
246 | VPN Configuration AOS-W Instant 6.3.1.1-4.0 | User Guide
f. Select the message digest as MD5 or SHA used for message authentication.
g. Enter a shared key for the message digest. This key should match with the tunnel end point shared key.
h. If required, select the failover mode as Primary or Backup (when backup server is available).
i. Specify a value for tunnel MTU value if required. The default value is 1460.
j. Click OK.
4. Configure the session profile:
a. Enter the session name to be used for session creation.
Figure 84 Session Configuration
b. Enter the tunnel profile name where the session will be associated.
c. Configure tunnel IP address with corresponding network mask and VLAN ID. This is required to reach AP
from a corporate network. For example, SNMP polling.
d. Select the cookie length and enter a cookie value corresponding to the length. By default, the cookie length is
not set.
e. Click OK.
5. Click Next to continue.
In the CLI
To configure a L2TPv3 VPN tunnel:
(Instant Access Point)(config)# l2tpv3 tunnel <l2tpv3_tunnel_profile>
(Instant Access Point) (L2TPv3 Tunnel Profile <l2tpv3_tunnel_profile>)# backup peer-address <p
eer_ip_addr_tunnel>
(Instant Access Point) (L2TPv3 Tunnel Profile <l2tpv3_tunnel_profile>)# checksum
(Instant Access Point) (L2TPv3 Tunnel Profile <l2tpv3_tunnel_profile>)# failover-mode <preempt
ive/non-preemptive>
(Instant Access Point) (L2TPv3 Tunnel Profile <l2tpv3_tunnel_profile>)# failover-retry-count <
retry_count>
(Instant Access Point) (L2TPv3 Tunnel Profile <l2tpv3_tunnel_profile>)# failover-retry-interva
l <interval_in_seconds>
(Instant Access Point) (L2TPv3 Tunnel Profile <l2tpv3_tunnel_profile>)# hello-timeout <interva
l_in_seconds>
(Instant Access Point) (L2TPv3 Tunnel Profile <l2tpv3_tunnel_profile>)# local-port <local_udp_
port_number>
(Instant Access Point) (L2TPv3 Tunnel Profile <l2tpv3_tunnel_profile>)# message-digest-type <d
igest_algorithm>
(Instant Access Point) (L2TPv3 Tunnel Profile <l2tpv3_tunnel_profile>)# mtu <tunnel_MTU_size>
(Instant Access Point) (L2TPv3 Tunnel Profile <l2tpv3_tunnel_profile>)# peer-port <peer_udp_po
rt_number>
(Instant Access Point) (L2TPv3 Tunnel Profile <l2tpv3_tunnel_profile>)# primary peer-address <
peer_ip_addr_tunnel>
Comentários a estes Manuais