Specifications

VPN Configuration 521
Chapter 23
VPN Quick Start Guide
Requirements From Customer
The user must provide the following:
z RADIUS server IP (if not using internal database)
z RADIUS password and access port number (typically UDP port 1645)
z Routable IP pool for VPN. Pool MUST NOT conflict with any other VLAN
subnet (may skip if using source NAT, contact support to setup source
NAT)
z Desired IPSec pre-shared key (global, not per user), use something long
with capital letters and numbers.
z VLAN topology and switch loopback IP.
z This document only covers Win2k and WinXP.
Network Topology In Examples
The following values are used in this section:
z 2.2.2.x is the pool of private addresses for VPN (2.2.2.1 2.2.2.254)
z 3.3.3.x is the trusted side of the network going to the router, assume port
2/0 vlan 1
z Default router’s IP: 3.3.3.254
z RADIUS server IP: 4.4.4.1, authport is 1812, password is Alcatel
z Valid user and passwords in radius server: user: foo, password: bar
z IPSec pre-shared key is f00xYz123BcA
z DNS and WINS servers for VPN users: 10.1.1.2, 10.1.1.3
Setting Up a VPN
Perform the following steps:
1 Set up network
2 Set up and test RADIUS Server
3 Set up VPN server on Alcatel Switch
4 Set up roles and VPN Dialer on Alcatel Switch