cc/td/doc/product/dsl_prod/6400/feat_gd
hometocprevnextglossaryfeedbacksearchhelp
PDF

Table of Contents

index

index

A


AAA authentication
configuring for PPP     5-14

aaa authentication command     4-9

aaa authentication ppp command     5-14

aaa authorization command     4-9

aaa new-model command     4-9, 5-14

accept dialin command     2-3

Access-Accept message     4-3, 4-4

access control list
see ACL

Access-Reject message     4-3

Access-Request message     4-4, 4-25

Account-Info attributes     4-26

accounting records
Account Logoff     4-46
Account Logon     4-46
attributes     4-48
Connection Start     4-47
Connection Stop     4-47

Account Logoff accounting record     4-46, 4-54

Account Logon accounting record     4-46

ACL
downstream     4-26, 4-28, 4-29, 4-32, 4-33, 4-43
packet filtering     4-5
upstream     4-26, 4-28, 4-32, 4-42

adding
local profile to open garden list     4-23
TCP port to portal group     4-24

ADSL     4-49, 4-50

asynchronous transfer mode
see ATM

ATM interface
configuring PPPoE     5-6

ATM RBE
benefits     6-3
configuration examples     6-4
configuring     6-4
restrictions     6-3
verifying     6-5

attr command     4-9

authentication
local     5-14
RADIUS     5-15
TACACS+     5-15

Auto Service attribute     4-27, 4-30, 4-31

B


bridging
(examples)     6-2
configuring     6-1
RFC 1483 example     6-2

C


captive portal group
defining     4-24

CEF
configuring     4-13
L2TP scalability prerequisite     2-1
restrictions     4-7
verifying     4-13

Cisco 6400     4-1, 4-6

Cisco 6400 Software Setup Guide     4-6

Cisco-AVPair attributes
list of     4-26
PTA-MD     4-4
service profiles     4-32
Transparent Passthrough Filter pseudo-service profile     4-42
user profiles     4-28
VPDN     4-18

Cisco Express Forwarding
see CEF

Cisco Service Selection Dashboard
see Cisco SSD

Cisco Service Selection Dashboard Installation and Configuration Guide     4-7

Cisco Service Selection Dashboard User Guide     4-7

Cisco SSD
Group Description attribute     4-41
overview     4-1
proxy service     4-4
PTA-MD     4-4
required version for single host login     4-7
Service User attribute     4-28, 4-48
SSG default network     4-10
VSAs     4-25

clear ssg connection command     4-55

clear ssg host command     4-55

clear ssg next-hop command     4-55

clear ssg pass-through-filter command     4-55

clear ssg service command     4-56

concurrent access     4-27, 4-32, 4-35, 4-36

concurrent service access mode     4-6

configuring
ATM RBE     6-4
bridging     6-1
CEF     4-13
default network     4-10
fastswitching     4-12
HTTP redirection     4-23
IPCP subnet mask
on CPE     6-11
L2TP     2-2
L2TP for SSG     4-17
LAC to communicate with RADIUS server     2-5
LNS     4-18
local forwarding     4-21
local pool group for IP OAP     6-14
local service profiles     4-9
MPLS     3-1
MPLS VPN on Cisco 6400     3-7
MPLS VPNs     3-7
NAT     4-14
NME interface IP address on NSP     6-6
NRP as LAC     4-17
NRP as MPLS edge LSR     3-2
NRP as MPLS LSC     3-1
NRPs as MPLS edge LSRs, connecting through VPI range     3-5
NRPs as MPLS edge LSRs and connecting through PVP     3-3
open garden     4-21
PPP     5-2
AAA authentication     5-3
PPP autosense     5-10
PPPoA     5-2
PPPoE     5-5
virtual template     5-5
PPPoE on ATM interface     5-6
PPP virtual template     5-2
proxy RADIUS enhancements     4-15
RADIUS profile for domain preauthorization     2-6
RADIUS profile for tunnel service authorization     2-6
RADIUS profiles     4-25
pseudo-service profiles     4-42
service group profiles     4-40
service profiles     4-32
SSG L2TP     4-17
user profiles     4-28
RADIUS VC logging     6-6
RADIUS VC logging on NRP     6-7
routing     6-1
security     4-9
sessions per tunnel limiting LAC     2-9
sessions per tunnel limiting RADIUS profile     2-10
SSG features     4-8
SSG interfaces     4-10
SSG multicast     4-12
SSG RADIUS interim accounting     4-13
SSG services     4-11
subnet mask     6-9
on NRP     6-10
RADIUS user profile     6-9
tunnel sharing in RADIUS profile     2-13
tunnel sharing LAC     2-12
VPDN on the LAC     2-2
VPDN on the LNS     2-2
VPI/VCI indexing to service profile     4-14

