Table of Contents 1 PPP Configuration Commands PPPoE Configuration Commands 2-1

Similar documents
H3C WA Series WLAN Access Points. Layer 2 WAN Command Reference. Hangzhou H3C Technologies Co., Ltd.

PPP configuration commands

Operation Manual User Access. Table of Contents

HP VSR1000 Virtual Services Router

H3C MSR Series Routers

Table of Contents X Configuration 1-1

HP A-MSR Router Series Layer 2 - WAN. Command Reference. Abstract

L2TP Configuration. L2TP Overview. Introduction. Typical L2TP Networking Application

HP MSR Router Series. Layer 2 - WAN Access Configuration Guide(V7)

Table of Contents X Configuration 1-1

Table of Contents 1 L2TP Configuration Commands 1-1

Configuring PPP over Ethernet with NAT

Table of Contents 1 Ethernet Interface Configuration Commands 1-1

Configuring the Cisco 827 Router as a PPPoE Client With NAT

Table of Contents. 4 System Guard Configuration 4-1 System Guard Overview 4-1 Guard Against IP Attacks 4-1 Guard Against TCN Attacks 4-1

Operation Manual 802.1x. Table of Contents

PPPoE Client DDR Idle-Timer

Operation Manual Security. Table of Contents

Operation Manual AAA RADIUS HWTACACS H3C S5500-EI Series Ethernet Switches. Table of Contents

Controlled/uncontrolled port and port authorization status

H3C MSR Router Series

Operation Manual Login and User Interface. Table of Contents

Understanding and Troubleshooting Idle Timeouts

Loopback detection configuration commands

Configuring PPP over ATM with NAT

Configuring PPP over Ethernet with NAT

Operation Manual Security. Table of Contents

DDR Routing Commands

HP MSR Router Series. Layer 2 - WAN Access Configuration Guide(V7)

Table of Contents 1 AAA Overview AAA Configuration 2-1

Cisco DSL Router Configuration and Troubleshooting Guide Cisco DSL Router Acting as a PPPoE Client with a Dynamic IP Address

HPE FlexNetwork MSR Router Series

Table of Contents 1 AAA Overview AAA Configuration 2-1

Table of Contents 1 Commands for Access Controller Switch Interface Board 1-1

Loop detection commands 1

H3C SR6602-X Routers. Comware 7 Layer 2 WAN Access. Command Reference. Hangzhou H3C Technologies Co., Ltd.

Finding Feature Information

Access Server Dial In IP/PPP Configuration With Dedicated V.120 PPP

PPPoE Client DDR Idle Timer

Number of seconds that elapse after the primary line goes down before the router activates the secondary line. The default is 0 seconds.

Table of Contents. 2 Static Route Configuration Commands 2-1 Static Route Configuration Commands 2-1 delete static-routes all 2-1 ip route-static 2-1

Configuring Dial-on-Demand Routing

Login management commands

Autosense for ATM PVCs and MUX SNAP Encapsulation

Table of Contents 1 WLAN Security Configuration Commands 1-1

Configuring PPP Callback

QoS: Classification, Policing, and Marking on LAC Configuration Guide, Cisco IOS Release 12.4T

HP Unified Wired-WLAN Products

15d. PPPoE Troubleshooting

Terminal Services Commands translate lat

Configuring and Troubleshooting Dialer Profiles

15c. PPPoE. Encapsulation and Tunneling. The Dialer Interface. Client Dialer Interface

Contents. Tunneling commands 1

virtual-template virtual-template template-number no virtual-template Syntax Description

H3C MSR Router Series

Command Manual IPv4 Routing H3C S3610&S5510 Series Ethernet Switches. Table of Contents

Configuring Legacy DDR Hubs

Lab 15d. PPPoE Troubleshooting

Table of Contents. 2 MIB Style Configuration 2-1 Overview 2-1 Setting the MIB Style 2-1 Displaying and Maintaining MIB 2-1

PPP over Frame Relay

Table of Contents 1 DHCP Overview DHCP Server Configuration 2-1

Configuring the PPPoE Client

DPX8000 Series Deep Service Switching Gateway User Configuration Guide BRAS Service Board Module v1.0

H3C SecPath UTM Series. Configuration Examples. Hangzhou H3C Technologies Co., Ltd. Manual Version: 5W

