HP MSR2000/3000/4000 Router Series Layer 2 - WAN Configuration Guide
40
Tasks at a
g
lance
Remarks
Configuring an LAC
• (Required.) Configuring an LAC to initiate tunneling requests
• (Required.) Specifying LNS IP addresses
• (Optional.) Configuring transferring AVP data in hidden mode
• (Required.) Configuring AAA authentication on an LAC
• (Required.) Configuring an LAC to automatically establish an L2TP
tunnel
The first task is required for
NAS-initiated mode and
unnecessary for LAC-auto-initiated
mode.
The fourth and last tasks are
required for LAC-auto-initiated
mode and unnecessary for
NAS-initiated mode.
(Optional.) Configuring optional L2TP parameters
• Configuring L2TP tunnel authentication
• Setting the Hello interval
• Enabling session flow control
• Configuring the DSCP value of L2TP packets
• Configuring the VPN for a tunnel peer
N/A
To configure a device as an LNS in NAS-initiated, client-initiated, or LAC-auto-initiated mode, complete
the following tasks:
Tasks at a
g
lance
(Required.) Configuring basic L2TP capabilities
Configuring an LNS
• (Required.) Creating a VT interface
• (Required.) Configuring an LNS to accept L2TP tunneling requests from a specified LAC
• (Optional.) Configuring user authentication on an LNS
• (Optional.) Configuring AAA authentication on an LNS
(Optional.) Configuring optional L2TP parameters
• Configuring L2TP tunnel authentication
• Setting the Hello interval
• Enabling session flow control
• Configuring the DSCP value of L2TP packets
• Configuring the VPN for a tunnel peer
Configuring basic L2TP capabilities
Basic L2TP capability configuration includes the following:
• Enabling L2TP—L2TP must be enabled for L2TP configurations to take effect.
• Creating an L2TP group—An L2TP group is intended to represent a group of parameters. This
enables not only flexible L2TP configuration on devices, but also one-to-one and one-to-many
networking applications for LACs and LNSs. An L2TP group has local significance only. However,
you must make sure the relevant settings of the L2TP groups on the LAC and LNS match. For example,
the local tunnel name configured on the LAC must match the tunnel peer name configured on the
LNS.