Got it

Redirect traffic to specific nexthop IP NE20E-S4 Highlighted

Latest reply: Mar 30, 2019 05:50:40 1398 3 0 0 0
Issue Description

Customer needed to redirect traffic to specific output interface after matching specific rules of TCP/UDP ports and specific source/destination IPs.

He tried to use Policy Based Routing for this, but he could apply the PBR only on P2P Tunnel interface.

e2a733a0c8ce4bbc9b486424eb994e1c

Solution

--> Configure ACL that need to match de traffic to be redirected (for example acl 3000)

<Huawei> system-view

[Huawei] acl 3000

[Huawei-acl-adv-3000]rule 5 permit icmp source 192.168.1.1 0 destination 192.168.2.1 0

--> Configure a traffic policy, with the next behavior and classifier:

  • classifier:

[Huawei] traffic classifier c1

[Huawei-classifier-c1] if-match acl 3000

  • behavior:

[Huawei] traffic behavior b1

[Huawei-behavior-b1] redirect ip-nexthop 1.1.1.1 interface gigabitEthernet 0/6/4

--> Apply the traffic policy on the desired interface in the desired direction

[Huawei] traffic policy p1

[Huawei-trafficpolicy-p1] classifier c1 behavior b1

[Huawei-trafficpolicy-p1] quit

[Huawei] interface interface gigabitEthernet 0/6/4

[Huawei-gigabitEthernet 0/6/4] traffic-policy p1 inbound

 

Note: traffic policy can be also applied on subinterface/vpn-instance

  • x
  • convention:

bahjat1990
Created Dec 25, 2018 10:20:18

Thanks you
View more
  • x
  • convention:

wildwolf
Created Mar 5, 2019 06:07:51

if next hop will not reacheable or interface goes down, traffic will be switch standby link?
View more
  • x
  • convention:

sim_157
Created Mar 30, 2019 05:50:40

it's helpful. thanks
View more
  • x
  • convention:

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.
Information Protection Guide
Thanks for using Huawei Enterprise Support Community! We will help you learn how we collect, use, store and share your personal information and the rights you have in accordance with Privacy Policy and User Agreement.