System-Level Aaa Configuration - Cisco ASR 5000 Series Administration Manual

Gprs support node
Hide thumbs Also See for ASR 5000 Series:
Table of Contents

Advertisement

Mobile IP Configuration Examples
Required Information
Description
RADIUS attribute
Specifies the name by which the source context will be identified in the Access-Request message(s) it
NAS Identifier
sends to the RADIUS server. The name must be from 1 to 32 alpha and/or numeric characters and is case
sensitive.
RADIUS NAS IP
Specifies the IP address of the system‟s AAA interface. A secondary address can be optionally configured.
address

System-Level AAA Configuration

The following table lists the information that is required to configure the system-level AAA parameters.
Table 11. Required Information for System-Level AAA Configuration
Required
Description
Information
Subscriber
Specifies the name of a context that can provide AAA functions in the event that the domain-part of the
default domain
username is missing or poorly formed.
name
This parameter will be applied to all subscribers if their domain can not be determined from their username
regardless of what domain they are trying to access.
NOTE: The default domain name can be the same as the source context.
Subscriber
Specifies the name of a context that can provide AAA functions in the event that the domain-part of the
Last-resort
username was present but does not match the name of a configured destination context
context
.This parameter will be applied to all subscribers if their specified domain does not match a configured
destination context regardless of what domain they are trying to access.
NOTE: The last-resort context name can be the same as the source context.
Subscriber
Specifies the format of subscriber usernames as to whether or not the username or domain is specified first and
username
the character that separates them. The possible separator characters are:
format
Up to six username formats can be specified. The default is
NOTE: The username string is searched from right to left for the separator character. Therefore, if there is one
or more separator characters in the string, only the first one that is recognized is considered the actual separator.
For example, if the default username format was used, then for the username string user1@enterprise@isp1,
the system resolves to the username user1@enterprise with domain isp1.
OL-22944-02
@
%
-
\
#
/
Example 3: HA Using a Single Source Context and Multiple Outsourced Destination Contexts ▀
Cisco ASR 5000 Series Gateway GPRS Support Node Administration Guide ▄
@.

Advertisement

Table of Contents
loading

Table of Contents