IP Security
Subscriber Attributes for L2TP Application IPSec Support
In addition to the subscriber profile attributes listed in the RADIUS and Subscriber Profile Attributes Used section of the
L2TP Access Concentrator chapter in this guide, the table below lists the attributes required to support IPSec for use
with attribute-based L2TP tunneling.
These attributes are contained in the following dictionaries:
Starent
Starent-835
Table 15.
RADIUS Attribute
Local
SubscriberAttribute
SN1-Tunnel-
tunnel l2tp crypto-map
ISAKMP-
Crypto-Map
SN1 -Tunnel-
tunnel l2tp crypto-map
ISAKMP- Secret
isakmp-secret
OL-25069-03
Subscriber Attributes for IPSec encrypted L2TP Support
Description
The name of a crypto map
configured on the system.
The pre-shared secret that will
be used as part of the D-H
exchange to negotiate an IKE
SA.
Subscriber Attributes for L2TP Application IPSec Support ▀
Variable
A salt-encrypted ascii string specifying the
crypto-map to use for this subscriber. It can be
tagged, in which case it is treated as part of a
tunnel group.
A salt-encrypted string specifying the IKE
secret. It can be tagged, in which case it is
treated as part of a tunnel group.
Cisco ASR 5000 Series 3G Home NodeB Gateway Administration Guide ▄
173