RADIUS Configuration. Overview. Introduction to RADIUS. Client/Server Model

SPOTO CCIE LAB RS V5.0 H3 CFG Solution. SPOTO CCIE CLUB offers all Cisco track written and lab dumps.spoto CCIE

Configuring Virtual Asynchronous Traffic over ISDN

Remote Access MPLS-VPNs

RADIUS Vendor-Specific Attributes (VSA) and RADIUS Disconnect-Cause Attribute Values

Table of Contents 1 Basic Configuration Commands 1-1

Table of Contents. 1 TFTP Configuration Commands 1-1 TFTP Client Configuration Commands 1-1 tftp-server acl 1-1 tftp 1-2 tftp ipv6 1-3

PPP Configuration Options

Evaluating Backup Interfaces, Floating Static Routes, and Dialer Watch for DDR Backup

HP 5920 & 5900 Switch Series

Using ISDN Effectively

Configuring Client-Initiated Dial-In VPDN Tunneling

Point-to-Point Protocol (PPP)

Logging in to the CLI

Configuring PPP over ATM with NAT

HP MSR Router Series. IPX Configuration Guide(V5) Part number: Software version: CMW520-R2513 Document version: 6PW

Portal configuration commands

Contents. Tunneling commands 1

Command Manual MAC Address Table Management H3C S5500-EI Series Ethernet Switches. Table of Contents

OV504R6. Quick Start Guide

Operation Manual ARP H3C S5500-SI Series Ethernet Switches. Table of Contents

H3C S5830V2 & S5820V2 Switch Series

H3C S12500 Series Routing Switches

DPX8000 Series Deep Service Switching Gateway User Configuration Guide Firewall Service Board Module v1.0

HP FlexFabric 5700 Switch Series

Configuring a Cisco 827 Router to Support PPPoE Clients, Terminating on a Cisco 6400 UAC

Configuring BACP. Cisco IOS Dial Technologies Configuration Guide DC-667

Cisco PPPoE Baseline Architecture for the Cisco UAC 6400

Radius Configuration FSOS

Configuring X.25 on ISDN Using AO/DI

PIX/ASA/FWSM Platform User Interface Reference

PPPoE Technology White Paper

Table of Contents 1 FTP Configuration Commands TFTP Configuration Commands 2-1

Point-to-Point Protocol (PPP) Accessing the WAN Chapter 2

Point-to-Point Protocol (PPP)

HP 5120 SI Switch Series

Transcription:

Table of Contents 1 PPP Configuration Commands 1-1 PPP Configuration Commands 1-1 ip address ppp-negotiate 1-1 link-protocol ppp 1-2 mtu 1-2 ppp account-statistics enable 1-3 ppp authentication-mode 1-3 ppp chap password 1-4 ppp chap user 1-5 ppp ipcp remote-address forced 1-6 ppp pap local-user 1-6 ppp timer negotiate 1-7 remote address 1-8 timer hold 1-9 2 PPPoE Configuration Commands 2-1 PPPoE Client Configuration Commands 2-1 display pppoe-client session 2-1 pppoe-client 2-2 reset pppoe-client 2-4 DCC Configuration Commands 2-4 dialer bundle 2-4 dialer-group 2-5 dialer-rule 2-6 dialer user 2-7 i

The models listed in this document are not applicable to all regions. Please consult your local sales office for the models applicable to your region. Support of the H3C WA series WLAN access points (APs) for commands may vary by AP model. For more information, see Feature Matrix. The interface types and the number of interfaces vary by AP model. 1 PPP Configuration Commands PPP Configuration Commands ip address ppp-negotiate ip address ppp-negotiate undo ip address ppp-negotiate Dialer interface view None Use the ip address ppp-negotiate command to enable IP address negotiation on the local interface, so that the local interface can accept the IP address allocated by the peer end. Use the undo ip address ppp-negotiate command to disable IP address negotiation. By default, IP address negotiation is disabled. Related commands: remote address and ppp ipcp remote-address forced. # Enable IP address negotiation on Dialer 1. [Sysname] interface Dialer 1 [Sysname-Dialer1] ip address ppp-negotiate 1-1

