H OTS POT GATEWAYAppendix B: Addendum 317L2TP TunnelingDefine RADIUS Service ProfilesPlease note: RADIUS service profiles are used to direct username access requests forboth plain RADIUS users and users who supply realm/domain in their username.Certain RADIUS servers can only be set to interpret tunnel profiles in either prefix orsuffix-mode so a minimum of two RADIUS servers are required if both prefix andsuffix-based usernames are to be handled. What these RADIUS servers will return inresponse to a RADIUS access request is the L2TP tunnel parameters that the HSGwill use to establish an L2TP tunnel. See next figure for an example of a RADIUSservice profile.z Create a RADIUS service profile to a RADIUS server that will handlePrefix-based users. This is to handle users that will login with a username inthe format type of “ISP/username”. In this case the delimiter is “/” and whatappears before it, “ISP”, is the realm name.z Create a RADIUS service profile for a RADIUS server that will handleSuffix-based users. This is to handle users that will login with a username inthe format type of “username@ISP.com”. In this case the delimiter is “@”and what appears after it, “ISP.com”, is the realm name.