ADSL configuration case based on hardware interface card that customer access the internet

Publication Date:  2013-05-02 Views:  268 Downloads:  0
Issue Description
Some customer configure ADSL with USG2130BSR V100R005 security gateway, adopt hardware private interface configuration, disconnect at the beginning, mainly because of the incorrect configuration of PVC interface. The hardware interface of customer is single PVC interface, but the configuration mode of customer implement is double PVC interface, so, negotiation failed.
Summarize cases about the configuration of V100R005 based on hardware ADSL as follows. 
Alarm Information
NULL
Handling Process
Critical configuration of ADSL interface:
1、 Enter into the view of ADSL interface firstly, client adopt the way of fixed ip address, so corresponding dialing configuration could be ignored. The ip address customer configured belongs to private network address, but for public network, the configuration of ADSL interface based on fixed ip address could configure public network ip address directly on ATM interface.
interface Atm2/0/0
ip address 172.16.35.25 255.255.255.0
2、 There are two ways for single PVC configuration: one is dynamic, it needs to execute “reset” command in ATM interface view which corresponding ADSL interface card to reset interface firstly, then do function triggering through ping or other data message. Execute “modify pvc vpi/vci” command is necessary when the way of single PVC is manual, the value of PVC needs to get from carrier. The value of PVC is 0/35 in default.
3、 After configured ATM interface, it needs to add this interface to distrust domain.
firewall zone untrust
set priority 5
add interface Atm2/0/0

4、  It needs to configure route, because it needs to communicate with internal network, we can configure a return route. It must be actual ip address when configure default, can’t configure into the mode based on ATM interface. Because it needs ARP resolution for peer end if adopt interface mode, and it used to bring problem of network disconnect.
  ip route-static 0.0.0.0 0.0.0.0 172.16.35.1
ip route-static 192.168.18.0 255.255.255.0 Atm2/0/0
5、 Configure internal network access the internet, based on interface address is enough, no necessary to configure address pool.
nat-policy interzone trust untrust outbound
policy 1
action source-nat
easy-ip Atm2/0/0
Root Cause
NULL
Suggestions
Detail configuration as attachment.

END