link-protocol ppp link-protocol ppp Dialer interface view None Use the link-protocol ppp command to enable PPP encapsulation on an interface. By default, PPP encapsulation is enabled is enabled on dialer interfaces. # Enable PPP on Dialer 2. [Sysname] interface Dialer 2 [Sysname-Dialer2] link-protocol ppp mtu mtu size undo mtu Dialer interface view size: MTU in bytes, in the range of 128 to 1500. Use the mtu command to set the MTU size of the interface. Use the undo mtu command to restore the default. By default, the MTU of an interface is 1500 bytes. # Set the MTU of Dialer 1 to 1200 bytes. [Sysname] interface Dialer 1 [Sysname-Dialer1] mtu 1200 1-2

ppp account-statistics enable ppp account-statistics enable undo ppp account-statistics enable Interface view None Use the ppp account-statistics enable command to enable the generating of PPP accounting statistics. Use the undo ppp account-statistics enable command to disable the generating of PPP accounting statistics. By default, the generating of PPP accounting statistics is disabled. # Enable the generating of PPP accounting statistics on interface Dialer 2. [Sysname] interface Dialer2 [Sysname-Dialer2] ppp account-statistics enable ppp authentication-mode ppp authentication-mode { chap pap } [ [ call-in ] domain isp-name ] undo ppp authentication-mode Interface view chap: Adopts CHAP authentication. pap: Adopts PAP authentication. call-in: Authenticates the call-in users only. domain isp-name: Specifies the domain name for authentication, a string of 1 to 24 characters. Use the ppp authentication-mode command to configure the PPP authentication mode. Use the undo ppp authentication-mode command to disable PPP authentication. By default, PPP authentication is disabled. 1-3

If you run the ppp authentication-mode command with the domain keyword specified, you need to configure an address pool in the corresponding domain. (You can use the display domain command to display the domain configuration.) If you configure the ppp authentication-mode command without specifying the domain name, the system checks the username for domain information. If the username carries a domain name, the domain will be used for authentication (If the domain does not exist, the user s access request will be denied). If not, the default domain is used (you can use the domain default command to configure the default domain; if no default domain is configured, the default domain system is used by default). There are two types of PPP authentication: PAP authentication and CHAP authentication. PAP authentication is two-way handshake authentication. The password used is in plain text. CHAP authentication is three-way handshake authentication. The password is in cipher text. In addition, you can also adopt the AAA authentication algorithm list (if defined) to authenticate users. In either PPP authentication mode, AAA determines whether a user can pass the authentication through a local authentication database or an AAA server. For more information about creating a local user account, configuring local user attributes, creating a domain, and configuring domain attributes, see AAA in the Security Configuration Guide. For authentication on a dial-up interface, it is recommended that you configure authentication on both the physical interface and the dialer interface. Because when a physical interface receives a DCC call request, it first initiates PPP negotiation and authenticates the dial-in user, and then passes the call to the upper layer protocol. Related commands: ppp chap user, ppp pap local-user, and ppp chap password (PPP in the Layer 2 WAN Command Reference); local-user and domain default enable (AAA in the Security Command Reference). # Configure to authenticate the peer by using PAP on interface Dialer 1. [Sysname] interface Dialer1 [Sysname-Dialer1] ppp authentication-mode pap domain system ppp chap password ppp chap password { cipher simple } password undo ppp chap password Interface view 1-4

cipher: Specifies to display the password in cipher text. simple: Specifies to display the password in plain text. password: Default password for CHAP authentication, a string of 1 to 48 characters. When the simple keyword is used, this password is in plain text. When the cipher keyword is used, this password can either be in cipher text or in plain text. A password in plain text is a string of no more than 48 characters, such as aabbcc. A password in cipher text has a fixed length of 24 or 64 characters. For example, _(TT8F]Y\5SQ=^Q`MAF4<1!! or VV-F]7R%,TN$C1D*)O<-;<IX)aV\KMFAM(0=0\)*5WWQ=^Q`MAF4<<"TX$_S#6.N. Use the ppp chap password command to set the default password for CHAP authentication. Use the undo ppp chap password command to cancel the configuration. Related commands: ppp authentication-mode chap. # Set the default password for CHAP authentication to sysname, which is to be displayed in plain text. [Sysname] interface Dialer1 [Sysname-Dialer1] ppp chap password simple sysname ppp chap user ppp chap user username undo ppp chap user Interface view username: Username for CHAP authentication, a string of 1 to 80 characters, which is the one sent to the peer for the local AP to be authenticated. Use the ppp chap user command to set the username for CHAP authentication. Use the undo ppp chap user command to cancel the configuration. By default, the username for CHAP authentication is null. To pass CHAP authentication, the username/password of one side needs to be the local username/password of the peer. Related commands: ppp authentication-mode. # Set the username for CHAP authentication as Root on Dialer 1. 1-5

