249
Associating a VPN instance with an interface
After creating and configuring a VPN instance, you need to associate the VPN instance with the interface
for connecting the CE. Any LDP-capable interface can be associated with a VPN instance. For
information about LDP-capable interfaces, see "
To associate a Layer 3 aggregate interface with a VPN instance, you must associate all the member ports
of the aggregate interface with the VPN instance.
Executing the
ip binding vpn-instance
command on an interface deletes the IP address of that interface.
You must reconfigure the IP address of the interface after executing the command.
To associate a VPN instance with an interface:
Step Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Enter interface view.
interface
interface-type
interface-number
N/A
3.
Associate a VPN instance
with the interface.
ip binding vpn-instance
vpn-instance-name
By default, no VPN instance is
associated with the interface.
Configuring route related attributes for a VPN instance
The control process of VPN route advertisement is as follows:
•
When a VPN route learned from a CE gets redistributed into BGP, BGP associates it with a route
target extended community attribute list, which is usually the export target attribute of the VPN
instance associated with the CE.
•
The VPN instance determines which routes it can accept and redistribute according to the
import-extcommunity
in the route target.
•
The VPN instance determines how to change the route targets attributes for routes to be advertised
according to the
export-extcommunity
in the route target.
IMPORTANT:
Create a routing policy before associating it with a VPN instance. Otherwise, the device cannot filter the
routes to be received and advertised.
To configure route related attributes for a VPN instance:
Step Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Enter VPN instance view.
ip vpn-instance
vpn-instance-name
N/A
3.
Enter IPv4 VPN view.
ipv4-family
Optional.
4.
Configure route targets.
vpn-target
vpn-target
&<1-8>
[
both
|
export-extcommunity
|
import-extcommunity
]
A single
vpn-target
command can
configure up to eight route targets.
You can configure up to 64 route
targets for a VPN instance.