Connection Start accounting record     4-47

Connection Stop accounting record     4-47, 4-54

Control-Info attributes     4-28

conventions     xiv

creating
local profile for open garden     4-22

D


debug radius command     4-56

default network     4-3, 4-4
configuring     4-10
example     4-51
verifying     4-10

default redirection group
setting     4-24

defining
captive portal group     4-24

Digital Subscriber Line Access Multiplexers (DSLAMs)     4-1

DNS     4-27, 4-32, 4-35, 4-36, 4-38

DNS redirection     4-5

DNS Server Address attribute     4-27, 4-35, 4-36

documentation, obtaining     xv

document conventions     xiv

Domain Name attribute     4-27, 4-35, 4-38

domain name system
see DNS

domain preauthorization
configuring RADIUS profile     2-6
enabling     2-5
example     2-8
RADIUS user profile     2-6
example     2-8
tunnel service authorization step     2-4

downlink interface     4-4, 4-10

downstream ACL attribute     4-26, 4-28, 4-29, 4-32, 4-33, 4-43

E


enabling
domain preauthorization     2-5
SSG     4-8
VPDN and multihop functionality     2-16

encapsulation command     2-3

extended high system availability (EHSA)     4-6

F


fastswitching
configuring     4-12
example     4-53
verifying     4-12

Full Username Attribute     4-15, 4-28, 4-36, 4-39

G


Group Description attribute     4-27, 4-40, 4-41

H


HTTP redirect
restrictions     4-7

HTTP redirection
configuring     4-23
verifying     4-25

I


Idle-Timeout attribute     4-6, 4-30, 4-35

IGMP     4-4
SSG multicast     4-12

inacl attribute     4-5, 4-26, 4-28, 4-29, 4-32, 4-43

increasing input hold-queue limit     2-20

ingress tunnel name
mapping to LNS     2-17
VPDN tunnel authorization search by     2-17

initiate-to command     2-9

input hold-queue limit
increasing     2-20

interfaces
configuring for SSG     4-10
example     4-51
verifying for SSG     4-11

interface virtual-template command     2-3, 5-2

Internet Group Management Protocol
see IGMP

IOS NAT
example     4-54

IP
routing
(examples)     6-2
configuring     6-1

ip cef command     2-1, 4-13

IPCP subnet mask
configuring support on CPE     6-11
CBOS     6-12
IOS     6-11
overview     6-9
troubleshooting     6-13
verifying support on CPE     6-12

ip dhcp-server command     5-2

IP hint     4-4

ip local pool command     5-2

IP MTU
setting     5-6

ip nat command     4-14

IP OAP
configuring local pool group     6-14

ip radius source-interface command     6-8

ip unnumbered command     5-2

ip unnumbered ethernet command     2-3

L


L2F     2-1

L2TP
configuring     2-2
configuring for SSG     4-17
configuring LNS     4-18
monitoring     2-23, 4-20
overview     2-1
restrictions     2-1
SSG example     4-19
SSG prerequisites     4-8
troubleshooting     2-23

L2TP access concentrator
see LAC

L2TP network server
see LNS

L2TP scalability
prerequisites     2-1
restrictions     2-1

L2TP scalability enhancements
example     2-23
overview     2-20
precloned interfaces limit (note)     2-20

L2TP Tunnel Password attribute     4-26, 4-32

L2TP tunnel service authorization
example     2-7
restrictions     2-1

L2TP tunnel switching
example     2-18
overview     2-14
restrictions     2-1

L2TP tunnel timeout
setting     2-22

label switch controller
see MPLS LSC

label switch router
see MPLS edge LSR

LAC
configuring NRP as     4-17
configuring sessions per tunnel limiting on     2-9
configuring to communicate with RADIUS server     2-5
configuring VPDN on     2-2