[Sysname] interface Dialer1 [Sysname-Dialer1] ppp chap user Root ppp ipcp remote-address forced ppp ipcp remote-address forced undo ppp ipcp remote-address forced Interface view None Use the ppp ipcp remote-address forced command to configure the AP to assign IP addresses to the peer by force. This command also disables the peer from using locally configured IP addresses. Use the undo ppp ipcp remote-address forced command to cancel the configuration. By default, the peer can use locally configured IP address in PPP IPCP negotiation. That is, the AP assigns an IP address to its peer when the latter requests explicitly. It does not assign IP addresses to the peer when the latter already has IP addresses configured. To disable the peer from using locally configured IP addresses, execute the ppp ipcp remote-address forced command on the local interface. Related commands: remote address. # Configure an optional IP address 10.0.0.1 on interface Dialer 1 for the peer. [Sysname] interface Dialer1 [Sysname-Dialer1] remote address 10.0.0.1 # Configure IP address 10.0.0.1 on interface Dialer 1 for the peer and assign the IP address to the peer by force. [Sysname] interface Dialer1 [Sysname-Dialer1] remote address 10.0.0.1 [Sysname-Dialer1] ppp ipcp remote-address forced ppp pap local-user ppp pap local-user username password { cipher simple } password undo ppp pap local-user Interface view 1-6

username: Username of the local AP for PAP authentication, a string of 1 to 80 characters. cipher: Displays the password in cipher text. simple: Displays the password in plain text. password: Password of the local AP for PAP authentication, a string of 1 to 48 characters. When the simple keyword is specified, provide this argument in plain text. When the cipher keyword is specified, provide this password in either cipher text or plain text. When provided in plain text, the password must be a continuous string that contains no more than 48 characters, aabbcc for example; when provided in cipher text, the password must be fixed to 24 or 64 characters. For example, _(TT8F]Y\5SQ=^Q`MAF4<1!! or VV-F]7R%,TN$C1D*)O<-;<IX)aV\KMFAM(0=0\)*5WWQ=^Q`MAF4<<"TX$_S#6.N. Use the ppp pap local-user command to set the local username and password for PAP authentication. Use the undo ppp pap local-user command to cancel the local username and password configured. By default, the username and the password for PAP authentication are not set. For the local AP to pass PAP authentication on the remote device, make sure that the same username and password configured for the local AP are also configured on the remote device with the commands local-user username and password { cipher simple } password. Related commands: local-user and password (AAA in the Security Command Reference). # Set the local username and password for PAP authentication to user1 and pass1 (in plain text). [Sysname] interface Dialer1 [Sysname-Dialer1] ppp pap local-user user1 password simple pass1 ppp timer negotiate ppp timer negotiate seconds undo ppp timer negotiate Interface view seconds: Negotiation timeout time to be set, in the range 1 to 10 (in seconds). In PPP negotiation, if the local AP receives no response from the peer during this period after it sends a packet, the local AP sends the last packet again. 1-7

Use the ppp timer negotiate command to set the PPP negotiation timeout time. Use the undo ppp timer negotiate command to restore the default. By default, the PPP negotiation timeout time is three seconds. # Set the PPP negotiation timeout time to five seconds. [Sysname] interface Dialer1 [Sysname-Dialer1] ppp timer negotiate 5 remote address remote address { ip-address pool [ pool-number ] } undo remote address Interface view ip-address: IP address to be assigned to the peer. pool [ pool-number ]: Specifies the number of the address pool that assigns IP addresses to the peer. The pool-number argument ranges from 0 to 99 and defaults to 0. Use the remote address command to set the IP address to be assigned to the peer or specify the address pool that assigns IP addresses to the peer. Use undo remote address to cancel the IP address assigned to the peer. By default, the AP does not assign IP addresses to the peer. You can use the remote address command to configure the AP to assign IP addresses for the peer if the local AP is configured with an IP address, while the peer has no IP address. To enable the peer to accept the IP address assigned to it by the AP, configure the ip address ppp-negotiate command on the peer, and configure the remote address command on the AP. 1-8

