From: Shanky (shankyz@gmail.com)
Date: Fri Aug 12 2005 - 02:06:54 GMT-3
Hi Kumar,
I suggest you read the Troubleshooting Remote Access book from Cisco Press.
The ISDN sections are really good and explain the things in detail.
Regarding the Authentication requirements, Cisco docs mention that this
needs to be done on both the Physical as well as the Logical I/Fs.
Pls refer
http://www.cisco.com/en/US/tech/tk801/tk133/technologies_configuration_exampl
e09186a0080094cd6.shtml
Hope it helps
Shanky
On 8/11/05, kumara.shunmugam@wipro.com <kumara.shunmugam@wipro.com> wrote:
>
> Hi Guys
>
> I am trying do my ISDN lab where I configured two Dialer profiles at both
> the
> end (R4 ,R5) . Configuration and debug outputs are attached.. The problem
> is,
> if I don't enable "ppp authentication chap" in physical interface also,
> the
> PPP phase won't come up.Currently I have configured the authentication
> command
> only in dialer interface. The moment I include this line in physical
> BRI0/0,
> everything start working fine .. I have tried searching some best practice
> docs in CCO, but found many types of options which seems to be bit
> confusing..
> Can someone who expert on PPP/Dial can suggest ?
>
>
>
>
>
>
>
>
> Confidentiality Notice
>
> The information contained in this electronic message and any attachments
> to
> this message are intended
> for the exclusive use of the addressee(s) and may contain confidential or
> privileged information. If
> you are not the intended recipient, please notify the sender at Wipro or
> Mailadmin@wipro.com immediately
> and destroy all copies of this message and any attachments.
> R4#
> *Mar 1 04:29:05.654: %DIALER-6-BIND: Interface BR0/0:1 bound to profile
> Di0
> *Mar 1 04:29:05.654: %LINK-3-UPDOWN: Interface BRI0/0:1, changed state to
> up
> *Mar 1 04:29:05.658: BR0/0:1 PPP: Using dialer call direction
> *Mar 1 04:29:05.658: BR0/0:1 PPP: Treating connection as a callin
> *Mar 1 04:29:05.658: BR0/0:1 PPP: Phase is ESTABLISHING, Passive Open
> *Mar 1 04:29:05.658: BR0/0:1 LCP: State is Listen
> *Mar 1 04:29:05.886: BR0/0:1 LCP: I CONFREQ [Listen] id 11 len 19
> *Mar 1 04:29:05.886: BR0/0:1 LCP: MagicNumber 0x045F88D4 (0x0506045F88D4)
> *Mar 1 04:29:05.886: BR0/0:1 LCP: MRRU 1524 (0x110405F4)
> *Mar 1 04:29:05.886: BR0/0:1 LCP: EndpointDisc 1 R5 (0x1305015235)
> *Mar 1 04:29:05.886: BR0/0:1 PPP: Authorization required
> *Mar 1 04:29:05.886: BR0/0:1 LCP: O CONFREQ [Listen] id 7 len 24
> *Mar 1 04:29:05.886: BR0/0:1 LCP: AuthProto CHAP (0x0305C22305)
> *Mar 1 04:29:05.886: BR0/0:1 LCP: MagicNumber 0xB15A9F69 (0x0506B15A9F69)
> *Mar 1 04:29:05.886: BR0/0:1 LCP: EndpointDisc 1 R4 (0x1305015234)
> *Mar 1 04:29:05.886: BR0/0:1 LCP: O CONFACK [Listen] id 11 len 19
> *Mar 1 04:29:05.886: BR0/0:1 LCP: MagicNumber 0x045F88D4 (0x0506045F88D4)
> *Mar 1 04:29:05.890: BR0/0:1 LCP: MRRU 1524 (0x110405F4)
> *Mar 1 04:29:05.890: BR0/0:1 LCP: EndpointDisc 1 R5 (0x1305015235)
> *Mar 1 04:29:05.906: BR0/0:1 LCP: I CONFACK [ACKsent] id 7 len 24
> *Mar 1 04:29:05.906: BR0/0:1 LCP: AuthProto CHAP (0x0305C22305)
> *Mar 1 04:29:05.906: BR0/0:1 LCP: MagicNumber 0xB15A9F69 (0x0506B15A9F69)
> *Mar 1 04:29:05.906: BR0/0:1 LCP: MRRU 1524 (0x110405F4)
> *Mar 1 04:29:05.906: BR0/0:1 LCP: EndpointDisc 1 R4 (0x1305015234)
> *Mar 1 04:29:05.906: BR0/0:1 LCP: State is Open
