|
Techpubs Home
Report an Error
Short Contents
Entire manual as PDF [3838 KB]
|
 |
- Chapter:
About This Manual
[PDF 74 KB]
- Objectives
- Audience
- Document Organization
- Part Organization
- Using the Indexes
- Documentation Conventions
- General Conventions
- Conventions for Software Commands and Statements
- List of Technical Publications
- Documentation Feedback
- How to Request Support
- Chapter:
VPN Overview
[PDF 43 KB]
- VPN Terminology
- Types of VPNs
- Layer 2 VPNs
- Layer 3 VPNs
- VPLS
- Virtual-Router Routing Instances
- VPN Graceful Restart
- Chapter:
VPN Configuration Guidelines
[PDF 138 KB]
- Enable a Signaling Protocol on the PE Routers
- Use LDP for VPN Signaling
- Use RSVP for VPN Signaling
- Configure an IGP on the PE and Provider Routers
- Configure an IBGP Session between PE Routers
- Configure a VPN Routing Instance on the PE Routers
- Configure the Description
- Configure the Instance Type
- Configure Interfaces for VPN Routing
- Configure Interfaces for Layer 3 VPNs
- Configure Interfaces for Carrier-of-Carriers VPNs
- Configure the Route Distinguisher
- Configure Policy for the PE Router's VRF Table
- Configure the Route Target
- Configure the Route Origin
- Configure Import Policy for the PE Router's VRF Table
- Configure Export Policy for the PE Router's VRF Table
- Apply Both the VRF Export and the BGP Export Policies
- Configure a VRF Target
- Enable Outbound Route Filtering for VPNs
- Configure a Virtual-Router Routing Instance
- Configure a Routing Protocol Between the Service Provider Routers
- Configure Logical Interfaces Between Participating Routers
- Configure Graceful Restart
- Rewrite Markers and VPNs
- Chapter:
Summary of VPN Configuration Statements
[PDF 48 KB]
- description
- graceful-restart
- instance-type
- interface
- outbound-route-filtering
- route-distinguisher
- route-distinguisher-id
- vpn-apply-export
- vrf-export
- vrf-import
- vrf-target
- Chapter:
Layer 2 VPN Overview
[PDF 22 KB]
- Layer 2 VPN Overview
- Layer 2 VPN Standards
- Chapter:
Layer 2 VPN Configuration Guidelines
[PDF 76 KB]
- Configure the Connections to the Local Site
- Configure the Site
- Configure the Remote Site ID
- Configure the Encapsulation Type
- Trace Layer 2 VPN Traffic and Operations
- Disable Normal TTL Decrementing for VPNs
- Configure CCC Encapsulation on Interfaces
- Configure TCC Encapsulation on Interfaces
- Configure Layer 2 VPN Policing on Interfaces
- Disable the Control Word for Layer 2 VPNs
- Chapter:
Layer 2 VPN Configuration Example
[PDF 129 KB]
- Simple Full-Mesh Layer 2 VPN Overview
- Enable an IGP on the PE Routers
- Configure MPLS LSP Tunnels between the PE Routers
- Configure IBGP on the PE Routers
- Configure Routing Instances for Layer 2 VPNs on the PE Routers
- Configure CCC Encapsulation on the Interfaces
- Configure VPN Policy on the PE Routers
- Layer 2 VPN Configuration Summarized by Router
- Summary for Router A (PE Router for Sunnyvale)
- Summary for Router B (PE Router for Austin)
- Summary for Router C (PE Router for Portland)
- Chapter:
Summary of Layer 2 VPN Configuration Statements
[PDF 69 KB]
- control-word
- encapsulation
- encapsulation (logical interface)
- encapsulation (physical interface)
- encapsulation (Layer 2 VPN)
- no-control-word
- policer
- proxy
- remote
- remote-site-id
- site
- site-identifier
- traceoptions
- Chapter:
Layer 3 VPN Overview
[PDF 158 KB]
- Layer 3 VPN Overview
- Layer 3 VPN Standards
- Layer 3 VPN Attributes
- VPN-IPv4 Addresses and Route Distinguishers
- IPv6 Layer 3 VPNs
- VPN Routing and Forwarding Tables
- Route Distribution within a Layer 3 VPN
- Distribution of Routes from CE to PE Routers
- Distribution of Routes between PE Routers
- Distribution of Routes from PE to CE Routers
- Forwarding across the Provider's Core Network
- Routing Instances for VPNs
- Multicast over Layer 3 VPNs
- Multicast over Layer 3 VPNs Overview
- Sending PIM Hello Messages to the PE Routers
- Sending PIM Join Messages to the PE Routers
- Receiving the Multicast Transmission
- Chapter:
Layer 3 VPN Configuration Guidelines
[PDF 182 KB]
- Configure VPN Routing between the PE and CE Routers
- Configure BGP between the PE and CE Routers
- Configure OSPF between the PE and CE Routers
- Configure an OSPF Domain ID
- Hub-and-Spoke Layer 3 VPNs and OSPF Domain ID
- Compatibility with JUNOS Releases before 5.3
- Example Configurations for Compatibility with JUNOS Releases before 5.3
- Configure RIP between the PE and CE Routers
- Configure Static Routes between the PE and CE Routers
- Limit the Routes Accepted from a CE Router
- Configure IPv6 between the PE and CE Routers
- Configure IPv6 on the PE Router
- Configure BGP or Static Routes on the PE Router
- Configure BGP on the PE Router to Handle IPv6 Routes
- Configure BGP on the PE Router to Handle IPv4 and IPv6 Routes
- Configure Static Routes on the PE Router
- Configure IPv6 on the Interfaces
- Configure EBGP or IBGP Multihop between PE and CE Routers
- Filter Traffic Based on the IP Header
- Egress Filtering Options
- Limitations
- Configure a VPN Tunnel for VRF Table Lookup
- Configure a Logical Unit on the Loopback Interface
- Configure Multicast over Layer 3 VPNs
- Configure Packet Forwarding for Layer 3 VPNs
- Configure a GRE Tunnel Interface for Layer 3 VPNs
- Configure the GRE Tunnel Interface on the PE Router
- Configure the GRE Tunnel Interface on the CE Router
- Configure an ES Tunnel Interface for Layer 3 VPNs
- Configure the ES Tunnel Interface on the PE Router
- Configure the ES Tunnel Interface on the CE Router
- Configure IPSec between PE Routers Instead of MPLS
- Chapter:
Layer 3 VPN Configuration Troubleshooting Guidelines
[PDF 95 KB]
- Diagnose Common Problems
- Use the ping and traceroute Commands to Troubleshoot Layer 3 VPN Topologies
- Ping One CE Router from the Other
- Ping the Remote PE and CE Routers from the Local CE Router
- Ping the Directly Connected PE and CE Routers from Each Other
- Ping a Remote CE Router from a PE Router
- Limitation on Pinging a Remote CE Router from a PE Router
- Configure a Logical Unit on the Loopback Interface
- Disable Normal TTL Decrementing for Layer 3 VPNs
- Indirect Next-hop Address Space and Route Reflectors
- Chapter:
Layer 3 VPN Configuration Examples
[PDF 619 KB]
- Configure a Simple Full-Mesh VPN Topology
- Enable an IGP on the PE and Provider Routers
- Enable RSVP and MPLS on the Provider Router
- Configure the MPLS LSP Tunnel between the PE Routers
- Configure IBGP on the PE Routers
- Configure Routing Instances for VPNs on the PE Routers
- Configure VPN Policy on the PE Routers
- Simple VPN Configuration Summarized by Router
- Router A (PE Router)
- Router B (Provider Router)
- Router C (PE Router)
- Configure a Full-Mesh VPN Topology with Route Reflectors
- Configure a Hub-and-Spoke VPN Topology
- Enable an IGP on the Hub-and-Spoke PE Routers
- Configure LDP on the Hub-and-Spoke PE Routers
- Configure IBGP on the PE Routers
- Configure Routing Instances for VPNs on the Hub-and-Spoke PE Routers
- Configure VPN Policy on the PE Routers
- Hub-and-Spoke VPN Configuration Summarized by Router
- Router D (Hub PE Router)
- Router E (Spoke PE Router)
- Router F (Spoke PE Router)
- Configure an LDP-over-RSVP VPN Topology
- Enable an IGP on the PE and Provider Routers
