< Home

Using a Virtual Tunnel Interface to Establish an IPSec Tunnel-CLI

A virtual tunnel interface is a Layer 3 logical interface where the encapsulation protocol is GRE and IPSec. The device can provide the IPSec service for the virtual tunnel interface. All the packets routed to the virtual tunnel interface are protected by IPSec. The virtual tunnel interface can simplify IPSec parameters.

Pre-configuration Tasks

Before using an IPSec tunnel interface to establish an IPSec tunnel, complete the following tasks:
  • Configure a reachable route between source and destination interfaces.
  • Determine data flows to be protected by IPSec and importing data flows to the IPSec tunnel interface.
  • Determine parameters in an IPSec proposal.

Configuration Procedure

After an IPSec policy is referenced by an IPSec profile, apply the IPSec profile to an IPSec tunnel interface and establish an IPSec tunnel through the virtual tunnel interface.

Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >