SW1:
sys
System View: return to User View with Ctrl+Z.
[H3C]sysname SW1
#创建VPN实例,指定RD值、RT值
[SW1]ip vpn-instance vpn-rt
[SW1-vpn-instance-vpn-rt]route-distinguisher 100:1
[SW1-vpn-instance-vpn-rt]vpn-target 100:1
[SW1-vpn-instance-vpn-rt]quit
[SW1]ip vpn-instance vpn-nrt
[SW1-vpn-instance-vpn-nrt]route-distinguisher 200:1
[SW1-vpn-instance-vpn-nrt]vpn-target 200:1
[SW1-vpn-instance-vpn-nrt]quit
[SW1]int LoopBack 10
[SW1-LoopBack10]ip address 5.5.5.5 32
[SW1-LoopBack10]quit
[SW1]router id 5.5.5.5
[SW1]mpls lsr-id 5.5.5.5
[SW1]mpls ldp
[SW1-ldp]quit
[SW1]int gi 1/0/1
[SW1-GigabitEthernet1/0/1]port link-mode route
[SW1-GigabitEthernet1/0/1]des
[SW1-GigabitEthernet1/0/1]ip address 10.0.0.1 30
[SW1-GigabitEthernet1/0/1]ipv6 address 1::1 64
[SW1-GigabitEthernet1/0/1]mpls enable
[SW1-GigabitEthernet1/0/1]mpls ldp enable
[SW1-GigabitEthernet1/0/1]quit
[SW1]int loopback 10
[SW1-LoopBack10]ip binding vpn-instance vpn-rt //模拟vpn-rt业务
Some configurations on the interface are removed.
[SW1-LoopBack10]ipv6 address 2::1 64
[SW1-LoopBack10]quit
[SW1]int loopback 20
[SW1-LoopBack20]ip binding vpn-instance vpn-nrt //模拟vpn-nrt业务
Some configurations on the interface are removed.
[SW1-LoopBack20]ipv6 address 3::1 64
[SW1-LoopBack20]quit
[SW1]bgp 100
[SW1-bgp-default]router-id 5.5.5.5
[SW1-bgp-default]peer 10.0.0.2 as-number 200
[SW1-bgp-default]peer 1::2 as-number 200
[SW1-bgp-default-ipv4]peer 10.0.0.2 enable
[SW1-bgp-default-ipv4]network 5.5.5.5 32
[SW1-bgp-default-ipv4]import-route direct
[SW1-bgp-default-ipv6]peer 1::2 enable
[SW1-bgp-default-ipv6]import-route direct
[SW1-bgp-default-ipv6]quit
[SW1-bgp-default]address-family vpnv4
[SW1-bgp-default-vpnv4]peer 10.0.0.2 enable
[SW1-bgp-default-vpnv4]quit
[SW1-bgp-default]address-family vpnv6
[SW1-bgp-default-vpnv6]peer 10.0.0.2 enable
[SW1-bgp-default]ip vpn-instance vpn-rt
[SW1-bgp-default-vpn-rt]address-family ipv6 unicast
[SW1-bgp-default-ipv6-vpn-rt]network 2:: 64
[SW1-bgp-default-ipv6-vpn-rt]quit
[SW1-bgp-default-vpn-rt]quit
[SW1-bgp-default]ip vpn-instance vpn-nrt
[SW1-bgp-default-vpn-nrt]address-family ipv6 unicast
[SW1-bgp-default-ipv6-vpn-nrt]network 3:: 64
[SW1-bgp-default-ipv6-vpn-nrt]quit
[SW1-bgp-default-vpn-nrt]quit
[SW1-bgp-default]quit
sys
System View: return to User View with Ctrl+Z.
