<PE1>DIS CUR
#
sysname PE1
#
cpu-usage cycle 1min
#
mpls lsr-id 11.11.11.11
#
radius scheme system
#
mpls
#
ip vpn-instance A
route-distinguisher 1:1
vpn-target 1:1 export-extcommunity
vpn-target 1:1 import-extcommunity
#
ip vpn-instance B
route-distinguisher 1:2
vpn-target 1:2 export-extcommunity
vpn-target 1:2 import-extcommunity
#
domain system
#
local-user admin
password cipher .]@USE=B,53Q=^Q`MAF4<1!!
service-type telnet terminal
level 3
service-type ftp
#
interface Aux0
async mode flow
#
interface Ethernet0/0
ip address dhcp-alloc
#
interface Ethernet0/1
ip address dhcp-alloc
#
interface Serial0/0
clock DTECLK1
link-protocol ppp
ip address 1.1.1.1 255.255.255.252
#
interface Tunnel1
source 11.11.11.11
destination 22.22.22.22
mpls
#
interface NULL0
#
interface LoopBack1
ip address 11.11.11.11 255.255.255.255
#
interface LoopBack2
ip binding vpn-instance A
ip address 111.111.111.111 255.255.255.0
#
interface LoopBack3
ip binding vpn-instance B
ip address 222.222.222.221 255.255.255.0
#
bgp 1
undo synchronization
group m-ibgp internal
peer 22.22.22.22 group m-ibgp
peer 22.22.22.22 connect-interface LoopBack1
#
ipv4-family vpn-instance A
import-route direct
undo synchronization
#
ipv4-family vpn-instance B
import-route direct
undo synchronization
#
ipv4-family vpnv4
peer m-ibgp enable
peer 22.22.22.22 group m-ibgp
#
ospf 1
area 0.0.0.0
network 1.1.1.1 0.0.0.0
network 11.11.11.11 0.0.0.0
#
FTP server enable
#
user-interface con 0
user-interface aux 0
user-interface vty 0 4
authentication-mode scheme
#
return
#
sysname PE2
#
cpu-usage cycle 1min
#
mpls lsr-id 22.22.22.22
#
radius scheme system
#
mpls
#
ip vpn-instance A
route-distinguisher 1:1
vpn-target 1:1 export-extcommunity
vpn-target 1:1 import-extcommunity
#
ip vpn-instance B
route-distinguisher 1:2
vpn-target 1:2 export-extcommunity
vpn-target 1:2 import-extcommunity
#
domain system
#
local-user admin
password cipher .]@USE=B,53Q=^Q`MAF4<1!!
service-type telnet terminal
level 3
service-type ftp
#
acl number 2000
rule 1 permit vpn-instance A source 192.168.10.0 0.0.0.255
#
interface Aux0
async mode flow
#
interface Ethernet0/0
ip address dhcp-alloc
#
interface Ethernet0/0.1
ip binding vpn-instance A
ip address 1.1.1.5 255.255.255.252
ip policy route-policy DJS
vlan-type dot1q vid 1
#
interface Ethernet0/0.2
ip binding vpn-instance B
ip address 1.1.1.5 255.255.255.252
vlan-type dot1q vid 2
#
interface Ethernet0/1
ip address dhcp-alloc
#
interface Serial0/0
link-protocol ppp
ip address 1.1.1.2 255.255.255.252
#
interface Tunnel1
source 22.22.22.22
destination 11.11.11.11
mpls
#
interface NULL0
#
interface LoopBack1
ip address 22.22.22.22 255.255.255.255
#
bgp 1
undo synchronization
group m-ibgp internal
peer 11.11.11.11 group m-ibgp
peer 11.11.11.11 connect-interface LoopBack1
#
ipv4-family vpn-instance A
import-route direct
import-route ospf 2
undo synchronization
#
ipv4-family vpn-instance B
import-route direct
import-route ospf 3
import-route static
undo synchronization
#
ipv4-family vpnv4
peer m-ibgp enable
peer 11.11.11.11 group m-ibgp
#
ospf 1
area 0.0.0.0
network 1.1.1.0 0.0.0.3
network 22.22.22.22 0.0.0.0
#
ospf 2 vpn-instance A
import-route bgp
area 0.0.0.0
network 1.1.1.5 0.0.0.0
#
ospf 3 vpn-instance B
import-route bgp
area 0.0.0.0
network 1.1.1.5 0.0.0.0
#
route-policy DJS permit node 10
if-match acl 2000
apply access-vpn vpn-instance B A
#
FTP server enable
#
ip route-static vpn-instance B 192.168.10.0 255.255.255.0 vpn-instance A 1.1.1.6 preference 60
#
user-interface con 0
user-interface aux 0
user-interface vty 0 4
authentication-mode scheme
#
return
#
sysname MCE
#
cpu-usage cycle 1min
#
radius scheme system
#
ip vpn-instance A
route-distinguisher 1:1
#
ip vpn-instance B
route-distinguisher 1:2
#
domain system
#
local-user admin
password cipher .]@USE=B,53Q=^Q`MAF4<1!!
service-type telnet terminal
level 3
service-type ftp
#
interface Aux0
async mode flow
#
interface GigabitEthernet0/0/0
ip address dhcp-alloc
#
interface GigabitEthernet0/0/0.1
ip binding vpn-instance A
ip address 1.1.1.6 255.255.255.252
vlan-type dot1q vid 1
#
interface GigabitEthernet0/0/0.2
ip binding vpn-instance B
ip address 1.1.1.6 255.255.255.252
vlan-type dot1q vid 2
#
interface GigabitEthernet0/0/1
ip binding vpn-instance A
ip address 192.168.10.1 255.255.255.0
#
interface GigabitEthernet0/0/2
ip address dhcp-alloc
#
interface NULL0
#
interface LoopBack1
ip address 33.33.33.33 255.255.255.255
#
interface LoopBack2
ip binding vpn-instance A
ip address 123.123.123.123 255.255.255.0
#
interface LoopBack3
ip binding vpn-instance B
ip address 124.124.124.124 255.255.255.0
#
ospf 2 vpn-instance A
vpn-instance-capability simple
area 0.0.0.0
network 1.1.1.6 0.0.0.0
network 123.123.123.0 0.0.0.255
network 192.168.10.0 0.0.0.255
#
ospf 3 vpn-instance B
vpn-instance-capability simple
area 0.0.0.0
network 1.1.1.6 0.0.0.0
network 124.124.124.0 0.0.0.255
#
FTP server enable
#
ip route-static vpn-instance A 0.0.0.0 0.0.0.0 1.1.1.5 preference 60
#
user-interface con 0
user-interface aux 0
user-interface vty 0 4
authentication-mode scheme
#
return
[MCE]