- Enable LDP on the PE and Provider Routers
- Enable RSVP and MPLS on the Provider Router
- Configure the MPLS LSP Tunnel between the Provider Routers
- Configure IBGP on the PE Routers
- Configure Routing Instances for VPNs on the PE Routers
- Configure VPN Policy on the PE Routers
- LDP-over-MPLS VPN Configuration Summarized by Router
- Router PE1
- Router P1
- Router P2
- Router P3
- Router PE2
- Configure an Application-Based Layer 3 VPN Topology
- Configuration on Router A
- Configuration on Router E
- Configuration for Router F
- Configure an OSPF Domain ID for a Layer 3 VPN
- Configure Interfaces on Router PE1
- Configure Routing Options on Router PE1
- Configure Protocols on Router PE1
- Configure Policy Options on Router PE1
- Configure the Routing Instance on Router PE1
- Configuration Summary for Router PE1
- Configure Overlapping VPNs Using Routing Table Groups
- Configure Routing Table Groups
- Configure Static Routes between the PE and CE Routers
- Configure the Routing Instance for VPN A
- Configure the Routing Instance for VPN AB
- Configure the Routing Instance for VPN B
- Configure VPN Policy
- Configure BGP between the PE and CE Routers
- Configure OSPF between the PE and CE Routers
- Configure Static, BGP, and OSPF Routes between the PE and CE Routers
- Configuring Overlapping VPNs Using Automatic Route Export
- Configuring Overlapping VPNs with BGP and auto-export
- Configuring Overlapping VPNs and Additional Tables
- Configuring auto-export for all VRF Instances
- Configure a GRE Tunnel Interface between PE Routers
- Configure the Routing Instance on Router A
- Configure the Routing Instance on Router D
- Configure MPLS, BGP, and OSPF on Router A
- Configure MPLS, BGP, and OSPF on Router D
- Configure the Tunnel Interface on Router A
- Configure the Tunnel Interface on Router D
- Configure the Routing Options on Router A
- Configure the Routing Options on Router D
- Configuration Summary for Router A
- Configuration Summary for Router D
- Configure a GRE Tunnel Interface between a PE and CE Router
- Configure the Routing Instance without the Encapsulating Interface
- Configure the Routing Instance on Router PE1
- Configure the GRE Tunnel Interface on Router PE1
- Configure the Encapsulation Interface on Router PE1
- Configure the Routing Instance with the Encapsulating Interface
- Configure the Routing Instance on Router PE1
- Configure the GRE Tunnel Interface on Router PE1
- Configure the Encapsulation Interface on Router PE1
- Configure the GRE Tunnel Interface on Router CE1
- Configure an ES Tunnel Interface between a PE and CE Router
- Configure IPSec on Router PE1
- Configure the Routing Instance without the Encapsulating Interface
- Configure the Routing Instance on Router PE1
- Configure the ES Tunnel Interface on Router PE1
- Configure the Encapsulating Interface for the ES Tunnel on Router PE1
- Configure the Routing Instance with the Encapsulating Interface
- Configure the Routing Instance on Router PE1
- Configure the ES Tunnel Interface on Router PE1
- Configure the Encapsulating Interface on Router PE1
- Configure the ES Tunnel Interface on Router CE1
- Configure IPSec on Router CE1
- Configure SCU and DCU for Layer 3 VPNs
- Chapter:
Layer 3 VPN Internet Access Examples
[PDF 272 KB]
- Non-VRF Internet Access
- CE Router Accesses Internet Independently of the PE Router
- PE Router Provides Layer 2 Internet Service
- Distributed Internet Access
- Route VPN and Internet Traffic through Different Interfaces
- Configure Interfaces on Router PE1
- Configure Routing Options on Router PE1
- Configure BGP, IS-IS, and LDP Protocols on Router PE1
