网络设计的目的:是路由器下的用户用pppoe客户端从aaa server 10.72.254.125/10.72.253.7进行认证上网.
! 【程序编程相关:HDLC背对背连接】以下是路由器的配置 【推荐阅读:使用关于Cisco安全PIX防火墙的NA】service timestamps debug uptime 【扩展信息:在Catalyst 2948G-L3交换】version 12.2service timestamps log uptimeno service password-encryption!hostname xxxxxxx!aaa new-model!!aaa group server radius pppoeserver 10.72.254.125 auth-port 1645 acct-port 1646server 10.72.253.7 auth-port 1645 acct-port 1646!aaa authentication ppp default group pppoeaaa authorization network default group pppoe aaa accounting network default start-stop group pppoeaaa session-id commonenable secret 5 $1$nxz9$vfwaaxnkq/jfbuj4hn.kx/!username xxx password 0 xxxxxxip subnet-zero!!ip domain-name xxxxxxip name-server xxx.xxx.xxx!ip audit notify logip audit po max-events 100ip ssh time-out 120ip ssh authentication-retries 3vpdn enable!vpdn-group pppoeaccept-dialinprotocol pppoevirtual-template 10pppoe limit max-sessions 500!vpdn-group pppoe!pppoe-forwardingasync-bootp dns-server xxx.xxx.xxx.xxx!crypto mib ipsec flowmib history tunnel size 200crypto mib ipsec flowmib history failure size 200!!... 下一页