1.实验要求
2.实验步骤
1、在 R2 和 R3 上创建 MP-GROUP
[R2]int Mp-group 0/0/0
[R3]int p-group 0/0/0
2、把 R2、R3 上的接口加入到上一步创建的 MP-GROUP
[R2]int Serial 3/0/1
[R2-Serial3/0/1]ppp mp Mp-group 0/0/0
[R2]int Serial 4/0/0
[R2-Serial4/0/0]ppp mp Mp-group 0/0/0
[R3]int Serial 3/0/0
[R3-Serial3/0/0]ppp mp Mp-group 0/0/0
[R3]int Serial 3/0/1
[R3-Serial3/0/1]ppp mp Mp-group 0/0/0
3.按照图示配置IP地址
①:R1 和 R2的直连链路
[Rl]int Serial 3/0/0
[R1-Serial3/0/0]ip add 192.168.1.1 24
[R2]int Serial 3/0/0
[R2-Serial3/0/0]ip add 192.168.1.2 24
②:在R2和R3 的MP-GROUP 口上配置IP地址
[R2]int Mp-group 0/0/0
[R2-Mp-group0/0/0]ip add 192.168.2.2 24
[R3]int Mp-group 0/0/0
[R3-Mp-group0/0/0]ip add 192.168.2.3 24
4、R2对R1的PPP 进行单向 chap 验证
需要在R2上创建用于验证的用户
①:在 R2 上创建用于验证R1的用户,并在接口配置 chap 验证方式
[R2]aaa
[R2-aaa]local-user wangdaye password cipher wdy12345
[R2-aaa]local-user wangdaye service-type ppp
[R2]int Serial 3/0/0
[R2-Serial3/0/0]ppp authentication-mode chap
②:在R1 连接R2的接口上配置用于验证的用户名和密码
[Rl]interface Serial 3/0/0
[R1-Serial3/0/0]ppp chap user wangdaye
[R1-Serial3/0/0]ppp chap password cipher wdy12345
③:关闭再开启R1和R2的PPP链路,检查验证是否能够通过
5、R2和R3 的PPP 进行双向 chap 验证
R2和R3双方都需要创建用于验证的用户且需要在各自接口上配置对端的用户名
①R2主 R3被
[R2]aaa
[R2-aaa]local-user wangdaye password cipher wdy12345
[R2-aaa]local-user wangdaye service-type ppp
[R2]int Serial 3/0/1
[R2-Serial3/0/1]ppp authentication-mode chap
[R2-Serial3/0/1]int Serial 4/0/0
[R2-Serial4/0/0]ppp authentication-mode chap
②R3主 R2被
[R3]int Serial 3/0/0
[R3-Serial3/0/0]ppp chap user wangdaye
[R3-Serial3/0/0]ppp chap password cipher wdy12345
[R3]int Serial 3/0/1
[R3-Serial3/0/1]ppp chap user wangdaye
[R3-Serial3/0/1]ppp chap password cipher wdy12345
[R3]ping 192.168.2.2
[R3]aaa
[R3-aaa]local-user wangdaye password cipher wdy12345
[R3-aaa]local-user wangdaye service-type ppp
[R3]int Serial 3/0/0
[R3-Serial3/0/0]ppp chap user wangdaye
[R3-Serial3/0/0]ppp authentication-mode chap
[R2]ping 192.168.2.3