No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.


Typical Configuration Examples

SD-WAN V100R018C00

Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Configuring Multiple VPNs

Configuring Multiple VPNs

Related Products

Agile Controller-Campus: V300R003C00

AR: V300R003C00

Networking Requirements

Figure 1-12 shows the SD-WAN networking of an enterprise. On the SD-WAN network built by the tenant administrator, the R&D department and marketing departments of the enterprise need to isolate services, independently deploying their own services.

Figure 1-12 Enterprise networking

Solution Design

Based on customer requirements and the networking plan, the tenant administrator has created the hub sites and branch sites, and has completed the underlay network configurations. To implement service isolation between the two departments on the overlay, perform the following tasks:

  1. Configure VPNs for the two departments. Configure VPN2 for the marketing department, and perform network and service configurations for this department in VPN2.
  2. Enable the R&D department to use the default VPN, VPN-Default, avoiding the need to configure another VPN.
  3. Configure services in the two VPNs separately.

Data Plan

Table 1-53 VPN information








Hub1, Hub2, Agg1, Site2, Site3, Agg2, Site4, Site5, Site6

VRF Instance



  1. Log in to the Agile Controller-Campus as a tenant administrator.
  2. Create sites and configure WAN-side routes on the underlay network.
  3. Configure multiple VPNs and add sites to VPNs.

    1. Choose Configuration > Overlay Network > VPN.
    2. On the VPN page that is displayed, click Create. In the dialog box that is displayed, set Name to MKT.
    3. Select sites to be added to the VPN and click .
    4. Click OK.

  4. Configure overlay networks, traffic policies, and security policies in the VPN-Default and MKT VPN.
Updated: 2019-03-04

Document ID: EDOC1100036696

Views: 18122

Downloads: 116

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Previous Next