No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

CLI-based Configuration Guide - VPN

AR650, AR1600, and AR6100 V300R003

This document describes VPN features on the device and provides configuration procedures and configuration examples.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Configuring a VPN Instance

Configuring a VPN Instance

Configure VPN instances on PEs to manage EVPN routes.

Context

VPN instances isolate EVPN routes from public routes. The routes of VPN instances are also isolated from each other. VPN instances are required in all EVPN networking solutions. Perform the following steps on each PE:

Procedure

  1. Run system-view

    The system view is displayed.

  2. Run ip vpn-instance vpn-instance-name

    A VPN instance is created, and its view is displayed.

  3. Run ipv4-family

    The IPv4 address family is enabled for the VPN instance, and the VPN instance IPv4 address family view is displayed.

  4. Run route-distinguisher route-distinguisher

    A route distinguisher (RD) is configured for the VPN instance.

    A VPN instance takes effect only after the RD is configured. The RDs of different VPN instances on a PE must be different.

  5. Run vpn-target vpn-target &<1-8> [ both | export-extcommunity | import-extcommunity ] evpn

    EVPN-VPN targets are configured for the VPN instance.

    An EVPN-VPN target is a BGP extended community attribute used to control the receiving and advertisement of EVPN routes. A maximum of eight EVPN-VPN targets can be configured using the vpn-target evpn command at a time. To configure more EVPN-VPN targets for an EVPN instance address family, run the vpn-target evpn command several times.

  6. (Optional) Run export route-policy policy-name evpn

    An export route-policy is associated with the VPN instance IPv4 address family to filter the EVPN routes that the VPN instance IPv4 address family advertises to the EVPN address family.

    An export route-policy must be configured to precisely control EVPN routes. An export route-policy filters routes before they are advertised to the EVPN address family.

  7. (Optional) Run import route-policy policy-name evpn

    An import route-policy is associated with the VPN instance IPv4 address family to filter the EVPN routes imported from the EVPN address family.

    An import route-policy must also be configured to precisely control EVPN routes. An import route-policy filters routes received from the EVPN address family.

  8. Run quit

    Return to the system view.

  9. Run bgp

    The BGP view is displayed.

  10. Run ipv4-family vpn-instance vpn-instance-name

    The BGP-VPN instance IPv4 address family view is displayed.

  11. Run advertise l2vpn evpn

    The VPN instance is enabled to advertise IP routes to the BGP EVPN address family.

Download
Updated: 2019-04-12

Document ID: EDOC1100041799

Views: 31577

Downloads: 45

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next