华为PPP链路认证
ppp的封装:1.不采用任何验证时两边的配置相同
int serial 0
link-protocol ppp//封装ppp
ip address 10.0.0.1 255.255.255.0
2.采用pap单向认证
router A:
int serial 0
link-protocol ppp
ppp pap local-user A password simple A//用pap进行封装,本地用户名为A,密码为A
ip address 10.0.0.1 255.255.255.0
router B:
local-user A server-type ppp password simple A//本地建立对方的用户名和密码
int serial 0
link-protocal ppp
ppp authentication-mode pap
ip address 12.0.0.1 255.255.255.0
3.采用pap双向验证两端的配置相同:
router A:
local-user A server-type ppp password simple A//本地建立对方的用户名和密码
int serial 0
link-protocal ppp
ppp pap local-user A password simple A//本地用户名为A密码为A
ppp authentication-mode pap//开启认证
ip address 12.0.0.1 255.255.255.0
4.采用chap单向认证
router A:
int serial 0
link-protocal ppp
ppp chap user a
ppp chap password simple hello
ip address 12.0.0.1 255.255.255.0
router B:
local-user a service-type ppp password simple hello
int serial 0
link-protocal ppp
ppp authentication-mode chap
ppp chap user
ppp chap password simple hello
ip address 12.0.0.1 255.255.255.0
5.采用chap双向认证两端的配置相同,只不过用户名不同但是密码必须要一致
local-user A service-type ppp password simple hello//本地对端的用户名和密码
int serial 0
link-protocal ppp
ppp authentication-mode chap//认证模式为chap
ppp chap user b//本端的用户名为b
ip address 12.0.0.1 255.255.255.0
注:采用chap双向认证时,对端的密码必须一致
注:在实验过程中,我使用的是ENSP模拟器创建用户名/密码。
aaa
local-user a service-type ppp
local-user a password cipher hello
页:
[1]