Checking The Configuration - Huawei Quidway S9300 Configuration Manual

Terabit routing switch
Table of Contents

Advertisement

3 BGP/MPLS IP VPN Configuration
The sham link is configured.
By default:
l
l
l
l
l
The authentication modes on the two ends of the sham link must be the same. Only the OSPF
packets that pass the authentication are received. If the packets do not pass authentication, the
neighbor relationship is not established.
If the plain text, namely, simple is used, the authenticator type is plain by default. If the MD5
algorithm or HMAC-MD5 algorithm, namely, md5 | hmac-md5 is used, the authenticator type
is cipher by default.
----End

3.8.5 Checking the Configuration

Prerequisite
The configurations of OSPF sham link are complete.
Procedure
l
l
l
l
l
----End
Example
Run the display ip routing-table vpn-instance command on the PE, and you can find that the
routes from the PE to the peer CE are the OSPF routes that pass through the user network rather
than the BGP routes that pass through the backbone network.
Run the display ip routing-table and tracert commands on the CE, and you can find that the
VPN traffic from the CE to the peer is forwarded through the backbone network.
Run the display ospf process-id sham-link command on the PE, and you can find that the OSPF
neighbor between the PE and the peer CE is in Full state.
3-36
The interface cost of the sham link, namely, cost, is 1.
dead-interval is 40 seconds.
The interval for sending Hello packets, namely, hello-interval, is 10 seconds.
The interval for retransmitting LSA packets, namely, retransmit-interval, is 5 seconds.
The delay for sending LSA packets, namely, trans-delay-interval, is 1 second.
NOTE
To forward VPN traffic through the MPLS backbone, you must configure the cost of the sham link to be
less than the cost of the OSPF route through the user network. A commonly used method is to set the cost
of the forwarding interface on the user network to be greater than the cost of the sham link.
Run the display ip routing-table vpn-instance vpn-instance-name command to view
information about the VPN routing table on the PE.
Run the display ip routing-table command to view the routing table on the CE.
Run the tracert dest-ip-address command on the CE to check the path of the data
transmitted to the peer.
Run the display ospf process-id sham-link [ area area-id ] command on the PE to check
the setup of the sham link.
Run the display ospf routing command on the CE to view information about OSPF routes.
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
Quidway S9300 Terabit Routing Switch
Configuration Guide - VPN
Issue 03 (2009-08-20)

Advertisement

Table of Contents
loading

Table of Contents