此产品的文档集力求使用非歧视性语言。在本文档集中,非歧视性语言是指不隐含针对年龄、残障、性别、种族身份、族群身份、性取向、社会经济地位和交叉性的歧视的语言。由于产品软件的用户界面中使用的硬编码语言、基于 RFP 文档使用的语言或引用的第三方产品使用的语言,文档中可能无法确保完全使用非歧视性语言。 深入了解思科如何使用包容性语言。
思科采用人工翻译与机器翻译相结合的方式将此文档翻译成不同语言,希望全球的用户都能通过各自的语言得到支持性的内容。 请注意:即使是最好的机器翻译,其准确度也不及专业翻译人员的水平。 Cisco Systems, Inc. 对于翻译的准确性不承担任何责任,并建议您总是参考英文原始文档(已提供链接)。
本文档介绍如何为非对称数字用户线路(ADSL)服务配置思科数字用户线路(DSL)客户驻地设备(CPE)路由器。它解释了如何排除Cisco 880系列、890系列、860系列和超高比特率数字用户线路(VDSL)/ADSL增强型高速广域网接口卡(EHWIC)上的ADSL相关问题。 本文档针对ADSL服务,但您可以在这些路由器和模块上使用ADSL或VDSL服务。故障可能发生在三个层上:
本文档没有任何特定的要求。
本文档不限于特定的软件和硬件版本。
本文档中的信息都是基于特定实验室环境中的设备编写的。本文档中使用的所有设备最初均采用原始(默认)配置。如果您的网络处于活动状态,请确保您了解所有命令的潜在影响。
如果CD指示灯亮起,请转至本文档的第2层问题部分。
如果CD灯是关闭的,请继续下个问题。
检验来自您的ISP的信息。检查参考数据表的路由器型号或卡的DSLAM互操作性。
如果DSL端口未插入DSL墙上插座,请使用直通RJ-11电缆将端口连接到墙上。这是标准电话电缆。ADSL线路使用引脚3和4。
例如,以下输出示例:
Router#show controller vdsl 0/1/0
!--- Make sure the controller is in UP state. In case you see it in down state,
it indicates a Layer 1 issue (Hardware issue, Line issue, Interoperability
issue with DSLAM etc.)
Controller VDSL 0/1/0 is UP
Daemon Status: Up
!--- XTU-R and XTU-C shows local (Cisco Router) and remote (DSLAM) DSL related
details like chipset vendor, Vendor ID etc.
XTU-R (DS) XTU-C (US)
Chip Vendor ID: 'BDCM' 'BDCM'
Chip Vendor Specific: 0x0000 0xA1AA
Chip Vendor Country: 0xB500 0xB500
Modem Vendor ID: 'CSCO' ' '
Modem Vendor Specific: 0x4602 0x0000
Modem Vendor Country: 0xB500 0x0000
Serial Number Near: FOC15163V2Q 2911/K9 15.5(1)T
Serial Number Far:
Modem Version Near: 15.5(1)T
Modem Version Far: 0xa1aa
Modem Status: TC Sync (Showtime!)
!--- Below shows the configured DSL operating mode, trained mode and TC mode.
