HP VPN Firewall Appliances Network Management Configuration Guide

458
10.1.1.0/24 20 NULL GE1/2 192.168.0.1 R/-/-
10.1.2.0/24 20 NULL GE1/2 192.168.0.1 R/-/-
172.16.0.0/16 10 NULL GE1/1 Direct D/L/-
Flags: D-Direct, R-Added to RM, L-Advertised in LSPs, U-Up/Down Bit Set
The output shows that the routing table of Level-1 routers contains a default route with the next hop
being the Level-1-2 router, and the routing table of Level-2 router contains all Level-1 and Level-2
routes.
DIS election configuration example
Network requirements
As shown in Figure 281, on a broadcast network (Ethernet), Router A, Router B, Router C, and Firewall
reside in IS-IS area 10. Router A and Firewall are Level-1-2 routers, Router B is a Level-1 router, and Router
C is a Level-2 router.
Change the DIS priority of Firewall to make it elected as the Level-1-2 DIS router.
Figure 281 Network diagram
Configuration procedure
1. Configure IP addresses for interfaces. (Details not shown.)
2. Enable IS-IS:
# Configure Firewall.
<Firewall> system-view
[Firewall] isis 1
[Firewall-isis-1] network-entity 10.0000.0000.0001.00
[Firewall-isis-1] quit
[Firewall] interface gigabitethernet 1/1
[Firewall-GigabitEthernet1/1] isis enable 1
[Firewall-GigabitEthernet1/1] quit
# Configure Router A.
<RouterA> system-view
Firewall
L1/L2
Router B
L1
Router A
L1/L2
Router C
L2
GE1/1
10.1.1.1/24
Eth1/1
10.1.1.2/24
Eth1/1
10.1.1.3/24
Eth1/1
10.1.1.4/24