Solved

PPPOE cisco and radius

Posted on 2006-10-19
6
1,412 Views
Last Modified: 2013-11-16
Hi, Ive had some questions posed to me.  Looking for answers.  We want to use a cisco router to provide PPPOE service to customers.  The customers need to use our radius server to authenticate.  What are some ways of doing this?  What IOS would be necessary? This is a hypothetical.  Points divided amongst answers.
0
Comment
Question by:Rebelnorth
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
6 Comments
 
LVL 12

Accepted Solution

by:
Freya28 earned 250 total points
ID: 17767403
to use the PPPOE from your provider you will have to configure the vpdn commands on the pix and enter you PPPOE credentials.  for radius.  you will have to configure the pix's aaa-server commands for radius and have a RADIUS server on your network that the users credentials are on.  I use Microsoft servers built in IAS service  (Internet Authentication Server).


PPPOE

ip address ifName pppoe [setroute]
vpdn group group_name request dialout pppoe
vpdn group group_name ppp authentication PAP|CHAP|MSCHAP
vpdn group group_name localname username
vpdn username username password pass

http://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/pix_62/config/pixclnt.htm#xtocid5

For Radius


aaa-server RADIUS max-failed-attempts 3
aaa-server RADIUS deadtime 10
aaa-server RADIUS (inside) host x.x.x.x password timeout 20

crypto map mymap client authentication RADIUS

and after this, x.x.x.x above is the ip address of your radius server.  the rest of the config is on the radius server, you just add the host (ip address of the inside interface of the pix) in radius and add a user policy

0
 
LVL 1

Assisted Solution

by:Sean64
Sean64 earned 250 total points
ID: 17769880
That works great if you want a PPPOE client.  I think Rebelnorth is asking about a PPPOE server though.
That will require special configuration of your RADIUS server as well as the router.

Are you looking for a server or client type solution?
If you need a client solution, see above.  Otherwise if you need a server solution there are more obstacles ahead.

What type of router do you have?
What version of IOS is it running?

PPPOE server functionality has only recently been added to router IOS.  And you'll need a fairly new router in order to run the newer revisions of IOS.
0
 
LVL 12

Expert Comment

by:Freya28
ID: 17769907
point taken.  i looked and responded quick.  the code i posted was ctually for Cisco PIX.  Rebel.  if iti s a client solution yu are looking for then i will post the code for the IOS instead PIX OS
0
 
LVL 1

Expert Comment

by:Sean64
ID: 17769998
Hehe, my bad, I should have read your entire question myself.  :p

It would depend on how many customers you are going to support as well as how much bandwidth each user will need.
Also, since you are looking for PPPOE, are you planning on providing DSL to these customers?  I am assuming that you are not using DSL.  However if that is what you need, you will need a larger router, called a DSLAM.  These devices are what ISPs use for DSL termination.

For 1-10 users requiring 1Mb each, I would spec the following:
2811 Router with no less than 128MB RAM and 32MB Flash.  Prefereably double that.
IOS Version 12.3+

0

Featured Post

Salesforce Has Never Been Easier

Improve and reinforce salesforce training & adoption using WalkMe's digital adoption platform. Start saving on costly employee training by creating fast intuitive Walk-Thrus for Salesforce. Claim your Free Account Now

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Meet the world's only “Transparent Cloud™” from Superb Internet Corporation. Now, you can experience firsthand a cloud platform that consistently outperforms Amazon Web Services (AWS), IBM’s Softlayer, and Microsoft’s Azure when it comes to CPU and …
When you try to share a printer , you may receive one of the following error messages. Error message when you use the Add Printer Wizard to share a printer: Windows could not share your printer. Operation could not be completed (Error 0x000006…
Internet Business Fax to Email Made Easy - With  eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, f…
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.

733 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question