No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

NE40E V800R010C10SPC500 Configuration Guide - User Access 01

This is NE40E V800R010C10SPC500 Configuration Guide - User Access
Rate and give feedback :
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
(Optional) Configuring Public and Private Network Users and Users Belonging to Different VPN Instances to Coexist in a Domain

(Optional) Configuring Public and Private Network Users and Users Belonging to Different VPN Instances to Coexist in a Domain

Context

By default, a domain cannot have both public and private network users or have users belonging to different VPN instances. After you configure a device to trust the VPN instance bound to the BAS interface through which users go online or the VPN instance bound to the address pool or address pool group that the RADIUS server uses to deliver IP addresses to Layer 2 users, public and private network users or users belonging to different VPN instances can coexist in a domain.

Procedure

  1. Configure public and private network users or users belonging to different VPN instances to go online through the same BAS interface and coexist in the same domain.
    1. Run system-view

      The system view is displayed.

    2. Run aaa

      The AAA view is displayed.

    3. Run domain domain-name

      The domain view is displayed.

    4. Run trust vpn-instance access-interface

      The device is configured to trust the VPN instance bound to the BAS interface through which Layer 2 users go online.

      For VPN users, run the vpn-instance command on the BAS interface through which VPN users go online to bind a VPN instance to the BAS interface. Note that the VPN instance bound to the BAS interface must be the same as that bound to an IP address pool.

      This command applies only to Layer 2 common users and static users.

  2. Configure public and private network users or users belonging to different VPN instances to go online through different BAS interfaces and coexist in the same domain.
    1. Run system-view

      The system view is displayed.

    2. Run aaa

      The AAA view is displayed.

    3. Run domain domain-name

      The domain view is displayed.

    4. (Optional) Run trust vpn-instance framed-pool

      The device is configured to trust the VPN instance bound to the IPv4 address pool or IPv4 address pool group that the RADIUS server uses to deliver IPv4 addresses to Layer 2 users.

    5. (Optional) Run trust vpn-instance framed-ipv6-pool

      The device is configured to trust the VPN instance bound to the IPv6 address pool or IPv6 address pool group that the RADIUS server uses to deliver IPv6 addresses to Layer 2 users.

      This command applies only to Layer 2 common IPv6 users and static IPv6 users.

Translation
Download
Updated: 2019-01-03

Document ID: EDOC1100055031

Views: 17147

Downloads: 69

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next