Manuel d'utilisation / d'entretien du produit SG-1 du fabricant ADC
Aller à la page of 226
SG-1 Service Gateway System User Manual Document Number: SG1-UM-8500-03.
R EVISION H ISTORY The Revision Histo ry provides a summary o f any chan ges in this manual. Please m ake sure you are usin g the latest revision of this ma nual.
T able of Content s SG1-UM-8500-03 iii About This Manual ....... ............................................... .......................................... .......... xi Introduction ................................. ..................................
T able of Contents June 30, 2006 iv SG1-UM-8500-03 Chapter 5: Using the Command Line Interface ............ ............................ ............ ....... 5-1 Configuring the SG-1 ....................................................................
June 30, 2006 T able of Contents SG1-UM-8500-03 v Appendix B: Redirection Server .... ................................ ............................................. B-1 ORUP Commands ....................................................................
T able of Contents June 30, 2006 vi SG1-UM-8500-03.
List of Figures SG1-UM-8500-03 vii Figure 1-1. SG-1 10U ......... ................................................. ................................. ............... 1 -2 Figure 2-1. S traight-Through and Cross-Over Cable Pi n-Outs ......... .........
List of Figures June 30, 2006 viii SG1-UM-8500-03.
List of T ables SG1-UM-8500-03 ix T able 1-1. Packing List ...... ................................................. ................................................. .1 - 4 T able 1-2. System Inst allation Notes ............... .......................
List of T ables June 30, 2006 x SG1-UM-8500-03.
SG1-UM-8500-03 xi A BO UT T HIS M ANUAL I NTROD UCTION This manual applies to ADC's Service Gateway ( SG) syst em, hereaf ter referred to as "SG-1." This d ocument includes an overview of the plat form, inst alla tion procedures, and an SG-1 commands refer ence.
About This Manual June 30, 2006 xii SG1-UM-8500-03 C ONVENTIONS The following style conventions and term inology are used throu ghout this guide. EU C OMPLIANCE This product has been CE marked in acco.
SG1-UM-8500-03 1-1 1 Chapter O VERVIEW The SG-1 is a service creation plat form op timized for delivering dif ferentiated services to residential, mobile, and private subscribers. The SG- 1 enables service providers to offer attractive new services that can be selected dynamically and automatically by thei r wireless, dial-up and br oadba nd users.
Chapter 1: Overview June 30, 2006 1-2 SG1-UM-8500-03 The SG-1 comprises two types of syst em chassis: 1U and 10U. The 1U chassi s (or Mini Syste m Chassis) has 2 service creation slots and 1 power supply slot built into the cha ssis.
June 30, 2006 Chapter 1: Overview SG1-UM-8500-03 1-3 • Identify any required proced ures and test s. • On an equipment p la n, make a preliminary decision that locates each of the SG-1 chassis that you plan to install. • Read this manual, whether you are replacing or ad ding a SG-1 chassis that is being inst alled.
Chapter 1: Overview June 30, 2006 1-4 SG1-UM-8500-03 T able 1-1. Packing List T able 1-2. System Inst allation Notes Item Cat alog/Part Number SG-1 Service Gatewa y System Chas sis SG-1 Service Gatewa.
June 30, 2006 Chapter 1: Overview SG1-UM-8500-03 1-5 R EQUIRED T OOLS AND E QUIPMENT The following tools are required to inst all the SG-1 chassis: • Grounding o r ESD-preventive wrist strap • No.
Chapter 1: Overview June 30, 2006 1-6 SG1-UM-8500-03 T able 1-3. Possible SG-1 Options P OWER R EQUIREMENT S The following specifies the power versi ons available for the SG1 chassis, then specifies the power requirement s for your facility relative to the SG1 power version you selected.
June 30, 2006 Chapter 1: Overview SG1-UM-8500-03 1-7 Chassis Ground and Power Cabling The recommended cabling to ground the SG- 1 chassis is 6 A WG (minimum) stranded copper wire. For the SG-1 chassis, the recommended cabling is 14 A WG (1.88 mm diamete r) stranded copper or 14 A WG (1.
Chapter 1: Overview June 30, 2006 1-8 SG1-UM-8500-03.
SG1-UM-8500-03 2-1 2 Chapter I NSTALLATION This chapter provides detailed information abou t inst alling the SG-1. M OUNTING THE SG-1 C HASSIS T o mount the SG-1, complete the following procedure. C ONNECTING THE SG-1 C HASSIS G ROUND T o connect the SG-1 chassis ground, complete the following procedure.
Chapter 2: Installation June 30, 2006 2-2 SG1-UM-8500-03 Connecting AC Power to an SG-1 AC Chassis Connect an AC power cord( s) to AC power connectors, as required. I NST ALLING I NTERFACE C ABLES This section provides procedures for installing the cablin g for the network, subscribe r , and management interfaces.
June 30, 2006 Chapter 2: Installation SG1-UM-8500-03 2-3 T able 2-1. RJ -45 Pin-Out s Figure 2-1 shows the pin-out s for straight -through and cross- connect cabling . Figure 2-1. S tr aight -Through and Cross-Ov er Cable Pin-Out s MDI Pin Number MDI-X Pin Number Signal a a.
Chapter 2: Installation June 30, 2006 2-4 SG1-UM-8500-03 Connecting to an Ethernet Port C ONNECTING THE C RAF T P ORT I NTERFACE In situations where a Rear I/O card is inst alled, the default craf t port is on th e Rear I/O card. Moving a jumper on the Rear I/O card is required if you wish to use the front craft port.
June 30, 2006 Chapter 2: Installation SG1-UM-8500-03 2-5 Inst alling Blank Faceplates Use the blank faceplat e iden tified in the “ Blank Faceplate Requirement” on p age 1-6 . S ERIAL C ABLE ! IMPORT AN T Install blank faceplates in the SG-1 chassis to cover unused slots.
Chapter 2: Installation June 30, 2006 2-6 SG1-UM-8500-03.
SG1-UM-8500-03 3-1 3 Chapter C OMMAND -L INE I NTERFACE (CLI) This chapter describes the SG-1 Command-Line Interface (CLI) , the step s to a ccess the CLI, an d the steps to perform initial confi guration using the CLI.
Chapter 3: Command-Line In terface (CLI) June 30, 2006 3-2 SG1-UM-8500-03 C OMMANDS AND N AVIGATIO N Navigate the command-line interface by entering a command name or a command string to move to the appropriate command level. The command level is indicated b y th e prompt.
June 30, 2006 Chapter 3: Co mmand-Line Interface (CLI) SG1-UM-8500-03 3-3 C OMMAND -L INE E DI TING The command-line interface provides a DOS-like environment fo r editing. It provides spec ial key functions an d other special functions developed for a VT100-type terminal.