DSL Config Mode: AUTO
Trained Mode: G.992.1 (ADSL) Annex B
TC Mode: ATM
Selftest Result: 0x00
DELT configuration: disabled
DELT state: not running
Full inits: 2
Failed full inits: 1
Short inits: 0
Failed short inits: 3
!--- DSL firmware related details
Firmware Source File Name
-------- ------ ----------
VDSL embedded VDSL_LINUX_DEV_01212008
Modem FW Version: 130205_1433-4.02L.03.B2pvC035j.d23j
Modem PHY Version: B2pvC035j.d23j
Trellis: ON ON
SRA: disabled disabled
SRA count: 0 0
Bit swap: enabled enabled
Bit swap count: 0 0
!--- Attenuation and Noise margin are two important parameters which points to
the line quality and intern the stability of the DSL connection
Line Attenuation: 0.0 dB 0.0 dB
Signal Attenuation: 0.0 dB 0.0 dB
Noise Margin: 11.1 dB 6.0 dB
Attainable Rate: 40440 kbits/s 3280 kbits/s
Actual Power: 14.5 dBm 4.9 dBm
Per Band Status: D1 D2 D3 U0 U1 U2 U3
Line Attenuation(dB): 20.0 48.3 73.7 9.4 37.9 56.2 N/A
Signal Attenuation(dB): 20.0 48.3 N/A 10.2 36.2 53.3 N/A
Noise Margin(dB): 10.9 11.3 N/A 5.9 6.0 6.0 N/A
Total FECC: 97252 0
Total ES: 7 0
Total SES: 0 0
Total LOSS: 0 0
Total UAS: 24 24
Total LPRS: 0 0
Total LOFS: 0 0
Total LOLS: 0 0
!--- DSL trained speed can be found below
DSChannel1 DSChannel0 US Channel1 US Channel0
Speed (kbps): 0 25087 0 3192
SRA Previous Speed: 0 0 0 0
Previous Speed: 0 0 0 0
Reed-Solomon EC: 0 97252 0 0
CRC Errors: 0 15 0 0
Header Errors: 0 62 0 0
Interleave (ms): 0.00 8.00 0.00 8.00
Actual INP: 0.00 3.01 0.00 2.00
Training Log : Stopped
Training Log Filename : flash:vdsllog.bin
Router#
在show controller命令输出中检查以下内容:
1.控制器状态为UP。如果它处于关闭状态,则表明存在第1层问题(硬件问题、线路问题或与DSLAM的互操作性问题)。 在这种情况下,继续进行第1层故障排除。
2.检查运行模式、训练模式和TC模式。确保在控制器下配置了正确的操作模式。如果您不确定您的ISP使用哪种离散多音(DMT)技术,思科建议您使用DSL操作模式自动。以下是用于配置操作模式自动检测的命令。
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#controller vdsl 0
Router(config-controller)#operating-mode auto
Router(config-controller)#end
Router#write memory
3.查看经过培训的模式,确保与ISP协商的模式正确。另一个需要查看的重要参数是TC模式。如果训练的模式是ADSL、ADSL2或ADSL2+,则TC模式必须为ATM,所有上层参数(例如PPP、IP等)应配置在ATM永久虚电路(PVC)下。如果受训模式为VDSL2或VDSL2+,则TC模式为数据包传输模式(PTM)。 在这种情况下,您需要看到PTM以太网接口处于UP状态,并且所有上层参数都应在以太网接口下配置。如果您在ADSL和VDSL之间更改操作模式,您可能需要重新启动路由器以激活相应的ATM或以太网接口。
4.检查噪声容限和衰减。噪声容限是DSL信噪比的相对强度。数字越高,衡量结果越好:
衰减是测量DSLAM和调制解调器之间信号已降级的量度。这在很大程度上取决于与交换的距离。dB越低,测量效果越好。
5.确保您有最新的DSL固件版本。最新的固件已经修复了大多数已知的互操作性问题。您可以从CCO下载最新的固件。
6.验证DSL是否与适当的上行和下行速度同步。
请注意,ADSL/VDSL路由器有两个版本;1)普通老式电话服务(Annex-A)上的DSL,以及2)集成多业务数字网络(Annex-B)上的DSL。 在某些国家/地区,ISP提供Annex-B连接,而在大多数国家/地区则提供Annex-A连接。Annex-A DSL路由器或卡不会与Annex-B线路同步,反之亦然。因此,您需要确保部署了正确的路由器型号。有关详细信息,请参阅路由器数据表。
从您的ISP或电话公司得到此信息。
一旦确认受训模式为ADSL,请确保ATM接口处于运行状态。
Router#show ip interface brief
Interface IP-Address OK? Method Status Protocol
