鸦鸦 发表于 2018-7-26 08:06:02

华为PPP链路认证

  ppp的封装:
  1.不采用任何验证时两边的配置相同
  int serial 0
  link-protocol ppp//封装ppp
  ip address 10.0.0.1 255.255.255.0
  2.采用pap单向认证
  router A:
  int serial 0
  link-protocol ppp
  ppp pap local-user A password simple A//用pap进行封装,本地用户名为A,密码为A
  ip address 10.0.0.1 255.255.255.0
  router B:
  local-user A server-type ppp password simple A//本地建立对方的用户名和密码
  int serial 0
  link-protocal ppp
  ppp authentication-mode pap
  ip address 12.0.0.1 255.255.255.0
  3.采用pap双向验证两端的配置相同:
  router A:
  local-user A server-type ppp password simple A//本地建立对方的用户名和密码
  int serial 0
  link-protocal ppp
  ppp pap local-user A password simple A//本地用户名为A密码为A
  ppp authentication-mode pap//开启认证
  ip address 12.0.0.1 255.255.255.0
  4.采用chap单向认证
  router A:
  int serial 0
  link-protocal ppp
  ppp chap user a
  ppp chap password simple hello
  ip address 12.0.0.1 255.255.255.0
  router B:
  local-user a service-type ppp password simple hello
  int serial 0
  link-protocal ppp
  ppp authentication-mode chap
  ppp chap user
  ppp chap password simple hello
  ip address 12.0.0.1 255.255.255.0
  5.采用chap双向认证两端的配置相同,只不过用户名不同但是密码必须要一致
  local-user A service-type ppp password simple hello//本地对端的用户名和密码
  int serial 0
  link-protocal ppp
  ppp authentication-mode chap//认证模式为chap
  ppp chap user b//本端的用户名为b
  ip address 12.0.0.1 255.255.255.0
  注:采用chap双向认证时,对端的密码必须一致
  注:在实验过程中,我使用的是ENSP模拟器创建用户名/密码。
aaa  
local-user a service-type ppp
  
local-user a password cipher hello
页: [1]
查看完整版本: 华为PPP链路认证