Cisco Cisco ASR 5000 Administrator's Guide
HeNB-GW Service Configuration Procedures
Information Required to Configure the System as an HeNB-GW ▀
Cisco ASR 5x00 Home eNodeB Gateway Administration Guide ▄
35
Required
Information
Information
Description
Diameter Endpoint Configuration
Endpoint Name
An identification string from 1 to 63 characters (alpha and/or numeric) by which the Diameter endpoint
configuration is recognized by the system. This Diameter Endpoint is required by the SeGW to
communicate with the AAA server.
configuration is recognized by the system. This Diameter Endpoint is required by the SeGW to
communicate with the AAA server.
Origin realm name
An identification string between 1 through 127 characters. The realm is the Diameter identity. The
originator.s realm is present in all Diameter messages and is typically the company or service name.
originator.s realm is present in all Diameter messages and is typically the company or service name.
Origin host name
An identification string from 1 to 255 characters (alpha and/or numeric) by which the origin host is
recognized by the system.
recognized by the system.
Origin host address
The IP address of the interface.
Peer name
The endpoint name described above.
Peer realm name
The interface origin realm name described above.
Peer address and
port number
port number
The IP address and port number of the OCS.
IPsec Crypto-map Template Configuration
EAP profile
This is the profile to be used to provide authenticator modes for incoming packets on Security Gateway.
Only one EAP profile can be configured.
IP Pool for IPsec
Tunnel
Tunnel
Specifies the IP pool to assign IP address for IPsec traffic to use.
IKEv2 Transform
set
set
IKEv2 transform set for IKE security association.
IPsec Crypto-map
Template
Template
Specifies the Crypto-map template to be used for IPsec IKEv2 tunneling for the interface configured.
This crypto-map template is to be associated with HeNB-GW Access service if SeGW is enabled and bind
with this HeNB-GW Access service.
HeNB-GW Access Service can run with or without the IPSec configuration. Since only one HeNB-GW
Access Service can be configured per system, either IPSec can be configured or not.
Only one IPsec Crypto-map Template can be configured.
This crypto-map template is to be associated with HeNB-GW Access service if SeGW is enabled and bind
with this HeNB-GW Access service.
HeNB-GW Access Service can run with or without the IPSec configuration. Since only one HeNB-GW
Access Service can be configured per system, either IPSec can be configured or not.
Only one IPsec Crypto-map Template can be configured.
AAA Server Group
Context name
Context name
Specifies the name of the context in which a AAA server group is configured for association with SeGW for
AAA parameters during subscriber authentication phases.
AAA parameters during subscriber authentication phases.
AAA Server Group
name
name
Specifies the AAA server group already configured in a context and is to be used for first/second phase of
authentication of subscriber while using SeGW functionality in an HeNB-GW service.
authentication of subscriber while using SeGW functionality in an HeNB-GW service.
HeNB-GW Network Service Configuration
Logical eNodeB
The Logical eNodeB configuration option enables the configuration of one or more logical eNodeBs within
the HeNB-GW. The Logical eNodeB configuration is usually used to support load balancing within a pool
of TAIs. At least one logical eNodeB configuration is required to START an HeNB-GW Network service. 8
Logical eNodeBs are supported per HeNB-GW Network service.
the HeNB-GW. The Logical eNodeB configuration is usually used to support load balancing within a pool
of TAIs. At least one logical eNodeB configuration is required to START an HeNB-GW Network service. 8
Logical eNodeBs are supported per HeNB-GW Network service.
Caution:
Deleting or modifying any of the parameters for a fully configured logical
eNodeB results in the termination of SCTP connections to MMEs from that logical eNodeb.