Cisco Cisco Packet Data Interworking Function (PDIF) Guía Para Resolver Problemas
IP Security
▀ Subscriber Attributes for L2TP Application IPSec Support
▄ Cisco ASR 5000 Series Enhanced Feature Configuration Guide
OL-22983-01
Subscriber Attributes for L2TP Application IPSec Support
In addition to the subscriber profile attributes listed in the RADIUS and Subscriber Profile Attributes Used section of the
L2TP Access Concentrator chapter in this guide, the table below lists the attributes required to support IPSec for use
with attribute-based L2TP tunneling.
L2TP Access Concentrator chapter in this guide, the table below lists the attributes required to support IPSec for use
with attribute-based L2TP tunneling.
These attributes are contained in the following dictionaries:
Starent
Starent-835
Table 20.
Subscriber Attributes for IPSec encrypted L2TP Support
RADIUS Attribute
Local
SubscriberAttribute
SubscriberAttribute
Description
Variable
SN1-Tunnel-
ISAKMP-
Crypto-Map
ISAKMP-
Crypto-Map
tunnel l2tp crypto-map
The name of a crypto map
configured on the system.
configured on the system.
A salt-encrypted ascii string specifying the
crypto-map to use for this subscriber. It can be
tagged, in which case it is treated as part of a
tunnel group.
crypto-map to use for this subscriber. It can be
tagged, in which case it is treated as part of a
tunnel group.
SN1 -Tunnel-
ISAKMP- Secret
ISAKMP- Secret
tunnel l2tp crypto-map
isakmp-secret
isakmp-secret
The pre-shared secret that will
be used as part of the D-H
exchange to negotiate an IKE
SA.
be used as part of the D-H
exchange to negotiate an IKE
SA.
A salt-encrypted string specifying the IKE
secret. It can be tagged, in which case it is
treated as part of a tunnel group.
secret. It can be tagged, in which case it is
treated as part of a tunnel group.