для Cisco Cisco Packet Data Gateway (PDG)
PSF Changes in Release 17
▀ PSF Enhancements for 17.0
▄ Release Change Reference, StarOS Release 17
408
Access-Accept. This AVP can also parsed in any CCA-U or RAR message to modify the Firewall-and-NAT policy that
is currently assigned to the PDP context.
is currently assigned to the PDP context.
Customer Impact: The user can now use PCRF for controlling Firewall Policies.
CSCuf30336 - fw-and-nat policy ID checkpointing to peer chassis
Applicable Products: GGSN, HA, PDSN, P-GW
Feature Changes
Firewall-and-NAT Policy ID Checkpointing
In this release, the Firewall-and-NAT Policy ID can be used for check pointing. In earlier releases, the “Policy-name” is
checkpointed to peer-chassis. Backward compatibility must be provided to support checkpointing to peer-chassis.
checkpointed to peer-chassis. Backward compatibility must be provided to support checkpointing to peer-chassis.
CSCug91538, CSCug91568 - Move sfw/nat info to ‘show active-charging
subscribers ....’
Applicable Products: GGSN, HA, IPSG, PDSN, P-GW
Feature Changes
Firewall/NAT Statistics Support
In this release, the statistics related to Firewall/NAT for multiple sub-sessions earlier displayed as part of the
show
active-charging sessions full all
command will now be available as part of the
show active-charging
subscribers full all
command. This can avoid displaying the same information for multiple sub-sessions in the
show active-charging sessions full all
command.
Previous Behavior: The
show active-charging sessions full all
displayed the Firewall/NAT specific
attributes.
New Behavior: The
show active charging subscribers full all
CLI command is enhanced to display
Firewall/NAT specific attributes at subscriber level. When data is sent, the packets that match specific ruledefs only are
displayed.
displayed.
Performance Indicator Changes
show active-charging subscribers full all
This is a new command in this release displaying the following statistics earlier displayed as part of the
show active-
charging sessions full all
command.
FW-and-NAT Policy
FW-and-NAT Policy ID
Firewall Policy IPv4