Operation Manual - Link Layer Protocol
H3C SecPath F1800-A Firewall
Chapter 2 PPP Configuration
4-20
2.4.2 CHAP Authentication Example
I. Networking Requirement
In
, the SecPath F1800-A is required to authenticate the router in CHAP
mode.
II. Networking Diagram
SecPath
Serial3/0/0
Router
Serial3/0/0
Figure 2-3
Networking diagram of CHAP authentication
III. Configuration Procedure
1)
Configuring the SecPath F1800-A
[SecPath-aaa]
local-user SecPath2 password simple hello
[SecPath-aaa]
quit
[SecPath]
interface serial 3/0/0
[SecPath-Serial3/0/0]
ppp chap user SecPath1
[SecPath-Serial3/0/0]
ppp authentication-mode chap
2)
Configuring the router
[SecPath-aaa]
local-user SecPath1 password simple hello
[SecPath-aaa]
quit
[SecPath]
interface serial 3/0/0
[SecPath-Serial3/0/0]
ppp chap user SecPath2
2.5 Troubleshooting PPP
Fault 1: Link always fails to turn to the Up status.
Analysis: PPP authentication parameters are likely to be set incorrectly. As a result,
PPP authentication fails.
Troubleshooting:
1) Debug PPP, and it is displayed that LCP negotiation is successful and turns to
Up status.
2)
Perform PAP or CHAP negotiation and then LCP turns to Down status.
Fault 2: Physical link fails to turn to Up status.
Troubleshooting: Use the
display interface
type number
command to view the
current state of the interface.
The following states are involved:
1)
The interface is not activated or the physical layer does not turn to Up state.