Comware Based
1833101 Members
3273 Online
110051 Solutions
New Discussion

How to route leake between vpn instances configuration example.

 
jbloch
Visitor

How to route leake between vpn instances configuration example.

Prefix-list for the networks you want to leake.

ip prefix-list v001 index 10 deny 0.0.0.0 0                Default gateway

ip prefix-list v001 index 20 deny 10.50.25.252 30          BGP Peer

ip prefix-list v001 index 30 deny 10.50.25.248 30          BGP Peer

ip prefix-list v001 index 40 permit 10.50.24.0 24          Leake network

ip prefix-list v001 index 50 permit 10.50.23.0 24          Leake network

ip prefix-list v001 index 60 permit 10.50.67.0 24          Leake network

ip prefix-list v001 index 70 permit 10.50.24.1 32          Gateway for leake network

ip prefix-list v001 index 80 permit 10.50.23.1 32          Gateway for leake network

ip prefix-list v001 index 90 permit 10.50.67.1 32          Gateway for leake network

#

ip prefix-list v136 index 10 deny 0.0.0.0 0                Default gateway

ip prefix-list v136 index 20 deny 10.50.25.228 30          BGP Peer

ip prefix-list v136 index 30 deny 10.50.25.224 30          BGP Peer

ip prefix-list v136 index 40 permit 10.50.198.0 25         Leake network

ip prefix-list v136 index 50 permit 10.50.198.192 27       Leake network

ip prefix-list v136 index 60 permit 10.50.198.1 32         Gateway for leake network

ip prefix-list v136 index 70 permit 10.50.198.193 32       Gateway for leake network

 

Route-Policy

 

route-policy v001-export permit node 10

if-match ip address prefix-list v001

apply extcommunity rt 1:1

#

route-policy v136-export permit node 10

if-match ip address prefix-list v136

apply extcommunity rt 1:136

#

 

 

VPN-Instance configuration.

ip vpn-instance v001

route-distinguisher 64514:1

description Department A

import route-policy v136-export

vpn-target 64514:1 1:136 import-extcommunity

vpn-target 1:1 export-extcommunity

#

ip vpn-instance v136

route-distinguisher 64514:136

description Department B

import route-policy v001-export

vpn-target 64514:136 1:1 import-extcommunity

vpn-target 1:136 export-extcommunity

#