Embedded-Service-Engine0/0 unassigned YES NVRAM administratively down down
GigabitEthernet0/0 unassigned YES NVRAM up up
GigabitEthernet0/0.1 unassigned YES unset up up
GigabitEthernet0/1 unassigned YES NVRAM administratively down down
GigabitEthernet0/2 192.168.22.1 YES NVRAM up up
ISM0/1 unassigned YES unset up up
!--Verify that ATM interface is in up state
ATM0/1/0 unassigned YES NVRAM up up
Ethernet0/1/0 unassigned YES NVRAM administratively down down up
向您的提供商核实用于DSL连接的正确VPI/VCI值。
向您的提供商核实所使用的上层连接类型。您可以将ADSL线路用于IPoA、PPPoA、PPPoEoA、桥接等。请确保您的上层配置符合提供商的配置。
检查命令show interface atm0的输出并检查输入和输出数据包。
Router#show interface atm0 ATM0 is up, line protocol is up Hardware is DSLSAR (with Alcatel ADSL Module) MTU 4470 bytes, sub MTU 4470, BW 128 Kbit, DLY 16000 usec, reliability 255/255, txload 1/255, rxload 1/255 Encapsulation ATM, loopback not set Encapsulation(s): AAL5, PVC mode 24 maximum active VCs, 256 VCS per VP, 1 current VCCs VC idle disconnect time: 300 seconds Last input 00:00:00, output 00:00:00, output hang never Last clearing of "show interface" counters never Queueing strategy: fifo Output queue 0/40, 0 drops; input queue 0/75, 0 drops 5 minute input rate 5 bits/sec, 0 packets/sec 5 minute output rate 7 bits/sec, 0 packets/sec 100 packets input, 5600 bytes, 0 no buffer Received 0 broadcasts, 0 runts, 0 giants, 0 throttles 0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 0 abort 250 packets output, 1400 bytes, 0 underruns 0 output errors, 0 collisions, 2 interface resets 0 output buffer failures, 0 output buffers swapped out
如果输入数据包计数器增加,您必须从ISP接收PPP协商数据包。如果并非如此,请致电您的ISP。如果输出数据包计数器增加,您应该发送PPP协商数据包。如果并非如此,请检查路由器上的配置。如果PPP配置正确,PPP协商数据包将连续从ATM0接口发送出去。
如果两个方向的数据包都增加,请继续执行本文档中的故障排除步骤。
如果第1层已启用,并且您具有正确的VPI/VCI设置,下一步是确保PPP正常启动。为此,您需要在Cisco DSL路由器上运行一系列debug命令并解释输出。您使用的主要debug命令是debug ppp negotiation。以下命令输出是PPP协商成功的示例:
Router#debug ppp negotiation
PPP protocol negotiation debugging is on
Router#
2w3d: Vi1 PPP: No remote authentication for call-out
2w3d: Vi1 PPP: Phase is ESTABLISHING
2w3d: Vi1 LCP: O CONFREQ [Open] id 146 len 10
2w3d: Vi1 LCP: MagicNumber 0x8CCF0E1E (0x05068CCF0E1E)
2w3d: Vi1 LCP: O CONFACK [Open] id 102 Len 15
2w3d: Vi1 LCP: AuthProto CHAP (0x0305C22305)
2w3d: Vi1 LCP: MagicNumber 0xD945AD0A (0x0506D945AD0A)
2w3d: Di1 IPCP: Remove route to 10.10.10.1
2w3d: Vi1 LCP: I CONFACK [ACKsent] id 146 Len 10
2w3d: Vi1 LCP: MagicNumber 0x8CCF0E1E (0x05068CCF0E1E)
2w3d: Vi1 LCP: State is Open
2w3d: Vi1 PPP: Phase is AUTHENTICATING, by the peer
2w3d: Vi1 CHAP: I CHALLENGE id 79 Len 33 from "6400-2-NRP-2"
2w3d: Vi1 CHAP: O RESPONSE id 79 Len 28 from "John"
2w3d: Vi1 CHAP: I SUCCESS id 79 Len 4
2w3d: Vi1 PPP: Phase is UP
2w3d: Vi1 IPCP: O CONFREQ [Closed] id 7 Len 10
