Configuring X-Header Encryption - Cisco ASR 5000 Series Administration Manual

Enhanced charging services
Hide thumbs Also See for ASR 5000 Series:
Table of Contents

Advertisement

▀ Configuring Enhanced Features

Configuring X-Header Encryption

This section describes how to configure the X-Header Encryption feature.
Important:
information.
To configure the X-Header Encryption feature:
Step 1
Configure X-Header Insertion as described in the
Step 2
Create/configure a rulebase and configure the encryption certificate to use and the re-encryption parameter as described
in the
Configuring X-Header Encryption
Step 3
Configure the encryption certificate to use as described in the
Configuring X-Header Encryption
To configure X-Header Encryption, use the following configuration example:
configure
active-charging service <ecs_service_name>
rulebase <rulebase_name>
xheader-encryption certificate-name <certificate_name>
xheader-encryption re-encryption period <re-encryption_period>
end
Notes:
 This configuration enables X-Header Encryption for all subscribers using the specified rulebase
<rulebase_name>
 If the certificate is removed, ECS will continue using the copy that it has. It will only free its copy if the
certificate name is removed from the rulebase.
 Changes to x-header format configuration will not trigger re-encryption for existing calls. The changed
configuration will however, be applicable for new calls. The changed configuration will also apply at the next
re-encryption time to those existing calls for which re-encryption timeout is specified. If encryption is enabled
for a parameter while data is flowing, since its encrypted value will not be available, insertion of that parameter
will stop.
Configuring Encryption Certificate
To configure the encryption certificate, use the following configuration example:
configure
certificate name <certificate_name> pem { { data <pem_certificate_data> private-key
pem [ encrypted ] data <pem_pvt_key> } | { url <url> private-key pem { [ encrypted ] data
<pem_pvt_key> | url <url> } }
▄ Cisco ASR 5x00 Enhanced Charging Services Administration Guide
120
This feature is license dependent. Please contact your Cisco account representative for more
section.
.
Configuring X-Header Insertion
Configuring Encryption Certificate
Enhanced Charging Service Configuration
section.
section.

Advertisement

Table of Contents
loading

Table of Contents