F3726, F3211, F3174, R5135, R3816-HP Firewalls and UTM Devices Network Management Configuration Guide-6PW100

828
# Configure Router B
<RouterB> system-view
[RouterB] ipv6
[RouterB] bgp 200
[RouterB-bgp] router-id 2.2.2.2
[RouterB-bgp] ipv6-family
[RouterB-bgp-af-ipv6] peer 100::1 as-number 100
[RouterB-bgp-af-ipv6] peer 101::1 as-number 200
[RouterB-bgp-af-ipv6] peer 101::1 next-hop-local
# Configure Firewall.
<Firewall> system-view
[Firewall] ipv6
[Firewall] bgp 200
[Firewall-bgp] router-id 3.3.3.3
[Firewall-bgp] ipv6-family
[Firewall-bgp-af-ipv6] peer 101::2 as-number 200
[Firewall-bgp-af-ipv6] peer 102::2 as-number 200
# Configure Router C.
<RouterC> system-view
[RouterC] ipv6
[RouterC] bgp 200
[RouterC-bgp] router-id 4.4.4.4
[RouterC-bgp] ipv6-family
[RouterC-bgp-af-ipv6] peer 102::1 as-number 200
3. Configure Firewall as a route reflector, and configure Router B and Router C as its clients.
[Firewall-bgp-af-ipv6] peer 101::2 reflect-client
[Firewall-bgp-af-ipv6] peer 102::2 reflect-client
4. Verify the configuration:
Execute the display bgp ipv6 routing-table command on Router B and Router C. Both have learned
the network 1::/64.
963BIPv6 BGP IPsec policy configuration example
1769BNetwork requirements
In 2997HFigure 400, configure IPv6 BGP on the devices. Router A and Router B establish an IBGP
relationship. Router B and Firewall establish an EBGP relationship.
Configure IPsec policies on the devices to authenticate and encrypt protocol packets.
Figure 400 Network diagram