[H3C]sysname SW2
[SW2]ip vpn-instance vpn-rt
[SW2-vpn-instance-vpn-rt]route-distinguisher 100:1
[SW2-vpn-instance-vpn-rt]vpn-target 100:1
[SW2-vpn-instance-vpn-rt]quit
[SW2]ip vpn-instance vpn-nrt
[SW2-vpn-instance-vpn-nrt]route-distinguisher 200:1
[SW2-vpn-instance-vpn-nrt]vpn-target 200:1
[SW2-vpn-instance-vpn-nrt]quit
[SW2]int loopback 10
[SW2-LoopBack10]ip address 6.6.6.6 32
[SW2-LoopBack10]quit
[SW2]router id 6.6.6.6
[SW2]mpls lsr-id 6.6.6.6
[SW2]mpls ldp
[SW2-ldp]quit
[SW2]int LoopBack 10
[SW2-LoopBack10]ip binding vpn-instance vpn-rt
Some configurations on the interface are removed.
[SW2-LoopBack10]ipv6 address 4::1 64
[SW2-LoopBack10]quit
[SW2]int loopback 20
[SW2-LoopBack20]ip binding vpn-instance vpn-nrt
Some configurations on the interface are removed.
[SW2-LoopBack20]ipv6 address 5::1 64
[SW2-LoopBack20]quit
[SW2]int gi 1/0/1
[SW2-GigabitEthernet1/0/1]port link-mode route
[SW2-GigabitEthernet1/0/1]des
[SW2-GigabitEthernet1/0/1]ip address 10.0.0.2 30
[SW2-GigabitEthernet1/0/1]ipv6 address 1::2 64
[SW2-GigabitEthernet1/0/1]mpls enable
[SW2-GigabitEthernet1/0/1]mpls ldp enable
[SW2-GigabitEthernet1/0/1]quit
[SW2]bgp 200
[SW2-bgp-default]router-id 6.6.6.6
[SW2-bgp-default]peer 10.0.0.1 as-number 100
[SW2-bgp-default]peer 1::1 as-number 100
[SW2-bgp-default-ipv4]peer 10.0.0.1 enable
[SW2-bgp-default-ipv4]import-route direct
[SW2-bgp-default-ipv4]quit
[SW2-bgp-default]address-family ipv6 unicast
[SW2-bgp-default-ipv6]peer 1::1 enable
[SW2-bgp-default-ipv6]import-route direct
[SW2-bgp-default-ipv6]quit
[SW2-bgp-default]address-family vpnv4
[SW2-bgp-default-vpnv4]peer 10.0.0.1 enable
[SW2-bgp-default-vpnv4]quit
[SW2-bgp-default]address-family vpnv6
[SW2-bgp-default-vpnv6]peer 10.0.0.1 enable
[SW2-bgp-default-vpnv6]quit
[SW2-bgp-default]ip vpn-instance vpn-rt
[SW2-bgp-default-ipv6-vpn-rt]network 4:: 64
[SW2-bgp-default-ipv6-vpn-rt]quit
[SW2-bgp-default-vpn-rt]quit
[SW2-bgp-default]ip vpn-instance vpn-nrt
[SW2-bgp-default-vpn-nrt]address-family ipv6 unicast
[SW2-bgp-default-ipv6-vpn-nrt]network 5:: 64
[SW2-bgp-default-ipv6-vpn-nrt]quit
[SW2-bgp-default-vpn-nrt]quit
[SW2-bgp-default]quit
测试:
在SW1使用loopback 10作为源,带VPN能PING通FW2的loopback 10,PING不通FW2的loopback 20:
在SW1使用loopback 20作为源,带VPN能PING通FW2的loopback20,PING不通FW2的loopback 10:
在SW2使用loopback 10作为源,带VPN能PING通FW1的loopback 10,PING不通FW1的loopback 20:
在SW2使用loopback 20作为源,带VPN能PING通FW1的loopback20,PING不通FW1的loopback 10:
根据测试结果得知,相同VPN实例内的业务可以互通,不同VPN实例内的业务不能互通,达到了隔离的效果。
查看SW1的BGP邻居信息:
查看SW2的BGP邻居信息:
查看SW1 IPV6 VPN实例的路由表:
查看SW2 IPV6 VPN实例的路由表:
至此,S5820 IPV6 MPLS VPN OPTION-B典型组网配置案例已完成!