Configuration procedure – H3C Technologies H3C SecPath F1000-E User Manual
Page 282

270
Figure 169 Network diagram
Configuration procedure
1.
Configure the LAC:
In this example, GigabitEthernet 0/1 and GigabitEthernet 0/3 on the LAC are both user access
interfaces. The IP address of GigabitEthernet 0/2 through which the LAC connects to the tunnel is
1.1.2.1. The IP address of GigabitEthernet 0/1 through which the LNS connects to the tunnel is
1.1.2.2.
# Create two local users, set the passwords, and enable the PPP service.
[LAC] local-user vpdn1
[LAC-luser-vpdn1] password simple 11111
[LAC-luser-vpdn1] service-type ppp
[LAC-luser-vpdn1] quit
[LAC] local-user vpdn2
[LAC-luser-vpdn2] password simple 22222
[LAC-luser-vpdn2] service-type ppp
[LAC-luser-vpdn2] quit
# Configure local authentication for the users.
[LAC] domain aaa.net
[LAC-isp-aaa.net] authentication ppp local
[LAC-isp-aaa.net] quit
[LAC] domain bbb.net
[LAC-isp-bbb.net] authentication ppp local
[LAC-isp-bbb.net] quit
# Configure PPPoE servers on interfaces GigabitEthernet 0/1 and GigabitEthernet 0/3.
[LAC] interface GigabitEthernet 0/3
[LAC-GigabitEthernet0/3] pppoe-server bind virtual-template 100
[LAC-GigabitEthernet0/3] quit
[LAC] interface GigabitEthernet 0/1
[LAC-GigabitEthernet0/1] pppoe-server bind virtual-template 101
[LAC-GigabitEthernet0/1] quit
# Configure an IP address for interface GigabitEthernet 0/2.
[LAC] interface GigabitEthernet 0/2
[LAC-GigabitEthernet0/2] ip address 1.1.2.1 255.255.255.0
[LAC-GigabitEthernet0/2] quit
- H3C SecPath F5000-A5 Firewall H3C SecPath F1000-A-EI H3C SecPath F1000-E-SI H3C SecPath F1000-S-AI H3C SecPath F5000-S Firewall H3C SecPath F5000-C Firewall H3C SecPath F100-C-SI H3C SecPath F1000-C-SI H3C SecPath F100-A-SI H3C SecBlade FW Cards H3C SecBlade FW Enhanced Cards H3C SecPath U200-A U200-M U200-S H3C SecPath U200-CA U200-CM U200-CS