Chapter 3: Command-Line In terface (CLI) June 30, 2006 3-4 SG1-UM-8500-03.
SG1-UM-8500-03 4-1 4 Chapter A CCESSING THE C OMM AND L INE I NTERFACE The initial step for managing the SG-1 Service Gateway System is to log on locally to an SCC or rear I/O port (if a rear I/O card option is used) and set an IP address to a llow for remote management via a T elnet session.
Chapter 4: Accessing the Comm and Line Interface June 30, 2006 4-2 SG1-UM-8500-03 S ETTING THE IP A DDRESS Set the management card IP add ress, subnet mask, an d default gateway (if a gate way exist s) to enable communication with external networks and to enable access to the SG-1 CLI for T elnet sessions.
June 30, 2006 Chapter 4: Access ing the Command Line Interface SG1-UM-8500-03 4-3 Parameter(s) <slot number><port number> The SCC and rear I/O interfaces have specific designations as shown in T able 4-2 . T able 4-2. Interface Identification <ipaddr> The SCC IP address for interface in question.
Chapter 4: Accessing the Comm and Line Interface June 30, 2006 4-4 SG1-UM-8500-03 D ISPLAYING THE IP A DDRESS From the Host> prompt, ente r the show configuration command to verify your co nfiguration.
SG1-UM-8500-03 5-1 5 Chapter U SING THE C OMMAND L INE I NTERFACE There are multiple ways to access an SG-1 for manag em ent. Also, there are rules that determine the number of accesses that can be made at one time to an SG-1 sy stem. Once you have access, you can complete the configuration and management of the SG-1.
Chapter 5: Using the Command Line Interface June 30, 2006 5-2 SG1-UM-8500-03 W HAT TO D O N EXT From the command-lin e interface, use the proce dur es in this manu al to (among other things): • Configure the network card por ts, followed by services for the network connectio ns, including Automatic Pro- tection Switching (APS) for the OC3 card.
SG1-UM-8500-03 6-1 6 Chapter F IRST -L EVEL C OMMANDS This chapter describes the commands available at the first command level of each SCC. Y ou can enter the entire command or the first two letters of most commands an d command-line argument s.
Chapter 6: First-Level Commands June 30, 2006 6-2 SG1-UM-8500-03 S HOWING A L IST OF A VAILABLE P ARAMET ERS Using the GREP command The GREP command may be o perated on any of the system commands.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-3 Example(s) Using the show ? command From the first-level Host> prompt, enter show ? to view a list of available commands.
Chapter 6: First-Level Commands June 30, 2006 6-4 SG1-UM-8500-03 These commands are discussed below . Using the show version command Enter show version to see version levels of hardware and sof tware.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-5 Example(s) Host> show version software Module Num Application ______ ___ ___________ SCC-ATM155 1 10.0T2.05 Jun 08 2006 17:18:19 Host> Host> show version hardware Module Num Part No.
Chapter 6: First-Level Commands June 30, 2006 6-6 SG1-UM-8500-03 Displaying the configuration in NVRAM Usage show configuration Host> show configuration.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-7 Example(s) Host> show configuration # version: 10.0T2.05 Jun 08 2006 17:25:51 interface ethernet 01 172.
Chapter 6: First-Level Commands June 30, 2006 6-8 SG1-UM-8500-03 ip local-pool pool1 162.10.1.1 162.10.1.254 internal ip domain-name POPmaestro ip primary-name-server 62.90.133.233 ip secondary-name-server 0.0.0.0 ip default-gateway 172.16.1.1 ip tcp adjust-mss on ip dhcp relay server Ethernet 02 1 172.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-9 Displaying Ethernet port configurations Displayin g Ethernet Port St atistics Use the show ethernet command to display th e Ethernet port p arameters for the Rear I/O Eth ernet port.
Chapter 6: First-Level Commands June 30, 2006 6-10 SG1-UM-8500-03 Example(s) Host> show ethernet 0 1 Interface Slot 0 Port 1 is up, line protocol is up Hardware address is 008042195FB7 Internet address is 10.0.1.220 Mask is 255.255.255.0 Gateway IP address is 10.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-1 1 Displaying SONET port s t atus Usage show port sonet Parameter(s) None. Example(s) Host> show port sonet Host> show port sonet .
Chapter 6: First-Level Commands June 30, 2006 6-12 SG1-UM-8500-03 Displayin g A TM Po rt St atus Usage show atm pvc Parameter(s) None. Example(s) Host> show atm pvc Host> show atm pvc Name VPI V.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-13 Displayi ng User St atus Usage show [<cr>|<number>] Parameter(s) [<number>] The line number of the user to be viewed.
Chapter 6: First-Level Commands June 30, 2006 6-14 SG1-UM-8500-03 Host> show users 704 Line number: 702 Line type: ANet User type: PPP User name: 0_220 IP address: 10.220.3.191, IP pool name: 1 Next Hop: 10.0.1.253 Tunnel ID(in): 4798 Tunnel Session ID(in): 21182 LAC source IP 10.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-15 Displaying Routing T ables Use this command to display the configured routes. Usage show ip-route Parameter(s) None. Example(s) Displaying System Administ rators Usage Use this command to display the system admi nistrators that are logged onto the system.
Chapter 6: First-Level Commands June 30, 2006 6-16 SG1-UM-8500-03 Displaying System Parameters Usage show system show system <load> Parameter(s) <load> Calculates the throughput thro ugh each interface in Mb ps.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-17 Host> show system load Calculating load ... Total current connected users: 0 Total sessions' capacity: 2000 System load: 0% CPU usage: 1% Interface 0/2 Throughput [5 sec. Avg.]: 0.
Chapter 6: First-Level Commands June 30, 2006 6-18 SG1-UM-8500-03 Displaying License Attrib utes This command displays the system license information .
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-19 Example(s) Host> show license Working license : permanent Temp License Magic: T001001086 [CREATION] DATE=December 22 2005 16:03:57 .
Chapter 6: First-Level Commands June 30, 2006 6-20 SG1-UM-8500-03 Filter Redirection=on Location Based Service=on Service Selection=on Native IP=on Dynamic IP Changing=on Application Awareness=on MPLS.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-21 Displaying VRRP attributes Use this command to display the configured Virtual Rou ter Redu ndancy Protocol (VRRP) st atus on the specified interfaces.
Chapter 6: First-Level Commands June 30, 2006 6-22 SG1-UM-8500-03 For the backup: Displaying active GRE and IP-in-IP tunnels This command displays the active GR E and IP-in-IP tunnels in the system. Usage show ip-tunnel [gre | ip-in-ip [<remote endpoint Ip address> <tunnel direction>]] Parameter(s) None.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-23 Example(s) Host> show ip-tunnel <cr> Tunnel IP Tunnel Total Tunnel Tunnel Endpoint Sessions Status Type --------------- ---------- -------- ------- ------ 192.168.1.1 remote 20 unknown gre 10.
