Configuring ospfv3 ipsec policies, Network requirements, Configuration procedure – H3C Technologies H3C SecPath F1000-E User Manual

Page 804

Advertising
background image

779

<SecPathA> display ipv6 routing-table 2001:4::0 64 verbose

Routing Table :

Summary Count : 1

Destination : 2001:4:: PrefixLength : 64

NextHop : 2001:2::2 Preference : 10

IpPrecedence : QosLcId :

RelayNextHop : :: Tag : 0H

Neighbor : :: ProcessID : 0

Interface : GigabitEthernet0/2 Protocol : OSPFv3

State : Invalid Adv Cost : 2

Tunnel ID : 0x0 Label : NULL

Age : 4610sec

Configuring OSPFv3 IPsec policies

Network requirements

As shown in

Figure 387

,

Configure OSPFv3 on the firewalls. The AS is divided into two areas.

Configure IPsec policies on the firewalls to authenticate and encrypt protocol packets.

Figure 387 Network diagram

Configuration procedure

1.

Configure IPv6 addresses for interfaces. (Details not shown.)

2.

Configure OSPFv3 basic functions:
# Configure SecPath A: enable OSPFv3 and configure the router ID as 1.1.1.1.

<SecPathA> system-view

[SecPathA] ipv6

[SecPathA] ospfv3 1

[SecPathA-ospfv3-1] router-id 1.1.1.1

[SecPathA-ospfv3-1] quit

[SecPathA] interface GigabitEthernet 0/2

[SecPathA-GigabitEthernet0/2] ospfv3 1 area 1

[SecPathA-GigabitEthernet0/2] quit

# Configure SecPath B: enable OSPFv3 and configure the router ID as 2.2.2.2.

Advertising