[c-nsp] L2TP Question

Tassos Chatzithomaoglou achatz at forthnet.gr
Tue May 23 11:53:30 EDT 2006


I don't know if this is a requirement, but do you have "vpdn multihop" configured?

Also, can you try to add the following?

!=========================================
aaa authorization network VPDN-AAA local
!
interface Virtual-Template1
  vpdn authorization VPDN-AAA
!=========================================



Regards,
Tassos

Ahmad Cheikh Moussa wrote on 22/5/2006 9:29:
> Hi!
> 
> Tassos Chatzithomaoglou wrote:
>> I believe domain should be "customer#home at dsl-dialin.de" under vpdn 
>> group 222.
>> It shouldn't contain the delimiter "%" ;)
>>
>> If this doesn't work please post vtemplate 1 and aaa config too.
> Unfortunately, it doesn't helped.
> Here is the config:
> aaa authentication login default line
> aaa authentication login CONSOLE line
> aaa authentication ppp DSL group radius
> aaa authorization network DSL group radius
> aaa accounting update periodic 60
> aaa accounting network DSL start-stop group radius
> aaa session-id common
> 
> interface Virtual-Template1
>  mtu 1452
>  ip unnumbered Loopback1
>  ip verify unicast reverse-path
>  ip accounting output-packets
>  ip nat inside
>  ip tcp adjust-mss 1412
>  peer default ip address pool ADSL_IPS
>  ppp authentication chap DSL
>  ppp authorization DSL
>  ppp accounting DSL
>  ppp chap hostname netuse-dsl
> 
> Regards,
>  Ahmad
> 
> 
> 


More information about the cisco-nsp mailing list