Chapter 6: First-Level Commands June 30, 2006 6-24 SG1-UM-8500-03 Displaying show mpls-labe ls commands It displays the incoming labels binding received from the neighbors and the ou t- going label binding distributed by the system. When no specific FEC is defined, the system sh ows all FECs.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-25 VC in for Martini draft: VC OUT for Martini draft: S t andard in specific FEC lable: Host> show labels vc in VC ID VC Type Group ID Label Tunnel Endpoint Upper stack FEC ID 1 LAN 0xc2010000 123876 192.
Chapter 6: First-Level Commands June 30, 2006 6-26 SG1-UM-8500-03 Displaying show mpls l2transport vc commands It shows confine redirected interface traf fic th rough MPLS l2vpn tunnel based on Mar tini draf t. Example(s) Displaying a list of available write commands This command shows the available write commands enabled on the SCC.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-27 Example(s) Host> write terminal # version: 10 May 21 2006 15:14:31 password viewer Tw)wtx- password operator Tw)wtx- password super.
Chapter 6: First-Level Commands June 30, 2006 6-28 SG1-UM-8500-03 Using the copy-TFTP command Use this command to copy a new application software (im age) or license file from a TFTP server to the flash memory of the SCC-ETH card.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-29 The destination ip address to ping. [-c <number>] The number of echoes. [-i <number>] The number of wait se conds. [-s <number>] The number of bytes. [atm] The A TM interface.
Chapter 6: First-Level Commands June 30, 2006 6-30 SG1-UM-8500-03 Using the reload command to re st art the system Use the reload non-gr aceful command to reset the sy stem and relo ad the sof tware . Usin g this command will terminate all sessions. Usage reload non-graceful Parameter(s) None.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-31 Clearing Users A specific user can be disconnected fro m the SG-1 by writing the clear user comman d followed by its line number . Usage clear user <line number> Parameter(s) <line number> The line number of the user to be clear ed.
Chapter 6: First-Level Commands June 30, 2006 6-32 SG1-UM-8500-03 Using the T raceroute Command Use the traceroute command to track the route a packet t akes to a network host. Usage traceroute <ip address> [-h <number>| -i <seconds>] Parameter(s) <ip address> The IP address to which the trace is to be performed.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-33 Using the exit command This command exits the user from the curr ent configuration leve l. W hen used at the first level, the user is logged out of the session. Usage exit Parameter(s) None.
Chapter 6: First-Level Commands June 30, 2006 6-34 SG1-UM-8500-03 U SING D EBUG M ODE This section provides informatio n on the co mmands and options available in debug mode. Switching to Debug Mode Use the debug command at the first-level prompt ( Host> ) to switch the system to the second-level debug prompt: Host(debug)# .
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-35 Using the show command in debug mode Use the show command to display memor y , system, and fragmentation information. Usage show [memory | system |log-modules | statistics | arp] Parameter(s) [memory] Display memory allocation.
Chapter 6: First-Level Commands June 30, 2006 6-36 SG1-UM-8500-03 Example(s) Host(debug)# show statistics fragmentation Total number of packets that were fragmented: 0 Total number of packets that wer.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-37 Host(debug)# show log-modules Group Error Error Event Event Trace Name Min Max Min Max AAA 0 DEF 0 DEF DEF User 0 DEF 0 DEF DEF IP 0 D.
Chapter 6: First-Level Commands June 30, 2006 6-38 SG1-UM-8500-03 Module Gro up Error Er ror Event Event Trace Name Name Min Max Min Max ABM User 0 DEF 0 DEF DEF AbmFSM User 0 DEF 0 DEF DEF AbmIpPool .
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-39 This comma nd displays the arp tabl e informatio n. Usage Show arp [<index ><NextAd dress>] Parameter(s) <index> The interface on which this entry’s equivalence is e ffectiv e.
Chapter 6: First-Level Commands June 30, 2006 6-40 SG1-UM-8500-03 It clears the arp table entry (only dynamic entries) , th e clear arp specific, clear s any entr y except the static ones. Note: when deleting a non-volatile arp entry the s ystem might re-creates it as a dynamic entry.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-41 Host(debug)# show memory Free memory: region 0: 9583616 region 1: 56918016 Largest memory : region 0 buffer: 9583616 region 1 buffer: .
Chapter 6: First-Level Commands June 30, 2006 6-42 SG1-UM-8500-03 Defining port-ethernet redundancy-mode command It immediately activates th e Ethernet redundancy ope ration.
June 30, 2006 Chapter 6: First-Level Commands SG1-UM-8500-03 6-43 Checking the system RADIUS interface This command checks the system RADIUS interface, by authenticating user -name and p a ssword the same way the system authenticates a connected call (including retries a nd RADIUS redundancy).
Chapter 6: First-Level Commands June 30, 2006 6-44 SG1-UM-8500-03.
SG1-UM-8500-03 7-1 7 Chapter S ECOND L EVEL C OMMANDS This chapter describes the prima ry co mmands ava ilable at the second command level. For addition al seco nd level commands, refer to Appendix B: Redi rection Server .
Chapter 7: Second Level Comma nds June 30, 2006 7-2 SG1-UM-8500-03 Example(s) Host> configure network 155.226.20.250 filename Loading file ... Preparing TFTP download...Done. Starting the TFTP download....completed(downloaded size is 892 ). Converting file .
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-3 B ANNER C OMMAND Creating a Login Banner You may create a greeting message or banner, to be disp layed on the user 's termina l when they log in. Th e banner may be a string of up to 32 alphanumeric characters.
Chapter 7: Second Level Comma nds June 30, 2006 7-4 SG1-UM-8500-03 <ethernet mode> The operating mode of the inte rface to be configured (see Table 7-2 ). (mtu) The maximum transmission u nit. Select either: • 1500 (default) • 1544 Example 1 Example 2 T able 7-1.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-5 T able 7-2. Ethernet Operating Mode Usage no interface Ethernet <slot numb er><port number> Parameter(s) <slot number> This is the interface slot number you want to configure.
Chapter 7: Second Level Comma nds June 30, 2006 7-6 SG1-UM-8500-03 Configuring Ethernet Redundancy The system support s redundancy be tween 01 and 02 ethernet interface or be tween 11 or 1 2 Ethernet inter face.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-7 Example(s) Using the no port-ethernet redundancy-enable command This command disables redundancy bet ween the two Ethernet inter faces.
