Cisco Cisco Packet Data Interworking Function (PDIF) Guía De Administador
![Cisco](https://files.manualsbrain.com/attachments/7380d0050044647c30f5c24bbbf5d0c0b6d9bb84/common/fit/150/50/faa183d287233c52228cfea3dbc2a127fe780f60564fcb0955d9c3d1cd23/brand_logo.png)
Simple IP and Mobile IP in a Single System Configuration Example
▀ Using the System as Both a PDSN/FA and an HA
▄ Cisco ASR 5x00 Home Agent Administration Guide
54
Required Information
Description
Secret:
Specifies the shared SPI secret between the PDSN service and the PCF. The secret can be between 1 and
127 characters (alpha and/or numeric).
An SPI secret is required for each SPI configured.
Specifies the shared SPI secret between the PDSN service and the PCF. The secret can be between 1 and
127 characters (alpha and/or numeric).
An SPI secret is required for each SPI configured.
Hash-algorithm:
Specifies the algorithm used to hash the SPI and SPI secret. The possible algorithms that can be
configured are MD5 per RFC 1321 and keyed-MD5 per RFC 2002. The default is MD5.
A hash-algorithm is required for each SPI configured.
Specifies the algorithm used to hash the SPI and SPI secret. The possible algorithms that can be
configured are MD5 per RFC 1321 and keyed-MD5 per RFC 2002. The default is MD5.
A hash-algorithm is required for each SPI configured.
Replay-protection process:
Specifies how protection against replay-attacks is implemented. The possible processes are nonce and
timestamp. The default is timestamp with a tolerance of 60 seconds.
A replay-protection process is required for each SPI configured.
Specifies how protection against replay-attacks is implemented. The possible processes are nonce and
timestamp. The default is timestamp with a tolerance of 60 seconds.
A replay-protection process is required for each SPI configured.
Subscriber session
lifetime
lifetime
Specifies the time in seconds that an A10 connection can exist before its registration is considered
expired.
The time is expressed in seconds and can be configured to any integer value between 1 and 65534, or the
timer can be disabled to set an infinite lifetime. The default value is 1800 seconds.
expired.
The time is expressed in seconds and can be configured to any integer value between 1 and 65534, or the
timer can be disabled to set an infinite lifetime. The default value is 1800 seconds.
Mobile IP FA context
name
name
Specifies the name of the context in which the FA service is configured.
Default Subscriber Configuration
“Default”
subscriber’s IP
context name
subscriber’s IP
context name
Specifies the name of the egress context on the system that facilitates the PDN ports.
Important:
For this configuration, the IP context name should be identical to the name
of the destination context.
AAA Context Configuration
The following table lists the information that is required to configure the AAA context.
Table 8. Required Information for AAA Context Configuration
Required Information
Description
AAA context name
This is an identification string between 1 and 79 characters (alpha and/or numeric) by which the AAA
context will be recognized by the system.
context will be recognized by the system.
AAA Interface Configuration
AAA interface name
This is an identification string between 1 and 79 characters (alpha and/or numeric) by which the
interface will be recognized by the system.
Multiple names are needed if multiple interfaces will be configured.
AAA interfaces will be configured in the source context.
interface will be recognized by the system.
Multiple names are needed if multiple interfaces will be configured.
AAA interfaces will be configured in the source context.
IP address and subnet
These will be assigned to the AAA interface.
Multiple addresses and/or subnets are needed if multiple interfaces will be configured.
Multiple addresses and/or subnets are needed if multiple interfaces will be configured.