Got it

AR161f

Created: Nov 1, 2019 12:48:05Latest reply: Nov 4, 2019 02:13:14 822 10 0 0 0
  Rewarded HiCoins: 0 (problem resolved)

hello

the cellular interface cant accsept ppp confguratin and not work as AR169gwl  configurtion , need help please


Featured Answers
Popeye_Wang
Admin Created Nov 4, 2019 02:13:14

Is the IPSec tunnel not established? Or is the IPSec tunnel established successfully, but the services are interrupted? You said the same configuration works normally on AR169gwl. (I don't find this model, is it AR169G-L?)   Is this version of it the same as the AR161f you are using now?

View more
  • x
  • convention:

All Answers
@abka2980 hello,
are you trying to configure PPPoE on the Cellular interface?
View more
  • x
  • convention:

no , my configuration is return
[Huawei-Cellular0/0/0]dis this
[V200R009C00SPC500]
#
interface Cellular0/0/0
tcp adjust-mss 1460
dialer enable-circular
apn-profile stat
dialer timer autodial 10
dialer number *99# autodial
ipsec policy PolicyMap
ip address negotiate
#
notice if i not use ipsec its come up

View more
  • x
  • convention:

but in anther vrp virgin it work normally
View more
  • x
  • convention:

my ipsec configuration is
acl number 3000
rule 1 permit ip
#
ipsec proposal IPSec_Phase2
esp authentication-algorithm sha1
esp encryption-algorithm aes-128
#
ike proposal default
encryption-algorithm aes-128
dh group2
authentication-algorithm sha1
authentication-method pre-share
integrity-algorithm hmac-sha1-96
prf hmac-sha1
ike proposal 2
encryption-algorithm aes-128
dh group2
authentication-algorithm sha1
authentication-method pre-share
integrity-algorithm hmac-sha1-96
prf hmac-sha1
#
ike peer Backup_PE
pre-shared-key simple cisco
ike-proposal 2
local-address x.x.x.x.
remote-address y.y.y.y
#
ipsec policy PolicyMap 1 isakmp
security acl 3000
pfs dh-group2
ike-peer Backup_PE
proposal IPSec_Phase2
View more
  • x
  • convention:

Posted by abka2980 at 2019-11-01 16:13 no , my configuration is return[Huawei-Cellular0/0/0]dis this[V200R009C00SPC500]#interface Cellular0 ...
So, you mean the connection could work normal while the ipsec policy doesn't configured, connection interrupted while the ipsec policy configured.
Am I right?
View more
  • x
  • convention:

yes ., i think that
View more
  • x
  • convention:

but the save ipsec configuration used for anther router , its work normal
View more
  • x
  • convention:

sorry ,
same ipsec
View more
  • x
  • convention:

Hello,

Please note that Private networks fail to communicate with each other after IPSec is configured. The possible causes are as follows:
  • The public addresses of two IPSec-enabled devices cannot ping each other.
  • The data flow defined for IPSec encapsulation is the same as that defined for NAT. You can run the display acl all command to view the matching ACL rule. In this case, use either of the following methods to prevent the data flow overlapping:

    • Ensure that the destination IP address in the ACL rule referenced by IPSec is denied in the ACL rule referenced by NAT. By doing so, the device does not perform NAT on the data flow protected by IPSec.
    • The ACL rule referenced by IPSec matches NAT-translated IP address.
  • The device incorrectly learns private routes. The outbound interface to the destination private network is not the public network interface with IPSec enabled.
  • When the authentication algorithm used in an IPSec proposal is SHA2, the encryption and decryption methods on both ends are inconsistent.
Thanks
View more
  • x
  • convention:

12
Back to list

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.