F3726, F3211, F3174, R5135, R3816-HP Firewalls and UTM Devices VPN Configuration Guide-6PW100
12
Ste
p
Command
Remarks
7. Enable GRE keepalive and set
the interval and the maximum
number of transmission
attempts.
keepalive [ seconds [ times ] ]
Optional.
Disabled by default.
8. Enable the GRE packet
checksum function.
gre checksum
Optional.
Disabled by default.
9. Configure the key for the GRE
tunnel interface.
gre key key-number
Optional.
By default, no key is configured for
a GRE tunnel interface.
The two ends of a tunnel must have
the same key or have no key at the
same time.
10. Specify a value for the
Recursion Control field in the
GRE header.
gre recursion recursion-value
Optional.
By default, the value of the
Recursion Control field in the GRE
header is 0, which means not to
limit the number of encapsulations.
11. Configure a route for packet
forwarding through the
tunnel.
For more information about routing
configuration, see Network
Management Configuration
Guide.
Each end of the tunnel must have a
route (static or dynamic) through
the tunnel to the other end.
12. Return to system view.
quit N/A
13. Configure the device to
discard the IPv4-compatible
IPv6 packets.
tunnel discard
ipv4-compatible-packet
Optional.
By default, the device does not
discard the IPv4-compatible IPv6
packets.
For information about tunnel interfaces, more configuration commands in a tunnel interface, and the
expedite termination function, see VPN Command Reference.
102BConfiguring a GRE over IPv6 tunnel
The following matrix shows the feature and hardware compatibility:
Hardware Feature com
p
atible
F1000-A-EI/F1000-S-EI Yes
F1000-E Yes
F5000 Yes
Firewall module Yes
U200-A Yes
U200-S No
335BConfiguration guidelines
Follow these guidelines when you configure a GRE over IPv6 tunnel: