No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

NE40E V800R010C10SPC500 Configuration Guide - User Access 01

This is NE40E V800R010C10SPC500 Configuration Guide - User Access
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Example for Configuring PPPoE Access for IPv6 Users

Example for Configuring PPPoE Access for IPv6 Users

This section provides an example for configuring PPPoE access for IPv6 users.

Networking Requirements

On the network shown in Figure 7-7, to allow the IPv6 user to go online, configure PPPoE access. The requirements are as follows:

  • The subscriber belongs to domain isp5 and uses PPPoE to go online through GE 1/0/2.1 on the router.

  • RADIUS authentication and accounting are used.

  • The IP address of the RADIUS server is 3001:0410::1:1. The authentication port number is 1645, and the accounting port number is 1646. RADIUS+1.1 is used, with the password hello.

  • The DNS server address is 3001:0410::1:2.

Figure 7-7 Networking for configuring PPPoE for IPv6 users
NOTE:
Interfaces 1 and 2 in this example are GE1/0/1 and GE1/0/2.1, respectively.


Configuration Roadmap

  1. Configure a VT.
  2. Configure AAA schemes.
  3. Configure a RADIUS server group.
  4. Configure a local IPv6 prefix pool.
  5. Configure a local IPv6 address pool and bind the address pool to the prefix pool.
  6. Configure an AAA domain and bind it to the IPv6 address pool.
  7. Configure interfaces.

Data Preparation

  • VT number
  • Authentication and accounting schemes and their names
  • RADIUS server group name and server address
  • Start and end VLAN IDs of GE 1/0/2.1
  • Local prefix pool name
  • Assignable IPv6 prefixes and prefix lengths
  • Local address pool name
  • Domain name

Procedure

  1. Configure a VT.

    <HUAWEI> system-view
    [~HUAWEI] interface virtual-template 5
    [*HUAWEI-Virtual-Template5] ppp authentication-mode chap
    [*HUAWEI-Virtual-Template5] quit
    [*HUAWEI] commit

  2. Configure AAA schemes.

    # Configure an authentication scheme.

    [~HUAWEI] aaa
    [~HUAWEI-aaa] authentication-scheme auth5
    [*HUAWEI-aaa-authen-auth5] authentication-mode radius
    [*HUAWEI-aaa-authen-auth5] quit
    [*HUAWEI] commit

    # Configure an accounting scheme.

    [~HUAWEI-aaa] accounting-scheme acct5
    [*HUAWEI-aaa-accounting-acct5] accounting-mode radius
    [*HUAWEI-aaa-accounting-acct5] quit
    [*HUAWEI-aaa] quit
    [*HUAWEI] commit

  3. Configure a RADIUS server group.

    [~HUAWEI] radius-server group rd5
    [*HUAWEI-radius-rd5] radius-server authentication 3001:0410::1:1 1645
    [*HUAWEI-radius-rd5] radius-server accounting 3001:0410::1:1 1646
    [*HUAWEI-radius-rd5] radius-server type standard
    [*HUAWEI-radius-rd5] radius-server shared-key-cipher hello
    [*HUAWEI-radius-rd5] quit
    [*HUAWEI] commit

  4. Configure a local IPv6 prefix pool.

    [~HUAWEI] ipv6 prefix pre1 local
    [~HUAWEI-ipv6-prefix-pre1] prefix 2001:2421::/64
    [~HUAWEI-ipv6-prefix-pre1] quit
    [~HUAWEI] commit

  5. Configure a user-side local IPv6 address pool.

    [~HUAWEI] ipv6 pool pool1 bas local
    [~HUAWEI-ipv6-pool-pool1] prefix pre1
    [~HUAWEI-ipv6-pool-pool1] dns-server 3001:0410::1:2
    [~HUAWEI-ipv6-pool-pool1] quit
    [~HUAWEI] commit

  6. Configure a domain named isp5.

    [~HUAWEI] aaa
    [~HUAWEI-aaa] domain isp5
    [*HUAWEI-aaa-domain-isp5] authentication-scheme auth5
    [*HUAWEI-aaa-domain-isp5] accounting-scheme acct5
    [*HUAWEI-aaa-domain-isp5] radius-server group rd5
    [*HUAWEI-aaa-domain-isp5] commit
    [~HUAWEI-aaa-domain-isp5] ipv6-pool pool1
    [*HUAWEI-aaa-domain-isp5] commit
    [~HUAWEI-aaa-domain-isp5] quit
    [~HUAWEI-aaa] quit
    [~HUAWEI] commit

  7. Configure interfaces.

    # Bind the VT to GE 1/0/2.1.

    [~HUAWEI] interface gigabitethernet 1/0/2.1
    [*HUAWEI-GigabitEthernet1/0/2.1] pppoe-server bind virtual-template 5
    [*HUAWEI] commit

    # Configure GE 1/0/2.1 as a BAS interface.

    [~HUAWEI-GigabitEthernet1/0/2.1] user-vlan 1 100
    [~HUAWEI-GigabitEthernet1/0/2.1-vlan-1-100] quit
    [~HUAWEI-GigabitEthernet1/0/2.1] bas
    [~HUAWEI-GigabitEthernet1/0/2.1-bas] access-type layer2-subscriber default-domain authentication isp5
    [~HUAWEI-GigabitEthernet1/0/2.1-bas] authentication-method-ipv6 ppp
    [~HUAWEI-GigabitEthernet1/0/2.1-bas] quit
    [~HUAWEI-GigabitEthernet1/0/2.1] quit
    [~HUAWEI] commit

    # Enable IPv6 on GE 1/0/2.

    [~HUAWEI-GigabitEthernet1/0/2] ipv6 enable
    [*HUAWEI-GigabitEthernet1/0/2] ipv6 address auto link-local
    [*HUAWEI-GigabitEthernet1/0/2] quit
    [*HUAWEI] commit

    # Configure the network-side interface.

    [~HUAWEI] interface GigabitEthernet 1/0/1
    [~HUAWEI-GigabitEthernet1/0/1] ipv6 enable
    [*HUAWEI-GigabitEthernet1/0/1] ipv6 address auto link-local
    [*HUAWEI-GigabitEthernet1/0/1]  ipv6 address 2001::/64 eui-64
    [*HUAWEI] commit

  8. Verify the configuration.

    # Check information about the prefix pool named pre1. The command output shows that the prefix pool is a local prefix pool and the prefix address is 2010:2021::/64.

    <HUAWEI> display ipv6 prefix pre1
     -------------------------------------------------------------
     Prefix Name        : pre1
     Prefix Index       : 4
    Prefix constant index: -
     Prefix Type        : LOCAL
     Prefix Address     : 2010:2021::
     Prefix Length      : 64
    Reserved Type      : NONE  
     Valid Lifetime     : 3 Days 0 Hours 0 Minutes
     Preferred Lifetime: 2 Days 0 Hours 0 Minutes
     IfLocked            : Unlocked
    Vpn instance       : -       
     Conflict address   : -
    Free Prefix Count  : 262144
     Used Prefix Count  : 0
     Reserved Prefix Count: 0   
     -------------------------------------------------------------
    

    # Check information about the address pool named pool1. The command output shows that the address pool is a user-side local address pool and it is bound to the local prefix pool named pre1.

    <HUAWEI> display ipv6 pool pool1
     ----------------------------------------------------------------------
     Pool name          : pool1
     Pool No            : 4  
     Pool-constant-index :- 
     Pool type          : BAS LOCAL
     Preference         : 0
     Renew time         : 50
     Rebind time        : 80
     Status              : UNLOCKED
     Refresh interval   : 0 Days 0 Hours 0 Minutes
     Used by domain     : 1
     Dhcpv6 Unicast     : disable
     Dhcpv6 rapid-commit: disable
     Dns list             : -
     Dns server master  : 3001:0410::1:2
     Dns server slave   : -
    AFTR name          : - 
     ----------------------------------------------------------------------
     Prefix-Name                      Prefix-Type
     ----------------------------------------------------------------------
     pre1                               LOCAL
    ----------------------------------------------------------------------
    

    # Check information about the domain named isp5. The command output shows that the domain is bound to the IPv6 address pool named pool1.

