Configuring Nat-T - Juniper JUNOSE 11.0.X IP SERVICES Configuration Manual

For e series broadband services routers - ip services configuration
Table of Contents

Advertisement

JUNOSe 11.0.x IP Services Configuration Guide
5.
For information about other L2TP destination profile commands, see LNS
Configuration Prerequisites.
enable ipsec-transport
l2tp destination profile
NOTE: If you remove a destination profile, all tunnels and sessions using that profile
will be dropped.

Configuring NAT-T

To configure NAT-T on the current virtual router:
1.
298
L2TP/IPSec Tunnels
host1(config-l2tp-dest-profile-host)#profile georgeProfile1
Specify the local IP address to be used in any packets sent to the LAC.
host1(config-l2tp-dest-profile-host)#local ip address 10.0.0.1
Use to specify that the router accept only L2TP tunnels protected by an IPSec
transport connection.
Example
host1(config-l2tp-dest-profile-host)#enable ipsec-transport
Use the no version to disable IPSec transport mode.
See enable ipsec-transport.
Use to create the destination profile that defines the location of the LAC and to
access L2TP Destination Profile Configuration mode.
If no virtual router is specified, the current virtual router context is used.
If the destination address is 0.0.0.0, then any LAC that can be reached via the
specified virtual router is allowed to access the LNS. If the destination address
is nonzero, then it must be a host-specific IP address.
The router supports up to 4,000 L2TP destination profiles.
Example
host1:boston(config)#l2tp destination profile boston ip address 10.10.76.12
host1:boston(config-l2tp-dest-profile)#
Use the no version to remove the L2TP destination profile and all of its host
profiles.
See l2tp destination profile.
Select the name of the virtual router you want to configure.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Junose 11.0.x

Table of Contents