Chapter 7: Second Level Comma nds June 30, 2006 7-8 SG1-UM-8500-03 L OOPBACK C OMMANDS Configuring interface loopback This command enables the administrato r to either add or ch ange the loopback interface.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-9 Example(s) Using the no interface loopback command This command delete s the loopback interface. Usage no interface loopback <interface number> Parameter(s) <interface number> This is the loopback inte rface number to be deleted; va lid range is 1 to 200.
Chapter 7: Second Level Comma nds June 30, 2006 7-10 SG1-UM-8500-03 Usage interface vlan <slot number> <port number> <vlan id> <IP address> <mask> [ name <VLAN name> | QinQ <start ID><range>] Parameter(s): <slot number> Slot number of the physical card.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-1 1 Using no interface VLAN co mmand This command deletes a VLAN defi nitio n for the Ethernet interface. Usage no interface vlan <slot number> <port number> < id> Parameter(s) <slot number> This is the slot number of the physical card.
Chapter 7: Second Level Comma nds June 30, 2006 7-12 SG1-UM-8500-03 Setting the default-se rvice authentication mode When using authenticat ion by userna me and password two protocols are available: • PA P (Password Authentication Pro tocol )–the most basic form of authentication.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-13 Changing domain authentication settings In a SG-1 system, virtual private t unnels (VPNs) are created upon RADIUS requ est. The tunneling service is always enabled within the SG-1 (there is no configuration command for turning it on or of f).
Chapter 7: Second Level Comma nds June 30, 2006 7-14 SG1-UM-8500-03 Example 1: The “no” command set the system web authentication mode to PAP. Example 2 : AT M C OMMANDS This section describes the procedure for configuring an ATM PVC (Per m anent Virtual Circuit).
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-15 Usage port sonet <slot> <port> type (OC3c|STM1) Parameter(s) <slot> The line card slot to be configured. Use the value 2 to indicate the configurat ion of the SONET/SDH po rt.
Chapter 7: Second Level Comma nds June 30, 2006 7-16 SG1-UM-8500-03 <protect port> The port number to be des ignated as the prot ect port (valid value = 1 or 2). [SFBER (value)] Signal Fail Bit Error Rate Threshold. Valid valu es = 3 to 12, Default = 3.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-17 [loopback] Places a logical loopback on the bridge-route interface. <loopback number> Numeric value assigned to the bridge-route loopback. [mtu] Used to set the int erface's Maximum Tran smission Unit (MTU) (valid values are 1500 or 15 44 ).
Chapter 7: Second Level Comma nds June 30, 2006 7-18 SG1-UM-8500-03 Using the no pppoa enable command The no pppoa enab le interface command disables PPPoA negotiation for a specific interface in th e system. Usage No pppoa enable interface <slot number><port number[sub-interface number]> For para meters see T abl e 7-6 .
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-19 T able 7-6. int erfa ce atm command p arameters Example(s) After this command is run, the system deletes the ATM interfac e, as well as all of the enabled applications for this interface (such as, PPPo E, PVC, PPPoA, etc.
Chapter 7: Second Level Comma nds June 30, 2006 7-20 SG1-UM-8500-03 Configuring a single PVC This command creates a permanent vir tual circuit (PVC) on an A TM interface.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-21 [OAM] Operation And Manage ment mode • on - Enable OAM mode • off - Disable OAM mode • on-cc - Enable OAM mode with continuity check Example(s) Configuring a range of PVC’ s Use this command to configure a range of PVC's on an A TM interface.
Chapter 7: Second Level Comma nds June 30, 2006 7-22 SG1-UM-8500-03 [OAM] Operation And Manage ment mode • on - Enable OAM mode • off - Disable OAM mode • on-cc - Enable OAM mode with continuity check Example(s) RADIUS C OMMANDS Configuring the RADIUS server in the SG-1 configuration Each RADIUS server should be configured in the syst em.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-23 Parameter(s) <port address> The authentication po rt number can be a ny number betwee n 0 and 65535. The de fault value is 181 2. <port number> The accounting port number can be any number between 0 and 6 5535.
Chapter 7: Second Level Comma nds June 30, 2006 7-24 SG1-UM-8500-03 Example(s) Using the service cache command The SG-1 is able to cache each r eceived service's in for mation based on a configured aging time .
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-25 Example(s) Using the no ip radius source-interface command This command deletes the radius source-interface configuration by setting it to it s default value.
Chapter 7: Second Level Comma nds June 30, 2006 7-26 SG1-UM-8500-03 access-list EDS-permit <source IP address> <mask> <cr> access-list native-ip <source IP address> <mask>.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-27 Parameter(s) <source ip address> This is the allowed network sou rce IP; it must be a legal network IP address. <source mask> This is the allowed network sou rce mask; it must be a legal network IP address.
Chapter 7: Second Level Comma nds June 30, 2006 7-28 SG1-UM-8500-03 Example(s) Using the no access-list native-ip-pass-thro ugh co mmand The no access-list native-ip-p ath-t hrough comman d deletes a p ath through native IP access list configuration. It deletes the static native-ip access list configuration.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-29 When using the group parameter , there are thr ee options for the first command line argument: • aaa –Major alarm. Any defined RADIUS serv er marked in the system DB as dead (inactive) will be reported via SNMP .
Chapter 7: Second Level Comma nds June 30, 2006 7-30 SG1-UM-8500-03 T UNNEL COMMANDS This command defines a r emote (the tunnel initiator ) tun nel endp oint IP addr ess, which allowed opening ip-in-ip or GRE tunnels to the system.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-31 The tunnel interface should appear in t he ifT able with type tunnel (131) and should inclu de the st andar d interface information. The maximum number of tunnel interfaces in the system is 500.
Chapter 7: Second Level Comma nds June 30, 2006 7-32 SG1-UM-8500-03 Example(s) Using the ip tunnel echo command This command defines the source IP address to be used for the ICMP ech o message in the redundancy operation.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-33 T IMEOUT S C OMMANDS Setting the Session-Timeout The session timeout is used to disconnect a user after a specifi ed number of second s.
Chapter 7: Second Level Comma nds June 30, 2006 7-34 SG1-UM-8500-03 N ATIVE IP C OMMANDS Using the native-ip dhcp pre- auth-mode command The system should enable u pon configur atio n to pre-authenticate a Native IP session, wh ich uses DHCP (DHCP discover) for IP allocation based on its MAC address.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-35 Example(s) Using the native-ip enable command This command enables native ip service on a specific interface. It enables the native IP for a specific VLAN or interface . Phase 1 should include Ether net interface and VLAN-Id o nly .
Chapter 7: Second Level Comma nds June 30, 2006 7-36 SG1-UM-8500-03 Example(s) The system should disable th e native-ip enable command in case Native IP capability is not license d (set to off ).
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-37 Using native-ip realm command The native-ip realm command specifies the realm string the system sh ould use in the na tive-ip authent icating, accounting, and service operations.
Chapter 7: Second Level Comma nds June 30, 2006 7-38 SG1-UM-8500-03 Parameter(s) <slotport> The Ethernet slot number (valid number range is 0 to 2).
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-39 M AXIMUM S EGMENT S IZE (MSS) C HANGING Using the ip tcp adjust-mss command The system, when configur ed so that ip tcp adjust-mss is.
Chapter 7: Second Level Comma nds June 30, 2006 7-40 SG1-UM-8500-03 L2TP AND PPP C OMMANDS The L2TP commands are used for configuring the L2tp source-addr ess. When the l2tp source-address is configured, the system set s the l2tp sou rce address in the respo nse packet s regardl ess o f the original l2tp LAC request.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-41 Configuring the primary DNS Usage ip primary-name-server <IP address> Example(s) Configuring the secondary DNS Usage ip seconda.
Chapter 7: Second Level Comma nds June 30, 2006 7-42 SG1-UM-8500-03 <mask> The mask of the network allowed connecting the LNS. <alpha-numeric string> Password used for auth entic ating between LAC and LNS. Example(s) Setting multi-link mode The SG-1 allows the user to use higher bandwidth by using ML- PPP.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-43 Parameter(s) <pool_name> The IP pool name (an alpha-numeric string) . <starting_IP> Starting IP address.
Chapter 7: Second Level Comma nds June 30, 2006 7-44 SG1-UM-8500-03 Using the lcp echo command This command configures the LCP echo behavior in all PPP sessions. • The system default L CP configuration is of f. • The system LCP echo retries value is 3.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-45 Using the service internal command The system default internal service is Framed-PPP. When c onfigur ed to th e defau lt value, write ter minal does not present the configuration line.
Chapter 7: Second Level Comma nds June 30, 2006 7-46 SG1-UM-8500-03 PPPoE support SG-1 PPP over Ethernet (PPPoE) sup port enables multiple hosts at a remote site to connect through the same customer premise acce ss device . It also provides access control and billing func tionality in a manner similar to dial- up services using PPP .
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-47 2. SG-1 as xDSL aggregator using Gig abit Ethernet ne twork In this scenario, a PPP session is initiated on an Etherne t-connected client thr ough a st andard ADSL mode m.
Chapter 7: Second Level Comma nds June 30, 2006 7-48 SG1-UM-8500-03 DHCP C OMMANDS Dynamic Host Configuration Pr otocol (DHCP) is a communica tions protocol that lets net work administrators manage centrally and automate th e assignment of Internet Protocol (IP) addresses in an organization's n etwork.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-49 Using the ip dhcp relay information o ption command The ip dhcp relay information option command enables the syst em to insert a DHCP relay agent information option in forwarded BOOT REQUEST messages t o the DHCP ser ver .
Chapter 7: Second Level Comma nds June 30, 2006 7-50 SG1-UM-8500-03 DHCP Agent ID Overwrite When configured, the SG-1 should overwrite the DHCP agent ID and the server identifier to its ID ( IP address) in the DHCP reply messages. The system d oes not overwr ite the DHCP agent ID in it s default behavior .
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-51 IGMP C OMMANDS Using the ip igmp proxy command The ip igmp proxy up stream-interface command enables the IGMP Proxy cap abilities on a specific upstream interface. When the upstream interfac e is not configured, the system does not support the IGMP proxy capability .
Chapter 7: Second Level Comma nds June 30, 2006 7-52 SG1-UM-8500-03 R OUTING C OMMAND Using the ip forward command This command enables IP forwarding between the Ethernet in terfaces. The system's defaul t setting does not use IP forwarding. Usage ip forward This command disables IP forwardi ng betwee n the Ether net interfaces.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-53 Example(s) Add an IP route: Modify an Existing IP route: Route network 192.168.4.0 to Ether net interface 2 : Route network 192.
Chapter 7: Second Level Comma nds June 30, 2006 7-54 SG1-UM-8500-03 Route network 192. 168.4.0 to Loopback in ter face 2: Route network 192.168.4.0 to Ether net interface 02: Route native IP user side n etwork 192.168.4. 0 to 192.168.1.1: Route network 10.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-55 Deleting an IP route line This command deletes the existing route. Usage no ip route [nip] <destination prefix> <network mask> <next-hop IP-address> Parameter(s) T able 7-15.
Chapter 7: Second Level Comma nds June 30, 2006 7-56 SG1-UM-8500-03 Usage no ip default-gateway Example(s) When assigning a default-ga teway that is not in the subnet of the primary or secondary Ethernet interface s, the system provides a warning. Using the router command This command defines the system default routing proces s.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-57 Example(s) This command disables the system default r outing process. Usage no router Using the IP rip authentication key command The ip rip command is located beneath the "conf igure terminal" menu.
Chapter 7: Second Level Comma nds June 30, 2006 7-58 SG1-UM-8500-03 Example(s) Using the no ip osp f interface command This command disables OSPF on an interface.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-59 Using the ip osp f interface dead- interval command The command specifies the number of seconds that a devic e's hello p acket s must not have bee n seen before it s neighbor declares th e OSPF router down.
Chapter 7: Second Level Comma nds June 30, 2006 7-60 SG1-UM-8500-03 Parameter(s) <simple-pass | message-digest | null> This is the authenticat ion type specified for neig hbor in g OSPF routers.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-61 Usage no ip ospf interface <Ethernet | VLAN | ATM> <slot number><port number> [<sub-interface>] authentication-key For para meters and examples, refer to “Using the ip ospf interfac e a uthentication-key command” .
Chapter 7: Second Level Comma nds June 30, 2006 7-62 SG1-UM-8500-03 Using the ip osp f area s tub command This command configures an OSPF area as a stub area. The system default stubb in g option is no-stub and th e system default advertisemen t behavior is su mmary .
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-63 Using the no ip osp f ad ve rtise networ k co mmand This command deletes adver tisement of a network. Usage no ip ospf advertise network <area-id> <Network> For para meters and examples, refer to “Using the ip ospf adver tise network comma nd” on p age 7-62 .
Chapter 7: Second Level Comma nds June 30, 2006 7-64 SG1-UM-8500-03 Parameter(s) <slot number> This is the SCC slot number; valid number range is 0 to 2. <port number> This is the SCC port number; valid values are 1 or 2. <sub-interface> This is the SCC for A TM sub-interface number; valid number range is 1 to 4095.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-65 Example 1: create mpls L2 VPN based on Martini draft for redirection Example 2: create mpls L2 VPN based on Martini draft for ternination Using the no mpls l2transport interface command This command detect s an MPLS l2vpn interfa ce based on Martini.
