beautypg.com

Configuring a tunneling policy for a vpn instance – H3C Technologies H3C S10500 Series Switches User Manual

Page 256

background image

245

NOTE:

Route related attributes configured in VPN instance view are applicable to both IPv4 VPNs and IPv6
VPNs.

You can configure route related attributes for IPv4 VPNs in both VPN instance view and IPv4 VPN view.
Those configured in IPv4 VPN view take precedence.

A single vpn-target command can configure up to eight VPN targets. You can configure up to 64 VPN
targets for a VPN instance.

You can define the maximum number of routes for a VPN instance to support, preventing too many
routes from being redistributed into the PE. The maximum number of routes that a PE supports varies by

device model.

Create a routing policy before associating it with a VPN instance. Otherwise, the device cannot filter the
routes to be received and advertised.

Configuring a tunneling policy for a VPN instance

Follow these steps to configure a tunneling policy for a VPN instance:

To do…

Use the command…

Remarks

Enter system view

system-view

Create a tunneling policy and
enter tunneling policy view

tunnel-policy tunnel-policy-name Required

Specify the tunnel selection
preference order and the number

of tunnels for load balancing

tunnel select-seq { cr-lsp | lsp } *
load-balance-number number

Required
By default, only one tunnel is

selected (no load balancing) in this

order: LSP tunnel, CR-LSP tunnel.

Return to system view

quit

Enter VPN instance view

ip vpn-instance vpn-instance-name Required

Enter IPv4 VPN view

ipv4-family

Optional

Apply the tunnel policy to the VPN
instance

tnl-policy tunnel-policy-name

Required
By default, only one tunnel is
selected (no load balancing) in this

order: LSP tunnel, CR-LSP tunnel.

NOTE:

When you configure the tunnel selection preference order by using the tunnel select-seq command, a
tunnel type closer to the select-seq keyword has a higher priority. For example, with the tunnel

select-seq lsp cr-lsp load-balance-number 1 command configured, VPN uses a CR-LSP tunnel when

no LSP exists. After an LSP is created, the VPN uses the LSP tunnel instead.

If you specify more than one tunnel type and the number of tunnels of a type is less than the specified
number of tunnels for load balancing, tunnels of different types may be used.

A tunneling policy configured in VPN instance view is applicable to both IPv4 VPNs and IPv6 VPNs.

You can configure a tunneling policy for IPv4 VPNs in both VPN instance view and IPv4 VPN view. A
tunneling policy configured in IPv4 VPN view takes precedence.

Create a tunneling policy before associating it with a VPN instance. Otherwise, the default tunneling
policy is used. The default tunneling policy selects only one tunnel (no load balancing) in this order: LSP
tunnel, CR-LSP tunnel.