The IP address assigned to the peer by the local AP is not mandatory on the peer. That is, the peer can still use a locally configured IP address even if the local AP assigned one to it. To make the IP address assigned by the local AP mandatory, configure the ppp ipcp remote-address forced command. After you use the remote address command to assign an IP address for the peer, you cannot configure the remote address/undo remote address command for the peer again unless the peer releases the assigned IP address. Therefore, it is recommended that you shut down the port to release the assigned IP address before you configure the remote address/undo remote address command for the peer. However, after you use the command to assign an IP address to the peer from the address pool of the specified domain through AAA authentication, you can configure the command for the peer again. In this case, the original assigned IP address can still work, and the newly assigned IP address is adopted when the original one is released or adopted by a new PPP access. This command takes effect until the next IPCP negotiation. To make the remote address command take effect, it is recommended that you configure the remote address command before the ip address command. Related commands: ip address ppp-negotiate and ppp ipcp remote-address forced. # Set the IP address to be assigned to the peer through interface Dialer 1 as 10.0.0.1. [Sysname] interface Dialer 1 [Sysname-Dialer1] remote address 10.0.0.1 timer hold timer hold seconds undo timer hold Interface view seconds: Interval (in seconds) for sending keepalive packets, in the range 0 to 32767. A value of 0 disables keepalive packet sending. Use the timer hold command to set the interval for sending keepalive packets. Use the undo timer hold command to restore the default interval, 10 seconds. When the interval for sending keepalive packets is set to 0, no keepalive packet is sent. 1-9

As on slow links, it takes long to transmit large packets (this may cause the sending and receiving of keepalive packet to be postponed) and a link is considered to be fail If an interface on one side receives no keepalive packet from the peer for a specific number of keepalive periods, set the interval for sending keepalive packets properly for slow links to prevent the links from being torn down by mistake. On a PPP link, make sure the settings of the interval for sending keepalive packets on both sides are the same. # Set the interval for sending keepalive packets to 20 seconds on interface Dialer 1. [Sysname] interface Dialer 1 [Sysname-Dialer1] timer hold 20 1-10

2 PPPoE Configuration Commands PPPoE Client Configuration Commands display pppoe-client session display pppoe-client session { packet summary } [ dial-bundle-number number ] Any view 1: Monitor level packet: Displays the packet statistics on PPPoE sessions. summary: Displays PPPoE session summary. dial-bundle-number number: Displays the statistics on a PPPoE session. The number argument ranges from 1 to 255. If this keyword-argument combination is not specified, this command displays the statistics on all the PPPoE sessions. Use the display pppoe-client session command to display the information about a PPPoE session. # Display PPPoE session summary. <Sysname> display pppoe-client session summary PPPoE Client Session: ID Bundle Dialer Intf RemMAC LocMAC State 1 1 1 Eth1/0/1 00e014004300 00e015004100 PPPUP 1 2 2 Eth1/0/2 00e015004300 00e016004100 PPPUP Table 2-1 display pppoe-client session summary command output description Field ID Bundle Dialer Intf RemMAC LocMAC State PPPoE session ID Dialer bundle to which the PPPoE session belongs Dialer interface corresponding to the PPPoE session Ethernet interface on which the PPPoE session is based Remote MAC address Local MAC address PPPoE session state 2-1