Chapter 7: Second Level Comma nds June 30, 2006 7-66 SG1-UM-8500-03 <vc-id> This assigns a VC ID to the virtual ci rcuit between the system and the remote PE.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-67 Using mpls ip default-route comma nd It enables the distributio n of labels as sociated with the IP d efault route. Usage mpls ip default-route Example Using no mpls ip default-route command It disables the distribution of label s associated with t he IP default route.
Chapter 7: Second Level Comma nds June 30, 2006 7-68 SG1-UM-8500-03 T able 7-17. vrrp command p arameters The following examples use two SCCs (Service Creation Ca rds): Example 1 (SCC1 configuration):.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-69 Example 1 (SCC1 configuration): Example 2 (SCC2 configuration): Host(config)# vrrp interface Ethernet 01 1 ip 192.168.1.100 priority 200 preempt- mode on Host(config)# vrrp interface Ethernet 01 2 ip 192.
Chapter 7: Second Level Comma nds June 30, 2006 7-70 SG1-UM-8500-03 Using the no vrrp command This comma nd deletes the virtual r outer configuration in the system. Usage no vrrp interface <Ethernet | VLAN> <slot number> <port number> [ <VLAN ID>] <number> Parameter(s) T able 7-18.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-71 Example(s) D EBUG C OMMANDS Use the commands at the se cond level prompt to s witch the system to the second -level debug prompt, Host(config-debug)# . This indicates that the user is now in t he second level debug mode and has acce ss to the commands in the debug menu.
Chapter 7: Second Level Comma nds June 30, 2006 7-72 SG1-UM-8500-03 Configure time server Usage (config-debug)# time-server-ip <IP address> Parameter <IP address> It is timer host IP addr ess, legal IP address.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-73 Example (config-debug)# error-level default [ set-all <number>] Parameters set-all Will set all modules back to default <number> value of default maximum error leve l , numbers are ….
Chapter 7: Second Level Comma nds June 30, 2006 7-74 SG1-UM-8500-03 Debug modules Usage (config-debug)# error-level Module ABM < max | min | default > Parameters < max > Maximum level <.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-75 Examples Usage (config-debug)# error-level Group AAA < max | min | default > < max > Maximum level < min > Minimum .
Chapter 7: Second Level Comma nds June 30, 2006 7-76 SG1-UM-8500-03 Examples T race commands Usage Parameters <default> System's Default trace settin g <Module> System's trace lo.
June 30, 2006 Chapter 7: Second Level Commands SG1-UM-8500-03 7-77 Examples Configure Usage (config-debug)# sysLog-server-ip <IP addr ess> Parameter <IP address > It is the SysLogger IP address. Usage (config-debug)# e xit This command will cause ex it current config uration level.
Chapter 7: Second Level Comma nds June 30, 2006 7-78 SG1-UM-8500-03 Usage (config-debug)# end This command will cause Return to first configuration level.
SG1-UM-8500-03 A- 1 A Appendix SG-1 V ENDOR -S PECIFIC A TTRIBUTES This appendix describes the v endor-specific attributes relat ed to SG-1 EDS archite cture . O VERVIEW The vendor-specific attr ibutes are based on RFC-2 865 RADIUS recomme ndat ion. The first 4 octets are the vendor id (supported vendor ID 2454, 2014).
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-2 SG1-UM-8500-03 6 service-name user 16 V5.0 Contains the information of the service name, which was given to the connected peer or the peer requested service name. 7 personal-s ite user 17 V5.
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A- 3 19 service-timeout service 50 V5.0 Defi nes the service session timeout measured in seconds. 20 next-service- name service 51 V5.0 Defines the name of the next service to provide when a service "session time out" expir es.
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-4 SG1-UM-8500-03 33 nip-pipe-next- hop rou te 72 V7.0 Defin es the next-hop router to be used for the traffic destined to a native IP user. 34 advertise- protocol route 73 V7.0 Defines the routing protocol to be use to advertise the session IP address.
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A- 5 47 acl-down-m ean- rate qos 93 V7.0 Specifies the average number of bits per second allowed to the user in the downstream direction per a specified access list. 48 cos qos 94 V7.
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-6 SG1-UM-8500-03 Hierarchical Attribute Mode Most of the EDS attributes are operat ed in hierarchy mode . In th is mode, eac h session includes per each attribute 3 hierarchy-operating level sp aces.
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A- 7 Scenario Examples: • enable – Enables the sending of the accounting information. • lastp acket – This accounting operation mod e enables last p acket accountin g sessi on time , which is based on the last user's p acket timestamps .
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-8 SG1-UM-8500-03 Format: adc-avpair = "user:accounting=[disable | enable | lastpacket |enable-on-ip- update | interim-update;<acco.
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A- 9 General: Format: adc-avpair = "user:auth-type= <pr e-auth | service-selection | web-auth>", Example: ad.
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-10 SG1-UM-8500-03 General: Format: adc-avpair = "user:action= <Rejec t | echo | macantispoof | user_space_overwr ite | user_space_.
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A-1 1 General: Format: adc-avpair = "user:service-name= <service name>, Example: adc-avpair = "user:service-.
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-12 SG1-UM-8500-03 Format: adc-avpair = "user:personal-site= <site URL>", Example: adc-avpair = "user:personal-site= www.
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A-13 user:max-allowed-sessions sub- att ribut e The user:max-allowed-sessions sub-attribute define s the maximum number o f sessions allowed in a single blade per username.
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-14 SG1-UM-8500-03 user:eds-enc-key sub-att r ibute The user:eds-enc-key sub-attribute c ont ains an encryption key for EDS o peration. The encryp tion key sho uld be exactly 16 characters long, comprised solely of character s from the set (“0 - 9”, “a - f”, “A - F”) .
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A-15 user:original-url-prefix sub-at tribute The user:original-url -pr efix sub-attribute contains a str ing that should be pref ixed by the RDS to the user original requested url when redirecting the user to its perso nal si te.
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-16 SG1-UM-8500-03 DHCP GROUP dhcp:dhcp-server sub-att ribute The dhcp:dhcp-server attri bute defines the DHCP server IP address, which the system should relay the user's DHCP requests .
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A-17 dhcp:opt82-relay-remote-id sub-attribute The dhcp:opt82-relay-remote-id attribute cont ains the re ceived option 82 relay remote ID sub-option, wh ile each byte information is in h exadecimal format.
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-18 SG1-UM-8500-03 PROTOCOL GROUP protocol:type sub-attribu te There is a need in Access Request messages to receive a hint of the protocol ne gotiated with the peer . The protocol:type sub-attribute fu lfills this need and enables th e operator to manage the connections.
