R3721-F3210-F3171-HP High-End Firewalls High Availability Configuration Guide-6PW101
47
Figure 26 Network diagram
Configuring Firewall A
<FirewallA> system-view
[FirewallA] ipv6
[FirewallA] interface gigabitethernet 0/1
[FirewallA-GigabitEthernet0/1] ipv6 address fe80::1 link-local
[FirewallA-GigabitEthernet0/1] ipv6 address 1::1 64
# Create VRRP group 1 and set its virtual IPv6 addresses to FE80::10 and 1::10.
[FirewallA-GigabitEthernet0/1] vrrp ipv6 vrid 1 virtual-ip fe80::10 link-local
[FirewallA-GigabitEthernet0/1] vrrp ipv6 vrid 1 virtual-ip 1::10
# Set the priority of Firewall A in VRRP group 1 to 110, which is higher than that of Firewall B (100), so
that Firewall A can become the master in VRRP group 1.
[FirewallA-GigabitEthernet0/1] vrrp ipv6 vrid 1 priority 110
# Create VRRP group 2 set its virtual IPv6 addresses to FE80::20 and 1::20.
[FirewallA-GigabitEthernet0/1] vrrp ipv6 vrid 2 virtual-ip fe80::20 link-local
[FirewallA-GigabitEthernet0/1] vrrp ipv6 vrid 2 virtual-ip 1::20
Configuring Firewall B
<FirewallB> system-view
[FirewallB] ipv6
[FirewallB] interface gigabitethernet 0/1
[FirewallB-GigabitEthernet0/1] ipv6 address fe80::2 link-local
[FirewallB-GigabitEthernet0/1] ipv6 address 1::2 64
# Create VRRP group 1 and set its virtual IPv6 addresses to FE80::10 and 1::10.
[FirewallB-GigabitEthernet0/1] vrrp ipv6 vrid 1 virtual-ip fe80::10 link-local
[FirewallB-GigabitEthernet0/1] vrrp ipv6 vrid 1 virtual-ip 1::10
# Create VRRP group 2 set its virtual IPv6 addresses to FE80::20 and 1::20.
[FirewallB-GigabitEthernet0/1] vrrp ipv6 vrid 2 virtual-ip fe80::20 link-local
[FirewallB-GigabitEthernet0/1] vrrp ipv6 vrid 2 virtual-ip 1::20