HP VPN Firewall Appliances Network Management Configuration Guide

336
Ste
p
Command
Remarks
2. Configure a static
route.
Method 1:
ip route-static dest-address { mask | mask-length }
{ next-hop-address [ track track-entry-number ] |
interface-type interface-number
[ next-hop-address ] | vpn-instance
d-vpn-instance-name next-hop-address [ track
track-entry-number ] } [ preference
preference-value ] [ tag tag-value ] [ permanent ]
[ description description-text ]
Method 2:
ip route-static vpn-instance
s-vpn-instance-name&<1-6> dest-address { mask |
mask-length } { next-hop-address [ public ] [ track
track-entry-number ] | interface-type
interface-number [ next-hop-address ] ] }
[ preference preference-value ] [ tag tag-value ]
[ permanent ] [ description description-text ]
Use either method.
By default, no static route
is configured.
3. Configure the
default preference
for static routes.
ip route-static default-preference
default-preference-value
Optional.
60 by default.
4. Delete all static
routes, including
the default route.
delete [ vpn-instance vpn-instance-name ] static-routes
all
Optional.
To delete one static route,
use the undo ip
route-static command.
Configuring BFD for static routes
The following matrix shows the feature and hardware compatibility:
Hardware Com
p
atibilit
y
F1000-A-EI/F1000-S-EI No
F1000-E No
F5000 Yes
F5000-S/F5000-C No
VPN firewall modules No
20-Gbps VPN firewall modules No
IMPORTANT:
Enabling BFD for a flapping route could worsen the situation.
BFD provides a general-purpose, standard, medium-, and protocol-independent fast failure detection
mechanism. It can uniformly and quickly detect the failures of the bidirectional forwarding paths between
two routers for protocols, such as routing protocols.
For more information about BFD, see High Availability Configuration Guide.