R3102-R3103-HP 6600/HSR6600 Routers MPLS Configuration Guide

141
5. Configure the VPN instance on each PE, and bind it to the interface connected to the CE:
# Configure on CE 1.
<CE1> system-view
[CE1] interface giabitethernet 2/1/1
[CE1-GigabitEthernet2/1/1] ip address 192.168.1.2 255.255.255.0
[CE1-GigabitEthernet2/1/1] quit
# Configure the VPN instance on PE 1, and use CR-LSP for VPN setup. Bind the VPN instance with
the interface connected to CE 1.
[PE1] ip vpn-instance vpn1
[PE1-vpn-instance-vpn1] route-distinguisher 100:1
[PE1-vpn-instance-vpn1] vpn-target 100:1 both
[PE1-vpn-instance-vpn1] tnl-policy policy1
[PE1-vpn-instance-vpn1] quit
[PE1] tunnel-policy policy1
[PE1-tunnel-policy-policy1] tunnel select-seq cr-lsp load-balance-number 1
[PE1-tunnel-policy-policy1] quit
[PE1] interface giabitethernet 2/1/1
[PE1-GigabitEthernet2/1/1] ip binding vpn-instance vpn1
[PE1-GigabitEthernet2/1/1] ip address 192.168.1.1 255.255.255.0
[PE1-GigabitEthernet2/1/1] quit
# Configure on CE 2.
<CE2> system-view
[CE2] interface giabitethernet 2/1/1
[CE2-GigabitEthernet2/1/1] ip address 192.168.2.2 255.255.255.0
[CE2-GigabitEthernet2/1/1] quit
# Configure the VPN instance on PE 2, and bind it with the interface connected to CE 2.
[PE2] ip vpn-instance vpn1
[PE2-vpn-instance-vpn1] route-distinguisher 100:2
[PE2-vpn-instance-vpn1] vpn-target 100:1 both
[PE2-vpn-instance-vpn1] quit
[PE2] interface giabitethernet 2/1/1
[PE2-GigabitEthernet2/1/1] ip binding vpn-instance vpn1
[PE2-GigabitEthernet2/1/1] ip address 192.168.2.1 255.255.255.0
[PE2-GigabitEthernet2/1/1] quit
Execute the display ip vpn-instance command on the PEs to view the configuration of the VPN
instance. Take PE 1 for example:
[PE1] display ip vpn-instance instance-name vpn1
VPN-Instance Name and ID : vpn1, 1
Create time : 2006/09/27 15:10:29
Up time : 0 days, 00 hours, 03 minutes and 09 seconds
Route Distinguisher : 100:1
Export VPN Targets : 100:1
Import VPN Targets : 100:1
Tunnel Policy : policy1
Interfaces : GigabitEthernet2/1/1
Ping connected CEs on PEs to test connectivity. For example, ping CE 1 on PE 1:
[PE1] ping -vpn-instance vpn1 192.168.1.2