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A-19 service:next-service-na me This vendor specific sub-attribute defines the name of the next service to use when a service "session timeout" expires.
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-20 SG1-UM-8500-03 service:auth-source This sub-attribute defines the source name to be used wh en t he PO Pma est ro author izes or authen ticate s a service with the RADIUS. The POPmaestro p erforms a RADIUS access request when a serv ice is activated.
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A-21 Example: adc-avpair = "service:data-quota= 5000000", service:dat a-quot a-used The service:data- quota-used con tains the session's used quot a in bytes. It is being sent only if a quota has been established for the session.
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-22 SG1-UM-8500-03 General: Format: adc-avpair = "service:acl-data-quota= <access-list number>;<data quota in by tes>".
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A-23 General: Format: adc-avpair = "service:acl-data-quota-used = [access-list name;]<used data quo ta in bytes>&.
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-24 SG1-UM-8500-03 General: Format: ADC-avpair = "service:acl-packet-quota =<access-list name>;<packet quota>;<quota pe.
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A-25 General: Format: adc-avpair = "service:acl-packet-quota-used =access-list name;<used packet quota>;<time .
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-26 SG1-UM-8500-03 ROUTE GROUP route:remote-fil ter-redirect-gw This vendor specific sub-attribute def ines the remote redirection gateway fo r redirecting the p a cket s th at did not pass the defin ed filter s.
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A-27 system ignores all other instances. Note that the next hop must b e directly connect ed otherwise the packet s will be discarded.
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-28 SG1-UM-8500-03 General: Format: adc-avpair = "route:forward-addr =<IP address> ", Example: adc-avpair = "route:forward-addr =192.
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A-29 route:acl-tcp-nat- redire ct att ribut e The route:acl-tcp-nat-redirect attribute defines a destination IP address to wh ich the system shoul d TCP redir ect all session packets.
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-30 SG1-UM-8500-03 General: Format: adc-avpair = "vpdn:l2tp-tunnel-password= <password>", Example: adc-avpair = "vpdn:l2tp-tunnel-password= test", vp dn:ip-address at tribute This attribute indicates the address o f the server end of the tunnel.
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A-31 vp dn:tunnel-client-ip-address This attribute contains the address of the initiator end of the tunnel (LAC IP address). It enables th e operator to distinguish between users that accessed t he network from dif ferent access servers.
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-32 SG1-UM-8500-03 Format: adc-avpair = "vpdn:tunnel-client-ip-addre ss-= <tunnel client ip address>", Example: adc-avpair = "vpdn:tunnel-server-client-i p-address= 192.
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A-33 QOS GROUP qos:up-mean-rate The qos:up-mean-rate sub- attribute specifies th e average num ber of bits per second allowed by the user in the upstream direction.
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-34 SG1-UM-8500-03 General: Format: adc-avpair = "qos:acl-up-mean-rate= <access list name>;<up mean rate in Kbit s>",.
June 30, 2006 Appendix A: SG-1 V end or-S pecific Attributes SG1-UM-8500-03 A-35 Example: The system sets DIFFSERV field to 12 of a ll the packet s that passed access-list vide o.
Appendix A: SG-1 V endor-S pecific Attributes June 30, 2006 A-36 SG1-UM-8500-03 DNS GROUP dns:ip-primary The dns:ip-primary attribute define s the primar y DNS server to be used by the connected peer . General: Format: adc-avpair = "dns:ip-primary= <Primary DNS IP>", Example: adc-avpair = "dns:ip-primary= 194.
SG1-UM-8500-03 B- 1 B Appendix R EDIRECTION S ERVER The Redirection Server (RDS) is an AD C’ s product that red i rect s all pee rs’ Http r equests to their personal-sites as pre-defined in th e Radius server .
Appendix B: Redirection Server June 30, 2006 B-2 SG1-UM-8500-03 Usage password <user type> <password> Parameter(s) <user type> It is the user type to change the password by operator or technician. <password> It is th e new pas sword , 6 to 64 alphanumeric characters.
June 30, 2006 Appendix B: Redirection Server SG1-UM-8500-03 B- 3 ORUP C OMMANDS Using ORUP (Original Requested URL Prefix) Usage <user personal site><ORUP fi eld><origina l URL reque st> Parameter: <ORUP field> This is the ORUP field value.
Appendix B: Redirection Server June 30, 2006 B-4 SG1-UM-8500-03 S ERVICE N AME C OMMANDS Using service-name command • The service-name command defines the se rvice to be operated for all sessions. • The command located at the “configure ter minal” menu.
June 30, 2006 Appendix B: Redirection Server SG1-UM-8500-03 B- 5 Usage event-le vel <NUM> output-device <Loggin g media> Parameter(s) <NUM> It is the event level number.
Appendix B: Redirection Server June 30, 2006 B-6 SG1-UM-8500-03 Example 1: Successful software download Example 2: Unsuccessful sof t ware download Using copy-TFTP flash def-re direction-p age comma nd • The copy-TFTP flash de f-red-p age command enables the updating of the de fault redirection p age (RDS.
June 30, 2006 Appendix B: Redirection Server SG1-UM-8500-03 B- 7 Example 1: Successful software download Example 2: Unsuccessful sof t ware download Using sysLog-server-ip command • The sysLog-serve r-ip command defines the IP addr ess of the sysLog server .
Appendix B: Redirection Server June 30, 2006 B-8 SG1-UM-8500-03 S HOW C OMMANDS Using show version command • The show version comm and displays the soft wa re and har dwa re ver sions.
June 30, 2006 Appendix B: Redirection Server SG1-UM-8500-03 B- 9 Example 3: Using show configuration command • The show configuration co mm and displays RDS configuration. • It is located at the “main” menu. Usage show configuratio n Example: Using show system command • The show system command displays the system information of the RDS.
Appendix B: Redirection Server June 30, 2006 B-10 SG1-UM-8500-03 Example: E THERNET C OMMANDS Using interface Ethernet command • The Ethernet command is used for configuring th e RDS IP address. • It is located at the “configure terminal” menu.
June 30, 2006 Appendix B: Redirection Server SG1-UM-8500-03 B-1 1 Using no inter face Ether net comma nd • The command is located a t the “configure termin al” menu. • It deletes the c onfigured inter face. • The change is af fe cting immediately .
Appendix B: Redirection Server June 30, 2006 B-12 SG1-UM-8500-03 D EFAULT G ATEWAY C OMMANDS Using ip default-gateway command • The command is located a t the “configure termin al” menu. • It configures the sy stem default gateway . • The change is af fe cting immediately .
