Cisco OL-4387-02 - Manual

Cisco OL-4387-02

Cisco OL-4387-02 – Manual, read for free online in PDF format. We hope this helps you resolve any issues you may have. If you have further questions, please contact us through the contact form.

1 Page 1
2 Page 2
3 Page 3
4 Page 4
5 Page 5
6 Page 6
7 Page 7
8 Page 8
9 Page 9
10 Page 10
11 Page 11
12 Page 12
13 Page 13
14 Page 14
15 Page 15
16 Page 16
17 Page 17
18 Page 18
19 Page 19
20 Page 20
21 Page 21
22 Page 22
23 Page 23
24 Page 24
25 Page 25
26 Page 26
27 Page 27
28 Page 28
29 Page 29
30 Page 30
31 Page 31
32 Page 32
33 Page 33
34 Page 34
35 Page 35
36 Page 36
37 Page 37
38 Page 38
39 Page 39
40 Page 40
41 Page 41
42 Page 42
43 Page 43
44 Page 44
45 Page 45
46 Page 46
47 Page 47
48 Page 48
49 Page 49
50 Page 50
51 Page 51
52 Page 52
53 Page 53
54 Page 54
55 Page 55
56 Page 56
57 Page 57
58 Page 58
59 Page 59
60 Page 60
61 Page 61
62 Page 62
63 Page 63
64 Page 64
65 Page 65
66 Page 66
67 Page 67
68 Page 68
69 Page 69
70 Page 70
71 Page 71
72 Page 72
73 Page 73
74 Page 74
75 Page 75
76 Page 76
77 Page 77
78 Page 78
79 Page 79
80 Page 80
81 Page 81
82 Page 82
83 Page 83
84 Page 84
85 Page 85
86 Page 86
87 Page 87
88 Page 88
89 Page 89
90 Page 90
91 Page 91
92 Page 92
93 Page 93
94 Page 94
95 Page 95
96 Page 96
97 Page 97
98 Page 98
99 Page 99
100 Page 100
101 Page 101
102 Page 102
103 Page 103
104 Page 104
105 Page 105
106 Page 106
107 Page 107
108 Page 108
109 Page 109
110 Page 110
Page: / 110

Table of Contents:

