CentOS7.5でPPPoE接続 rp-pppoe編
2018/09/20
個人的メモ。
環境
CentOS 7.5.1804
NICの事前確認
以下のコマンドで認識しているNICを確認
# nmcli c
NAME UUID TYPE DEVICE
eno1 53408efe-97b1-4b8c-8778-81c8810ded7a ethernet eno1
PPPoEの設定
rp-pppoeのインストール
# yum -y install rp-pppoe
対話式セットアップでPPPoEの設定
# pppoe-setup
プロバイダーの接続IDを指定
Welcome to the PPPoE client setup. First, I will run some checks on
your system to make sure the PPPoE client is installed properly...
LOGIN NAME
Enter your Login Name (default root): [プロバイダーの接続ID]
インターフェースを指定
事前のコマンドで確認したNICのDEVICEを指定。この場合はeno1。
INTERFACE
Enter the Ethernet interface connected to the PPPoE modem
For Solaris, this is likely to be something like /dev/hme0.
For Linux, it will be ethX, where 'X' is a number.
(default eth0): eno1
オンデマンド通信設定
オンデマンド通信(使用時だけ通信し、使用しなくなったら切断する)を行うかどうか。常時接続したい場合は no なのでそのままエンターを押す
Do you want the link to come up on demand, or stay up continuously?
If you want it to come up on demand, enter the idle time in seconds
after which the link should be dropped. If you want the link to
stay up permanently, enter 'no' (two letters, lower-case.)
NOTE: Demand-activated links do not interact well with dynamic IP
addresses. You may have some problems with demand-activated links.
Enter the demand value (default no): (そのままエンターまたは no )
DNSの設定
プロバイダから取得するDNSを使う場合は server
/etc/resolv.conf を参照させたい場合はそのままエンター。
今回はISPから取得したいので server とする。
DNS
Please enter the IP address of your ISP's primary DNS server.
If your ISP claims that 'the server will provide dynamic DNS addresses',
enter 'server' (all lower-case) here.
If you just press enter, I will assume you know what you are
doing and not modify your DNS setup.
Enter the DNS information here: server
プロバイダの接続パスワードを入力
PASSWORD
Please enter your Password: [プロバイダーの接続パスワード]
ユーザー権限
一般ユーザーでも接続・操作が行えるかどうか。通常はyes
USERCTRL
Please enter 'yes' (three letters, lower-case.) if you want to allow
normal user to start or stop DSL connection (default yes): yes
ファイアウォールの設定
PPPoE側で色々設定できるようだが、今回は別のfirewalldで管理させたいため 0 を設定。
FIREWALLING
Please choose the firewall rules to use. Note that these rules are
very basic. You are strongly encouraged to use a more sophisticated
firewall setup; however, these will provide basic security. If you
are running any servers on your machine, you must choose 'NONE' and
set up firewalling yourself. Otherwise, the firewall rules will deny
access to all standard servers like Web, e-mail, ftp, etc. If you
are using SSH, the rules will block outgoing SSH connections which
allocate a privileged source port.
The firewall choices are:
0 - NONE: This script will not set any firewall rules. You are responsible
for ensuring the security of your machine. You are STRONGLY
recommended to use some kind of firewall rules.
1 - STANDALONE: Appropriate for a basic stand-alone web-surfing workstation
2 - MASQUERADE: Appropriate for a machine acting as an Internet gateway
for a LAN
Choose a type of firewall (0-2): 0
回線の自動接続設定
OS起動時に自動接続させたいので yes。
Start this connection at boot time
Do you want to start this connection at boot time?
Please enter no or yes (default no): yes
設定の最終確認と保存確認
内容を確認し、問題なければ y を入力。
** Summary of what you entered **
Ethernet Interface: eno1
User name: hoge@hoge.ne.jp
Activate-on-demand: No
DNS addresses: Supplied by ISP's server
Firewalling: NONE
User Control: yes
Accept these settings and adjust configuration files (y/n)? y
設定完了
Adjusting /etc/sysconfig/network-scripts/ifcfg-ppp0
Adjusting /etc/ppp/chap-secrets and /etc/ppp/pap-secrets
(But first backing it up to /etc/ppp/chap-secrets.bak)
(But first backing it up to /etc/ppp/pap-secrets.bak)
Congratulations, it should be all set up!
Type '/sbin/ifup ppp0' to bring up your xDSL link and '/sbin/ifdown ppp0'
to bring it down.
Type '/sbin/pppoe-status /etc/sysconfig/network-scripts/ifcfg-ppp0'
to see the link status.
/etc/sysconfig/network-scripts/ifcfg-ppp0 として設定がファイル保存される。
主なコマンド
# pppoe-start
# pppoe-stop
# pppoe-restart
# systemctl start network
# systemctl stop network
# systemctl restart network
# ip a
/etc/sysconfig/network-scripts/ifcfg-ppp0 の中身
環境によって異なるが、作成された ifcfg-ppp0 の中身を表示
# cat /etc/sysconfig/network-scripts/ifcfg-ppp0
USERCTL=yes
BOOTPROTO=dialup
NAME=DSLppp0
DEVICE=ppp0
TYPE=xDSL
ONBOOT=yes
PIDFILE=/var/run/pppoe-adsl.pid
FIREWALL=NONE
PING=.
PPPOE_TIMEOUT=80
LCP_FAILURE=3
LCP_INTERVAL=20
CLAMPMSS=1412
CONNECT_POLL=6
CONNECT_TIMEOUT=60
DEFROUTE=yes
SYNCHRONOUS=no
ETH=eno1
PROVIDER=DSLppp0
USER=hoge@hoge.ne.jp
PEERDNS=yes
DEMAND=no