# Display the packet statistics on PPPoE sessions. <Sysname> display pppoe-client session packet PPPoE Client Session: ID Intf InP InO InD OutP OutO OutD 1 Eth1/1 21 230 0 25 388 0 1 Eth1/2 19 210 0 23 368 0 Table 2-2 display pppoe-client session packet command output description Field ID Intf InP InO InD OutP OutO OutD PPPoE session ID Ethernet interface on which the PPPoE session is based Number of the packets received Size of the received packets (in bytes) Number of the received packets discarded Number of the packets sent Size of the sent packets (in bytes) Number of the sent packets discarded pppoe-client pppoe-client dial-bundle-number number [ no-hostuniq ] [ idle-timeout seconds [ diagnose [ interval seconds ] queue-length packets ] ] undo pppoe-client dial-bundle-number number VLAN interface view dial-bundle-number number: Specifies the dialer bundle number corresponding to a PPPoE session, in the range 1 to 255. A dialer bundle number uniquely identifies a PPPoE session, and it can also be used as a PPPoE session ID. no-hostuniq: Specifies not to carry the Host-Uniq field. By default, the Host-Uniq field is carried. diagnose: Specifies the working mode of the PPPoE session to diagnose. interval seconds: Specifies the interval (in seconds) between two PPPoE diagnose sessions. The seconds argument ranges from 5 to 65535. The default value is 120. idle-timeout seconds: Specifies the PPPoE session idle time. The seconds argument ranges from 1 to 65535. If this keyword-argument combination is specified, the PPPoE session works in packet trigger mode; if this keyword-argument combination and the diagnose keyword are not specified, the PPPoE session established works in permanent online mode. 2-2

queue-length packets: Specifies the number of the packets that can be cached before the PPPoE session is established. The packets argument ranges from 1 to 100 and defaults to 10. This keyword-argument combination becomes valid only when the idle-timeout keyword is configured. Use the pppoe-client command to establish a PPPoE session and specify the dialer bundle corresponding to the session. Use the undo pppoe-client command to remove a PPPoE session. By default, no PPPoE session is established. You can establish multiple PPPoE sessions on a VLAN interface. That is, a VLAN interface can belong to multiple dialer bundles. However, a dialer bundle can corresponds to only one VLAN interface. Each PPPoE session uniquely corresponds to a dialer bundle. If a VLAN interface in a dialer bundle of a dialer interface is used to establish a PPPoE session, you cannot add any interfaces to the dialer bundle. A PPPoE session works in one of these three modes: permanent online mode, packet trigger mode, and diagnose mode. Permanent online mode: If you execute the pppoe-client command without specifying the idle-timeout seconds keyword-argument combination, the AP initiates a PPPoE call to establish a PPPoE session immediately if the physical line is up. After the PPPoE session is established, it can only be terminated by the undo pppoe-client command. Packet trigger mode: If you execute the pppoe-client command with the idle-timeout seconds keyword-argument combination specified, the AP tries to establish the PPPoE session only when it has data to transmit. For a PPPoE session working in this mode, if no data is transmitted across it within the period specified by the seconds argument, the PPPoE session will be terminated automatically. Diagnose mode: If you execute the pppoe-client command with the diagnose keyword specified, the AP initiates a PPPoE call to establish a PPPoE session immediately after this command is configured, and terminates the current PPPoE session and then establishes another PPPoE session each time the interval specified by interval seconds expires. By periodically establishing and terminating PPPoE sessions, this function can be used to detect whether the PPPoE link is normal. Each AP supports only one PPPoE diagnose session at any given point in time. Related commands: reset pppoe-client. The difference between the reset pppoe-client and undo pppoe-client commands lies in that the former only temporarily terminates a PPPoE session, while the latter permanently removes a PPPoE session. After you execute the undo pppoe-client command, the PPPoE session identified by the number argument is removed permanently, regardless of the working mode of the PPPoE session. To use the PPPoE session again, you need to re-establish it all over again. 2-3

# Establish a PPPoE session on VLAN-interface 1. [Sysname] interface Vlan-interface 1 [Sysname-Vlan-interface1] pppoe-client dial-bundle-number 1 reset pppoe-client reset pppoe-client { all dial-bundle-number number } User view all: Clears all the PPPoE sessions. dial-bundle-number number: Specifies a dialer bundle by its number. The number argument ranges from 1 to 255. Use the reset pppoe-client command to reset a PPPoE session corresponding to a dialer bundle for the PPPoE session to be initiated again. A PPPoE session in permanent on-line mode and terminated by this command will be established again in 16 seconds. A PPPoE session in packet-triggered mode and terminated by this command will be established again only when there is a need for data transmission. Related commands: pppoe-client. The difference between the reset pppoe-client command and the undo pppoe-client command lies in: the former only temporarily terminates a PPPoE session, while the latter permanently removes a PPPoE session. # Reset all the PPPoE sessions. <Sysname> reset pppoe-client all DCC Configuration Commands dialer bundle dialer bundle number 2-4