> *Mar 1 04:29:05.906: BR0/0:1 PPP: Phase is AUTHENTICATING, by this end
> *Mar 1 04:29:05.906: BR0/0:1 CHAP: O CHALLENGE id 7 len 23 from "R4"
> *Mar 1 04:29:05.922: BR0/0:1 CHAP: I RESPONSE id 7 len 23 from "R5"
> *Mar 1 04:29:05.926: BR0/0:1 PPP: Phase is FORWARDING, Attempting Forward
> *Mar 1 04:29:05.926: BR0/0:1 PPP: Phase is AUTHENTICATING, Unauthenticated
> User
> *Mar 1 04:29:05.926: BR0/0:1 PPP: Sent CHAP LOGIN Request
> *Mar 1 04:29:05.930: BR0/0:1 PPP: Received LOGIN Response PASS
> *Mar 1 04:29:05.930: BR0/0:1 PPP: Phase is FORWARDING, Attempting Forward
> *Mar 1 04:29:05.930: BR0/0:1 PPP: Phase is AUTHENTICATING, Authenticated
> User
> *Mar 1 04:29:05.930: BR0/0:1 PPP: Sent LCP AUTHOR Request
> *Mar 1 04:29:05.930: BR0/0:1 LCP: Received AAA AUTHOR Response PASS
> *Mar 1 04:29:05.930: BR0/0:1 CHAP: O SUCCESS id 7 len 4
> *Mar 1 04:29:05.934: BR0/0:1 PPP: Phase is VIRTUALIZED
> *Mar 1 04:29:05.934: Di0 MLP: Added first link BR0/0:1 to bundle R5
> *Mar 1 04:29:05.934: Di0 PPP: Using dialer call direction
> *Mar 1 04:29:05.934: Di0 PPP: Treating connection as a callin
> *Mar 1 04:29:05.934: Di0 PPP: Phase is UP
> *Mar 1 04:29:05.938: Di0 IPCP: O CONFREQ [Closed] id 1 len 10
> *Mar 1 04:29:05.938: Di0 IPCP: Address 149.1.45.4
<http://149.1.45.4>(0x030695012D04)
> *Mar 1 04:29:05.938: Di0 CDPCP: O CONFREQ [Closed] id 1 len 4
> *Mar 1 04:29:05.938: Di0 PPP: Process pending packets
> *Mar 1 04:29:05.938: BR0/0:1 PPP: Process pending packets
> *Mar 1 04:29:05.938: BR0/0:1 PPP: Process pending packets
> *Mar 1 04:29:05.954: BR0/0:1 LCP: I TERMREQ [Open] id 12 len 4
> *Mar 1 04:29:05.954: BR0/0:1 LCP: O TERMACK [Open] id 12 len 4
> *Mar 1 04:29:05.954: BR0/0:1 PPP: Sending Acct Event[Down] id[20]
> *Mar 1 04:29:05.954: BR0/0:1 PPP: Phase is TERMINATING
> *Mar 1 04:29:05.958: Di0 PPP: Sending Acct Event[Down] id[21]
> *Mar 1 04:29:05.958: Di0 CDPCP: State is Closed
> *Mar 1 04:29:05.958: Di0 IPCP: State is Closed
> *Mar 1 04:29:05.958: Di0 BACP: State is Closed
> *Mar 1 04:29:05.958: Di0 PPP: Phase is TERMINATING
> *Mar 1 04:29:05.958: Di0 LCP: State is Closed
> *Mar 1 04:29:05.958: Di0 PPP: Phase is DOWN
> *Mar 1 04:29:06.086: %ISDN-6-CONNECT: Interface BRI0/0:1 is now connected
> to 22
> 2222 R5
> *Mar 1 04:29:06.086: %LINK-3-UPDOWN: Interface BRI0/0:1, changed state to
> down
> *Mar 1 04:29:06.090: %DIALER-6-UNBIND: Interface BR0/0:1 unbound from
> profile D
> i0
> *Mar 1 04:29:06.090: BR0/0:1 LCP: State is Closed
> *Mar 1 04:29:06.090: BR0/0:1 PPP: Phase is DOWN
> R4#
> R4#
>
> R4#debug dialer
> Dial on demand events debugging is on
> R4#
> R4#
> *Mar 1 04:31:19.986: BR0/0:1: interface must be fifo queue, force fifo
> *Mar 1 04:31:19.986: %DIALER-6-BIND: Interface BR0/0:1 bound to profile
> Di0
> *Mar 1 04:31:19.990: %LINK-3-UPDOWN: Interface BRI0/0:1, changed state to
> up
> R4#
> *Mar 1 04:31:20.242: BR0/0:1 DDR: Remote name for R5
> *Mar 1 04:31:20.418: %ISDN-6-CONNECT: Interface BRI0/0:1 is now connected
> to 22
> 2222 R5
> *Mar 1 04:31:20.422: %LINK-3-UPDOWN: Interface BRI0/0:1, changed state to
> down
> *Mar 1 04:31:20.422: BR0/0 DDR: has total -1 call(s), dial_out -1, dial_in
> 0
> *Mar 1 04:31:20.422: %DIALER-6-UNBIND: Interface BR0/0:1 unbound from
> profile D
> i0
> R4#
> *Mar 1 04:31:20.426: BR0/0:1 DDR: disconnecting call
> R4#
> hostname R4
> !