- Configure a Routing Instance on Router PE1
- Configure Policy Options on Router PE1
- Traffic Routed by Different Interfaces Configuration Summarized by Router
- Router PE1
- Route VPN and Outgoing Internet Traffic through the Same Interface and Route Return Internet Traffic through a Different Interface
- Configuration for Router PE1
- Route VPN and Internet Traffic through the Same Interface Bidirectionally (VPN Has Public Addresses)
- Configure Routing Options on Router PE1
- Configure Routing Protocols on Router PE1
- Configure the Routing Instance on Router PE1
- Traffic Routed through the Same Interface Bidirectionally Configuration Summarized by Router
- Router PE1
- Route VPN and Internet Traffic through the Same Interface Bidirectionally (VPN Has Private Addresses)
- Configure Routing Options for Router PE1
- Configure a Routing Instance for Router PE1
- Configure Policy Options for Router PE1
- Traffic Routed by the Same Interface Bidirectionally (VPN Has Private Addresses) Configuration Summarized by Router
- Router PE1
- Route Internet Traffic through a Separate NAT Device
- Configure Interfaces on Router PE1
- Configure Routing Options for Router PE1
- Configure Routing Protocols on Router PE1
- Configure a Routing Instance for Router PE1
- Traffic Routed by Separate NAT Device Configuration Summarized by Router
- Router PE1
- Centralized Internet Access
- Route Internet Traffic through a Hub CE Router
- Configure a Routing Instance on Router PE1
- Configure Policy Options on Router PE1
- Internet Traffic Routed by a Hub CE Router Configuration Summarized by Router
- Router PE1
- Route Internet Traffic through Multiple CE Routers
- Configure a Routing Instance on Router PE1
- Configure Policy Options on Router PE1
- Configure a Routing Instance on Router PE3
- Configure Policy Options on Router PE3
- Route Internet Traffic through Multiple CE Routers Configuration Summarized by Router
- Router PE1
- Router PE2
- Router PE3
- Chapter:
Summary of Layer 3 VPN Configuration Statements
[PDF 21 KB]
- inet6-vpn
- vpn-group-address
- vrf-table-label
- Chapter:
VPLS Overview
[PDF 29 KB]
- VPLS Overview
- VPLS Routing and Virtual Ports
- VPLS Standards
- Supported Platforms and PICs
- Chapter:
VPLS Configuration Guidelines
[PDF 66 KB]
- Configure Interfaces for VPLS Routing
- Configure the Interface Name
- Configure the Interface Encapsulation
- Enable VLAN Tagging
- Configure the VPLS Site
- Configure the Site Range
- Configure an Ethernet Switch as the CE Device
- Map VPLS Traffic to a Specific LSP
- Trace VPLS Traffic and Operations
- Chapter:
Summary of VPLS Configuration Statements
[PDF 42 KB]
- encapsulation
- site
- site-identifier
- site-range
- traceoptions
- vlan-id
- vlan-tagging
- vpls
- Chapter:
Interprovider and Carrier-of-Carriers VPNs Overview
[PDF 55 KB]
- Interprovider and Carrier-of-Carriers VPN Standards
- Traditional VPNs, Interprovider VPNs, and Carrier-of-Carriers VPNs
- Standard VPNs
- Interprovider and Carrier-of-Carriers VPNs
- Interprovider VPNs
- Interprovider VPNs—Linking VRF Tables between Autonomous Systems
- Interprovider VPNs—Configure MP-EBGP between AS Border Routers
- Interprovider VPNs—Configure Multihop MP-EBGP
- Carrier-of-Carriers VPNs
- Internet Service Provider as the Customer
- VPN Service Provider as the Customer
- Chapter:
Interprovider and Carrier-of-Carriers VPNs Configuration Guidelines
[PDF 124 KB]
- Interprovider VPNs
- Interprovider VPNs Using MP-EBGP
- Configure the AS Border Routers
- Configure RSVP
- Configure MPLS
- Configure BGP
- Configure OSPF
- Interprovider VPNs Using Multihop MP-EBGP
- Configure the AS Border Routers
- Configure BGP
