Networking and simple configuration 1.1 typical DVPN networking applications1.1.1 application descriptionThe branch uses the ADSL Router to connect to the INTERNET and is configured as the DVPN Client. The address dynamically allocates a public network address for China Telecom. In this example, there are two xDSL Routers: 3Com 3031 and AR 18-32.The Headquarters router uses the AR 18-20 router as the
Server-side configuration (This example uses Secpath 100f, the related profile can refer to the Lian-Shao group VPN configuration)
1.Secpath Basic Configuration
Firewall Packet-filter default Permit//* This command must be, Secpath to prohibit all packets through/
2.DVPN Service-side configuration
Interface tunnel0/* Create the Tunnel interface * *
IP Add 172.16.2.1 255.255.255.0/* Define IP address and subnet mask * *
Tunnel-protocol UDP
supports photoelectric multiplexing Gigabit uplink,Supports hybrid stacking
26tp:15 Station52tp:8 Station
Each floor or room
Router
H3C msr20-1x Router
Forwarding rate 160kpps,256m memory, support GE/FE switch module, with asynchronous serial module, E1/PRI module, voice module, encryption module
A
Core Room
Safety
Firewall
H3C Secpath f1000-c or h3c secpath U200
Support the application of beginning text filtering
1
IPOEOA
The networking diagram of IPOEOA is similar to that of Figure 6. The configuration is as follows:
Client:[Quidway]discur#sysnameQuidway#interfaceEthernet1/0ipaddress192.168.0.1255.255.255.0#interfaceAtm2/0adslstandardgdmtpvc3/99 mapbridgeVirtual-Ethernet0#interfaceVirtual-Ethernet0ipaddress202.132.0.2255.255.255.0natoutbound3000#interfaceNULL0#aclnumber3000rule0permitip#iproute-static0.0.0.00.0.0.0202.132.0.1preference60#user-interfacecon0user-interfacevty04#r
Configuration instructions
Currently, VRRP does not support dialer virtual interfaces. Therefore, we recommend that you configure atm oam F5 LOOP signaling detection. For more information, see the ADSL configuration document.
Interface Atm2/0.1 p2p
Atm-link check
Pvc 1/35
Oam frequency 10
Map bridge Virtual-Ethernet0
Related Articles]
[Typical configuration] IPOEOA of AR18 Broadband Router ADSL Application
[Typical configuration] Application of
authentication // tunnel verification is not required. Optional.Mandatory-lcp // force LCP to re-negotiate, which may be used when the LNS end (firewall end) also needs to be verified and billed. It needs to force LNS to re-negotiate with users through LCP, proxy authentication information on the NAS side is ignored.Allow l2tp virtual-template 0 // sets the virtual template interface for receiving calls, peer name and domain name of the channel (VPN tunnel)
#FTP server enable#
Contact Us
The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion;
products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the
content of the page makes you feel confusing, please write us an email, we will handle the problem
within 5 days after receiving your email.
If you find any instances of plagiarism from the community, please send an email to:
info-contact@alibabacloud.com
and provide relevant evidence. A staff member will contact you within 5 working days.