一、实验拓扑
二、实验划分
AR1的Serial3/0/0接口:192.168.1.1/24;AR2的Serial3/0/0接口:192.168.1.2/24;AR2的Serial3/0/1和4/0/0的聚合接口:192.168.2.2/24;AR3的Serial3/0/0和3/0/1的聚合接口:192.168.2.3/24
三、实验需求
如上图所示;
四、实验结果
1.对每个路由器增加serial接口
2.配置接口IP并MP聚合R2和R3之间的链路
AR1:
AR2:
[AR2]inter Mp-group 0/0/0
[AR2-Mp-group0/0/0]ip ad 192.168.2.2 24
[AR2]inter ser3/0/1
[AR2-Serial3/0/1]ppp mp Mp-group 0/0/0
[AR2-Serial3/0/1]inter s4/0/0
[AR2-Serial4/0/0]ppp mp Mp-group 0/0/0
AR3:
[AR3]inter Mp-group 0/0/0
[AR3-Mp-group0/0/0]ip address 192.168.2.3 24
[AR3]inter s3/0/0
[AR3-Serial3/0/0]ppp mp Mp-group 0/0/0
[AR3-Serial3/0/0]inter s3/0/1
[AR3-Serial3/0/1]ppp mp Mp-group 0/0/0
3.R2做主验证方,R1做被验证方,做单向chap验证
R2:
[AR2]aaa
[AR2-aaa]local-user jiojio password cipher 123456
[AR2-aaa]local-user jiojio service-type ppp
[AR2]inter s3/0/0
[AR2-Serial3/0/0]ppp authentication-mode chap
R1:
[AR1]inter s3/0/0
[AR1-Serial3/0/0]ppp chap user jiojio
[AR1-Serial3/0/0]ppp chap password cipher 123456
验证:可以ping通并且接口双up
4.R2和R3做双向chap验证
R2做主,R3做被:
R2:
[AR2]aaa
[AR2-aaa]local-user jiojio password cipher 123456
[AR2-aaa]local-user jiojio service-type ppp
[AR2]inter s3/0/1
[AR2-Serial3/0/1]ppp authentication-mode chap
[AR2-Serial3/0/1]inter s4/0/0
[AR2-Serial4/0/0]ppp authentication-mode chap
R3:
[AR3]inter s3/0/0
[AR3-Serial3/0/0]ppp chap user jiojio
[AR3-Serial3/0/0]ppp chap password cipher 123456
[AR3-Serial3/0/0]inter s3/0/1
[AR3-Serial3/0/1]ppp chap user jiojio
[AR3-Serial3/0/1]ppp chap password cipher 123456
R3做主,R2做被:
R3:
[AR3]aaa
[AR3-aaa]local-user jiojio password cipher 123456
[AR3-aaa]local-user jiojio service-type ppp
[AR3]int s3/0/0
[AR3-Serial3/0/0]ppp authentication-mode chap
[AR3-Serial3/0/0]inter s3/0/1
[AR3-Serial3/0/1]ppp authentication-mode chap
R2:
[AR2]inter s3/0/1
[AR2-Serial3/0/1]ppp chap user jiojio
[AR2-Serial3/0/1]ppp chap password cipher 123456
[AR2-Serial3/0/1]inter s4/0/0
[AR2-Serial4/0/0]ppp chap user jiojio
[AR2-Serial4/0/0]ppp chap password cipher 123456