June 30, 2006 Appendix B: Redirection Server SG1-UM-8500-03 B-13 Format Operation Error: Default-gateway is out of subn et. Example 1: U SING R ELOAD C OMMAND • The reload co mmand rest art s the RDS. • The command is located a t the “main” menu.
Appendix B: Redirection Server June 30, 2006 B-14 SG1-UM-8500-03 W RITE C OMMANDS Using write terminal command • The write terminal command displays the running RD S config uration.
June 30, 2006 Appendix B: Redirection Server SG1-UM-8500-03 B-15 Using write memory command • The write memo ry command writes the ru nning RDS configuration to the NV memory . • It is located at the “main” menu. Usage write memory Example: U SING P OWEROFF C OMMAND • The powerof f command brings the system down in a secur e way .
Appendix B: Redirection Server June 30, 2006 B-16 SG1-UM-8500-03 Parameter(s) <IP address> It is the Permitted source IP ad dress. <source mask> It is the Permitted source mask. Example: Using no access-list SNMP-permit command • The no access-list SNM P-permit command deletes SNMP a ccess definitions .
June 30, 2006 Appendix B: Redirection Server SG1-UM-8500-03 B-17 Parameter <community string> It is an Alpha community numeric string. Example: U SING R ESET C ONFIGURATION C OMMAND • The reset configuration command de letes the RDS stored co nfiguration.
Appendix B: Redirection Server June 30, 2006 B-18 SG1-UM-8500-03 Usage http-proxy-s erver port <por t number > Parameter <port number > It is the supported HTTP proxy port num ber.
June 30, 2006 Appendix B: Redirection Server SG1-UM-8500-03 B-19 N AME S ERVER Using ip primary-name-server command • The ip primary-name-ser ver command defines the primar y DNS se rver IP address the RDS should use fo r the Http proxy functionality .
Appendix B: Redirection Server June 30, 2006 B-20 SG1-UM-8500-03 Using ip remote-proxy command • The ip remote-proxy command defines the Http proxy and port to be used in the Http proxy functionality . • The command is located in the “configure terminal” menu.
June 30, 2006 Appendix B: Redirection Server SG1-UM-8500-03 B-21 U SING H OSTNAME C OMMAND • The hostname command defines the system h ostname name. • The command is located in the “configure terminal” menu. • The default hostname is “RDSHost”.
Appendix B: Redirection Server June 30, 2006 B-22 SG1-UM-8500-03 U SING N O EDS-URL-IDENTITY C OMMAND • The no eds-url-ide ntity command deletes the eds name configu ration to be used in the EDS URL. The system uses its default value (system primary IP address) .
June 30, 2006 Appendix B: Redirection Server SG1-UM-8500-03 B-23 Example: Using no remote-ip-in-ip command • The no re mote-ip-in-ip command d eletes the r emote en dpoint definition.
Appendix B: Redirection Server June 30, 2006 B-24 SG1-UM-8500-03 S HOW U SER C OMMANDS Using show users command • The command displays con nected users informatio n. • The command is located at ADC menu. Usage show users Output format: Default of L inux w comman d.
June 30, 2006 Appendix B: Redirection Server SG1-UM-8500-03 B-25 Usage show cpu Output format: Default of L inux cat /proc/cpuinfo command. U SING D EBUG P ROTOCOL C OMMAND • The command enables the snif fing of tcp, udp, ether , fddi , ip, arp, rarp, decent, lat, sca, moprc, mopdl, icmp, igrp, nd.
Appendix B: Redirection Server June 30, 2006 B-26 SG1-UM-8500-03 U SING D ATE C OMMAND • The command sets RDS date. • The command is located at ADC menu. Usage date <time> <date> Parameter(s) <time> It is Time of the day in H24:MM:SS format.
SG1-UM-8500-03 C- 1 C Appendix P RODUCT S UPPORT ADC Customer Service Group provides expert pre-sales su ppor t and tr aining for all of it s pro duct s. T echnical support is available 24 hours a day , 7 days a week by conta cting t he ADC T echnical Assistance Center .
Appendix C: Product Suppor t June 30, 2006 C-2 SG1-UM-8500-03.
SG1-UM-8500-03 GL- 1 G LOSSARY A ACL – Access Control List AT M – Asynchronous T ransfer Mode APS – Automatic Protection System C CBR – Constant Bit Rate CLEI – Common Language Equipment Identifier CLI – Command Line Interfa ce D DS3 – Digital Signal, Level 3 E EMS – Element Management Syste m F FRF .
Glossary June 30, 20 06 GL-2 SG1-UM-8500-03.
Certification and W arranty FCC Class A Comp liance This equipment has been tested and found to comply with t he limit s for a Class A digit al device , pursuant to Pa rt 15 of the FCC Rules. These limits are desig ned to provide reasonable pr otection against harmfu l interference when the equipment is operated in a co mmercial environmen t.
World Headqua rters ADC T e lec ommunications, Inc. PO Box 1 101 Minneapolis, MN 55440-1 101 USA For T echnic al Assistance T el: 800.366.3891 SG-1 Service Gateway System User Manual Document Number: .
Un point important après l'achat de l'appareil (ou même avant l'achat) est de lire le manuel d'utilisation. Nous devons le faire pour quelques raisons simples:
Si vous n'avez pas encore acheté ADC SG-1 c'est un bon moment pour vous familiariser avec les données de base sur le produit. Consulter d'abord les pages initiales du manuel d'utilisation, que vous trouverez ci-dessus. Vous devriez y trouver les données techniques les plus importants du ADC SG-1 - de cette manière, vous pouvez vérifier si l'équipement répond à vos besoins. Explorant les pages suivantes du manuel d'utilisation ADC SG-1, vous apprendrez toutes les caractéristiques du produit et des informations sur son fonctionnement. Les informations sur le ADC SG-1 va certainement vous aider à prendre une décision concernant l'achat.
Dans une situation où vous avez déjà le ADC SG-1, mais vous avez pas encore lu le manuel d'utilisation, vous devez le faire pour les raisons décrites ci-dessus,. Vous saurez alors si vous avez correctement utilisé les fonctions disponibles, et si vous avez commis des erreurs qui peuvent réduire la durée de vie du ADC SG-1.
Cependant, l'un des rôles les plus importants pour l'utilisateur joués par les manuels d'utilisateur est d'aider à résoudre les problèmes concernant le ADC SG-1. Presque toujours, vous y trouverez Troubleshooting, soit les pannes et les défaillances les plus fréquentes de l'apparei ADC SG-1 ainsi que les instructions sur la façon de les résoudre. Même si vous ne parvenez pas à résoudre le problème, le manuel d‘utilisation va vous montrer le chemin d'une nouvelle procédure – le contact avec le centre de service à la clientèle ou le service le plus proche.