2w3d: Vi1 IPCP: Address 0.0.0.0 (0x030600000000)
2w3d: Vi1 IPCP: I CONFREQ [REQsent] id 4 Len 10
2w3d: Vi1 IPCP: Address 10.10.10.1 (0x030614140201)
2w3d: Vi1 IPCP: O CONFACK [REQsent] id 4 Len 10
2w3d: Vi1 IPCP: Address 10.10.10.1 (0x030614140201)
2w3d: Vi1 IPCP: I CONFNAK [ACKsent] id 7 Len 10
2w3d: Vi1 IPCP: Address 10.1.1.1 (0x030628010102)
2w3d: Vi1 IPCP: O CONFREQ [ACKsent] id 8 Len 10
2w3d: Vi1 IPCP: Address 10.1.1.1 (0x030628010102)
2w3d: Vi1 IPCP: I CONFACK [ACKsent] id 8 Len 10
2w3d: Vi1 IPCP: Address 10.1.1.1 (0x030628010102)
2w3d: Vi1 IPCP: State is Open
2w3d: Di1 IPCP: Install negotiated IP interface address 10.1.1.1
2w3d: Di1 IPCP: Install route to 10.10.10.1
Router#
PPP协商存在四个主要故障点:
您的ISP没有响应应该不会造成问题,因为您已经验证数据包在ATM0接口的入站方向上增加。但是,如果您看到数据包在ATM0的入站方向上递增,并且当您运行debug ppp negotiation时,您会收到此消息,请与ISP联系,以验证数据包是否发送到Cisco DSL路由器。
Router#debug ppp negotiation
*Mar 1 04:04:50.718: Vi1 PPP: Treating connection as a callout
*Mar 1 04:04:50.718: Vi1 PPP: Phase is ESTABLISHING, Active Open [0 sess, 0 load]
*Mar 1 04:04:50.718: Vi1 PPP: No remote authentication for call-out
*Mar 1 04:04:50.722: Vi1 LCP: O CONFREQ [Closed] id 1 Len 10
!--- "O" specifies an outbound packet
*Mar 1 04:04:50.722: Vi1 LCP: MagicNumber 0x317722F4 (0x0506317722F4)
*Mar 1 04:04:52.722: Vi1 LCP: TIMEout: State REQsent
*Mar 1 04:04:52.722: Vi1 LCP: O CONFREQ [REQsent] id 2 Len 10
!--- "O" specifies an outbound packet
*Mar 1 04:04:52.722: Vi1 LCP: MagicNumber 0x317722F4 (0x0506317722F4)
*Mar 1 04:04:54.722: Vi1 LCP: TIMEout: State REQsent
*Mar 1 04:04:54.722: Vi1 LCP: O CONFREQ [REQsent] id 3 Len 10
*Mar 1 04:04:54.722: Vi1 LCP: MagicNumber 0x317722F4 (0x0506317722F4)
*Mar 1 04:04:56.722: Vi1 LCP: TIMEout: State REQsent
*Mar 1 04:04:56.722: Vi1 LCP: O CONFREQ [REQsent] id 4 Len 10
*Mar 1 04:04:56.722: Vi1 LCP: MagicNumber 0x317722F4 (0x0506317722F4)
*Mar 1 04:04:58.722: Vi1 LCP: TIMEout: State REQsent
*Mar 1 04:04:58.722: Vi1 LCP: O CONFREQ [REQsent] id 5 Len 10
*Mar 1 04:04:58.722: Vi1 LCP: MagicNumber 0x317722F4 (0x0506317722F4)
*Mar 1 04:05:00.722: Vi1 LCP: TIMEout: State REQsent
*Mar 1 04:05:00.722: Vi1 LCP: O CONFREQ [REQsent] id 6 Len 10
*Mar 1 04:05:00.722: Vi1 LCP: MagicNumber 0x317722F4 (0x0506317722F4)
*Mar 1 04:05:02.722: Vi1 LCP: TIMEout: State REQsent
*Mar 1 04:05:02.722: Vi1 LCP: O CONFREQ [REQsent] id 7 Len 10
!--- "O" specifies an outbound packet
*Mar 1 04:05:02.722: Vi1 LCP: MagicNumber 0x317722F4 (0x0506317722F4)
Router#undebug all
在此输出中只有O个数据包,它们是出站数据包。为了成功协商PPP,应针对发送的每个O数据包从ISP发出一个I入站数据包。如果数据包递增入站,但您看不到I数据包,请与您的ISP联系以验证发送到Cisco DSL路由器的数据包。
如果LCP未打开,这通常是由于PPP选项不匹配引起的。当Cisco DSL路由器配置了ISP不支持的PPP参数,或者您的ISP配置了Cisco DSL路由器不支持的参数时,就会发生这种不匹配。以下输出显示了PPP选项不匹配的示例:
