PPTP Router Configuration
These IOS commands are applicable to all platforms that support PPTP.
2621#
configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
!−−− Enable virtual private dial−up networking.
2621(config)#
vpdn enable
!−−− Enters VPDN group configuration mode for the specified VPDN group.
2621(config)#
vpdn−group 1
!−−− Enters VPDN accept−dialin configuration mode
!−−− and enables the router to accept dial−in requests.
2621(config−vpdn)#
accept−dialin
!−−− Specifies which PPTP protocol is used.
2621(config−vpdn−acc−in)#
protocol pptp
!−−− Specifies the virtual template that is used
!−−− in order to clone the virtual access interface.
2621(config−vpdn−acc−in)#
virtual−template 1
2621(config−vpdn−acc−in)#
ip local pool test 192.168.1.1 192.168.1.250
!−−− Create virtual−template interface used for cloning
!−−− virtual−access interfaces with the use of address pool test
!−−− with Challenge Authentication Protocol (CHAP) authentication, PAP, and MS−CHAP.
2621(config)#
interface virtual−template 1
2621(config−if)#
encapsulation ppp
2621(config−if)#
peer default ip address pool test
2621(config−if)#
ip unnumbered FastEthernet0/0
2621(config−if)#
no keepalive
2621(config−if)#
ppp encrypt mppe auto
2621(config−if)#
ppp authentication pap chap ms−chap
-------------------------------------------
2621#
show run
Building configuration...
Current configuration : 1566 bytes
!
version 12.2
service timestamps debug datetime msec localtime
service timestamps log datetime msec localtime
no service password−encryption
!
hostname 2621
!
boot system flash
logging queue−limit 100
enable secret 5 $1$dGFC$VA28yOWzxlCKyj1dq8SkE/
!
username cisco password 0 cisco123
username client password 0 testclient
ip subnet−zero
ip cef
!
!
no ip domain lookup
ip domain name cisco.com
!
vpdn enable
!−−− Enable VDPN.
!
vpdn−group 1
!−−− Default PPTP VPDN group.
accept−dialin
protocol pptp
virtual−template 1
!
!
!
voice call carrier capacity active
!
!!
!
!
no voice hpi capture buffer
no voice hpi capture destination
!
!
mta receive maximum−recipients 0
controller T1 0/0
framing sf
linecode ami
!
controller T1 0/1
framing sf
linecode ami
!
!
!
interface Loopback0
ip address 10.100.100.1 255.255.255.0
ip nat inside
!
interface FastEthernet0/0
ip address 172.16.142.191 255.255.255.0
no ip route−cache
no ip mroute−cache
duplex auto
speed auto
!
interface FastEthernet0/1
ip address 10.130.13.13 255.255.0.0
duplex auto
speed auto
!
!−−− Create virtual−template interface used for cloning
!−−− virtual−access interfaces with the use of address pool test
!−−− with CHAP authentication, PAP, and MS−CHAP.
interface Virtual−Template1
ip unnumbered FastEthernet0/0
peer default ip address pool test
no keepalive
ppp encrypt mppe auto
ppp authentication pap chap ms−chap
!
!−−− Create IP pool named test and specify IP range.
ip local pool test 192.168.1.1 192.168.1.250
no ip http server
no ip http secure−server
ip classless
ip route 0.0.0.0 0.0.0.0 172.16.142.1
!
ip pim bidir−enable
!
!
!
call rsvp−sync
!
!
mgcp profile default
!
dial−peer cor custom
!
!
!
!
!
line con 0
exec−timeout 0 0
line aux 0
line vty 0 4
password cisco
login
!
!
end
2621#
المفضلات