NOTE:
For easy management, set the same RD for the same VPN instance on the MCE and PE.
Associating a VPN instance with an interface
NOTE:
In an MPLS L3VPN application, you must associate VPN instances with the interfaces connecting the
•
PEs.
In a tunneling application, you must associate VPN instances with the tunnel interfaces connecting the
•
peer MCE devices or CE devices.
You can add a management Ethernet interface on the switch to a VPN so that the IP address of the
•
interface only participates in the route calculation of the specified VPN.
After creating and configuring a VPN instance, you associate the VPN instance with the interface for
connecting different VPN sites.
Follow these steps to associate a VPN instance with an interface:
To do...
Enter system view
Enter interface view
Associate the current interface with
the VPN instance
NOTE:
The ip binding vpn-instance command clears the IP address of the interface on which it is configured. Be
sure to reconfigure an IP address for the interface after configuring the command.
Configuring route-related attributes of a VPN instance
The control process of VPN route advertisement is as follows:
•
When a VPN route learned from a site gets redistributed into BGP, BGP associates it with a VPN
target extended community attribute list, which is usually the export target attribute of the VPN
instance associated with the site.
The VPN instance determines which routes it can accept and redistribute according to the
•
import-extcommunity in the VPN target.
•
The VPN instance determines how to change the VPN targets attributes for routes to be advertised
according to the export-extcommunity in the VPN target.
Follow these steps to configure route related attributes of a VPN instance:
To do...
Enter system view
Enter VPN instance view
Enter IPv4 VPN view
Use the command...
system-view
interface interface-type
interface-number
ip binding vpn-instance
vpn-instance-name
Use the command...
system-view
ip vpn-instance vpn-instance-name
ipv4-family
399
Remarks
—
—
Required
No VPN instance is associated
with an interface by default.
Remarks
—
Required
Optional