When configuring tunnel keepalive at both end points of a tunnel interface it is recommended to set the tunnel keepalive target to the logical IPv4 or IPv6 address of the far end tunnel peer, rather than to the tunnel destination. This reduces the chance of both ends of the tunnel staying in keepalive down state. If both ends get into a keepalive down state that does not clear in a few seconds, then performing shutdown - no shutdown sequence on one end should bring both ends back to up.

tunnel allow-remote

Configure an IPv4 or IPv6 address or prefix whose tunneled packets are accepted for decapsulation. If you do not configure allow-remote entries, tunneled packets from any remote peer address is accepted.

This feature is supported on Dell Networking OS.

Syntax

tunnel allow-remote{ip-address ipv6-address} [mask]

Parameters

Defaults

Defaults

Command Modes

Command History

Usage Information

To delete a configured allow-remote entry use the no tunnel allow-remotecommand. Any specified address/mask values must match an existing entry for the delete to succeed. If the address and mask are not specified, this command deletes all allow-remote entries.

ip-address

Enter the source IPv4 address in A.B.C.D format.

ipv6–address

Enter the source IPv6 address in X:X:X:X::X format.

mask

(OPTIONAL) Enter a network mask in /prefix format (/x) or

 

A.B.C.D to match a range of remote addresses. The default

 

mask is /32 for IPv4 addresses and /128 for IPv6 addresses,

 

which match only the specified address.

If you do not configure tunnel allow remote , all traffic which is destined to tunnel source address is decapsulated.

By default there are no tunnel allow remote entries.

INTERFACE TUNNEL

Version

Description

9.7(0.0)

Introduced on the S6000-ON.

9.3(0.1)

Introduced on the S6000 and Z9000.

9.4(0.0)

Introduced on the S4810, S4820T, S6000 and Z9000.

You can configure up to eight allow-remote entries on any multipoint receive-only tunnel.

1588

Tunneling

Page 1588
Image 1588
Dell 9.7(0.0) manual Tunnel allow-remote, Syntax