  • Page 3 – C O N T E N T S; About This Guide; Service Selection Gateway Overview; Scalability and Performance; SSG Logon and Logoff
  • Page 4 – Authentication and Accounting; Service Selection Methods; Service Connection
  • Page 5 – Service Profiles and Cached Service Profiles; SSG Hierarchical Policing
  • Page 6 – Interface Configuration; SSG TCP Redirect; Miscellaneous SSG Features
  • Page 7 – Monitoring and Maintaining SSG; SSG Configuration Example; SSG Implementation Notes
  • Page 9 – Audience
  • Page 10 – Document Conventions
  • Page 11 – Related Documentation; Obtaining Documentation
  • Page 12 – Ordering Documentation; Documentation Feedback; Obtaining Technical Assistance
  • Page 13 – Cisco TAC Website; TAC Case Priority Definitions
  • Page 14 – Obtaining Additional Publications and Information
  • Page 15 – Service Selection Gateway
  • Page 17 – Default Network; Access Protocols
  • Page 18 – Supported SSG Features; SSG Restrictions
  • Page 20 – SSG Prerequisites; SSG Architecture Model
  • Page 23 – Limitations and Restrictions
  • Page 25 – Single Host Logon; Prerequisites for Single Host Logon
  • Page 26 – SSG Autologoff; Restrictions for SSG Autologoff
  • Page 27 – Configuration Example for SSG Autologoff; SSG Prepaid Idle Timeout
  • Page 28 – Service Authorization
  • Page 29 – Restrictions for SSG Prepaid Idle Timeout; Configuration of SSG Prepaid Idle Timeout; Configuration Example for SSG Prepaid Idle Timeout
  • Page 30 – SSG Session and Idle Timeout
  • Page 31 – SSG Full Username RADIUS Attribute; Restrictions for SSG Full Username RADIUS Attribute
  • Page 32 – RADIUS Accounting Records; Account Login and Logout; Configuration Examples for Account Login and Logout
  • Page 33 – Service Connection and Termination; Configuration Examples for Service Connection and Termination
  • Page 35 – PPP Terminated Aggregation
  • Page 36 – Restrictions for PTA-MD; Web Service Selection
  • Page 37 – SESM and SSG Performance
  • Page 39 – SSG AutoDomain
  • Page 40 – Restrictions for SSG AutoDomain; Configuration of SSG AutoDomain; Configuration Example for SSG AutoDomain
  • Page 42 – Restrictions for SSG Prepaid
  • Page 43 – Configuration Example for SSG Prepaid; SSG Open Garden
  • Page 44 – Restrictions for SSG Open Garden; Configuration Example for SSG Open Garden; SSG Port-Bundle Host Key
  • Page 45 – Restrictions for SSG Port-Bundle Host Key
  • Page 46 – Prerequisites for SSG Port-Bundle Host Key; Exclude Networks; Mutually Exclusive Service Selection
  • Page 47 – Configuration of Mutually Exclusive Service Selection
  • Page 49 – Service Profiles; Downstream Access Control List
  • Page 52 – Type of Service; Service Profile Example; Cached Service Profiles
  • Page 53 – Configuration of Cached Service Profiles
  • Page 55 – SSG Hierarchical Policing Overview; SSG Hierarchical Policing Token Bucket Scheme
  • Page 56 – Restrictions for SSG Hierarchical Policing
  • Page 57 – Configuration Examples for SSG Hierarchical Policing
  • Page 59 – Transparent Passthrough
  • Page 60 – Access Side Interfaces
  • Page 61 – Network Side Interfaces; Restrictions of Transparent Passthrough; Multicast Protocols on SSG Interfaces
  • Page 62 – Configuration of Multicast Protocols on SSG Interfaces
  • Page 63 – Redirection for Unauthenticated Users
  • Page 64 – Redirection for Unauthorized Services
  • Page 65 – Initial Captivation
  • Page 66 – Restrictions for SSG TCP Redirect
  • Page 67 – Configuration Considerations for SSG TCP Redirect; Limiting Redirection for Unauthenticated Users
  • Page 68 – Configuring SSG TCP Redirect
  • Page 69 – Configuration Examples for SSG TCP Redirect; Configuration Example for Server Groups; Configuration Example for Network Lists
  • Page 70 – Configuration Example for Port Lists
  • Page 71 – VPI/VCI Static Binding to a Service Profile; Restrictions for VPI/VCI Static Binding to a Service Profile
  • Page 72 – RADIUS Virtual Circuit Logging; Configuration of RADIUS Virtual Circuit Logging; AAA Server Group Support for Proxy Services; Restrictions for AAA Server Group Support for Proxy Services
  • Page 73 – Configuration of AAA Server Group Support for Proxy Services; Packet Filtering
  • Page 74 – Downstream Access Control List—outacl; Upstream Access Control List—inacl; Restrictions for Packet Filtering
  • Page 75 – Configuration of Packet Filtering; Configuration Example for Packet Filtering; SSG Unconfig; Restrictions for SSG Unconfig
  • Page 76 – Prerequisites for SSG Unconfig; Configuration Examples for SSG Unconfig
  • Page 77 – SSG Enhancements for Overlapping Services; Service Translation
  • Page 79 – Restrictions for Service Translation; Prerequisites for Service Translation
  • Page 80 – Configuration of Service Translation
  • Page 81 – Expansion of Service IDs; Restrictions for Expansion of Service IDs
  • Page 84 – Troubleshooting RADIUS; Per-Service Statistics; Restrictions for Per-Service Statistics
  • Page 85 – Monitoring the Parallel Express Forwarding Engine
  • Page 97 – G L O S S A R Y
  • Page 103 – I N D E X
Loading the manual

Corporate Headquarters

Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134-1706
USA
http://www.cisco.com
Tel: 408

526-4000

800 553-NETS (6387)

Fax: 408

526-4100

Cisco 10000 Series Router Service
Selection Gateway Configuration Guide

January 20 04

Text Part Number: OL-4387-02

"Loading the manual" means you need to wait until the file loads and becomes available for online reading. Some manuals are very large, and the time they take to appear depends on your internet speed.

Summary

Page 3 - C O N T E N T S; About This Guide; Service Selection Gateway Overview; Scalability and Performance; SSG Logon and Logoff

iii Cisco 10000 Series Router Service Selection Gateway Configuration Guide OL-4387-02 C O N T E N T S About This Guide ix Audience ix Document Organization ix Document Conventions x Related Documentation xi Obtaining Documentation xi Cisco.com xi Documentation CD-ROM xii Ordering Documentation xii ...

Page 4 - Authentication and Accounting; Service Selection Methods; Service Connection

Contents iv Cisco 10000 Series Router Service Selection Gateway Configuration Guide OL-4387-02 Configuration of SSG Autologoff 3-2 Configuration Example for SSG Autologoff 3-3 SSG Prepaid Idle Timeout 3-3 Service Authorization 3-4 Service Reauthorization 3-4 Restrictions for SSG Prepaid Idle Timeout...

Page 5 - Service Profiles and Cached Service Profiles; SSG Hierarchical Policing

Contents v Cisco 10000 Series Router Service Selection Gateway Configuration Guide OL-4387-02 Restrictions for SSG Open Garden 6-6 Configuration of SSG Open Garden 6-6 Configuration Example for SSG Open Garden 6-6 SSG Port-Bundle Host Key 6-6 Restrictions for SSG Port-Bundle Host Key 6-7 Prerequisit...

Other Cisco Models

All Cisco Other