R3721-F3210-F3171-HP High-End Firewalls VPN Configuration Guide-6PW101
20
Configuring a point to multi-point GRE tunnel
P2MP GRE tunnel overview
Figure 17 P2MP GRE tunnel application scenario
A traditional GRE tunnel is a point to point connection. To use traditional GRE tunnels on an enterprise
network shown as Figure 17, y
ou need to configure a P2P GRE tunnel between the headquarters and
each branch. When an enterprise has plenty of branches, the configuration workload is huge and,
adding new branches requires additional configurations on the headquarters node, burdening network
administrators. Besides, if branches dial in to the network through ADSL, the configurations on the
headquarters is rather complicated due to the indetermination of the public network addresses of the
branches.
The P2MP GRE tunnel technology solves this problem. It is very applicable to enterprise networks with a
lot of branches. In a P2MP GRE tunnel application, you only need to configure the tunnel interface on the
headquarters node to work in P2MP GRE tunnel mode and that on each branch node to work in
traditional P2P GRE tunnel mode. Then, a GRE tunnel will be established dynamically between the
headquarters and each branch.
Operation of the P2MP GRE tunnel
The encapsulation and de-encapsulation of P2MP GRE tunnel packets are the same as those of P2P GRE
tunnel packets. For details, see "Configuring GRE."