LINUX.ORG.RU

История изменений

Исправление ZANSWER, (текущая версия) :

Установите в no.

https://linux.die.net/man/5/xl2tpd.conf

(refuse | require) authentication Will require or refuse the remote peer to authenticate itself.

RFC 2661:Layer Two Tunneling Protocol «L2TP»

5.1.1 Tunnel Authentication

L2TP incorporates a simple, optional, CHAP-like [RFC1994] tunnel authentication system during control connection establishment. If an LAC or LNS wishes to authenticate the identity of the peer it is contacting or being contacted by, a Challenge AVP is included in the SCCRQ or SCCRP message. If a Challenge AVP is received in an SCCRQ or SCCRP, a Challenge Response AVP MUST be sent in the following SCCRP or SCCCN, respectively. If the expected response and response received from a peer does not match, establishment of the tunnel MUST be disallowed.

To participate in tunnel authentication, a single shared secret MUST exist between the LAC and LNS. This is the same shared secret used for AVP hiding (see Section 4.3). See Section 4.4.3 for details on construction of the Challenge and Response AVPs.

Исходная версия ZANSWER, :

Установите в no.

https://linux.die.net/man/5/xl2tpd.conf

(refuse | require) authentication Will require or refuse the remote peer to authenticate itself.