Layer 2 service
selection     4-9

Layer 2 tunnel protocol
see L2TP

Layer 3 service
selection     4-7
prerequisites     4-7

LNS
configuring
SSG     4-18
configuring VPDN on     2-2

local authentication     5-14

local control channel receive window size
setting     2-22

local forwarding
configuring     4-21
example     4-21
verifying     4-21

local pool groups
configuring for IP OAP     6-14
verifying     6-14

local profile
adding to open garden list     4-23

local-profile command     4-9, 4-22

local service profiles
configuring     4-9
example     4-53
verifying     4-9

M


maintaining
PPP autosense (table)     5-13
PPPoE     5-9
RADIUS VC logging     6-9

mapping ingress tunnel name to LNS     2-17

maximum retransmission timeouts     2-21

max services
example     4-53

memory, recommended
L2TP scalability     2-2

minimum retransmission timeouts
setting     2-21

monitoring
L2TP     4-20
MPLS (table)     3-17
PPP autosense (table)     5-13
PPPoE     5-9
RADIUS VC logging     6-9
SSG     4-55
VPDN and L2TP     2-23
VPI/VCI indexing to service profile     4-15

monitoring, maintaining commands
VPDN (table)     2-24

MPLS
configuring     3-1
configuring VPNs     3-7
monitoring and troubleshooting (table)     3-17
prerequisites     3-1
restrictions     3-1

MPLS edge LSRs
configuring NRPs as
connecting through PVP     3-3
connecting through VPI range     3-5
overview     3-2

MPLS LSC
configuring NRP as     3-1

MPLS VPN
configuring on Cisco 6400     3-7

multicast
benefits     4-4
configuring for SSG     4-12
example     4-53
verifying for SSG     4-12

multihop
enabling     2-16

multiprotocol label switching
see MPLS

N


NAT     4-4
configuring     4-14
proxy service     4-4
verifying     4-14

Network Address Translation
see NAT

network management ethernet
see NME

next hop gateway     4-27, 4-35

Next Hop Gateway attribute     4-5, 4-27, 4-35

Next Hop Gateway pseudo-service profile     4-44, 4-45

Next Hop Gateway Table Entry attribute     4-28, 4-44

next hop key     4-27, 4-35, 4-38, 4-44

next-hop table
example     4-52

NME interface IP address
configuring on NSP     6-6
verifying     6-7

non-PPP network     4-6

non-PPP user     4-3

NRP
authentication     5-14
local     5-14
RADIUS     5-15
TACACS+     5-15

O


OAP
benefits     6-13
example     6-14
overview     6-13
restrictions     6-13
verifying local pool groups     6-14

objectives, document     xiii

Octets Input attribute     4-50

Octets Output attribute     4-49

open garden
configuring     4-21
creating local profile     4-22
restrictions     4-7
verifying     4-23
VSAs     4-22

outacl attribute     4-5, 4-26, 4-28, 4-29, 4-32, 4-33, 4-43

overlapping address pools
see OAP

P


passthrough service     4-1, 4-4, 4-18, 4-27, 4-35, 4-36

Password attribute     4-30, 4-35, 4-40

peer default ip address pool command     5-2

Point-to-Point Protocol
see PPP

portal group
adding TCP port     4-24

PPP
AAA authentication
configuring     5-3, 5-14
configuring     5-2
configuring RADIUS server     5-15
configuring TACACS+ server     5-15
connect to SSG     4-10
prerequisites     5-1
restrictions     5-1
specifying default authentication method     4-9

ppp authentication command     2-3, 5-2

PPP autosense
configuring     5-10
example     5-11
monitoring and maintaining (table)     5-13
troubleshooting     5-13
verifying     5-10

PPPoA
(example)     5-4
configuring     5-2
configuring PVCs     5-3
restrictions     5-1
troubleshooting     5-4
verifying     5-4
virtual template     5-2

PPPoE
configuring     5-5
configuring on ATM interface     5-6
example     5-7
monitoring and maintaining     5-9
restrictions     5-1
troubleshooting     5-9
verifying     5-6

