先安裝了RHEL5,然后到http://www.xelerance.com/software/xl2tpd/上下載了xl2tpd-1.1.11.tar.gz,解壓后,進(jìn)入該解壓目錄,然后編譯、安裝:
#make
#make install
安裝完畢后,修改相關(guān)的配置文件:
1、修改/etc/xl2tpd/xl2tpd.conf,內(nèi)容如下:
[lns default]
ip range = 192.168.191.2-192.168.191.254
local ip = 192.168.191.1
require chap = yes
refuse pap = yes
require authentication = yes
name = l2tpvpnserver
ppp debug = yes
pppoptfile = /etc/ppp/options.xl2tpd
length bit = yes
2、修改/etc/ppp/options.xl2tpd,內(nèi)容如下:
ipcp-accept-local
ipcp-accept-remote
noccp
auth
crtscts
idle 1800
mtu 1410
mru 1410
nodefaultroute
debug
lock
proxyarp
connect-delay 5000
3、修改/etc/ppp/chap-secrets,內(nèi)容如下
myvpntest * myvpntest *
4、編輯/etc/init.d/xl2tpd文件,內(nèi)容如下:
#!/bin/sh
#
# xl2tpd This shell script takes care of starting and stopping l2tpd.
#
# chkconfig: - 80 30
# description: Layer 2 Tunnelling Protocol Daemon (RFC 2661)
#
# processname: xl2tpd
# config: /etc/xl2tpd/xl2tpd.conf
# pidfile: /var/run/xl2tpd.pid
#Servicename
SERVICE=xl2tpd
# Source function library.
. /etc/rc.d/init.d/functions
# Source networking configuration.
. /etc/sysconfig/network
if [ ${NETWORKING} = "no" ]
then
exit 0
fi
[ -x /usr/sbin/$SERVICE ] || exit 0
RETVAL=0
start() {
echo -n "Starting $SERVICE: "
if [ ! -d /var/run/xl2tpd ]
then
mkdir /var/run/xl2tpd
fi
daemon $SERVICE
RETVAL=$?
[ $RETVAL -eq 0 ] && touch /var/lock/subsys/$SERVICE
echo ""
return $RETVAL
}
stop() {
echo -n "Stopping $SERVICE: "
killproc $SERVICE
RETVAL=$?
echo
[ $RETVAL -eq 0 ] && rm -f /var/lock/subsys/$SERVICE
return $RETVAL
}
restart() {
stop
start
}
# See how we were called.
case "$1" in
start)
start
;;
stop)
stop
;;
status)
status $SERVICE
RETVAL=$?
;;
restart|reload)
restart
;;
condrestart)
[ -f /var/lock/subsys/$SERVICE ] && restart || :
;;
*)
echo "Usage: $SERVICE {start|stop|status|restart|reload|condrestart}"
exit 1
esac |
用chmod命令給xl2tpd文件賦予可執(zhí)行權(quán)限:
#chmod +x xl2tpd
將xl2tpd加入到系統(tǒng)服務(wù)中去:
#chkconfig --add xl2tpd
用setup命令設(shè)置xl2tpd服務(wù)為開機(jī)自動啟動。
至此,L2TP的VPN服務(wù)器配置完成。在Windows XP中建立一個(gè)VPN連接,IP輸入這個(gè)服務(wù)器的IP地址,
用戶名myvpntest,密碼myvpntest,連接,哈,上去了。