> logging queue-limit 100
> enable password cisco
> !
> username R5 password 0 CISCO
> memory-size iomem 15
> ip subnet-zero
> !
> !
> no ip domain lookup
> !
> mpls ldp logging neighbor-changes
> isdn switch-type basic-net3
> !
> !
> !
> !
> !
> !
> !
> !
> !
> no voice hpi capture buffer
> no voice hpi capture destination
> !
> !
> mta receive maximum-recipients 0
> !
> !
> !
> !
> interface Loopback0
> ip address 150.1.4.4 <http://150.1.4.4> 255.255.255.0<http://255.255.255.0>
> !
> interface Ethernet0/0
> ip address 149.1.44.4 <http://149.1.44.4>
255.255.255.0<http://255.255.255.0>
> half-duplex
> !
> interface Serial0/0
> ip address 149.1.254.4 <http://149.1.254.4>
255.255.255.0<http://255.255.255.0>
> encapsulation frame-relay
> frame-relay map ip 149.1.254.5 <http://149.1.254.5> 405 broadcast
> no frame-relay inverse-arp
> !
> interface BRI0/0
> no ip address
> encapsulation ppp
> dialer pool-member 1
> isdn switch-type basic-net3
> ppp multilink
> !
> interface Ethernet1/0
> ip address 149.1.4.4 <http://149.1.4.4> 255.255.255.0<http://255.255.255.0>
> half-duplex
> !
> interface Dialer0
> ip address 149.1.45.4 <http://149.1.45.4>
255.255.255.0<http://255.255.255.0>
> encapsulation ppp
> load-interval 600
> dialer pool 1
> dialer remote-name R5
> dialer string 222222
> dialer-group 1
> ppp authentication chap
> ppp multilink
> multilink load-threshold 102 inbound
> !
> no ip http server
> ip classless
> !
> !
> !
> !
> access-list 101 deny tcp any any eq www time-range isdn1
> access-list 101 permit ip any any time-range isdn
> dialer-list 1 protocol ip list 101
> !
> !
> call rsvp-sync
> !
> !
> mgcp profile default
> !
> !
> !
> dial-peer cor custom
> !
> !
> !
> !
> line con 0
> exec-timeout 0 0
> privilege level 15
> logging synchronous
> line aux 0
> exec-timeout 0 0
> privilege level 15
> line vty 0 4
> password cisco
> login
> !
> time-range isdn
> periodic weekdays 0:00 to 23:59
> !
> time-range isdn1
> periodic weekdays 17:01 to 23:59
> periodic weekdays 0:00 to 7:59
> !
> !
