3Com Switch 8800 Family IPsec Module Configuration and Command reference Guide
110 CHAPTER 8: CONFIGURATION OF L2TP
does not find the required L2TP group, the system continues to search for the
required L2TP group according to the domain name.
Setting Tunnel Name A user can configure local Tunnel name on LAC side. The Tunnel name of LAC side
must keep in line with the remote name of Tunnel configured on LNS side.
These configurations are optional on LAC side.
Perform the following configuration inL2TP group view.
By default, local Tunnel name is the hostname of the security gateway.
Setting Tunnel
Authentication and
Password
As needed, a user can decide whether to start Tunnel authentication before
creating Tunnel connection. Tunnel authentication request can be sent by either
LAC side or LNS side. If one end of a Tunnel starts Tunnel authentication, the other
end must also start Tunnel authentication in order to set up the Tunnel connection.
In addition, both ends must use the same password, which cannot be void.
Otherwise, the local end will disconnect the Tunnel automatically. If Tunnel
authentication is disabled on both ends, the consistency of password will be
insignificant.
These configurations are optional on LAC side.
Perform the following configuration in L2TP group view.
By default, Tunnel authentication is enabled, with password of Tunnel
authentication being null. For the sake of Tunnel security, it is not suggested to
disable Tunnel authentication.
Setting Transfer Mode
of AVP Data
Attribute Value Pair (AVP) is adopted in L2TP to move and negotiate some
attribute parameters of L2TP. By default, AVP is transferred in plain text. For
security, users can hide AVP data in transmission by using the following
configuration. The function of hidden VAP only works when both of the two ends
use Tunnel authentication.
These configurations are optional on LAC side.
Tabl e 87 Set local Tunnel name
Operation Command
Set local Tunnel name tunnel name name
Restore the default local Tunnel name undo tunnel name
Tabl e 88 Set Tunnel authentication and authentication password
Operation Command
Start Tunnel authentication tunnel authentication
Disable Tunnel authentication undo tunnel authentication
Set the password of Tunnel authentication
tunnel password { simple | cipher }
password
Restore the password of Tunnel
authentication to the default
undo tunnel password