Tag: Huawei
Frame-relay multilink and VRF on AR46 platform with VRP 3.40
by tnk on May.18, 2009, under Huawei, Networking
So time had come to (finally) leave the IPSec and move on to some other stuff. This scenario will show how to configure Frame Relay multilink, some QoS and all of that in combination with VRF and VRRP technology. As this topic is rather more extensive than the previous ones it will be divided into few parts.
The… Continue reading
l2tp over IPSec scenario
by tnk on May.10, 2009, under Huawei, Networking, Security Links, windows
So this is the long promised scenario that can be used with windows XP (even though it is not really user friendly).
If you need a “PC-client – VPN-concentrator” scenario. Huawei does offer only one-way ticket for you and it is l2tp over IPSec. Unless you want to use some MPLS over IPSec which is in theory also… Continue reading
Port isolate vs. Mac Forced Forwarding
by tnk on Apr.09, 2009, under Huawei, Networking
Let me first say that these two features are supposed to do very similar things – they are designed to separate access users so their traffic cannot go directly between them without any control. This is a must as most of the attacks are actually executed from inside your own network and specifically in the same subnet where the Continue reading
Huawei’s send command
by tnk on Apr.06, 2009, under Huawei, Networking
This article is just about small, handy and not-so-widely known command in all Huawei’s equipment. The command is in user-view and is called send.
If you are wandering what exactly does this do the answer is quite simple – it is sort of instant messaging built into every VRP I have seen. It enables to send message to any console/terminal Continue reading
Troubleshooting IPSec on Huawei routers
by tnk on Jan.11, 2009, under Huawei, Networking
Ok so in my previous posts I described the most common config of IPsec with IKE. For troubleshooting this config there are few simple things one should check for basic troubleshoot.
No. 1 Check display IKE sa command in user view
Output of this command should show you two IKE entries. It is necessary to be two because if there is Continue reading
