
Configuring and Troubleshooting Bay Dial VPN Services
4-2 303509-A Rev 00
1.
Install the RAC software.
Use the installation script supplied for the RAC, as described in the
documentation for the particular device you are installing.
As part of the hardware installation, you may have issued ROM monitor
commands through a terminal connected to the console port located on the
RAC. These commands let you set a subset of the configuration (EEPROM)
parameters, including the unit’s IP address, required for booting the RAC.
You can also specify parameter values that are required if the network
configuration differs from the default values. See the hardware installation
guide for the Remote Access Concentrator you are installing for the list of the
ROM Monitor commands and their default values.
2.
Boot the RAC software (standard installation).
The Remote Access Concentrator gets its operational code by downloading it
over the network from (among other sources) a UNIX host that runs RAC file
server software. The RAC boots each time it is powered up and whenever it
receives a
boot
command. You specify the source of the boot image by setting
the preferred load host.
3.
Set up the dial-in port on the RAC for dial-in and enable ACP or
RADIUS (BSAC) security for PPP on all ports.
Configure security on the RAC using either ACP (for an erpcd-based
network) or BSAC (for a RADIUS-only network), and configure the dial-in
ports. To display the current port settings, enter:
show port ppp
To change a particular setting, enter the
set port
command along with the
parameters you want to change. The settings relevant to Dial VPN are:
set port mode auto_detect
set port type dial_in
set port slip_ppp_security y
set port ppp_security_protocol chap (<--- This could be chap, pap, or
pap-chap.)
For erpcd-based networks, include the following command:
set port address_origin auth_server
If running IPX (Layer 3 only), include the following command:
Comentarios a estos manuales