H3C Technologies H3C SecPath F1000-E User Manual
Page 256
244
Item Description
PPP Address
PPP Server IP/Mask
Specify the IP address and mask of the local end.
PPP Server Zone
Select a security zone for the virtual interface template at the local
end.
Do not select zone Management for the virtual interface template.
Otherwise, the tunnel cannot be established.
User Address
Specify the address pool for assigning IP addresses to users on the
peer end, or assign an IP address to a user directly.
If you have specified an ISP domain in PPP authentication
configuration, the address pools in the ISP domain will be listed in
the User Address list. You can perform the following configurations:
•
Click Add to add an address pool, as shown in
See
for further details.
•
Select an address pool and click Modify to enter the address
for configuration details.
•
Select an address pool and click Delete to delete the address
pool.
Assign Address
Forcibly
Specify whether to force the peer end to use the IP address
assigned by the local end. If you enable this function, the peer end
is not allowed to use its locally configured IP address.
Advanced
Configuration
Hello Interval
Specify the interval between sending hello packets.
To check the connectivity of a tunnel, the LAC and LNS regularly
send Hello packets to each other. Upon receipt of a Hello packet,
the LAC/LNS returns a response packet. If the LAC or LNS receives
no Hello response packet from the peer within a specific period of
time, it retransmits the Hello packet. If it receives no response
packet from the peer after transmitting the Hello packet for three
times, it considers that the L2TP tunnel is down and tries to
re-establish a tunnel with the peer.
The Hello intervals on the LAC and LNS ends of the tunnel can be
different.
AVP Hidden
Specify whether to transfer attribute value pair (AVP) data in hidden
mode.
With L2TP, some parameters are transferred as AVP data. You can
configure an LAC to transfer AVP data in hidden mode, so that AVP
data is encrypted before transmission for higher security.
This configuration takes effect only on an LAC.
Flow Control
Specify whether to enable flow control for the L2TP tunnel.
The L2TP tunnel flow control function is for control of data packets in
transmission. The flow control function helps in buffering and
adjusting the received out-of-order data packets.
- H3C SecPath F5000-A5 Firewall H3C SecPath F1000-A-EI H3C SecPath F1000-E-SI H3C SecPath F1000-S-AI H3C SecPath F5000-S Firewall H3C SecPath F5000-C Firewall H3C SecPath F100-C-SI H3C SecPath F1000-C-SI H3C SecPath F100-A-SI H3C SecBlade FW Cards H3C SecBlade FW Enhanced Cards H3C SecPath U200-A U200-M U200-S H3C SecPath U200-CA U200-CM U200-CS