Avaya Configuring and Troubleshooting Bay Dial VPN (DVS) Networks Manual de usuario Pagina 41

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 190
  • Tabla de contenidos
  • SOLUCIÓN DE PROBLEMAS
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 40
Dial VPN Layer 2 Tunneling
303509-A Rev 00 2-7
When the LAC receives a call, it forwards the domain name to the TMS. The
domain name is the portion of the user’s address that specifies a particular location
in the network. For example, if the user name is jdoe@baynetworks.com,
baynetworks.com is the domain name. The TMS looks up the domain name and
verifies that the remote user is an L2TP user. The TMS also provides the LAC
with the addressing information required to establish a tunnel to the correct LNS.
Security in an L2TP Network
You can configure two layers of security in an L2TP network:
Tunnel authentication
Tunnel authentication is the process of negotiating the establishment of a
tunnel between the LAC and the LNS.
User authentication
The network administrator at the corporate site can configure a RADIUS
server with the names and passwords of authorized users. The server’s
database centralizes the authentication function, eliminating the need to
configure each LNS with user names and passwords.
When the LNS receives a call, it forwards the user information to the
RADIUS server, which verifies whether the user is authorized to access the
network.
You can also configure the LNS to perform user authentication if a RADIUS
server is not part of the network configuration.
The following paragraphs describe the Bay Networks implementation of tunnel
and user authentication.
Tunnel Authentication
For Dial VPN Layer 2 tunnel security purposes, you must enable the LNS to
perform tunnel authentication. Tunnel authentication is the process of negotiating
the establishment of a tunnel.
Note:
The domain name referred to in this guide is a domain identifier that
does not follow a specific format. It is not related to any Domain Name System
(DNS) protocol requirements.
Vista de pagina 40
1 2 ... 36 37 38 39 40 41 42 43 44 45 46 ... 189 190

Comentarios a estos manuales

Sin comentarios