Router#debug ppp negotiation
*Mar 1 04:52:43.254: Vi1 PPP: Treating connection as a callout
*Mar 1 04:52:43.258: Vi1 PPP: Phase is ESTABLISHING, Active Open [0 sess, 1 load]
*Mar 1 04:52:43.258: Vi1 PPP: No remote authentication for call-out
*Mar 1 04:52:43.258: Vi1 LCP: O CONFREQ [Closed] id 3 len 10
*Mar 1 04:52:43.262: Vi1 LCP: MagicNumber 0x31A2F808 (0x050631A2F808)
*Mar 1 04:52:43.310: Vi1 LCP: I CONFREQ [REQsent] id 180 Len 14
*Mar 1 04:52:43.310: Vi1 LCP: AuthProto PAP (0x0304C023)
*Mar 1 04:52:43.310: Vi1 LCP: MagicNumber 0x39D50E9B (0x050639D50E9B)
*Mar 1 04:52:43.314: Vi1 LCP: O CONFNAK [REQsent] id 180 Len 9
!--- PPP option reject
*Mar 1 04:52:43.314: Vi1 LCP: AuthProto CHAP (0x0305C22305)
!--- PPP option that is rejected
*Mar 1 04:52:43.314: Vi1 LCP: I CONFACK [REQsent] id 3 Len 10
*Mar 1 04:52:43.318: Vi1 LCP: MagicNumber 0x31A2F808 (0x050631A2F808)
*Mar 1 04:52:43.366: Vi1 LCP: I CONFREQ [ACKrcvd] id 181 Len 14
*Mar 1 04:52:43.366: Vi1 LCP: AuthProto PAP (0x0304C023)
*Mar 1 04:52:43.366: Vi1 LCP: MagicNumber 0x39D50E9B (0x050639D50E9B)
*Mar 1 04:52:43.370: Vi1 LCP: O CONFNAK [ACKrcvd] id 181 Len 9
!--- PPP option reject
*Mar 1 04:52:43.370: Vi1 LCP: AuthProto CHAP (0x0305C22305)
!--- PPP option that is rejected
*Mar 1 04:52:43.418: Vi1 LCP: I CONFREQ [ACKrcvd] id 182 Len 14
*Mar 1 04:52:43.418: Vi1 LCP: AuthProto PAP (0x0304C023)
*Mar 1 04:52:43.418: Vi1 LCP: MagicNumber 0x39D50E9B (0x050639D50E9B)
Router#undebug all
无论是I数据包还是O数据包,配置否定确认(CONFNAK)都表示PPP配置不匹配。这意味着PPP连接的一端请求另一端无法或尚未配置执行的PPP选项。如果Cisco DSL路由器发送CONFNAK(由O CONFNAK指示),则Cisco DSL路由器无法执行或未配置ISP发送的选项。如果CONFNAK由您的ISP发送(由I CONFNAK指示),则您已在Cisco DSL路由器上配置了ISP不希望执行的选项。
CONFNAK后面的行描述被拒绝的选项。在本示例输出中,选项是Challenge Handshake Authentication Protocol(CHAP),但它可以是任何选项。Cisco DSL路由器上唯一可以配置PPP选项的位置是interface dialer 1。输入show run interface dialer 1命令以查看您的接口dialer 1配置。
如果ISP发送I CONFNAK,请在interface dialer 1下查找与CONFNAK之后的线路匹配的命令并将其删除。如果Cisco DSL路由器发送O CONFNAK,请向interface dialer 1添加命令,以便与您的ISP正确协商PPP。在路由器发送数据包的情况下,您可能需要致电Cisco支持以确定需要在Cisco DSL路由器上启用哪些命令。
当ISP无法验证您的PPP用户名或口令时,就会发生身份验证故障。这种情况可能发生在两种情况下。第一种情况是身份验证类型不匹配,这是当您未正确配置路由器时造成的。本文档中列出的所有身份验证配置均适用于密码身份验证协议(PAP)和CHAP身份验证类型。为了灵活配置,您应该同时配置CHAP和PAP。如果您没有配置这两个命令,您可能会看到debug ppp negotiation命令的输出,如下所示:
Router#debug ppp negotiation
00:34:29: Vi1 LCP:O CONFREQ [REQsent] id 53 Len 15
00:34:29: Vi1 LCP: AuthProto CHAP (0x0305C22305)
!--- Sends CHAP requests
00:34:29: Vi1 LCP: MagicNumber 0x01B63483 (0x050601B63483)
00:34:29: Vi1 LCP: I CONFREQ [REQsent] id 252 Len 14
00:34:29: Vi1 LCP: AuthProto PAP (0x0304C023)
!--- Receives PAP requests from the service provider
00:34:29: Vi1 LCP: MagicNumber 0xBC5233F9 (0x0506BC5233F9)
