====== Accel - конфиг. PPPoE,IPoE,QinQ ====== ====== Основные параметры Accel ====== [modules] log_file radius sigchld shaper [core] log-error=/var/log/accel-ppp/core.log thread-count=2 [dns] dns1=10.0.0.2 dns2=4.2.2.2 [radius] dictionary=/usr/local/share/accel-ppp/radius/dictionary nas-identifier=accel nas-ip-address=10.0.0.2 server=10.0.0.1,secret,auth-port=1812,acct-port=1813,req-limit=0,fail-time=0 dae-server=0.0.0.0:3799,secret timeout=10 max-try=3 acct-timeout=0 acct-delay-time=0 verbose=1 [shaper] attr=Filter-Id #Day/Night shaper #time-range=1,1:00-3:00 #time-range=2,3:00-5:00 #time-range=3,5:00-7:00 ifb=ifb0 up-limiter=htb down-limiter=htb cburst=1375000 r2q=10 quantum=1500 leaf-qdisc=sfq perturb 10 verbose=0 [client-ip-range] disable [log] log-file=/var/log/accel-ppp/accel.log log-emerg=/var/log/accel-ppp/emerg.log log-fail-file=/var/log/accel-ppp/auth-fail.log log-debug=/var/log/accel-ppp/debug.log copy=1 level=4 [cli] telnet=127.0.0.1:2000 tcp=127.0.0.1:2001 ====== Авторизация PPPoE ====== Для активации авторизации по PPPoE, к основным настройкам необходимо добавить: [modules] pppoe auth_pap auth_chap auth_chap_md5 auth_mschap_v1 auth_mschap_v2 [ppp] verbose=0 min-mtu=1280 mtu=1472 mru=1472 mppe=prefer ipv4=require ipv6=deny ipv6-intf-id=0:0:0:1 ipv6-peer-intf-id=0:0:0:2 ipv6-accept-peer-intf-id=1 lcp-echo-interval=10 lcp-echo-failure=3 lcp-echo-timeout=45 [pppoe] verbose=1 ac-name=accelnet ifname-in-sid=called-sid called-sid=ifname interface=eth1.10 [radius] #шлюз для PPPoE абонентов gw-ip-address=172.31.255.254 ====== Авторизация по МАК ====== Для активации авторизации по Mac, к основным настройкам необходимо добавить: [modules] ipoe [ipoe] lua-file=/etc/accel-ppp.lua lease-time=300 max-lease-time=302 attr-dhcp-client-ip=Framed-IP-Address attr-dhcp-router-ip=DHCP-Router-IP-Address attr-dhcp-mask=DHCP-Mask attr-l4-redirect=L4-Redirect attr-l4-redirect-ipset=L4-Redirect-ipset l4-redirect-ipset=l4 proto=100 proxy-arp=1 interface=eth1.10,mode=L2,start=dhcpv4,shared=1,ifcfg=1,username=lua:macuser verbose=1 ====== Авторизация по IP ====== Для активации авторизации по IP, к основным настройкам необходимо добавить: [modules] ipoe [ipoe] attr-l4-redirect=L4-Redirect attr-l4-redirect-ipset=L4-Redirect-ipset l4-redirect-ipset=l4 proto=100 # proxy-arp выключен, иначе параметр local-net не будет работать корректно. interface=eth1.10,mode=L3,start=up,shared=1,ifcfg=1,username=ifname,proxy-arp=0 local-net=10.1.0.0/16 gw-ip-address=10.1.255.254/16 verbose=1 ====== QinQ ====== Для активации авторизации по vlan, к основным настройкам необходимо добавить: [modules] ipoe [ipoe] lease-time=300 max-lease-time=302 attr-dhcp-client-ip=Framed-IP-Address attr-dhcp-router-ip=DHCP-Router-IP-Address attr-dhcp-mask=DHCP-Mask attr-l4-redirect=L4-Redirect attr-l4-redirect-ipset=L4-Redirect-ipset l4-redirect-ipset=l4 proto=100 #proxy-arp=0 vlan-timeout=600 vlan-name=%I.%N vlan-mon=re:eth1.10,100-199 interface=re:eth1.10.1[0-9][0-9],mode=L2,start=dhcpv4,shared=0,ifcfg=1,username=ifname verbose=1