vti

interfaces vti <txt>
Devices

Virtual Tunnel interface

Values:
  • vtiN – Virtual Tunnel interface name

Instances:

Multiple

Required:

vpn ipsec site-to-site peer <id>

Required:

interfaces vti <txt> remote-address <ipv4>

interfaces vti <txt> address <ipv4cidr|id>
Devices

IP address

Values:
  • ipv4cidr – IPv4 address and prefix length

  • dhcp – Dynamic Host Configuration Protocol

Instances:

Multiple

interfaces vti <txt> alarm
Devices

Enable or disable alarm according the link state

interfaces vti <txt> alarm down <txt>
Devices

Alarm to be enabled if the link is down

Reference:

system alarm <txt>

interfaces vti <txt> description <id>
Devices

Description

Values:
  • id – “Interface description is too long (limit 256 characters)” (1-256)

interfaces vti <txt> dhcp
Devices

Dynamic Host Configuration Protocol configuration

interfaces vti <txt> dhcp client
Devices

DHCP client configuration

interfaces vti <txt> dhcp client fallback <ipv4cidr|ipv6cidr>
Devices
Values:
  • ipv4cidr – Fallback IP address

  • ipv6cidr – Fallback IP address

interfaces vti <txt> dhcp client receive
Devices

Receive options parameters

interfaces vti <txt> dhcp client receive default-router
Devices

Default route parameters

Instances:

Unique

interfaces vti <txt> dhcp client receive default-router disable
Devices

Disable receiving the default router from DHCP server.

interfaces vti <txt> dhcp client receive default-router distance <u32>
Devices

Set the distance for the default route received from DHCP server.

Values:
  • u32 – distance to be set (1-255)

interfaces vti <txt> dhcp client rfc3442-routes
Devices

Install RFC3442 routes received from DHCP server

interfaces vti <txt> dhcp client send
Devices

Send user-defined options to the DHCP server

interfaces vti <txt> dhcp client send dhcp-client-identifier
Devices

Include the ‘dhcp-client-identifier’ option

Instances:

Unique

interfaces vti <txt> dhcp client send dhcp-client-identifier base-mac
Devices

Use device base mac as identifier

interfaces vti <txt> dhcp client send dhcp-client-identifier serial-number
Devices

Use device serial number as identifier

interfaces vti <txt> dhcp client send dhcp-client-identifier string <id>
Devices

Use a string as identifier

Values:
  • id – Identifier string (1-255)

interfaces vti <txt> dhcp client send vendor-class-identifier
Devices

Include the ‘vendor-class-identifier’ option

Instances:

Unique

interfaces vti <txt> dhcp client send vendor-class-identifier string <id>
Devices

Use a string as identifier

Values:
  • id – Identifier string (1-255)

interfaces vti <txt> dhcp-interface <ifc>
Devices
Values:
  • ifc – DHCP interface that supplies the local IP address for this tunnel

interfaces vti <txt> disable
Devices

Disable interface

interfaces vti <txt> disable advisor <txt>
Devices

Advisor to enable or disable the interface

Reference:

system advisor <txt>

interfaces vti <txt> disable-offload
Devices

Disable offload engine in this interface

interfaces vti <txt> flow
Devices Licenses

Active netflow on interface

interfaces vti <txt> flow egress
Devices Licenses

Active output traffic

interfaces vti <txt> flow egress selector <txt>
Devices Licenses

Traffic selector

Reference:

traffic selector <txt>

interfaces vti <txt> flow ingress
Devices Licenses

Active input traffic

interfaces vti <txt> flow ingress selector <txt>
Devices Licenses

Traffic selector

Reference:

traffic selector <txt>

interfaces vti <txt> ipsec <id>
Devices

IPSec site to site peer for vti interface

Reference:

vpn ipsec site-to-site peer <id>

interfaces vti <txt> local-address <ipv4>
Devices

IP address for local IPSec end-point

Values:
  • ipv4 – Local IPv4 address for this tunnel

Local IP address:

interfaces vti <txt> mtu <u32>
Devices

Maximum Transmission Unit (MTU)

Values:
  • u32 – Maximum Transmission Unit (MTU) (68-9000)

interfaces vti <txt> remote-address <ipv4>
Devices

IP address for remote IPSec end-point

Values:
  • ipv4 – Remote IPv4 address for this tunnel

interfaces vti <txt> tcp-mss <u32>
Devices
Values:
  • u32 – Change tcp-mss value

interfaces vti <txt> traffic
Devices

Traffic processing options

interfaces vti <txt> traffic control
Devices

Traffic control for interface

interfaces vti <txt> traffic control in <id>
Devices

Ingress traffic control for interface

Reference:

traffic control <id>

interfaces vti <txt> traffic control out <id>
Devices

Egress traffic control for interface

Reference:

traffic control <id>

interfaces vti <txt> traffic nat
Devices

Network Address Translation (NAT) parameters

interfaces vti <txt> traffic nat destination
Devices

Destination NAT settings

interfaces vti <txt> traffic nat destination rule <u32>
Devices

Rule number for NAT

Values:
  • u32 – Number for this NAT rule (1-9999)

Instances:

Multiple

interfaces vti <txt> traffic nat destination rule <u32> address <ipv4|ipv4net|ipv4range|id>
Devices