PPP Termination Aggregation
see PTA

PPP virtual template
configuring     5-2

PPTP     2-1

precloning virtual access interfaces     2-20

prerequisites
L2TP for SSG     4-8
L2TP scalability     2-1
Layer 3 service selection     4-7
MPLS     3-1
PPP     5-1
SSG     4-7

proxy RADIUS enhancements
configuring     4-15
example     4-16
restrictions     4-7
verifying     4-16

proxy service     4-1, 4-4, 4-18, 4-27, 4-31, 4-35, 4-36, 4-37

pseudo-service profile     4-5
Next Hop Gateway     4-44, 4-45
Transparent Passthrough Filter     4-42, 4-43

pseudo-service profiles
configuring     4-42

PTA     4-4

PTA-MD     4-4

PTA multi-domain
see PTA-MD

R


RADIUS
accounting records     4-46
Account Logoff     4-46, 4-54
Account Logon     4-46
attributes     4-48
Connection Start     4-47
Connection Stop     4-47, 4-54
attributes
Account-Info     4-26
Auto Service     4-27, 4-30, 4-31
Cisco-AVPair     4-4, 4-26, 4-28
Control-Info     4-28
DNS Server Address     4-27, 4-35, 4-36
Domain Name     4-5, 4-27, 4-35, 4-38
Full Username Attribute     4-36, 4-39
Group Description     4-27, 4-40, 4-41
Idle-Timeout     4-3, 4-6, 4-30, 4-35
Next Hop Gateway     4-27, 4-35
Next Hop Gateway Table Entry     4-44
Octets Input     4-50
Octets Output     4-49
Password     4-30, 4-35, 4-40
RADIUS Server     4-4, 4-27, 4-35, 4-37
Service-Defined Cookie     4-36, 4-39
Service Description     4-28, 4-35, 4-38
Service Group     4-27, 4-30, 4-40, 4-41
Service-Info     4-27
Service Mode     4-27, 4-35, 4-36
Service Name     4-27, 4-28, 4-30, 4-40, 4-41, 4-49
Service Next Hop Gateway     4-38
Service Route     4-5, 4-27, 4-35, 4-37
Service-Type     4-35, 4-40
Service User attribute     4-48
Session-Timeout     4-3, 4-6, 4-30, 4-35
Type of Service     4-27, 4-35, 4-36
configuring NRP to use     5-15
transparent passthrough     4-4, 4-5
troubleshooting     4-56

RADIUS Attribute 4
global configuration commands and selected IP addresses (table)     6-8
selecting IP address for     6-8

RADIUS Attribute 8     4-4

RADIUS interim accounting
configuring for SSG     4-13
example     4-54
verifying for SSG     4-13

RADIUS profiles
configuring for SSG     4-25
configuring for SSG L2TP     4-17

RADIUS server
communicating with LAC     2-5
configuring for PPP     5-15

RADIUS Server attribute     4-4, 4-27, 4-35, 4-37

radius-server attribute 4 nrp command     6-8

radius-server attribute nas-port command     5-15

radius-server command     2-5, 4-9

radius-server host command     5-15

radius-server key command     5-15

RADIUS VC logging     6-5
configuring     6-6
configuring on NRP     6-7
monitoring and maintaining     6-9
verifying     6-7

RBE for CEF     6-5

redundancy
example     4-53
SSG     4-6

Remote Access Dial-In User Service
see RADIUS

request dialin command     2-2

restrictions
ATM RBE     6-3
CEF     4-7
HTTP redirect     4-7
L2TP
scalability     2-1
tunnel service authorization     2-1
tunnel switching     2-1
MPLS     3-1
OAP     6-13
open garden     4-7
PPPoA     5-1
PPPoE     5-1
proxy RADIUS enhancements     4-7
single host login     4-7
SSG     4-7
VPI/VCI indexing to service profile     4-7

retransmission attempts
setting     2-21

RFC 1483 encapsulation
bridging     6-2
IP routing     6-2

routed bridge encapsulation
see RBE

routing
(examples)     6-2
configuring     6-1
IP example     6-2

S


scalability     3-2

security
configuring     4-9
example     4-51
verifying     4-10

selecting
IP Address for RADIUS Attribute 4     6-8

sequential access     4-27, 4-32, 4-35, 4-36

sequential service access mode     4-6

service access mode     4-6

service access order     4-5

Service-Defined Cookie attribute     4-15, 4-28, 4-36, 4-39

Service Description attribute     4-28, 4-35, 4-38

Service Group attribute     4-27, 4-30, 4-40, 4-41

service group profiles
configuring     4-40
example     4-42
VSAs     4-40

Service-Info attributes     4-27

Service Mode attribute     4-27, 4-35, 4-36

Service Name attribute     4-27, 4-28, 4-30, 4-40, 4-41, 4-49

Service Next Hop Gateway attribute     4-38

service profiles
attributes     4-32
configuring     4-32
example     4-39
VSAs     4-35