00:34:29: Vi1 LCP: O CONFREJ [REQsent] id 252 Len 8
Router#undebug all
为了纠正两个身份验证不匹配问题,您需要将身份验证协议重新配置为ISP在入站CONFREQ数据包中请求的协议。
在确认ISP使用PAP后,输入debug ppp negotiation命令以确认PAP用户名和密码正确。
Router#debug ppp negotiation
*Mar 2 00:50:15.741: Vi1 PPP: Treating connection as a callout
*Mar 2 00:50:15.745: Vi1 PPP: Phase is ESTABLISHING, Active Open [0 sess, 1 load]
*Mar 2 00:50:15.745: Vi1 PPP: No remote authentication for call-out
*Mar 2 00:50:15.745: Vi1 LCP: O CONFREQ [Closed] id 177 Len 10
*Mar 2 00:50:15.745: Vi1 LCP: MagicNumber 0x35EB5D4F (0x050635EB5D4F)
*Mar 2 00:50:15.789: Vi1 LCP: I CONFACK [REQsent] id 177 Len 10
*Mar 2 00:50:15.793: Vi1 LCP: MagicNumber 0x35EB5D4F (0x050635EB5D4F)
*Mar 2 00:50:17.241: Vi1 LCP: I CONFREQ [ACKrcvd] id 203 Len 14
*Mar 2 00:50:17.241: Vi1 LCP: AuthProto PAP (0x0304C023)
*Mar 2 00:50:17.241: Vi1 LCP: MagicNumber 0x3E1D1E5E (0x05063E1D1E5E)
*Mar 2 00:50:17.245: Vi1 LCP: O CONFACK [ACKrcvd] id 203 Len 14
*Mar 2 00:50:17.245: Vi1 LCP: AuthProto PAP (0x0304C023)
*Mar 2 00:50:17.245: Vi1 LCP: MagicNumber 0x3E1D1E5E (0x05063E1D1E5E)
*Mar 2 00:50:17.249: Vi1 LCP: State is Open
*Mar 2 00:50:17.249: Vi1 PPP: Phase is AUTHENTICATING, by the peer [0 sess, 1 load]
*Mar 2 00:50:17.249: Vi1 PAP: O AUTH-REQ id 9 Len 14 from "cisco"
!--- "cisco" is the PAP username configured on this DSL Router.
*Mar 2 00:50:17.297: Vi1 PAP: I AUTH-NAK id 9 Len 27 msg is "Authentication failure"
*Mar 2 00:50:17.301: Vi1 LCP: I TERMREQ [Open] id 204 Len 4
*Mar 2 00:50:17.301: Vi1 LCP: O TERMACK [Open] id 204 Len 4
*Mar 2 00:50:17.305: Vi1 PPP: Phase is TERMINATING [0 sess, 1 load]u
*Mar 2 00:50:19.305: Vi1 LCP: TIMEout: State TERMsent
*Mar 2 00:50:19.305: Vi1 LCP: State is Closed
*Mar 2 00:50:19.305: Vi1 PPP: Phase is DOWN [0 sess, 1 load]
您需要联系您的ISP并获取正确的凭证才能解决此问题。您可以使用以下命令重新配置PAP凭证:
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#interface dialer 1
Router(config-if)#ppp pap sent-username <username> password <password>
Router(config-if)#end
Router#write memory
在确认ISP使用CHAP后,输入debug ppp negotiation命令以确认CHAP用户名和密码是否正确。
Router#debug ppp negotiation
*Mar 3 02:51:47.287: Vi1 PPP: Treating connection as a callout
*Mar 3 02:51:47.287: Vi1 PPP: Phase is ESTABLISHING, Active Open [0 sess, 1 load]
*Mar 3 02:51:47.291: Vi1 PPP: No remote authentication for call-out
*Mar 3 02:51:47.291: Vi1 LCP: O CONFREQ [Closed] id 188 Len 10
*Mar 3 02:51:47.291: Vi1 LCP: MagicNumber 0x3B821FF1 (0x05063B821FF1)
*Mar 3 02:51:47.339: Vi1 LCP: I CONFREQ [REQsent] id 204 Len 15
*Mar 3 02:51:47.343: Vi1 LCP: AuthProto CHAP (0x0305C22305)
*Mar 3 02:51:47.343: Vi1 LCP: MagicNumber 0x43B3F393 (0x050643B3F393)
*Mar 3 02:51:47.343: Vi1 LCP: O CONFACK [REQsent] id 204 Len 15
*Mar 3 02:51:47.347: Vi1 LCP: AuthProto CHAP (0x0305C22305)