- Configure Policy Options
- Configure the PE Router
- Carrier-of-Carriers VPNs
- Carrier-of-Carriers VPN—Customer Provides Internet Service
- Configure the Carrier-of-Carriers VPN Service Customer's CE Router
- Configure MPLS
- Configure BGP
- Configure OSPF
- Configure Policy Options
- Configure the Carrier-of-Carriers VPN Service Provider's PE Routers
- Configure MPLS
- Configure BGP
- Configure IS-IS
- Configure LDP
- Configure a Routing Instance
- Configure Policy Options
- Carrier-of-Carriers VPN—Customer Provides VPN Service
- Configure the Carrier-of-Carriers Customer's PE Router
- Configure MPLS
- Configure BGP
- Configure OSPF
- Configure LDP
- Configure VPN Service in the Routing Instance
- Configure Policy Options
- Configure the Carrier-of-Carriers Customer's CE Router
- Configure MPLS
- Configure BGP
- Configure OSPF and LDP
- Configure Policy Options
- Configure the Provider's PE Router
- Configure MPLS
- Configure a PE-Router-to-PE-Router BGP Session
- Configure IS-IS and LDP
- Configure Policy Options
- Configure a Routing Instance to Send Labeled Routes to the CE Router
- Chapter:
Configuration Examples for Interprovider and Carrier-of-Carriers VPNs
[PDF 236 KB]
- Example Terminology
- Interprovider VPN Examples
- Interprovider VPN Example—MP-EBGP between ISP Peer Routers
- Configuration for Router A
- Configuration for Router B
- Configuration for Router C
- Configure for Router D
- Configuration for Router E
- Configuration for Router F
- Interprovider VPN Example—Multihop MP-EBGP
- Configuration for Router B
- Configuration for Router C
- Configuration for Router D
- Configuration for Router E
- Carrier-of-Carriers VPN Examples
- Carrier-of-Carriers VPN Example—Customer Provides Internet Service
- Configuration for Router A
- Configuration for Router B
- Configuration for Router C
- Configuration for Router D
- Configuration for Router E
- Configuration for Router F
- Configuration for Router G
- Configuration for Router H
- Configuration for Router I
- Configuration for Router J
- Configuration for Router K
- Configuration for Router L
- Carrier-of-Carriers VPN Example—Customer Provides VPN Service
- Configuration for Router A
- Configuration for Router B
- Configuration for Router C
- Configuration for Router D
- Configuration for Router E
- Configuration for Router F
- Configuration for Router G
- Configuration for Router H
- Configuration for Router I
- Configuration for Router J
- Configuration for Router K
- Configuration for Router L
- Multiple Instances for LDP and Carrier-of-Carriers VPNs
- Chapter:
Summary of the Interprovider and Carrier-of-Carriers VPNs Configuration Statement
[PDF 16 KB]
- labeled-unicast
- Chapter:
Layer 2 Circuit Overview
[PDF 21 KB]
- Layer 2 Circuit Standards
- Layer 2 Circuit Policy
- Chapter:
Layer 2 Circuit Configuration
[PDF 59 KB]
- Configure the Neighbor and Interface
- Configure the Virtual Circuit ID
- Configure the Interface Encapsulation Type
- Configure LDP for Layer 2 Circuits
- Configure Layer 2 Circuit Policies
- Configure the Layer 2 Circuit Community
- Configure the Policy Statement for the Layer 2 Circuit Community
- Verify the Layer 2 Circuit Policy Configuration
- Configure the Control Word for Frame Relay Interfaces
- Disable the Control Word for Layer 2 Circuits
- Trace Layer 2 Circuit Creation and Changes
- Chapter:
Summary of Layer 2 Circuit Configuration Statements
[PDF 45 KB]
- community
- control-word
- description
- install-nexthop
- interface
- neighbor
- no-control-word
- traceoptions
- virtual-circuit-id
- Chapter:
Glossary
[PDF 198 KB]
- Chapter:
Index
[]
- Chapter:
Index of Statements and Commands
[]
|