Difference between revisions of "GRE JUNOS"

From Teknologisk videncenter
Jump to: navigation, search
m (Created page with "=GRE Tunnel på juniper= For at lave en IPv4+IPv6 GRE<ref>http://kb.juniper.net/InfoCenter/index?page=content&id=KB11279</ref> tunnel imellem en Cisco IOS og en Juniper SRX skal ...")
 
 
(9 intermediate revisions by the same user not shown)
Line 1: Line 1:
 
=GRE Tunnel på juniper=
 
=GRE Tunnel på juniper=
 
For at lave en IPv4+IPv6 GRE<ref>http://kb.juniper.net/InfoCenter/index?page=content&id=KB11279</ref> tunnel imellem en Cisco IOS og en Juniper SRX skal der noget configuration til.
 
For at lave en IPv4+IPv6 GRE<ref>http://kb.juniper.net/InfoCenter/index?page=content&id=KB11279</ref> tunnel imellem en Cisco IOS og en Juniper SRX skal der noget configuration til.
 +
{|
 +
|[[Image:GRE_Setup.png‎ |800px|left|thumb|Setup]]
 +
|}
 
==Junos==
 
==Junos==
 
selve tunellen
 
selve tunellen
Line 32: Line 35:
 
}
 
}
 
</source>
 
</source>
Og hvis vi skal pinge skal der GRE interfacet være i trust zonen. Det er jo en SRX
+
Og hvis vi skal pinge skal der GRE interfacet være i trust zonen. Det er jo en SRX<ref>http://kb.juniper.net/InfoCenter/index?page=content&id=KB19371</ref>
 
<source lang=cli>
 
<source lang=cli>
 
[edit security zones security-zone trust]
 
[edit security zones security-zone trust]
Line 40: Line 43:
 
}
 
}
 
</source>
 
</source>
 +
 
==På Cisco kassen==
 
==På Cisco kassen==
 
GRE interfaces
 
GRE interfaces
Line 54: Line 58:
 
ipv6 route 2001:16D8:caff::/48 FEC0::cafe:cafe:DD:7500
 
ipv6 route 2001:16D8:caff::/48 FEC0::cafe:cafe:DD:7500
 
</source>
 
</source>
 +
 +
=Referencer=
 +
<references/>
 +
{{Source cli}}
 +
[[Category:Juniper]]
 +
[[Category:IPv6]]
 +
[[Category:SRX Packet-Based Forwarding]]
 +
[[Category:SRX Flow-Based Forwarding]]

Latest revision as of 14:30, 16 October 2014

GRE Tunnel på juniper

For at lave en IPv4+IPv6 GRE[1] tunnel imellem en Cisco IOS og en Juniper SRX skal der noget configuration til.

Setup

Junos

selve tunellen

[edit interfaces gr-0/0/0]
root@Router# show
unit 0 {
    description mercantec.elmholt.eu;
    tunnel {
        source yderside.domain1.com;
        destination yderside.domain2.com;
    }
    family inet {
        address 10.255.0.13/30;
    }
    family inet6 {
        address fec0::/64 {
            eui-64;
        }
    }
}

Og lidt configuration til en statick route

[edit routing-options]
root@Router# show
rib inet6.0 {
    static {
        route 2001:16d8:cafe::/48 next-hop fec0::cafe:cfff:fe96:f76e;
    }
}

Og hvis vi skal pinge skal der GRE interfacet være i trust zonen. Det er jo en SRX[2]

[edit security zones security-zone trust]
root@Router# show
interfaces {
    gr-0/0/0.0;
}

På Cisco kassen

GRE interfaces

interface Tunnel0
 ip address 10.255.0.14 255.255.255.252
 ipv6 address FEC0::/64 eui-64
 tunnel source FastEthernet0/0
 tunnel destination yderside.domain1.com
end

og den staticke route

ipv6 route 2001:16D8:caff::/48 FEC0::cafe:cafe:DD:7500

Referencer