Got it

Route between VPN-instances

Created: Sep 20, 2018 16:34:30Latest reply: Sep 20, 2018 17:30:22 1765 2 0 0 0
  Rewarded HiCoins: 0 (problem resolved)

This post enquires about the route between VPN-instances. Please see more details below.


I have two networks in different vpn-instances:


  • network A is in a public routing table;

  • network B is in vpn-instance B.

I need to establish the communication from network A to network B. Is there a way on the USG to achieve this without having to do any physical cabling?


I've tried the following static route command, but it did not work:


ip route-static x.x.x.241 32 vpn-instance vpn-instance B x.x.x.254


Featured Answers
Sergio93
Created Sep 20, 2018 16:50:39

Hello!

Please check this example - USG does have the commands, in the example there is a switch:

Route between VPN-instances-2756503-1

The configuration from SW1 : 
#


vlan batch 2

#

ip vpn-instance test

ipv4-family

  route-distinguisher 100:1

  import route-policy 1

  vpn-target 1:1 export-extcommunity

  vpn-target 1:1 import-extcommunity

#

ip vpn-instance test2

ipv4-family

  route-distinguisher 100:2

  export route-policy 2

  vpn-target 1:1 export-extcommunity

  vpn-target 1:1 import-extcommunity

#

 
interface Vlanif1

ip binding vpn-instance test

ip address 1.1.1.1 255.255.255.0

#

interface Vlanif2

ip binding vpn-instance test2

ip address 2.1.1.1 255.255.255.0

#

interface GigabitEthernet0/0/1

port link-type access

port default vlan 1

#

interface GigabitEthernet0/0/2

port link-type access

port default vlan 2

#

bgp 1

router-id 1.1.1.1

#

ipv4-family unicast

  undo synchronization

#

ipv4-family vpn-instance test

  import-route direct

#

ipv4-family vpn-instance test2

  import-route direct

#

PC 1:
 
Route between VPN-instances-2756503-2

PC 2:
 
Route between VPN-instances-2756503-3


Result:
 
Route between VPN-instances-2756503-4
View more
  • x
  • convention:

All Answers
Hello!

Please check this example - USG does have the commands, in the example there is a switch:

Route between VPN-instances-2756503-1

The configuration from SW1 : 
#


vlan batch 2

#

ip vpn-instance test

ipv4-family

  route-distinguisher 100:1

  import route-policy 1

  vpn-target 1:1 export-extcommunity

  vpn-target 1:1 import-extcommunity

#

ip vpn-instance test2

ipv4-family

  route-distinguisher 100:2

  export route-policy 2

  vpn-target 1:1 export-extcommunity

  vpn-target 1:1 import-extcommunity

#

 
interface Vlanif1

ip binding vpn-instance test

ip address 1.1.1.1 255.255.255.0

#

interface Vlanif2

ip binding vpn-instance test2

ip address 2.1.1.1 255.255.255.0

#

interface GigabitEthernet0/0/1

port link-type access

port default vlan 1

#

interface GigabitEthernet0/0/2

port link-type access

port default vlan 2

#

bgp 1

router-id 1.1.1.1

#

ipv4-family unicast

  undo synchronization

#

ipv4-family vpn-instance test

  import-route direct

#

ipv4-family vpn-instance test2

  import-route direct

#

PC 1:
 
Route between VPN-instances-2756503-2

PC 2:
 
Route between VPN-instances-2756503-3


Result:
 
Route between VPN-instances-2756503-4
View more
  • x
  • convention:

  • x
  • convention:

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.