Service Route attribute     4-27, 4-35, 4-37

services
configuring for SSG     4-11
example     4-52
verifying for SSG     4-11

service search order
example     4-52

Service Selection Gateway
see SSG

Service-Type attribute     4-35, 4-40

Service User attribute     4-28, 4-48

sessions per tunnel limiting     2-9
configuring LAC     2-9
configuring RADIUS profile     2-10
example     2-9
RADIUS service profile
example     2-11

Session-Timeout attribute     4-6, 4-30, 4-35

setting
default redirection group     4-24
IP MTU     5-6
L2TP tunnel timeout     2-22
local control channel receive window size     2-22
minimum, maximum retransmission timeouts     2-21
retransmission attempts     2-21

shared secret     4-9

show atm pvc ppp command     5-4

show interface virtual-access command     5-4

show ip cef command     4-13

show ip nat translations command     4-14

show running-config command     4-9, 4-10, 4-11, 4-12, 4-13, 4-14, 4-15

show ssg binding command     4-56

show ssg connection command     4-55

show ssg direction command     4-11, 4-55

show ssg host command     4-55

show ssg next-hop command     4-11, 4-55

show ssg open-garden command     4-23

show ssg pass-through-filter command     4-55

show ssg service command     4-11, 4-56

show ssg vc-service-map command     4-15

show vpdn tunnel all
new field descriptions (table)     2-24

show vpdn tunnel all command     2-23

Simple Network Management Protocol
see SNMP

single host login     4-7
restrictions     4-7

SNMP     4-2, 4-4

SSG
Account-Info attributes     4-26
benefits     4-3
captive portal group
defining     4-24
CEF
configuring     4-13
verifying     4-13
Cisco-AVPair attributes     4-26
configuration example     4-50
CEF     4-54
default network     4-51
fastswitching     4-53
interfaces     4-51
IOS NAT     4-54
local service profile     4-53
max services     4-53
multicast     4-53
next-hop table     4-52
RADIUS interim accounting     4-54
redundancy     4-53
security     4-51
services     4-52
service search order     4-52
transparent passthrough filter     4-53
configuring features     4-8
configuring L2TP     4-17
Control-Info attributes     4-28
default network
configuring     4-10
verifying     4-10
enabling     4-8
fastswitching
configuring     4-12
verifying     4-12
HTTP redirection
configuring     4-23
verifying     4-25
interfaces
configuring     4-10
verifying     4-11
L2TP
configuring RADIUS profiles     4-17
example     4-19
monitoring     4-20
local forwarding
configuring     4-21
example     4-21
verifying     4-21
monitoring and troubleshooting     4-55
multicast
configuring     4-12
verifying     4-12
NAT
configuring     4-14
verifying     4-14
NRP DRAM required for L2TP     4-8
open garden
adding local profile to list     4-23
configuring     4-21
creating local profile     4-22
verifying     4-23
VSAs     4-22
overview     4-1
prerequisites     4-7
proxy RADIUS enhancements
configuring     4-15
example     4-16
verifying     4-16
pseudo-service profiles
configuring     4-42
RADIUS
troubleshooting     4-56
RADIUS interim accounting
configuring     4-13
verifying     4-13
RADIUS profiles
configuring     4-25
redundancy     4-6
restrictions     4-7
security
configuring     4-9
verifying     4-10
service group profiles
configuring     4-40
service profiles
configuring     4-32
services
configuring     4-11
verifying     4-11
single host login     4-7
user profiles
configuring     4-28
VPI/VCI indexing to service profile
configuring     4-14
monitoring     4-15
verifying     4-15
VSAs     4-25, 4-26
web selection     4-3

