlan-id2

        Single-tagged VLAN mapping is configured on the sub-interface.

      • Run vlan stacking vid vlan-id1 [ to vlan-id2 ] pe-vid vlan-id3

        VLAN stacking is configured on the sub-interface.

    4. (Optional) Run mpls l2vpn default vlan

      The default VLAN of the Ethernet sub-interface is set to VLAN 0.

      By default, no default VLAN is configured for an Ethernet sub-interface.

      If the remote PE device can only receive packets with VLAN tags, this step is required before you bind a VSI to the local Ethernet sub-interface.

    5. Run l2 binding vsi vsi-name

      The VSI is bound with the Ethernet sub-interface.

Translation
Download
Updated: 2019-08-07

Document ID: EDOC1100033725

Views: 154295

Downloads: 372

Average rating:
This Document Applies to these Products
Related Version
Related Documents
Share
Previous Next