436
Configuring VPN instances
VPN instances isolate VPN routes from public network routes and routes among VPNs. You must
configure VPN instances for an MCE network.
Creating a VPN instance
A VPN instance is a collection of the VPN membership and routing rules of its associated site. A VPN
instance may not correspond to one VPN.
To create and configure a VPN instance:
Step Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Create a VPN instance and
enter VPN instance view.
ip vpn-instance
vpn-instance-name
By default, no VPN instance is
created.
3.
Configure an RD for the VPN
instance.
route-distinguisher
route-distinguisher
By default, no RD is specified for a
VPN instance.
4.
(Optional.) Configure a
description for the VPN
instance.
description
text
By default, no description is
configured for a VPN instance.
5.
(Optional.) Configure a VPN
ID for the VPN instance.
vpn-id
vpn-id
By default, no VPN ID is configured
for a VPN instance.
Associating a VPN instance with an interface
After creating and configuring a VPN instance, associate the VPN instance with the MCE's interface
connected to the site and the interface connected to the PE.
To associate a VPN instance with an interface:
Step Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Enter interface view.
interface
interface-type
interface-number
N/A
3.
Associate a VPN instance
with the interface.
ip binding vpn-instance
vpn-instance-name
By default, no VPN instance is
associated with an interface.
The
ip binding vpn-instance
command deletes the IP address of
the current interface. You must
re-configure an IP address for the
interface after configuring the
command.