undo dialer bundle Dialer interface view number: Dialer bundle number, in the range 1 to 255. Use the dialer bundle command to associate a dialer bundle with a dialer interface in RS-DCC. Use the undo dialer bundle command to remove the association. By default, dialer interfaces are not associated with any dialer bundle in RS-DCC. This command applies only to dialer interfaces. In addition, a dialer interface can be associated with only one dialer bundle. # Associate dialer bundle 3 with interface Dialer 1. [Sysname] interface dialer 1 [Sysname-Dialer1] dialer bundle 3 dialer-group dialer-group group-number undo dialer-group Dial interface (physical or dialer) view group-number: Number of a dialer access group, in the range 1 to 255. You may define it with the dialer-rule command. Use the dialer-group command to assign the interface to a dialer access group. Use the undo dialer-group command to remove the interface from the dialer access group. A DCC dial interface can belong to only one dialer access group. Configuring this command can overwrite the previous dialer access group setting for the interface, if any. 2-5

In the default configuration of the interface, the dialer-group command is not configured. You must configure this command for DCC to send packets. Related commands: dialer-rule. # Add interface Dialer 1 to dialer access group 1. [Sysname] dialer-rule 1 acl 3101 [Sysname] interface dialer1 [Sysname-Dialer1] dialer-group 1 dialer-rule dialer-rule group-number { protocol-name { deny permit } acl acl-number name acl-name } undo dialer-rule group-number System view group-number: Number of a dialer access group, the same as the group-number argument in the dialer-group command. It ranges from 1 to 255. protocol-name: Network protocol, which can take ip or ipx. deny: Denies packets of the specified protocol. permit: Permits packets of the specified protocol. acl acl-number: Specifies an ACL by its ACL number. The acl-number argument ranges from 2000 to 3999. An ACL number in the range 2000 to 2999 identifies a basic ACL; an ACL number in the range 3000 to 3999 identifies an advanced ACL. name acl-name: Specifies an ACL by its name. Use the dialer-rule command to set the condition for a DCC call to be placed for a dialer access group either by directly configuring a rule or by referencing an ACL. Use the undo dialer-rule command to remove the setting. You may configure a dial ACL to filter traffic that traverses a dial interface. Packets fall into two categories, depending on whether they are in compliance with the permit or deny statements in the dial ACL. 2-6

Packets that match a permit statement or that do not match any deny statements. When receiving such a packet, DCC either sends it out if a link is present and resets the idle-timeout timer or originates a new call to set up a link if no link is present. Packets that do not match any permit statements or that match a deny statement. When receiving such a packet, DCC either sends it out without resetting the idle-timeout timer if a link is present, or drops it without originating calls for link setup if no link is present. For DCC to send packets normally, you must configure a dial ACL and associate it with the concerned dial interface (physical or dialer) by using the dialer-group command. If no dial ACL is configured for the dialer access group associated with a dial interface, DCC will drop received packets on the interface as uninteresting ones. Related commands: dialer-group. # Define dialer-rule 1 and apply it to interface Dialer 1. [Sysname] dialer-rule 1 ip permit [Sysname] interface Dialer1 [Sysname-Dialer1] dialer-group 1 dialer user dialer user username undo dialer user Dialer interface view username: Remote username for PPP authentication, a string of 1 to 80 characters. Use the dialer user command to add a remote username for authenticating incoming calls. Use the undo dialer user command to remove the remote username. By default, no remote username is set. This command is only valid on dialer interfaces in RS-DCC. On a dialer interface encapsulated with PPP, DCC identifies which dialer interface is to be used for receiving calls based on the remote username obtained through PPP authentication. You may configure multiple dialer users (up to 255) on a dialer interface. This allows DCC to provide accesses to multiple dial interfaces by using one dialer interface. Use this command on a C-DCC enabled dialer interface with caution. It enables RS-DCC and can remove the C-DCC configurations on the interface. Performing the undo dialer user command on a dialer interface can clear all configurations on it. Related commands: ppp pap local-user and ppp chap user. 2-7

# Add a remote username routerb. [Sysname] interface dialer 1 [Sysname-Dialer1] dialer user routerb 2-8