R3721-F3210-F3171-HP High-End Firewalls Network Management Configuration Guide-6PW101

Table Of Contents
469
Figure 288 Network diagram
Configuration procedure
1. Configure IP addresses for interfaces. (Details not shown)
2. Configure BGP connections:
# Configure Firewall A.
<FirewallA> system-view
[FirewallA] bgp 100
[FirewallA-bgp] peer 192.1.1.2 as-number 200
# Inject network 1.0.0.0/8 to the BGP routing table.
[FirewallA-bgp] network 1.0.0.0
[FirewallA-bgp] quit
# Configure Firewall B.
<FirewallB> system-view
[FirewallB] bgp 200
[FirewallB-bgp] peer 192.1.1.1 as-number 100
[FirewallB-bgp] peer 193.1.1.1 as-number 200
[FirewallB-bgp] peer 193.1.1.1 next-hop-local
[FirewallB-bgp] quit
# Configure Firewall C.
<FirewallC> system-view
[FirewallC] bgp 200
[FirewallC-bgp] peer 193.1.1.2 as-number 200
[FirewallC-bgp] peer 194.1.1.2 as-number 200
[FirewallC-bgp] quit
# Configure Firewall D.
<FirewallD> system-view
[FirewallD] bgp 200
[FirewallD-bgp] peer 194.1.1.1 as-number 200
[FirewallD-bgp] quit
3. Configure the route reflector:
# Configure Firewall C as the route reflector.
[FirewallC] bgp 200
[FirewallC-bgp] peer 193.1.1.2 reflect-client
[FirewallC-bgp] peer 194.1.1.2 reflect-client
[FirewallC-bgp] quit