Server requirements: Dual network card, as a gateway. If you use a single NIC server, bypass mode, you can also open and access resources, but in the actual application there will be some inexplicable network data transmission error, it is not recommended. The network refers to the following figure: Router----Firewall-----l2tp Server------- Core Switch l2tp Server Interface and Address: Eth0 192.166.1.2 --- l2tp Server --- Eth1 192.168.67.2 Server Network address planning: Eth0 192.166.1.2 mask 255.255.255.0 Access border firewall, border firewall interface is set to 192.166.1.1 mask 255.255.255.0Eth1 192.168.67.2 mask 255.255.255.0 Access core switch, core switch interface is set to 192.168.67.1 Mask 255.255.255.0Operating system
:centOS5.5L2tp service software: xl2tpd 1.2.7 The default service port is 1701. Install xl2tp1, install the libraries and packages required by CentOS: yum install libpcap-devel ppp2, Http://www.xelerance.com/software/xl2tpd/Download xl2tpd-1.2.7.tar.gz3, extract: tar -zxvf xl2tpd-1.2.7.tar.gz4, enter the decompression directory, then compile and install :cd xl2tpd-1.2.7makemake install5, modify /etc/xl2tpd/xl2tpd.conf, the content is as follows: first copy the default example configuration file to the corresponding directory: mkdir /etc/xl2tpdmkdir /var/run/xl2tpdcp examples/xl2tpd.conf /etc/xl2tpd/
Modify the file, pay attention to the red part: vi /etc/xl2tpd/xl2tpd.conf[global]listen-addr = 192.166.1.2; external dialing server address; requires openswan-3.1 or higher; ipsec saref = yes;; debug tunnel = Yes;port = 1701auth file = /etc/ppp/chap-secrets;file path for authentication username and password debug tunnel = yes[lns default]ip range = 192.168.67.3-192.168.67.254; assigned to users who have successfully dialed The address pool local ip = 192.168.67.2; the real IP address of the interface that forwards the packet internally require chap = yesrefuse pap = yesrequire authentication = yesname = xxbl2tpserverppp debug = yespppoptfile = /etc/ppp/options.xl2tpd; the configuration file path of the ppp protocol Length bit = yes6, modify /etc/ppp/options.xl2tpd, the content is as follows: cp examples/ppp-options.xl2tpd /etc/ppp/options.xl2tpdvi /etc/ppp/options.xl2tpdipcp-accept-localipcp-accept-remotems -dns 8.8.8.8ms-dns 221.7.17.21# Assign dns server address noccpauthcrtsctsidle 1800mtu 1500mru 1500nodefaultroutedebuglocklogfile /var/log/l2tpd.log# log file path proxyarpcon Nect-delay 5000#kdebug 2#record /var/log/l2tpdcontent.logreceive-allktune7, modify the user authentication file /etc/ppp/chap-secrets as follows # Secrets for authentication using CHAP# client server secret IP addresses# Secrets for Authentication using CHAP# client server secret IP addresses"test" * "test" *8, edit start and stop the service script /etc/init.d/xl2tpd file, the content is as follows: #!/bin/sh## xl2tpd This shell Script takes care of starting and stopping l2tpd.## chkconfig: - 80 30# description: Layer 2 Tunnelling Protocol Daemon (RFC 2661)## processname: xl2tpd# config: /etc/xl2tpd/xl2tpd.conf# pidfile: /var/Run/xl2tpd.pid#ServicenameSERVICE=xl2tpd# Source function library.. /etc/rc.d/init.d/functions# Source networking configuration.. /etc/sysconfig/networkif [ ${NETWORKING} = "no" ] Thenexit 0fi[ -x /usr/local/sbin/$SERVICE ]
In the era of virtualization and cloud computing and the container, we migrated all the application
Faced with powerful Microsoft and early NetWare, Linux server operating system can be said to be a r
The web server avoids some unnecessary troubles. You can not display the version information of apa
This article describes the solution when encountering is not in the sudoers file during Linux use. W
Use sed command to replace file file content under Linux
Modify ubuntu default editor to vim
Samsung Camera Interface driver(FIMC)
How to make the Linux process run stably in the background
How to configure multiple network cards in redhat linux 6 version of bonding
Understand the four major IDS intrusion detection tools for Linux platform
Introduction to the tens of millions of concurrent HAproxy balanced load systems
Rsync principle and basic tutorials
Linux awk array operation details
How does win7 prevent the system from being changed to create a standard user
Win7 system sets 3G network card to achieve shared Internet access
Microsoft launches notification visualization win10 universal
How to solve the Win10 system through the FireWire CF can not be full-screen
How does the Windows system use the dos command to open the application?
Linux installation is not asking people to install Ubuntu
Change the Windows 7 folder settings from default to tile
Win10 will not enter the RTM phase this week, or postpone until next week