Configuring ipv6 fib load sharing, Configuring icmpv6 packet sending – H3C Technologies H3C SecPath F1000-E User Manual
Page 722
697
Configuring IPv6 FIB load sharing
In the IPv6 FIB load sharing mode, the firewall can decide how to select equal cost multi-paths (ECMP)
to forward packets. The firewall supports the following load sharing modes:
•
Load sharing based on the HASH algorithm—An algorithm based on the source IPv6 address and
destination IPv6 address is adopted to select an ECMP route to forward packets.
•
Load sharing based on polling—Each ECMP route is used in turn to forward packets.
To configure the IPv6 FIB load sharing:
Step Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Configure the IPv6 FIB
load sharing mode.
•
Configure the load sharing based on
the hash algorithm:
ipv6 fib-loadbalance-type
hash-based
•
Configure the load sharing based on
polling:
undo ipv6 fib-loadbalance-type
hash-based
Optional.
By default, the load sharing based
on polling is adopted and each
ECMP route is used in turn to
forward packets.
Configuring ICMPv6 packet sending
Configuring the maximum ICMPv6 error packets sent in an
interval
If too many ICMPv6 error packets are sent within a short time in a network, network congestion may
occur. To avoid network congestion, you can control the maximum number of ICMPv6 error packets sent
within a specified time by adopting the token bucket algorithm.
You can set the capacity of a token bucket to determine the number of tokens in the bucket. In addition,
you can set the update interval of the token bucket, that is, the interval for restoring the configured
capacity. One token allows one ICMPv6 error packet to be sent. Each time an ICMPv6 error packet is
sent, the number of tokens in a token bucket decreases by one. If the number of ICMPv6 error packets
successively sent exceeds the capacity of the token bucket, the additional ICMPv6 error packets cannot
be sent out until the capacity of the token bucket is restored.
To configure the capacity and update interval of the token bucket:
Step Command
Remarks
1.
Enter system view.
system-view
N/A
- H3C SecPath F5000-A5 Firewall H3C SecPath F1000-A-EI H3C SecPath F1000-E-SI H3C SecPath F1000-S-AI H3C SecPath F5000-S Firewall H3C SecPath F5000-C Firewall H3C SecPath F100-C-SI H3C SecPath F1000-C-SI H3C SecPath F100-A-SI H3C SecBlade FW Cards H3C SecBlade FW Enhanced Cards H3C SecPath U200-A U200-M U200-S H3C SecPath U200-CA U200-CM U200-CS H3C SecBlade LB Cards H3C SecPath L1000-A Load Balancer