[MainServer] domain domain1
[MainServer-isp-domain1] authentication default radius-scheme radsun
[MainServer-isp-domain1] accounting default radius-scheme radsun
[MainServer-isp-domain1] quit
[MainServer] domain default enable domain1
Configure the VAM server.
■
# Specify the listening address of the server.
[MainServer] vam server ip-address 192.168.1.22
# Create VPN domain 1.
[MainServer] vam server vpn 1
# Set the pre-shared key to 123.
[MainServer-vam-server-vpn-1] pre-shared-key simple 123
# Enable CHAP authentication for VAM clients.
[MainServer-vam-server-vpn-1] authentication-method chap
# Configure IP addresses for the Hubs in VPN 1.
[MainServer-vam-server-vpn-1] hub private-ip 10.0.1.1
[MainServer-vam-server-vpn-1] hub private-ip 10.0.1.2
[MainServer-vam-server-vpn-1] quit
# Create VPN domain 2.
[MainServer] vam server vpn 2
# Set the pre-shared key to 456.
[MainServer-vam-server-vpn-2] pre-shared-key simple 456
# Enable PAP authentication for VAM clients.
[MainServer-vam-server-vpn-2] authentication-method pap
# Configure IP addresses for the Hubs in VPN 2.
[MainServer-vam-server-vpn-2] hub private-ip 10.0.2.1
[MainServer-vam-server-vpn-2] hub private-ip 10.0.2.2
[MainServer-vam-server-vpn-1] quit
# Enable VAM server for all VPNs.
[MainServer] vam server enable all
2 Configure the secondary VAM server (backup)
Except for the listening IP address, the configurations for the secondary VAM
server are the same as those for the primary VAM server and are thus omitted.
3 Configure Hub 1
Configure IP addresses for the interfaces (omitted).
■
Configure the VAM clients.
■
<Hub1> system-view
# Create a VAM client named dvpn1hub1 for VPN 1.
[Hub1] vam client name dvpn1hub1
[Hub1-vam-client-name-dvpn1hub1] vpn 1
# Specify the VAM servers and set the pre-shared key for the VAM client.
DVPN Configuration Example
1573