User Manual - Configuration Guide (Volume 3)
Versatile Routing Platform Chapter 2
Configuration of L2TP
2-6
LNS can be put behind Intranet firewall. It can dynamically distribute and manage the
addresses of remote users and support the application of private addres ses
(RFC1918). The distributed addresses for remote users are private addresses in
enterprise instead of Internet addresses, thus the addresses can be easily m anaged
and the security can also be improved.
z Flexible network charging
Charge in both LAC and LNS at the same time, that is, in ISP (to generate bills) and
Intranet gateway (to pay for charge and audit). L2TP can provide such charging data as
transmitted packet number, byte number, start time and end time of the connection.
And it can easily perform network charging according to these data.
z Reliability
L2TP supports backup LNS. When an active LNS is inaccessible, LAC ( access server)
can reconnect the backup LNS to improve the reliability and fault tolera nce of VPN
service.
2.2 Configuring L2TP

2.2.1 L2TP Configuration Task List

L2TP configuration task can be divided into the configurations at LAC and LNS sides.

I. Configuration at LAC side

z Start/Disable VPDN.
z Create VPDN group.
z Set to originate L2TP connection request and LNS addresses.
z Set user name and password.

II. Configuration at LNS side

z Start/Disable VPDN.
z Create VPDN group.
z Create or delete virtual interface template.
z Set the name of receiving channel opposite end.

III. Optional configuration

z Set local name.
z Set channel authentication and password.
z Force local end to perform CHAP authentication.
z Force LCP to re-negotiation.
z Set domain name delimiter and search sequence.
z Force to disconnect channel.

2.2.2 Configuring at LAC Side

I. Enable/disable VPDN

Perform the following task in global configuration mode.