    <HUAWEI> display domain isp5
    ------------------------------------------------------------------------------
      Domain-name                     : isp5
      Domain-state                    : Active
      Authentication-scheme-name      : auth5
      Accounting-scheme-name          : acct5
      Authorization-scheme-name       :
      Primary-DNS-IP-address          : -
      Second-DNS-IP-address           : -
      Web-server-URL-parameter        : No
      Slave Web-IP-address            : -
      Slave Web-URL                   : -
      Slave Web-auth-server           : - 
      Slave Web-auth-state            : - 
      Portal-server-URL-parameter     : No
      Primary-NBNS-IP-address         : -
      Second-NBNS-IP-address          : -
      User-group-name                 : -
      Idle-data-attribute (time,flow) : 0, 60
      Install-BOD-Count               : 0
      Report-VSM-User-Count           : 0
      Value-added-service             : COPS
      User-access-limit               : 279552
      Online-number                   : 0
      Web-IP-address                  : -
      Web-URL                         : -
      Portal-server-IP                : -
      Portal-URL                      : -
      Portal-force-times              : 2
      PPPoE-user-URL                  : Disable  
      RADIUS-server-template          : rd5
      Two-acct-template               : -
      HWTACACS-server-template        : -
      Bill Flow                       : Disable
      Tunnel-acct-2867                : Disabled
    
      Flow Statistic:
      Flow-Statistic-Up               : Yes
      Flow-Statistic-Down             : Yes
      Source-IP-route                 : Disable
      IP-warning-threshold            : -
      IPv6-warning-threshold          : - 
      Multicast Forwarding            : Yes
      Multicast Virtual               : No
      Max-multilist num               : 4
      Multicast-profile               : -
      Multicast-profile ipv6          : -  
      IPv6-Pool-name                  : pool1
      Quota-out                     : Offline
      Service-type                    : -
      User-basic-service-ip-type      : -/-/-
      PPP-ipv6-address-protocol       : Ndra
      IPv6-information-protocol       : Stateless dhcpv6
      IPv6-PPP-assign-interfaceid     : Disable
      Trigger-packet-wait-delay       : 60s
      Peer-backup                     : enable    
      ------------------------------------------------------------------------------
    

Configuration Files

#
sysname HUAWEI
#
ipv6
#
radius-server group rd5
 radius-server authentication 3001:0410::1:1 1645 weight 0
 radius-server accounting 3001:0410::1:1 1646 weight 0
 radius-server shared-key-cipher %^%#vS%796FO7%C~pB%CR=q;j}gSCqR-X6+P!.DYI@)%^% 
#
interface Virtual-Template5
 ppp authentication-mode chap
#
ipv6 prefix pre1 local
prefix 2010:2021::/64
#
ip pool pool1 bas local
prefix pre1
dns-server 3001:0410::1:2
#
aaa
 authentication-scheme default0
 authentication-scheme default1
 authentication-scheme auth5
 authentication-mode radius
#
accounting-scheme default0
accounting-scheme default1
accounting-scheme acct5
accounting-mode radius
#
domain  isp5
 authentication-scheme auth5
 accounting-scheme acct5
 ipv6-pool pool1
 radius-server group rd5
#
#
interface GigabitEthernet1/0/2.1
 pppoe-server bind Virtual-Template 5
 ipv6 enable
 ipv6 address auto link-local
 bas
 access-type layer2-subscriber default-domain authentication isp5
#
interface GigabitEthernet1/0/1
 ipv6 enable
 ipv6 address 2011::1/64 eui-64
 ipv6 address auto link-local
#
return
Translation
Download
Updated: 2019-01-03

Document ID: EDOC1100055031

Views: 19192

Downloads: 79

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next