> end
>
> R4#
> R5#isdn test call inter bri0/0 111111
> R5#
> *Mar 1 04:26:51.984: BR0/0 DDR: Attempting to dial 111111
> *Mar 1 04:26:52.344: %LINK-3-UPDOWN: Interface BRI0/0:1, changed state to
> up
> *Mar 1 04:26:52.348: BR0/0:1 PPP: Using dialer call direction
> *Mar 1 04:26:52.348: BR0/0:1 PPP: Treating connection as a callout
> *Mar 1 04:26:52.348: BR0/0:1 PPP: Phase is ESTABLISHING, Active Open
> *Mar 1 04:26:52.348: BR0/0:1 PPP: Authorization required
> *Mar 1 04:26:52.352: BR0/0:1 PPP: No remote authentication for call-out
> *Mar 1 04:26:52.352: BR0/0:1 LCP: O CONFREQ [Closed] id 11 len 19
> *Mar 1 04:26:52.352: BR0/0:1 LCP: MagicNumber 0x045F88D4 (0x0506045F88D4)
> *Mar 1 04:26:52.352: BR0/0:1 LCP: MRRU 1524 (0x110405F4)
> *Mar 1 04:26:52.352: BR0/0:1 LCP: EndpointDisc 1 R5 (0x1305015235)
> *Mar 1 04:26:52.368: BR0/0:1 LCP: I CONFREQ [REQsent] id 7 len 24
> *Mar 1 04:26:52.368: BR0/0:1 LCP: AuthProto CHAP (0x0305C22305)
> *Mar 1 04:26:52.368: BR0/0:1 LCP: MagicNumber 0xB15A9F69 (0x0506B15A9F69)
> *Mar 1 04:26:52.368: BR
> R5#0/0:1 LCP: MRRU 1524 (0x110405F4)
> *Mar 1 04:26:52.368: BR0/0:1 LCP: EndpointDisc 1 R4 (0x1305015234)
> *Mar 1 04:26:52.372: BR0/0:1 LCP: O CONFACK [REQsent] id 7 len 24
> *Mar 1 04:26:52.372: BR0/0:1 LCP: AuthProto CHAP (0x0305C22305)
> *Mar 1 04:26:52.372: BR0/0:1 LCP: MagicNumber 0xB15A9F69 (0x0506B15A9F69)
> *Mar 1 04:26:52.372: BR0/0:1 LCP: MRRU 1524 (0x110405F4)
> *Mar 1 04:26:52.372: BR0/0:1 LCP: EndpointDisc 1 R4 (0x1305015234)
> *Mar 1 04:26:52.376: BR0/0:1 LCP: I CONFACK [ACKsent] id 11 len 19
> *Mar 1 04:26:52.376: BR0/0:1 LCP: MagicNumber 0x045F88D4 (0x0506045F88D4)
> *Mar 1 04:26:52.376: BR0/0:1 LCP: MRRU 1524 (0x110405F4)
> *Mar 1 04:26:52.376: BR0/0:1 LCP: EndpointDisc 1 R5 (0x1305015235)
> *Mar 1 04:26:52.376: BR0/0:1 LCP: State is Open
> *Mar 1 04:26:52.376: BR0/0:1 PPP: No authorization without authentication
> *Mar 1 04:26:52.380: BR0/0:1 PPP: Phase is AUTHENTICATING, by the peer
> *Mar 1 04:26:52.388: BR0/0:1 CHAP: I CHALLENGE id 7 len 23 from "R4"
> *Mar 1 04:26:52.392: BR0/0:1 CHAP: Using hostname from unknown source
> *Mar 1 04:26:52.392: BR0/0:1 CHAP: Using password from AAA
> *Mar 1 04:26:52.392: BR0/0:1 CHAP: O RESPONSE id 7 len 23 from "R5"
> *Mar 1 04:26:52.408: BR0/0:1 CHAP: I SUCCESS id 7 len 4
> *Mar 1 04:26:52.408: BR0/0:1 PPP: Phase is FORWARDING, Attempting Forward
> *Mar 1 04:26:52.416: BR0/0:1 PPP: Phase is ESTABLISHING, Finish LCP
> *Mar 1 04:26:52.416: BR0/0:1 PPP: Phase is VIRTUALIZED
> *Mar 1 04:26:52.416: BR0/0:1 PPP: Queue CDPCP code[1] id[1]
> *Mar 1 04:26:52.416: BR0/0:1 PPP: Queue IPCP code[1] id[1]
> *Mar 1 04:26:52.420: BR0/0:1 PPP: Sending Acct Event[Down] id[1B]
> *Mar 1 04:26:52.424: BR0/0:1 PPP: Phase is TERMINATING
> *Mar 1 04:26:52.424: BR0/0:1 LCP: O TERMREQ [Open] id 12 len 4
> *Mar 1 04:26:52.424: Vi2 PPP: Phase is DOWN, Setup
> *Mar 1 04:26:52.432: BR0/0:1 LCP: I TERMACK [TERMsent] id 12 len 4
> *Mar 1 04:26:52.432: BR0/0:1 LCP: State is Closed
> *Mar 1 04:26:52.432: BR0/0:1 PPP: Phase is DOWN
> *Mar 1 04:26:52.432: BR0/0:1 DDR: disconnecting call
> *Mar 1 04:26:52.432: BR0/0:1 PPP: Phase is ESTABLISHING, Passive Open
> *Mar 1 04:26:52.432: BR0/0:1 LCP: State is Listen
> *Mar 1 04:26:52.436: %ISDN-6-CONNECT: Interface BRI0/0:1 is now connected
> to 11
> 1111 R4
> *Mar 1 04:26:52.568: %LINK-3-UPDOWN: Interface BRI0/0:1, changed state to
> down