ssg accounting interval command     4-13

ssg bind direction command     4-10

ssg bind service command     4-11

ssg default-network command     4-10

ssg fastswitch command     4-12

ssg http-redirect group command     4-24

ssg maxservice command     4-11

ssg multicast command     4-12

ssg next-hop command     4-55

ssg next-hop download command     4-11

ssg pass-through command     4-55

ssg radius-helper command     4-9

ssg service-password command     4-9

ssg service-search-order command     4-11

ssg vc-service-map command     4-15

static domain name
configuring     2-4
PVC example     2-7
VC class example     2-7
verifying     2-5

sticky IP     4-4

subnet mask
configuring     6-9
on NRP     6-10
RADIUS user profile     6-9
verifying
on NRP     6-11
RADIUS User Profile     6-10

T


TACACS+     4-4, 5-15

TACACS+ server
configuring for PPP     5-15

tacacs-server host command     5-15

tacacs-server key command     5-15

technical assistance     xvi

terminating tunnel from LAC     2-16

Transmission Control Protocol/Internet Protocol (TCP/IP)     4-5

transparent passthrough     4-4, 4-5, 4-42

transparent passthrough filter
example     4-53

Transparent Passthrough Filter pseudo-service profile     4-42, 4-43
Cisco-AVPair attributes     4-42

troubleshooting
IPCP subnet mask     6-13
MPLS (table)     3-17
PPP autosense     5-13
PPPoA     5-4
PPPoE     5-9
SSG     4-55
RADIUS     4-56
VPDN and L2TP     2-23

troubleshooting commands
VPDN (table)     2-25

tunnel service authorization
configuring RADIUS profile     2-6
enhancements     2-4
LAC example     2-8
RADIUS service profile     2-6
example     2-8

Tunnel Share attribute     2-13

tunnel sharing     2-12
configuring LAC     2-12
configuring RADIUS profile     2-13

Type of Service attribute     4-27, 4-35, 4-36

U


uplink interface     4-4, 4-11
binding services to     4-11

upstream ACL attribute     4-26, 4-28, 4-32, 4-42

user profiles
attributes     4-28
Cisco-AVPair attributes     4-28
configuring     4-28
example     4-31
VSAs     4-29

V


vendor-specific attributes
see VSAs

verifying
ATM RBE     6-5
CEF     4-13
default network     4-10
fastswitching     4-12
HTTP redirection     4-25
local forwarding     4-21
local pool groups for IP OAP     6-14
local service profiles     4-9
NAT     4-14
NME interface IP address     6-7
open garden     4-23
PPP autosense     5-10
PPPoA     5-4
PPPoE     5-6
proxy RADIUS enhancements     4-16
security     4-10
SSG enabled     4-8
SSG interfaces     4-11
SSG multicast     4-12
SSG RADIUS interim accounting     4-13
SSG services     4-11
VPI/VCI indexing to service profile     4-15

virtual access interfaces     2-3
precloning     2-20

virtual circuits
see VCs

virtual private dial-up network
see VPDN

virtual template interface     2-3

virtual templates     5-2
configuring for PPPoE     5-5
static IP assignment (caution)     5-2

VPDN     2-2
enabling     2-16
monitoring     2-23
monitoring, maintaining commands (table)     2-24
troubleshooting commands (table)     2-25

vpdn enable command     2-2, 2-16

VPDN Group attribute     2-13

vpdn group command     2-2

VPDN IP Address attribute     4-26, 4-32

VPDN IP Addresses attribute     2-10

VPDN IP Address Limits attribute     2-11

vpdn multihop command     2-16

VPDN tunnel authorization searches by ingress tunnel name     2-17

VPDN Tunnel ID attribute     4-26, 4-32

VPI/VCI indexing to service profile
configuring     4-14
monitoring     4-15
restrictions     4-7
verifying     4-15

VSAs     4-3, 4-9, 4-15
open garden     4-22
service group profiles     4-40
service profiles     4-35
SSG     4-25
SSG (table)     4-26
SSG support for L2TP     4-17
user profiles     4-29

W


web selection     4-3

hometocprevnextglossaryfeedbacksearchhelp
Posted: Tue Feb 26 15:35:15 PST 2002
All contents are Copyright © 1992--2002 Cisco Systems, Inc. All rights reserved.
Important Notices and Privacy Statement.