IP address, subnet, range or redirect

Values:
  • ipv4 – NAT to the specified IP address

  • ipv4net – NAT to the specified network address

  • ipv4range – NAT to the specified IP range

  • redirect – NAT to the interface address

interfaces vti <txt> traffic nat destination rule <u32> description <txt>
Devices
Values:
  • txt – Rule description

interfaces vti <txt> traffic nat destination rule <u32> log
Devices

Log packets to which this rule has been applied

interfaces vti <txt> traffic nat destination rule <u32> log level <txt>
Devices

Loggin level

Values:
  • emerg – Emergency messages

  • alert – Urgent messages

  • crit – Critical messages

  • err – Error messages

  • warn – Warning messages

  • notice – Messages for further investigation

  • info – Informational messages

  • debug – Debug messages

interfaces vti <txt> traffic nat destination rule <u32> log prefix <txt>
Devices
Values:
  • txt – Log message prefix text, up to 29 characters

interfaces vti <txt> traffic nat destination rule <u32> network <ipv4net>
Devices

IP prefix to use in translation (host part is kept)

Values:
  • ipv4net – NAT to the specified network address, host part of the address will remain unchanged

interfaces vti <txt> traffic nat destination rule <u32> port <u32|id>
Devices

NAT port

Values:
  • u32 – Port to use in PAT (1-65535)

  • range – Port range (pool, for example, 1001-1005)

interfaces vti <txt> traffic nat destination rule <u32> protocol <txt>
Devices
Values:
  • txt – NAT transport protocol

interfaces vti <txt> traffic nat destination rule <u32> selector <txt>
Devices

Traffic selector

Reference:

traffic selector <txt>

interfaces vti <txt> traffic nat source
Devices

Source NAT settings

interfaces vti <txt> traffic nat source rule <u32>
Devices

Rule number for NAT

Values:
  • u32 – Number for this NAT rule (1-9999)

Instances:

Multiple

interfaces vti <txt> traffic nat source rule <u32> address <ipv4|ipv4net|ipv4range|id>
Devices

IP address, subnet, range or masquerade

Values:
  • ipv4 – NAT to the specified IP address

  • ipv4net – NAT to the specified network address

  • ipv4range – NAT to the specified IP range

  • masquerade – NAT to the interface address

interfaces vti <txt> traffic nat source rule <u32> description <txt>
Devices
Values:
  • txt – Rule description

interfaces vti <txt> traffic nat source rule <u32> log
Devices

Log packets to which this rule has been applied

interfaces vti <txt> traffic nat source rule <u32> log level <txt>
Devices

Loggin level

Values:
  • emerg – Emergency messages

  • alert – Urgent messages

  • crit – Critical messages

  • err – Error messages

  • warn – Warning messages

  • notice – Messages for further investigation

  • info – Informational messages

  • debug – Debug messages

interfaces vti <txt> traffic nat source rule <u32> log prefix <txt>
Devices
Values:
  • txt – Log message prefix text, up to 29 characters

interfaces vti <txt> traffic nat source rule <u32> network <ipv4net>
Devices

IP prefix to use in translation (host part is kept)

Values:
  • ipv4net – NAT to the specified network address, host part of the address will remain unchanged

interfaces vti <txt> traffic nat source rule <u32> port <u32|id>
Devices

NAT port

Values:
  • u32 – Port to use in PAT (1-65535)

  • range – Port range (pool, for example, 1001-1005)

interfaces vti <txt> traffic nat source rule <u32> protocol <txt>
Devices
Values:
  • txt – NAT transport protocol

interfaces vti <txt> traffic nat source rule <u32> selector <txt>
Devices

Traffic selector

Reference:

traffic selector <txt>

interfaces vti <txt> traffic policy
Devices

Traffic policy rulesets for interface

interfaces vti <txt> traffic policy in <txt>
Devices

Input traffic policy ruleset for interface

Reference:

traffic policy <txt>

Instances:

Multiple

interfaces vti <txt> traffic policy in <txt> priority <txt>
Devices

Priority order for traffic policy

Values:
  • very-high – First policy executed before NAT

  • high – Second policy executed before NAT

  • low – First policy executed after NAT

  • very-low – Second policy executed after NAT

interfaces vti <txt> traffic policy local-in <txt>
Devices

Local input traffic policy ruleset for interface

Reference:

traffic policy <txt>

Instances:

Multiple

interfaces vti <txt> traffic policy local-in <txt> priority <txt>
Devices

Priority order for traffic policy

Values:
  • very-high – First policy executed

  • high – Second policy executed

  • low – Third policy executed

  • very-low – Fourth policy executed

interfaces vti <txt> traffic policy local-out <txt>
Devices

Local output traffic policy ruleset for interface

Reference:

traffic policy <txt>

Instances:

Multiple

interfaces vti <txt> traffic policy local-out <txt> priority <txt>
Devices

Priority order for traffic policy

Values:
  • very-high – First policy executed

  • high – Second policy executed

  • low – Third policy executed

  • very-low – Fourth policy executed

interfaces vti <txt> traffic policy out <txt>
Devices

Output traffic policy ruleset for interface

Reference:

traffic policy <txt>

Instances:

Multiple

interfaces vti <txt> traffic policy out <txt> priority <txt>
Devices

Priority order for traffic policy

Values:
  • very-high – First policy executed before NAT

  • high – Second policy executed before NAT

  • low – First policy executed after NAT

  • very-low – Second policy executed after NAT

interfaces vti <txt> traffic zone <txt>
Devices

Traffic zone associated with this interface

Reference:

traffic zone <txt>

interfaces vti <txt> vrf <id>
Devices

Virtual Routing and Forwarding domain name

Reference:

system vrf <id>