Panasonic NN46240-710 User Manual

Page 26

Attention! The text in this document has been recognized automatically. To view the original document, you can use the "Original mode".

Advertising
background image

1 L2TP troubleshooting

Nortel Secure Router 8000 Series

_________ Troubleshooting - VPN

Item

Sub-item

Description

The list separator of the

user postfix

If you establish the connection with L2TP

through the domain, you need to run the l2tp

domain command to configure the separator of

the user postfix.

The static route on the
LAC side

When the LNS side uses the IP address of the

loopback interface as the IP address of the
L2TP group, you must configure the route to be

reachable to the LNS loopback interface on the

LAC side.

The request for the
connection with the
L2TP allowed on the
LNS side

If the number of the L2TP is 1, you need not
specify the remote-name. If you specify the
remote name in the L2TP group 1 view, L2TP
group 1 does not work as the default L2TP
group.

The IP address of the
L2TP group bound on

the LNS side

The IP address of the Ethernet interface,
GigabitEthernet interface, and loopback
interface can be used as the IP address of an
L2TP group. After the loopback interface is

bound, it cannot be used for other services.

The user authentication
on the LNS side

After the LCP renegotiation is configured on
the LNS side, you need to configure the PPP

authentication mode on the correct virtual
interface template. Otherwise, the user cannot

pass the authentication.

Domain

Generally, bind VTs and configure address

pools in the domain view when L2TP users

access Layer 3 VPN groups. In other cases,

bind VTs in the L2TP group view.

As an example for the configuration notes for the L2TP LNS, consider users in different

domains that access the VPN.

1.

Configure the interface of the LNS and LAC Ethernet2/0/0 and the address.

[Nortel] interface ethernet2/0/0

[Nortel-Ethernet2/0/0] ip address 10.1.1.3 255.255.255.0

[Nortel-Ethernet2/0/0] quit

2.

Create a virtual template (VT) required by the L2TP group.

[Nortel] interface virtual-template 1

[Nortel-Virtual-Template1] ip address 35.1.1.1 255.255.255.0

[Nortel-Virtual-Template1] mtu 1450

[Nortel-Virtual-Template1] ppp authentication-mode pap

[Nortel-Virtual-Template1] quit

The VT executes the LCP and PAP negotiation with the user.

3.

Configure the loopback interface required by the L2TP group.

[Nortel] interface LoopBack 0

1-6

Nortel Networks Inc.

Issue 5.3 (19 January 2009)

Advertising