Руководство По Устранению Ошибки для Cisco Cisco Tunnel Terminating Gateway (TTG)
Subscriber Configuration Mode Commands
mobile-ip ▀
Cisco ASR 5000 Series Command Line Interface Reference ▄
OL-22948-01
Specifies the IP address of the mobile IP user‘s home agent.
must be a an IPv4/IPv6 address.
- Specifies the secondary, or alternate, Home Agent to use when Proxy Mobile IP HA Failover
is enabled.
Default: Disabled.
Enables the FA to validate the home address in the RRQ against the one assigned by AAA server. This
should only be configured on the FA side.
Enables the FA to validate the home address in the RRQ against the one assigned by AAA server. This
should only be configured on the FA side.
Default: Disabled.
When enabled, the MN-FA challenge and MN-AAA Authentication extensions are removed when relaying a
Registration Request (RRQ) to the Home Agent (HA)
When enabled, the MN-FA challenge and MN-AAA Authentication extensions are removed when relaying a
Registration Request (RRQ) to the Home Agent (HA)
Speechifies the encryption algorithm to use.
Default:
Default:
: Use HMAC-MD5 hash algorithm, as defined in RFC-2002bis. This is the default algorithm.
: Use the MD-5 hash algorithm.
: Use the MD-5 hash algorithm variant as defined in RFC-2002.
This is the used to verify the MN-HA Authentication for a local subscriber in the current context. A string or
a Hexadecimal number beginning with "0x" up to 127 bytes
a Hexadecimal number beginning with "0x" up to 127 bytes
Specifies the SPI number.
must be an integer from 256 through 4294967295.
Default: enabled.
Enables the mobile IP user‘s for reverse IP tunnels. The
Enables the mobile IP user‘s for reverse IP tunnels. The
keyword is used to disable this option.
Default: none
The security-level option configures the security level needed for the subscriber's traffic.
The security-level option configures the security level needed for the subscriber's traffic.
: both MIP control and data traffic are secured with IPSEC
: none of the traffic is secured
Important:
This keyword corresponds to the 3GPP2-Security-Level RADIUS attribute. This attribute indicates
the type of security that the home network mandates on the visited network.
Important:
For this attribute, integer value: 3 : Enables IPSec for tunnels and registration messages 4 : Disables
IPSec