cisco ASA5506 pppoe配置
命令:
1.接口 配置:
interface GigabitEthernet1/1
nameif outsid //命名接口 为outside 出口接口
security-level 0 //安全等级0
ip address pppoe setroute //ip获取模式为PPPOE
object-group network SuZhou //命名组 SuZhou
network-object 10.64.6.128 255.255.255.128 //配置改接口地址段
interface GigabitEthernet1/2
nameif inside //命名接口为inside 入口接口
security-level 100
ip address 10.64.6.254 255.255.255.128
access-list inside extended permit icmp any any //访问控制列表 inside 接口 允许 icmp 所有
access-list inside extended permit ip any any //访问控制列表inside 接口 允许 IP 所有
access-list outside extended permit icmp any any //访问控制列表 outside 接口 允许 icmp 所有
nat (inside,outsid) source dynamic SuZhou interface //
access-group outside in interface outsid
access-group inside in interface inside
vpdn group pppoe request dialout pppoe
vpdn group pppoe localname 18115685580 //localname 后面是运营商给到的 拨号账户
vpdn group pppoe ppp authentication chap //配置 认证类型为 chap(或pap)
vpdn username 18115685580 password ***** //配置 拨号 账户 及密码
dhcpd auto_config outsid //
mtu outsid 1500
mtu inside 1500