Configuration procedure – H3C Technologies H3C SecPath F1000-E User Manual
Page 129
117
Figure 79 Network diagram
Configuration procedure
NOTE:
Before configuring an IPv6 over IPv6 tunnel, make sure that Router A and Router B are reachable to each
other.
•
Configure Router A:
# Enable IPv6.
[RouterA] ipv6
# Configure an IPv6 address for GigabitEthernet 0/1.
[RouterA] interface GigabitEthernet 0/1
[RouterA-GigabitEthernet0/1] ipv6 address 2002:1::1 64
[RouterA-GigabitEthernet0/1] quit
# Configure an IPv6 address for GigabitEthernet 0/2 (the physical interface of the tunnel).
[RouterA] interface GigabitEthernet 0/2
[RouterA-GigabitEthernet0/2] ipv6 address 2002::11:1 64
[RouterA-GigabitEthernet0/2] quit
# Create interface Tunnel 1.
[RouterA] interface tunnel 1
# Configure an IPv6 address for interface Tunnel 1.
[RouterA-Tunnel1] ipv6 address 3001::1:1 64
# Configure the tunnel encapsulation mode.
[RouterA-Tunnel1] tunnel-protocol ipv6-ipv6
# Configure a source address for interface Tunnel 1 (IP address of GigabitEthernet 0/2).
[RouterA-Tunnel1] source 2002::11:1
# Configure a destination address for interface Tunnel 1 (IP address of GigabitEthernet 0/2 of
Router B).
[RouterA-Tunnel1] destination 2002::22:1
[RouterA-Tunnel1] quit
# Configure a static route from Router A through interface Tunnel 1 to Group 2.
[RouterA] ipv6 route-static 2002:3:: 64 tunnel 1
•
Configure Router B:
# Enable IPv6.
- H3C SecPath F5000-A5 Firewall H3C SecPath F1000-A-EI H3C SecPath F1000-E-SI H3C SecPath F1000-S-AI H3C SecPath F5000-S Firewall H3C SecPath F5000-C Firewall H3C SecPath F100-C-SI H3C SecPath F1000-C-SI H3C SecPath F100-A-SI H3C SecBlade FW Cards H3C SecBlade FW Enhanced Cards H3C SecPath U200-A U200-M U200-S H3C SecPath U200-CA U200-CM U200-CS