EasyManuals Logo

HPE FlexNetwork 5510 HI Series Layer 3 - Ip Routing Configuration Guide

HPE FlexNetwork 5510 HI Series
486 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #377 background imageLoading...
Page #377 background image
366
• To implement interface-based IPsec protection, configure the same IPsec profile on the
interfaces between two neighboring routers.
• To implement virtual link-based IPsec protection, configure the same IPsec profile on the two
routers connected over the virtual link.
• To implement sham link-based IPsec protection, configure the same IPsec profile on the two
routers connected over the sham link. For information about sham link, see MPLS
Configuration Guide.
• If an interface and its area each have an IPsec profile configured, the interface uses its own
IPsec profile.
• If a virtual link and area 0 each have an IPsec profile configured, the virtual link uses its own
IPsec profile.
• If a sham link and its area each have an IPsec profile configured, the sham link uses its own
IPsec profile.
To apply an IPsec profile to an area:
Step Command Remarks
1. Enter system view.
system-view
N/A
2. Enter OSPFv3 view.
ospfv3
[ process-id |
vpn-instance
vpn-instance-name ] *
N/A
3. Enter OSPFv3 area view.
area
area-id
N/A
4. Apply an IPsec profile to the
area.
enable ipsec-profile
profile-name
By default, no IPsec profile is
applied.
To apply an IPsec profile to an interface:
Step Command Remarks
1. Enter system view.
system-view
N/A
2. Enter interface view.
interface
interface-type
interface-number
N/A
3. Apply an IPsec profile to the
interface.
ospfv3 ipsec-profile
profile-name
By default, no IPsec profile
is applied.
To apply an IPsec profile to a virtual link:
Step Command Remarks
1. Enter system view.
system-view
N/A
2. Enter OSPFv3 view.
ospfv3
[ process-id |
vpn-instance
vpn-instance-name ] *
N/A
3. Enter OSPFv3 area view.
area
area-id
N/A
4. Apply an IPsec profile to a
virtual link.
vlink-peer
router-id [
dead
seconds |
hello
seconds |
instance
instance-id |
retransmit
seconds |
trans-delay
seconds |
ipsec-profile
profile-name ] *
By default, no IPsec profile is
applied.
To apply an IPsec profile to a sham link:
Step Command Remarks
1. Enter system view.
system-view
N/A

Table of Contents

Other manuals for HPE FlexNetwork 5510 HI Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the HPE FlexNetwork 5510 HI Series and is the answer not in the manual?

HPE FlexNetwork 5510 HI Series Specifications

General IconGeneral
BrandHPE
ModelFlexNetwork 5510 HI Series
CategorySwitch
LanguageEnglish

Related product manuals