一、实验拓扑
二、实验要求
1.R1 和 R2使用 PPP 链路直连,R2 和 R3 把 2条 PPP 链路捆绑为 PPP MP 直连
2.按照图示配置 IP地址
3.R2对R1的 PPP进行单向 chap 验证
4.R2对R3的 PPP进行双向 chap 验证
三、实验步骤
R1:
[R1]int s3/0/0
[R1-Serial3/0/0]ip add
[R1-Serial3/0/0]ip address 192.168.1.1 24
R2:
[R2]int s3/0/0
[R2-Serial3/0/0]ip add
[R2-Serial3/0/0]ip address 192.168.1.2 24
对R2和R3进行捆绑为 PPP MP 直连:
R2:
[R2]int Mp-group 0/0/1
[R2-Mp-group0/0/1]ip address 192.168.2.1 24
[R2-Mp-group0/0/1]int s3/0/1
[R2-Serial3/0/1]ppp mp Mp-group 0/0/1
[R2-Serial3/0/1]int s4/0/0
[R2-Serial4/0/0]ppp mp Mp-group 0/0/1
R3:
[R3]int Mp-group 0/0/1
[R3-Mp-group0/0/1]ip address 192.168.2.2 24
R3-Mp-group0/0/1]int s3/0/0
[R3-Serial3/0/0]ppp mp Mp-group 0/0/1
[R3-Serial3/0/0]int s3/0/1
[R3-Serial3/0/1]pp mp Mp-group 0/0/1
ppp验证的chap:R2对R1
R2:
[R2]aaa
[R2-aaa]local-user ck password cipher 123 privilege level 15
[R2-aaa]local-user ck service-type ppp
[R2-aaa]int s3/0/0
[R2-Serial3/0/0]ppp authentication-mode chap #设置验证类型
R1:
[R1]int s3/0/0
[R1-Serial3/0/0]ppp chap user ck
[R1-Serial3/0/0]ppp chap password cipher 123
ppp验证的chap:R2对R3的 PPP进行双向 chap 验证
R2:
[R2-aaa]local-user hh password cipher 789 privilege level 15
[R2-Serial3/0/1]ppp authentication-mode chap
[R2-Serial4/0/0]pp authentication-mode chap
[R2]int s3/0/1
[R2-Serial3/0/1]ppp chap user cc
[R2-Serial3/0/1]ppp chap password cipher 456
[R2-Serial3/0/1]int s4/0/0
[R2-Serial4/0/0]ppp chap user cc
[R2-Serial4/0/0]ppp chap password cipher 456
R3:
[R3]aaa
[R3-aaa]local-user cc password cipher 456 privilege level 15
[R3-aaa]local-user cc service-type ppp
#分别对两个物理口进行验证类型
[R3-aaa]int s3/0/1
[R3-Serial3/0/1]ppp authentication-mode chap
[R3]int s3/0/0
[R3-Serial3/0/0]ppp authentication-mode chap
[R3]int s3/0/0
[R3-Serial3/0/0]ppp chap user hh
[R3-Serial3/0/0]ppp chap password cipher 789
[R3-Serial3/0/0]int s3/0/1
[R3-Serial3/0/1]ppp chap user hh
[R3-Serial3/0/1]ppp chap password cipher 789
关闭一个R3的逻辑口再打开双UP完成双向
R3:
R2: