[modules] log_file #log_syslog #log_tcp #log_pgsql connlimit radius #chap-secrets pptp l2tp #sstp #pppoe #ipoe auth_mschap_v2 auth_mschap_v1 auth_chap_md5 auth_pap ippool pppd_compat #shaper #net-snmp #logwtmp #metrics #ipv6_nd #ipv6_dhcp #ipv6pool [core] log-error=/var/log/accel-ppp/core.log #log-debug=/var/log/accel-ppp/debug.log thread-count=4 [common] #single-session=replace #single-session-ignore-case=0 #sid-case=upper #sid-source=seq #seq-file=/var/lib/accel-ppp/seq #max-sessions=1000 #max-starting=0 #session-timeout=0 #check-ip=0 #nl-snd-buffer=32768 #nl-rcv-buffer=1048576 #netns-run-dir=/var/run/netns [ppp] verbose=1 min-mtu=1280 mtu=1400 mru=1400 #accomp=deny #pcomp=deny #ccp=0 #ccp-max-configure=3 #mppe=require #timeout=3 #max-configure=10 #max-failure=10 #max-terminate=2 #max-mtu=1500 #check-ip=0 ipv4=require ipv6=deny ipv6-intf-id=0:0:0:1 ipv6-peer-intf-id=0:0:0:2 ipv6-accept-peer-intf-id=1 lcp-echo-interval=20 #lcp-echo-failure=3 lcp-echo-timeout=120 unit-cache=1 #unit-preallocate=1 [auth] #timeout=5 #interval=0 #max-failure=3 #any-login=0 #noauth=0 #challenge-name=accel-ppp [pptp] verbose=1 #bind=0.0.0.0 #port=1723 #echo-interval=30 #echo-failure=3 #timeout=5 #mppe=allow #ppp-max-mtu=1436 #session-timeout=0 #ip-pool=pptp #ipv6-pool=pptp #ipv6-pool-delegate=pptp #ifname=pptp%d [pppoe] verbose=1 #ac-name=xxx #service-name=yyy #accept-any-service=0 #accept-blank-service=0 #pado-delay=0 #pado-delay=0,100:100,200:200,-1:500 called-sid=mac #tr101=1 #padi-limit=0 #mac-filter=/path/to/mac-filter,allow #mppe=allow #session-timeout=0 #ip-pool=pppoe #ipv6-pool=pppoe #ipv6-pool-delegate=pppoe #ifname=pppoe%d #ifname-in-sid=0 #sid-uppercase=0 #cookie-timeout=5 #vlan-mon=eth0,10-200 #vlan-timeout=60 #vlan-name=%I.%N #interface=eth1,padi-limit=1000 interface=eth0 [l2tp] verbose=1 #bind=0.0.0.0 #port=1701 #dictionary=/usr/local/share/accel-ppp/l2tp/dictionary #hello-interval=60 #timeout=60 #rtimeout=1 #rtimeout-cap=16 #retransmit=5 #recv-window=16 #host-name=accel-ppp #dir300_quirk=0 #secret= #hide-avps=0 #dataseq=allow #reorder-timeout=0 #use-ephemeral-ports=0 #ppp-max-mtu=1420 #mppe=allow #session-timeout=0 #avp_permissive=0 #ip-pool=l2tp #ipv6-pool=l2tp #ipv6-pool-delegate=l2tp #ifname=l2tp%d [sstp] verbose=1 #bind=0.0.0.0 #port=443 #cert-hash-proto=sha1,sha256 #cert-hash-sha1= #cert-hash-sha256= #accept=ssl,proxy #ssl-protocol=tls1,tls1.1,tls1.2,tls1.3 #ssl-dhparam=/etc/ssl/dhparam.pem #ssl-ecdh-curve=prime256v1 #ssl-ciphers=DEFAULT #ssl-prefer-server-ciphers=0 #ssl-ca-file=/etc/ssl/sstp-ca.crt #ssl-pemfile=/etc/ssl/sstp-cert.pem #ssl-keyfile=/etc/ssl/sstp-key.pem #host-name=domain.tld #http-error=allow #timeout=60 #hello-interval=60 #ppp-max-mtu=1452 #sndbuf=0 #rcvbuf=0 #session-timeout=0 #ip-pool=sstp #ipv6-pool=sstp #ipv6-pool-delegate=sstp #ifname=sstp%d [ipoe] verbose=1 username=ifname #password=username #netmask=24 lease-time=600 #renew-time=300 #rebind-time=525 max-lease-time=3600 #unit-cache=1000 #l4-redirect-table=4 #l4-redirect-ipset=l4 #l4-redirect-on-reject=300 #l4-redirect-ip-pool=pool1 #noauth=0 shared=0 ifcfg=1 mode=L2 start=dhcpv4 #start=up #ip-unnumbered=1 #proxy-arp=0 #nat=0 #proto=100 #src=192.0.2.1 #relay=10.10.10.10 #relay-timeout=3 #relay-retransmit=3 #agent-remote-id=accel-ppp #link-selection=0.0.0.0 #vendor=Custom #weight=0 #attr-dhcp-client-ip=DHCP-Client-IP-Address #attr-dhcp-router-ip=DHCP-Router-IP-Address #attr-dhcp-mask=DHCP-Mask #attr-dhcp-lease-time=DHCP-Lease-Time #attr-dhcp-renew-time=DHCP-Renewal-Time #attr-dhcp-rebind-time=DHCP-Rebinding-Time #attr-dhcp-opt82=DHCP-Option82 #attr-dhcp-opt82-remote-id=DHCP-Agent-Remote-Id #attr-dhcp-opt82-circuit-id=DHCP-Agent-Circuit-Id #attr-l4-redirect=L4-Redirect #attr-l4-redirect-table=4 #attr-l4-redirect-ipset=l4-redirect #lua-file=/etc/accel-ppp.lua #offer-delay=0,100:100,200:200,-1:1000 #offer-timeout=10 #vlan-mon=eth0,10-200 #vlan-timeout=60 #vlan-name=%I.%N #ip-pool=ipoe #ipv6-pool=ipoe #ipv6-pool-delegate=ipoe #idle-timeout=0 #session-timeout=0 #soft-terminate=0 #check-mac-change=1 #calling-sid=mac #ipv6=0 #check-ip=0 #local-net=192.168.0.0/16 interface=eth0 [dns] #dns1=172.16.0.1 #dns2=172.16.1.1 [wins] #wins1=172.16.0.1 #wins2=172.16.1.1 [radius] #dictionary=/usr/local/share/accel-ppp/radius/dictionary #framed-route-strict=0 nas-identifier=accel-ppp nas-ip-address=127.0.0.1 gw-ip-address=192.168.100.1 server=127.0.0.1,testing123,auth-port=1812,acct-port=1813,req-limit=50,fail-timeout=0,max-fail=10,weight=1 dae-server=127.0.0.1:3799,testing123 #dae-allowed=127.0.0.1,192.0.2.0/24 #dae-allowed is generally recommended to restrict DM/CoA sources, but not required. verbose=1 #timeout=3 #max-try=3 #req-limit=0 #fail-timeout=0 #max-fail=10 #interim-verbose=0 #acct-timeout=120 #acct-delay-time=0 #acct-delay-start=0 #acct-on=0 #acct-interim-interval=0 #acct-interim-jitter=0 #default-realm= #strip-realm=0 #attr-tunnel-type=My-Tunnel-Type #sid-in-auth=0 #nas-port-id-in-req=1 #bind=0.0.0.0 #require-nas-identification=0 blast-protection=1 [client-ip-range] 10.0.0.0/8 [ip-pool] gw-ip-address=192.168.0.1 #vendor=Cisco #attr=Cisco-AVPair attr=Framed-Pool #shuffle=0 # on reload, sessions whose address left the pools: keep (default) or disconnect #reload-orphan=keep 192.168.0.2-255 192.168.1.1-255,name=pool1 192.168.2.1-255,name=pool2 192.168.3.1-255,name=pool3 192.168.4.1-255,name=pool4,next=pool1 192.168.4.0/24 [log] log-file=/var/log/accel-ppp/accel-ppp.log log-emerg=/var/log/accel-ppp/emerg.log log-fail-file=/var/log/accel-ppp/auth-fail.log #log-debug=/dev/stdout #syslog=accel-pppd,daemon #log-tcp=127.0.0.1:3000 copy=1 #color=1 #per-user-dir=per_user #per-session-dir=per_session #per-session=1 level=3 [log-pgsql] conninfo=user=log #connect-inteval=5 #log-query=insert into log (timestamp, username, sessionid, msg) values ($1, $2, $3, $4) log-table=log [pppd-compat] verbose=1 #ip-pre-up=/etc/ppp/ip-pre-up ip-up=/etc/ppp/ip-up ip-down=/etc/ppp/ip-down #ip-change=/etc/ppp/ip-change radattr-prefix=/var/run/radattr #fork-limit=16 [chap-secrets] gw-ip-address=192.168.100.1 #chap-secrets=/etc/ppp/chap-secrets #encrypted=0 #username-hash=md5 [shaper] #attr=Filter-Id #vendor=Cisco #attr-down=PPPD-Downstream-Speed #attr-up=PPPD-Upstream-Speed #burst-factor=0.1 #down-burst-factor=0.1 #up-burst-factor=1.0 #latency=50 #mpu=0 #mtu=0 #r2q=10 #quantum=1500 #moderate-quantum=1 #cburst=1534 #ifb=ifb0 up-limiter=police down-limiter=tbf #leaf-qdisc=sfq perturb 10 #leaf-qdisc=fq_codel [limit PACKETS] [flows NUMBER] [target TIME] [interval TIME] [quantum BYTES] [[no]ecn] #rate-multiplier=1 #fwmark=1 #rate-limit=2048/1024 verbose=1 [cli] verbose=1 telnet=127.0.0.1:2000 tcp=127.0.0.1:2001 #password=123 #prompt=accel-ppp #history-file=/var/lib/accel-ppp/cli-history #sessions-columns=ifname,username,ip,ip6,ip6-dp,type,state,uptime,uptime-raw,calling-sid,called-sid,sid,comp,inbound-if,service-name,rx-bytes,tx-bytes,rx-bytes-raw,tx-bytes-raw,rx-pkts,tx-pkts,netns,vrf [snmp] master=0 agent-name=accel-ppp [connlimit] limit=10/min burst=3 timeout=60 #[metrics] # Exposes daemon statistics over HTTP. Same numbers as "accel-cmd show stat". # Enable by adding "metrics" to [modules] above. #format=prometheus #address=127.0.0.1:8080 #allowed_ips=["127.0.0.1/32"] #read_timeout=5 #max_clients=64 [ipv6-pool] #gw-ip6-address=fc00:0:1::1 #vendor= #attr-prefix=Delegated-IPv6-Prefix-Pool #attr-address=Stateful-IPv6-Address-Pool #reload-orphan=keep fc00:0:1::/48,64 fc00:0:2::/48,64,name=pool1 fc00:0:3::/48,64,name=pool2,next=pool1 delegate=fc00:1::/36,48 delegate=fc00:2::/36,48,name=pool3 delegate=fc00:3::/36,48,name=pool4,next=pool3 [ipv6-dns] #fc00:1::1 #fc00:1::2 #fc00:1::3 #dnssl=suffix1.local.net #dnssl=suffix2.local.net. #lifetime=600 [ipv6-dhcp] verbose=1 pref-lifetime=604800 valid-lifetime=2592000 route-via-gw=1 #aftr-gw=aftr.example.net #server-id=0:0:0:1 [ipv6-nd] #MaxRtrAdvInterval=600 #MinRtrAdvInterval=198 #MaxInitialRtrAdvCount=5 #MaxInitialRtrAdvInterval=3 #AdvManagedFlag=0 #AdvOtherConfigFlag=0 #AdvLinkMTU=0 #AdvReachableTime=0 #AdvRetransTimer=0 #AdvCurHopLimit=64 #AdvDefaultLifetime=1800 #AdvValidLifetime=2592000 #AdvPreferredLifetime=604800 #AdvOnLinkFlag=1 #AdvAutonomousFlag=1