420
Step
Command
Remarks
system view. Therefore, configure
a router ID for the OSPF process.
An OSPF process can belong to
only one VPN instance, but one
VPN instance can use multiple
OSPF processes to advertise
VPN routes.
3.
(Optional.) Configure the
OSPF domain ID.
domain-id
domain-id
[
secondary
]
The default domain ID is 0.
Perform this configuration on the
MCE.
All OSPF processes of the same
VPN must be configured with the
same OSPF domain ID to ensure
correct route advertisement.
4.
(Optional.) Configure the
type codes of OSPF
extended community
attributes.
ext-community-type
{
domain-id
type-code1
|
router-id
type-code2
|
route-type
type-code3
}
The defaults are as follows:
•
0x0005 for Domain ID.
•
0x0107 for Router ID.
•
0x0306 for Route Type.
5.
(Optional.) Configure the
external
route tag
for
imported VPN routes.
route-tag tag-value
By default, no route tag is
configured.
In some networks, a VPN might
be connected to multiple MCEs.
When one MCE advertises the
routes learned from BGP to the
VPN, the other MCEs might learn
the routes, resulting in routing
loops. To avoid such routing
loops, you can configure route
tags for VPN instances on an
MCE.
As a best practice,
configure the same route tag for
the same VPN on the MCEs.
6.
Redistribute
remote site
routes advertised by the PE
into OSPF.
import-route
protocol
[
process-id
|
all-processes
|
allow-ibgp
] [
allow-direct
|
cost
cost
|
nssa-only
|
route-policy
route-policy-name
|
tag tag
|
type
type
] *
By default, no
routes are
redistributed into OSPF.
7.
(Optional.) Configure OSPF
to redistribute the default
route.
default-route-advertise
summary cost
cost
By default, OSPF does not
redistribute the default route.
This command redistributes the
default route in a Type-3 LSA. The
MCE advertises the default route
to the site.
8.
Create an OSPF area and
enter OSPF area view.
area
area-id
By default, no OSPF area is
created.
9.
Enable OSPF on the
interface attached to the
specified network in the area.
network
ip-address
wildcard-mask
By default, an interface neither
belongs to any area nor runs
OSPF.
Configuring IS-IS between an MCE and a VPN site
An IS-IS process belongs to the public network or a single VPN instance. If you create an IS-IS
process without binding it to a VPN instance, the process belongs to the public network.
Содержание FlexNetwork 5510 HI Series
Страница 9: ...vii Remote support 460 Documentation feedback 460 Index 462 ...
Страница 318: ...309 Request list 0 Retransmit list 0 ...
Страница 363: ...354 Verify that CE 1 and CE 2 can ping each other Details not shown ...
Страница 446: ...437 The MCE has redistributed the OSPF routes of the two VPN instances into the EBGP routing tables of PE 1 ...