Specifications
OmniAccess Reference: AOS-W System Reference
104 Part 031652-00 May 2005
The equivalent CLI configuration for the example above is:
vpn-dialer dialer2
enable l2tp
ppp authentication PAP
ppp authentication CHAP
ppp authentication MSCHAP
ppp authentication MSCHAPv2
ike lifetime 28800
ike encryption 3des
ike group 2
ike hash sha
ike authentication pre-share test123
ipsec lifetime 7200
ipsec pfs group2
ipsec encryption esp-3des
ipsec hash esp-sha-hmac
VPN Server Emulation
In multi-campus environments, it may be common for employees to move
between campuses with their laptop computers. When this happens, the VPN
dialer installed on the laptop will be configured with the IP address of the
“home” Alcatel switch. When the user activates the VPN dialer, it will form a
connection back to the home office, resulting in sub-optimal performance. The
VPN Server Emulation feature configures the Alcatel switch to intercept VPN
sessions destined for configured IP addresses, and terminate them locally
instead. To configure VPN Server Emulation, navigate to
Configuration > Security
> VPN Settings > Emulate VPN Servers
, as shown in Figure 5-31.
FIGURE 5-31 VPN Server Emulation
Configure a list containing the switch IP addresses of all Alcatel switches that
could potentially result in the situation described above.
IPSec Hash
Algorithm
Specifies the hash algorithm used by IPSec. The default
is to use SHA.