User Manual - Configuration Guide (Volume 3)

Chapter 2

Versatile Routing Platform

Configuration of L2TP

! Configure Virtual-Template 1.

Quidway (config)# interface virtual-template 1

Quidway (config-if-virtual-template1)# ip address 192.168.0.1 255.255.255.0

Quidway (config-if-virtual-template1)# ppp authentication chap

Quidway (config-if-virtual-template1)# peer default ip address pool 1

! Adopt AAA authentication. Quidway (config)# aaa-enable

Quidway (config)# aaa authentication ppp default local

2.4.3Single User Interconnects Headquarters via Router

I.Networking requirement

A user needs to communicate with headquarters, but the network address of headquarters is a private address, e.g. 10.8.0.0 network, so the user can not directly access internal server via Internet. With VPN, the user can access the data of internal network.

II. Networking diagram

Modem

PSTN

InterTunnelt

PC1

ISDN

Quidway1

 

Quidway2

总部

LAC

WAN

LNS

 

 

 

 

 

 

PC2

Figure VPN-2-6Networking diagram of single user interconnecting headquarters

III.Configuration procedure

1)Configuration at user side

Set user name to “vpnuser@huawei.com” and password to “hello” at dial-in terminal (the user name and password have been registered in LAC or company).

Establish a dial-up network with access number “Quidway1”, which receives the addresses distributed by server. After dial-up window appears, input user name “vpnuser@huawei.com” and the password “hello”.

2)The configuration of the router Quidway1 (at LAC side) (In the case, IP address of the port where LNS side and the channel are connected is 202.38.160.2):

!Set a VPDN group and configure relative attributes Quidway(config)# vpdn enable Quidway(config)# vpdn-group 1

2-17

Page 37
Image 37
Huawei v200r001 user manual Single User Interconnects Headquarters via Router