*Mar 3 02:51:47.347: Vi1 LCP: MagicNumber 0x43B3F393 (0x050643B3F393)
*Mar 3 02:51:47.347: Vi1 LCP: I CONFACK [ACKsent] id 188 Len 10
*Mar 3 02:51:47.351: Vi1 LCP: MagicNumber 0x3B821FF1 (0x05063B821FF1)
*Mar 3 02:51:47.351: Vi1 LCP: State is Open
*Mar 3 02:51:47.351: Vi1 PPP: Phase is AUTHENTICATING, by the peer [0 sess, 1 load]
*Mar 3 02:51:47.395: Vi1 CHAP: I CHALLENGE id 1 Len 32 from "6400-2-NRP3"
*Mar 3 02:51:47.395: Vi1 CHAP: Using alternate hostname cisco
*Mar 3 02:51:47.399: Vi1 CHAP: Username 6400-2-NRP3 not found
*Mar 3 02:51:47.399: Vi1 CHAP: Using default password
*Mar 3 02:51:47.399: Vi1 CHAP: O RESPONSE id 1 Len 26 from "cisco"
!--- "cisco" is the CHAP username configured on this DSL Router.
*Mar 3 02:51:47.447: Vi1 CHAP: I FAILURE id 1 Len 26 MSG is "Authentication failure"
*Mar 3 02:51:47.447: Vi1 LCP: I TERMREQ [Open] id 205 Len 4
*Mar 3 02:51:47.451: Vi1 LCP: O TERMACK [Open] id 205 Len 4
*Mar 3 02:51:47.451: Vi1 PPP: Phase is TERMINATING [0 sess, 0 load]
*Mar 3 02:51:49.451: Vi1 LCP: TIMEout: State TERMsent
*Mar 3 02:51:49.451: Vi1 LCP: State is Closed
*Mar 3 02:51:49.451: Vi1 PPP: Phase is DOWN [0 sess, 0 load]
Router#undebug all
您需要联系您的ISP并获取正确的凭证才能解决此问题。您可以使用以下命令重新配置CHAP凭据:
Router#configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#interface dialer 1
Router(config-if)#ppp chap hostname <username>
Router(config-if)#ppp chap password <password>
Router(config-if)#end
Router#write memory
此示例显示成功的CHAP协商。
Router#debug ppp negotiation
<... snipped ...>
*Mar 3 03:30:09.335: Vi1 LCP: State is Open
*Mar 3 03:30:09.335: Vi1 PPP: Phase is AUTHENTICATING, by the peer [0 sess, 1 load]
*Mar 3 03:30:09.379: Vi1 CHAP: I CHALLENGE id 41 len 32 from "6400-2-NRP3"
*Mar 3 03:30:09.379: Vi1 CHAP: Using alternate hostname cisco
*Mar 3 03:30:09.379: Vi1 CHAP: Username 6400-2-NRP3 not found
*Mar 3 03:30:09.383: Vi1 CHAP: Using default password
*Mar 3 03:30:09.383: Vi1 CHAP: O RESPONSE id 41 Len 26 from "cisco"
*Mar 3 03:30:09.431: Vi1 CHAP: I SUCCESS id 41 Len 4
!--- CHAP negotiation was a success.
*Mar 3 03:30:09.431: Vi1 PPP: Phase is UP [0 sess, 1 load]
<... snipped ...>
Router#undebug all
This example shows a successful PAP negotiation.
Router#debug ppp negotiation
<... snipped ...>
*Mar 3 03:33:19.491: Vi1 LCP: State is Open
*Mar 3 03:33:19.491: Vi1 PPP: Phase is AUTHENTICATING, by the peer [0 sess, 0 load]
*Mar 3 03:33:19.495: Vi1 PAP: O AUTH-REQ id 255 Len 16 from "cisco"
*Mar 3 03:33:19.539: Vi1 PAP: I AUTH-ACK id 255 Len 5
*Mar 3 03:33:19.539: Vi1 PPP: Phase is UP [0 sess, 0 load]
!--- PAP negotiation was a success.
<... snipped ...>
Router#undebug all
版本 | 发布日期 | 备注 |
---|---|---|
1.0 |
28-Apr-2016 |
初始版本 |