Различия
Показаны различия между двумя версиями страницы.
Предыдущая версия справа и слеваПредыдущая версияСледующая версия | Предыдущая версия | ||
dpi:epdg:installation_setup:management_and_administration:auth_s6b [2024/11/19 11:40] – elena.krasnobryzh | dpi:epdg:installation_setup:management_and_administration:auth_s6b [2024/12/24 08:36] (текущий) – [Таблица] elena.krasnobryzh | ||
---|---|---|---|
Строка 1: | Строка 1: | ||
- | {{indexmenu_n> | + | {{indexmenu_n> |
======Настройки интерфейса авторизации S6b====== | ======Настройки интерфейса авторизации S6b====== | ||
- | =====Секция "charon.plugins.eap-diameter.s6b" | + | =====Секция "fast-epdg.auth" |
+ | ^ Параметр | ||
+ | | '' | ||
+ | |||
+ | **Шаблон: | ||
+ | <code bash> | ||
+ | fast-epdg { | ||
+ | auth { | ||
+ | iface = | ||
+ | swm {} | ||
+ | swx {} | ||
+ | s6b {} | ||
+ | } | ||
+ | } | ||
+ | </ | ||
+ | =====Секция " | ||
^ Параметр | ^ Параметр | ||
- | | '' | ||
| '' | | '' | ||
| '' | | '' | ||
- | | '' | ||
| ''< | | ''< | ||
| ''< | | ''< | ||
| ''< | | ''< | ||
- | **Пример:** | + | **Шаблон:** |
<code bash> | <code bash> | ||
- | charon | + | fast-epdg |
- | | + | auth { |
- | | + | iface |
- | interface | + | s6b { |
- | s6b { | + | realm = |
- | app_id = s6b | + | host = |
- | realm = epc.mnc002.mcc250.3gppnetwork.org | + | < |
- | host = epdg.epc.mnc002.mcc250.3gppnetwork.org | + | } |
- | | + | } |
- | diameter-s6b-client-name-1 {} | + | |
- | diameter-s6b-client-name-2 {} | + | |
- | | + | |
- | } | + | |
- | } | + | |
- | } | + | |
} | } | ||
</ | </ | ||
- | |||
- | =====Секция " | ||
- | |||
- | ^ Параметр | ||
- | | '' | ||
- | | '' | ||
- | | '' | ||
**Пример: | **Пример: | ||
<code bash> | <code bash> | ||
- | charon { | ||
- | plugins { | ||
- | eap-diameter { | ||
- | interface = SWx | ||
- | s6b { | ||
- | | ||
- | | ||
- | host = epdg.epc.mnc002.mcc250.3gppnetwork.org | ||
- | | ||
- | | ||
- | | ||
- | | ||
- | | ||
- | } | ||
- | | ||
- | | ||
- | | ||
- | | ||
- | } | ||
- | | ||
- | | ||
- | | ||
- | | ||
- | } | ||
- | } | ||
- | } | ||
- | } | ||
- | } | ||
- | </ | ||
- | |||
- | <code C> | ||
fast-epdg { | fast-epdg { | ||
- | swu { | + | auth { |
- | < | + | iface = SWx |
- | apn= | + | s6b { |
- | ike=aes256-sha256-sha1-prfsha256-prfsha1-modp2048-modp1024! | + | realm = epc.mnc002.mcc250.3gppnetwork.org |
- | esp=aes256-sha256-sha1-modp2048-modp1024! | + | host = epdg.epc.mnc002.mcc250.3gppnetwork.org |
- | leftauth=eap | + | <server-name> {} |
- | leftsubnet= | + | |
- | rightauth=eap-diameter | + | |
- | rightsourceip=%epdg | + | |
} | } | ||
} | } | ||
+ | } | ||
+ | </ | ||
+ | |||
+ | =====Секция " | ||
+ | |||
+ | ^ Параметр | ||
+ | | '' | ||
+ | | '' | ||
+ | | '' | ||
+ | |||
+ | **Шаблон: | ||
+ | <code bash> | ||
+ | fast-epdg { | ||
auth { | auth { | ||
- | interface | + | iface = |
- | accounting = | + | s6b { |
- | swm { | + | |
- | app_id = swm | + | |
realm = | realm = | ||
host = | host = | ||
- | vendor_id = | + | diameter-s6b-client-1 |
- | < | + | |
priority = | priority = | ||
local = | local = | ||
remote = | remote = | ||
proto = | proto = | ||
+ | tls = | ||
} | } | ||
- | } | + | diameter-s6b-client-2 |
- | swx { | + | |
- | app_id = swx | + | |
- | realm = | + | |
- | host = | + | |
- | vendor_id = | + | |
- | < | + | |
priority = | priority = | ||
local = | local = | ||
remote = | remote = | ||
proto = | proto = | ||
+ | tls = | ||
} | } | ||
- | } | + | diameter-s6b-client-3 |
- | s6b { | + | |
- | app_id = s6b | + | |
- | realm = | + | |
- | host = | + | |
- | vendor_id = | + | |
- | < | + | |
priority = | priority = | ||
local = | local = | ||
remote = | remote = | ||
proto = | proto = | ||
+ | tls = | ||
} | } | ||
} | } | ||
} | } | ||
+ | } | ||
+ | </ | ||
- | tunnel | + | **Пример: |
- | iface = | + | <code bash> |
- | pdn = | + | fast-epdg { |
- | pgw { | + | auth { |
- | gtp { | + | iface = SWx |
- | mcc = | + | s6b { |
- | mnc = | + | realm |
- | tac = | + | host = epdg.epc.mnc002.mcc250.3gppnetwork.org |
- | cid = | + | diameter-s6b-client-1 |
- | enbid = | + | priority |
- | realm = | + | local = 192.168.1.1: |
- | < | + | remote |
- | apn = | + | proto = sctp |
- | priority = | + | tls = on |
- | devname | + | } |
- | devmode | + | diameter-s6b-client-2 |
- | subnet | + | priority = |
- | qos { | + | local |
- | qci | + | remote |
- | mbr_ul = | + | proto |
- | mbr_dl = | + | tls |
- | gbr_ul = | + | } |
- | gbr_dl = | + | diameter-s6b-client-3 { |
- | } | + | priority |
- | gtp-c { | + | local = 192.168.1.1: |
- | local | + | remote = 192.168.2.3: |
- | remote = | + | proto = tcp |
- | } | + | tls = on |
- | gtp-u { | + | |
- | local = | + | |
- | remote = | + | |
- | } | + | |
- | } | + | |
} | } | ||
- | } | ||
- | } | ||
- | |||
- | syslog { | ||
- | daemon { | ||
- | ike = | ||
- | cfg = | ||
- | lib = | ||
} | } | ||
} | } | ||
} | } | ||
</ | </ | ||
+ | |||
+ |