Configure L2TP VPN in Netscreen

Source: Internet
Author: User

L2TP VPN is a solution for connecting mobile office staff to the company's intranet. Let's demonstrate the configuration.

Topology:

650) this. width = 650; "src =" http://www.bkjia.com/uploads/allimg/131227/09335L022-0.png "title =" 2.PNG" alt = "115529552.png"/>


Netscreen Configuration:

Set int eth3 ip 200.1.1.2/24

Set int eth3 manage

Set route 0.0.0.0 0.0.0.0 int eth3 gateway 200.1.1.1


1. define an address pool set ippool ruru 192.168.3.1 192.168.3.2542. modify L2TP default configuration set l2tp default dns1 listen l2tp default dns2 listen l2tp default ippool ruru3. define l2tp-tunnelset l2tp l2tpvpn outgoing-interface eth3 keepalive 3600 set l2tp l2tpvpn remote-setting ippool ruru4. define two Intranet tests address: set int lo.1 zone trust

Set int lo.1 ip 192.168.1.1/24

Set int lo.1 manage

Set int lo.2 zone trust

Set int lo.2 ip 192.168.2.1/24

Set int lo.2 manage

5. define the Intranet address Book: set address trust 192.168.1.0 192.168.1.0/24 set address trust 192.168.2.0 192.168.2.0/246. define L2TP user: set user defined type l2tpset user defined remote ippool ruruset user rujinfeng password defined user rujinfeng enable7. define policyset policy top from untrust to trust "Dial-Up VPN" 192.168.1.0 any tun l2tp l2tpvpnset policy top from untrust to trust "Dial-Up VPN" 192.168.2.0 any tun l2tp l2tpvpn



ISP:

Int e0/0

Ip add 200.1.1.1 255.255.255.0

No sh

Int e0/1

Ip add 200.1.2.1 255.255.255.0

No sh


Virtual Machine XP Configuration:

Configuration IP address and gateway omitted

650) this. width = 650; "src =" http://www.bkjia.com/uploads/allimg/131227/09335H539-1.png "title =" 4.PNG" alt = "120532455.png"/>

650) this. width = 650; "src =" http://www.bkjia.com/uploads/allimg/131227/09335M159-2.png "title =" 5.PNG" alt = "120600648.png"/>

650) this. width = 650; "src =" http://www.bkjia.com/uploads/allimg/131227/09335I028-3.png "title =" 6.PNG" alt = "120615258.png"/>

650) this. width = 650; "src =" http://www.bkjia.com/uploads/allimg/131227/09335GH7-4.png "title =" 7.PNG" alt = "120632934.png"/>

650) this. width = 650; "src =" http://www.bkjia.com/uploads/allimg/131227/09335K0G-5.png "title =" 8.PNG" alt = "1207020.3.png"/>

650) this. width = 650; "src =" http://www.bkjia.com/uploads/allimg/131227/09335H2D-6.png "title =" 9.PNG" alt = "120720463.png"/>


This article is from the "Cisco, zhanbo, Huawei" blog, please be sure to keep this source http://rujinfeng.blog.51cto.com/2712746/1303021

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.