L2TP VPN is a solution for connecting mobile office staff to the company's intranet. Let's demonstrate the configuration.
Topology:
650) this. width = 650; "src =" http://www.bkjia.com/uploads/allimg/131227/09335L022-0.png "title =" 2.PNG" alt = "115529552.png"/>
Netscreen Configuration:
Set int eth3 ip 200.1.1.2/24
Set int eth3 manage
Set route 0.0.0.0 0.0.0.0 int eth3 gateway 200.1.1.1
1. define an address pool set ippool ruru 192.168.3.1 192.168.3.2542. modify L2TP default configuration set l2tp default dns1 listen l2tp default dns2 listen l2tp default ippool ruru3. define l2tp-tunnelset l2tp l2tpvpn outgoing-interface eth3 keepalive 3600 set l2tp l2tpvpn remote-setting ippool ruru4. define two Intranet tests address: set int lo.1 zone trust
Set int lo.1 ip 192.168.1.1/24
Set int lo.1 manage
Set int lo.2 zone trust
Set int lo.2 ip 192.168.2.1/24
Set int lo.2 manage
5. define the Intranet address Book: set address trust 192.168.1.0 192.168.1.0/24 set address trust 192.168.2.0 192.168.2.0/246. define L2TP user: set user defined type l2tpset user defined remote ippool ruruset user rujinfeng password defined user rujinfeng enable7. define policyset policy top from untrust to trust "Dial-Up VPN" 192.168.1.0 any tun l2tp l2tpvpnset policy top from untrust to trust "Dial-Up VPN" 192.168.2.0 any tun l2tp l2tpvpn
ISP:
Int e0/0
Ip add 200.1.1.1 255.255.255.0
No sh
Int e0/1
Ip add 200.1.2.1 255.255.255.0
No sh
Virtual Machine XP Configuration:
Configuration IP address and gateway omitted
650) this. width = 650; "src =" http://www.bkjia.com/uploads/allimg/131227/09335H539-1.png "title =" 4.PNG" alt = "120532455.png"/>
650) this. width = 650; "src =" http://www.bkjia.com/uploads/allimg/131227/09335M159-2.png "title =" 5.PNG" alt = "120600648.png"/>
650) this. width = 650; "src =" http://www.bkjia.com/uploads/allimg/131227/09335I028-3.png "title =" 6.PNG" alt = "120615258.png"/>
650) this. width = 650; "src =" http://www.bkjia.com/uploads/allimg/131227/09335GH7-4.png "title =" 7.PNG" alt = "120632934.png"/>
650) this. width = 650; "src =" http://www.bkjia.com/uploads/allimg/131227/09335K0G-5.png "title =" 8.PNG" alt = "1207020.3.png"/>
650) this. width = 650; "src =" http://www.bkjia.com/uploads/allimg/131227/09335H2D-6.png "title =" 9.PNG" alt = "120720463.png"/>
This article is from the "Cisco, zhanbo, Huawei" blog, please be sure to keep this source http://rujinfeng.blog.51cto.com/2712746/1303021