> *Mar 1 04:26:52.572: BR0/0:1 LCP: State is Closed
> *Mar 1 04:26:52.572: BR0/0:1 PPP: Phase is DOWN
> *Mar 1 04:26:52.572: BR0/0:1 DDR: disconnecting call
> R5#
> R5#
>
>
> R5#debug dialer
> Dial on demand events debugging is on
> R5#isdn test call inter bri0/0 111111
> R5#
> *Mar 1 04:28:44.380: BR0/0 DDR: Attempting to dial 111111
> *Mar 1 04:28:44.756: %LINK-3-UPDOWN: Interface BRI0/0:1, changed state to
> up
> *Mar 1 04:28:44.824: BR0/0:1 DDR: disconnecting call
> *Mar 1 04:28:44.828: %ISDN-6-CONNECT: Interface BRI0/0:1 is now connected
> to 11
> 1111 R4
> *Mar 1 04:28:44.981: %LINK-3-UPDOWN: Interface BRI0/0:1, changed state to
> down
> R5#
> *Mar 1 04:28:44.985: BR0/0:1 DDR: disconnecting call
> R5#isdn test call inter bri0/0 111111
> R5#
> *Mar 1 04:29:06.340: BR0/0 DDR: Attempting to dial 111111
> *Mar 1 04:29:06.668: %LINK-3-UPDOWN: Interface BRI0/0:1, changed state to
> up
> *Mar 1 04:29:06.732: BR0/0:1 DDR: disconnecting call
> *Mar 1 04:29:06.732: %ISDN-6-CONNECT: Interface BRI0/0:1 is now connected
> to 11
> 1111 R4
> *Mar 1 04:29:06.897: %LINK-3-UPDOWN: Interface BRI0/0:1, changed state to
> down
> R5#
> *Mar 1 04:29:06.901: BR0/0:1 DDR: disconnecting call
> R5#
> !
> hostname R5
> !
> logging queue-limit 100
> enable password cisco
> !
> username R4 password 0 CISCO
> ip subnet-zero
> !
> !
> no ip domain lookup
> !
> mpls ldp logging neighbor-changes
> isdn switch-type basic-net3
> !
> !
> !
> !
> !
> !
> !
> !
> !
> no voice hpi capture buffer
> no voice hpi capture destination
> !
> !
> mta receive maximum-recipients 0
> !
> !
> !
> !
> interface Loopback0
> ip address 150.1.5.5 <http://150.1.5.5> 255.255.255.0<http://255.255.255.0>
> !
> interface Ethernet0/0
> ip address 149.1.5.5 <http://149.1.5.5> 255.255.255.0<http://255.255.255.0>
> half-duplex
> !
> interface Serial0/0
> ip address 149.1.254.5 <http://149.1.254.5>
255.255.255.0<http://255.255.255.0>
> encapsulation frame-relay
> frame-relay map ip 149.1.254.3 <http://149.1.254.3> 513 broadcast
> frame-relay map ip 149.1.254.4 <http://149.1.254.4> 504 broadcast
> no frame-relay inverse-arp
> !
> interface BRI0/0
> no ip address
> encapsulation ppp
> dialer pool-member 1
> isdn switch-type basic-net3
> ppp multilink
> !
> interface Serial0/1
> no ip address
> shutdown
> !
> interface FastEthernet1/0
> ip address 149.1.0.5 <http://149.1.0.5> 255.255.255.0<http://255.255.255.0>
> duplex auto
> speed auto
> !
> interface Dialer0
> ip address 149.1.45.5 <http://149.1.45.5>
255.255.255.0<http://255.255.255.0>
> encapsulation ppp
> dialer pool 1
> dialer string 111111
> dialer-group 1
> dialer remote-name R4
> ppp authentication chap
> ppp multilink
> !
> no ip http server
> ip classless
> !
> !
> !
> access-list 101 deny tcp any any eq www time-range isdn1
> access-list 101 permit ip any any time-range isdn
> dialer-list 1 protocol ip list 101
> !
> !
> call rsvp-sync
> !
> !
> mgcp profile default
> !
> dial-peer cor custom
> !
> !
> !
> !
> line con 0
> exec-timeout 0 0
> privilege level 15
> logging synchronous
> line aux 0
> exec-timeout 0 0
> privilege level 15
> line vty 0 4
> password cisco
> login
> !
> time-range isdn
> periodic weekdays 0:00 to 23:59
> !
> time-range isdn1
> periodic weekdays 17:01 to 23:59
> periodic weekdays 0:00 to 7:59
> !
> !
> end
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html
This archive was generated by hypermail 2.1.4 : Sun Sep 04 2005 - 17:01:19 GMT-3