属于VRF的客户端之间的数据,在公网链路通过GRE VPN封装
R1配置:
[R1]dis current-configuration
ip vpn-instance vpn1
route-distinguisher 1:1
vpn-target 2:2 export-extcommunity
vpn-target 2:2 import-extcommunity
#
interface GigabitEthernet0/1
port link-mode route
ip address 10.1.1.1 255.255.255.0
#
interface GigabitEthernet0/2
port link-mode route
ip binding vpn-instance vpn1
ip address 30.1.1.1 255.255.255.0
#
interface Tunnel0
ip binding vpn-instance vpn1
ip address 8.8.8.8 255.255.255.0
source 10.1.1.1
destination 10.1.1.2
ip route-static vpn-instance vpn1 20.1.1.0 255.255.255.0 Tunnel0
R2配置:
[900]display current-configuration
#
version 5.20, Release 2207P08
#
sysname 900
#
ip vpn-instance 123
route-distinguisher 1:1
#
ip vpn-instance vpn1
route-distinguisher 2:2
vpn-target 1:1 2:2 export-extcommunity
vpn-target 1:1 2:2 import-extcommunity
#
interface Ethernet0/0
port link-mode route
ip address 10.1.1.2 255.255.255.0
#
interface Ethernet0/1
port link-mode route
ip binding vpn-instance vpn1
ip address 20.1.1.1 255.255.255.0
#
interface Tunnel0
ip binding vpn-instance vpn1
ip address 8.8.8.9 255.255.255.0
source 10.1.1.2
destination 10.1.1.1
#
ip route-static vpn-instance vpn1 30.1.1.0 255.255.255.0 Tunnel0
#
数据根据携带VPN的静态路由送到tunell口,封装为公网地址后,直接查找公网路由表送出去,并没有在VPN路由表中进行查找。
该案例暂时没有网友评论
✖
案例意见反馈
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作