Configuring An Advpn Tunnel Interface - HPE FlexNetwork HSR6800 Configuration Manual

Comware 7 layer 3, ip services
Hide thumbs Also See for FlexNetwork HSR6800:
Table of Contents

Advertisement

Step
1.
Enter system view.
2.
Enter VAM client view.
3.
Configure a username and
password for the client.

Configuring an ADVPN tunnel interface

CAUTION:
IPsec anti-replay requires that packets on the same global interface be processed on the same slot.
To perform IPsec anti-replay for an ADVPN tunnel interface, use the service command in tunnel
interface view to specify a service processing slot for that interface. By default, IPsec anti-replay is
enabled. For more information about IPsec anti-replay, see Security Configuration Guide.
ADVPN establishes tunnels over ADVPN tunnel interfaces.
To configure an ADVPN tunnel interface:
Step
1.
Enter system view.
2.
Create an ADVPN tunnel
interface and enter its view.
3.
Configure a private IPv4 or
IPv6 address for the tunnel
interface.
4.
Specify a source address or
source interface for the
tunnel interface.
5.
(Optional.) Set the DF bit for
ADVPN packets.
Command
system-view
vam client name client-name
user username password
{ cipher | simple } string
Command
system-view
interface tunnel number [ mode
advpn { gre | udp } [ ipv6 ] ]
Configure a private IPv4
address:
ip address ip-address
{ mask | mask-length } [ sub ]
Configure a private IPv6
address:
ipv6 address ipv6-address
prefix-length
source { ip-address |
interface-type interface-number }
tunnel dfbit enable
337
Remarks
N/A
N/A
By default, no username and
password is configured for the
client.
Remarks
N/A
By default, no tunnel interfaces
exist.
The two ends of an ADVPN tunnel
must use the same tunnel mode.
By default, no private address is
configured for the tunnel interface.
All tunnel interfaces in a hub
group must reside in the same
private network.
By default, no source address or
source interface is configured for
a tunnel interface.
The specified source address or
the IP address of the specified
source interface is used as the
source address of sent ADVPN
packets.
If multiple GRE ADVPN tunnel
interfaces have the same source
address or source interface, you
must configure different GRE keys
for the interfaces. For information
about GRE keys, see Layer 3—IP
Services Configuration Guide.
By default, the DF bit is not set for
ADVPN packets.

Advertisement

Table of Contents
loading

Table of Contents