Cisco Systems DNC-305 manual Radius Remote Security Examples, DNC-328

Page 24

Telco and ISP Dial Scenarios and Configurations

Large-Scale POPs

interface Ethernet2/2 no ip address shutdown

!

interface Ethernet2/3 no ip address shutdown

!

interface Virtual-Template1 ip unnumbered Loopback0 no ip mroute-cache

peer default ip address pool dialin_pool

pppauthentication chap pap dialin ppp multilink

!

router eigrp 10 network 10.0.0.0

passive-interface Virtual-Template1 no auto-summary

!

ip local pool dialin_pool 10.1.2.193 10.1.2.242 ip default-gateway 10.1.1.1

ip classless

!

radius-server host 10.1.1.23 auth-port 1645 acct-port 1646 radius-server host 10.1.1.24 auth-port 1645 acct-port 1646 radius-server key cisco

!

line con 0

login authentication console line aux 0

login authentication console line vty 0 4

login authentication vty

!

end

RADIUS Remote Security Examples

The RADIUS examples in the following sections use the Internet Engineering Task Force (IETF) syntax for the attributes:

User Setup for PPP

User Setup for PPP and Static IP Address

Enabling Router Dial-In

User Setup for SLIP

User Setup for SLIP and Static IP Address

Telnetting to a UNIX Host

Automatic Rlogin to UNIX Host

Depending on how the dictionary is set up, the syntax for these configurations might differ between versions of RADIUS daemons.

Note You must have the async dynamic address command enabled on the network access server if you use Framed-IP-Address to statically assign IP addresses.

Cisco IOS Dial Services Configuration Guide: Network Services

DNC-328

Image 24
Contents Telco and ISP Dial Scenarios and Configurations DNC-305Individual Remote PCs Using Analog Modems Running Configuration for Isdn PRINetwork Topology DNC-306DNC-307 Controller T1 0 framing esfIsdn incoming-voice modem Running Configuration for Robbed-Bit Signalling Line aux Login authentication console line vty 0DNC-308 EndDNC-309 Individual PCs Using Isdn Terminal Adapters DNC-310Terminal Adapter Configuration Example DNC-311Peer default ip address pool dialinpool dialer in-band DNC-312Interface Dialer0 Combination of Modem and Isdn Dial-In Configuration Example Mixture of Isdn and Analog Modem CallsDNC-313 DNC-314 DNC-315 Scaling Considerations DNC-316Using Multichassis Multilink PPP How Stacking WorksTypical Multilink PPP Session DNC-317Setting Up an Offload Server DNC-318Using the Stack Group Bidding Protocol DNC-319Using L2F Cisco AS5200 Access Server #1DNC-320 Hostname AS5200-1 Aaa new-modelPeer default ip address pool dialinpool no cdp enable DNC-321DNC-322 Cisco AS5200 Access Server #2 DNC-323Hostname AS5200-2 Aaa new-model DNC-324 Cisco AS5200 Access Server #3 Transport input telnet rlogin EndDNC-325 Hostname AS5200-3 Aaa new-modelDNC-326 Cisco 7206 as Offload Server DNC-327Hostname Aaa new-model Sgbp group MystackRadius Remote Security Examples DNC-328User Setup for PPP User Setup for PPP and Static IP AddressUser Setup for Slip Enabling Router Dial-InUser Setup for Slip and Static IP Address Automatic Rlogin to Unix HostTelnetting to a Unix Host DNC-330Overview Remote PC Browsing Network TopologyDNC-331 Protocol Translation Configuration Example DNC-332DNC-333 DNC-334