H3C Technologies H3C SecPath F1000-E User Manual
Page 67

55
[SecPathA-Tunnel0] gre p2mp aging-time 20
# Configure the source IP address of interface Tunnel0.
[SecPathA-Tunnel0] source 11.1.1.1
# Configure Tunnel 1 as the backup interface of Tunnel0.
[SecPathA-Tunnel0] gre p2mp backup-interface tunnel 1
[SecPathA-Tunnel0] quit
# Configure a static route to the branch network with the outgoing interface being Tunnel0.
[SecPathA] ip route-static 192.168.12.0 255.255.255.0 tunnel 0
2.
Configure SecPath B:
# Create a tunnel interface Tunnel0 and configure an IP address for it.
[SecPathB] interface tunnel 0
[SecPathB-Tunnel0] ip address 172.168.2.2 255.255.255.0
# Configure the tunnel encapsulation mode of interface Tunnel0 as P2MP GRE.
[SecPathB-Tunnel0] tunnel-protocol gre p2mp
# Configure the source IP address of interface Tunnel0.
[SecPathB-Tunnel0] source 11.1.1.2
# Configure the mask of the branch network connected to Tunnel0 as 255.255.255.0.
[SecPathB-Tunnel0] gre p2mp branch-network-mask 255.255.255.0
# Set the tunnel entry aging time to 20 seconds.
[SecPathA-Tunnel0] gre p2mp aging-time 20
[SecPathB-Tunnel0] quit
# Configure a static route to the branch network with the outgoing interface being Tunnel0.
[SecPathB] ip route-static 192.168.12.0 255.255.255.0 tunnel 0
# Create tunnel interface Tunnel1 and configure an IP address for it.
[SecPathB] interface tunnel 1
[SecPathB-Tunnel1] ip address 192.168.22.2 255.255.255.0
# Configure the tunnel encapsulation mode of interface Tunnel1 as GRE over IPv4.
[SecPathB-Tunnel1] tunnel-protocol gre
# Configure the source and destination IP addresses of interface Tunnel1.
[SecPathB-Tunnel1] source 10.1.1.2
[SecPathB-Tunnel1] destination 10.1.1.1
[SecPathB-Tunnel1] quit
3.
Configure SecPath C:
# Create interface Tunnel 0 and configure an IP address for it.
[SecPathC] interface tunnel 0
[SecPathC-Tunnel0] ip address 172.168.1.3 255.255.255.0
# Configure the tunnel encapsulation mode of interface Tunnel0 as GRE over IPv4.
[SecPathC-Tunnel0] tunnel-protocol gre
# Configure the source and destination IP addresses of interface Tunnel0.
[SecPathC-Tunnel0] source 11.1.1.3
[SecPathC-Tunnel0] destination 11.1.1.1
[SecPathC-Tunnel0] quit
- H3C SecPath F5000-A5 Firewall H3C SecPath F1000-A-EI H3C SecPath F1000-E-SI H3C SecPath F1000-S-AI H3C SecPath F5000-S Firewall H3C SecPath F5000-C Firewall H3C SecPath F100-C-SI H3C SecPath F1000-C-SI H3C SecPath F100-A-SI H3C SecBlade FW Cards H3C SecBlade FW Enhanced Cards H3C SecPath U200-A U200-M U200-S H3C SecPath U200-CA U200-CM U200-CS