Различия
Показаны различия между двумя версиями страницы.
| Предыдущая версия справа и слеваПредыдущая версияСледующая версия | Предыдущая версия | ||
| dpi:epdg:installation_setup:management_and_administration:auth_s6b [2024/11/19 11:40] – elena.krasnobryzh | dpi:epdg:installation_setup:management_and_administration:auth_s6b [2024/12/24 08:36] (текущий) – [Таблица] elena.krasnobryzh | ||
|---|---|---|---|
| Строка 1: | Строка 1: | ||
| - | {{indexmenu_n> | + | {{indexmenu_n> |
| ======Настройки интерфейса авторизации S6b====== | ======Настройки интерфейса авторизации S6b====== | ||
| - | =====Секция "charon.plugins.eap-diameter.s6b" | + | =====Секция "fast-epdg.auth" |
| + | ^ Параметр | ||
| + | | '' | ||
| + | |||
| + | **Шаблон: | ||
| + | <code bash> | ||
| + | fast-epdg { | ||
| + | auth { | ||
| + | iface = | ||
| + | swm {} | ||
| + | swx {} | ||
| + | s6b {} | ||
| + | } | ||
| + | } | ||
| + | </ | ||
| + | =====Секция " | ||
| ^ Параметр | ^ Параметр | ||
| - | | '' | ||
| | '' | | '' | ||
| | '' | | '' | ||
| - | | '' | ||
| | ''< | | ''< | ||
| | ''< | | ''< | ||
| | ''< | | ''< | ||
| - | **Пример:** | + | **Шаблон:** |
| <code bash> | <code bash> | ||
| - | charon | + | fast-epdg |
| - | | + | auth { |
| - | | + | iface |
| - | interface | + | s6b { |
| - | s6b { | + | realm = |
| - | app_id = s6b | + | host = |
| - | realm = epc.mnc002.mcc250.3gppnetwork.org | + | < |
| - | host = epdg.epc.mnc002.mcc250.3gppnetwork.org | + | } |
| - | | + | } |
| - | diameter-s6b-client-name-1 {} | + | |
| - | diameter-s6b-client-name-2 {} | + | |
| - | | + | |
| - | } | + | |
| - | } | + | |
| - | } | + | |
| } | } | ||
| </ | </ | ||
| - | |||
| - | =====Секция " | ||
| - | |||
| - | ^ Параметр | ||
| - | | '' | ||
| - | | '' | ||
| - | | '' | ||
| **Пример: | **Пример: | ||
| <code bash> | <code bash> | ||
| - | charon { | ||
| - | plugins { | ||
| - | eap-diameter { | ||
| - | interface = SWx | ||
| - | s6b { | ||
| - | | ||
| - | | ||
| - | host = epdg.epc.mnc002.mcc250.3gppnetwork.org | ||
| - | | ||
| - | | ||
| - | | ||
| - | | ||
| - | | ||
| - | } | ||
| - | | ||
| - | | ||
| - | | ||
| - | | ||
| - | } | ||
| - | | ||
| - | | ||
| - | | ||
| - | | ||
| - | } | ||
| - | } | ||
| - | } | ||
| - | } | ||
| - | } | ||
| - | </ | ||
| - | |||
| - | <code YAML> | ||
| fast-epdg { | fast-epdg { | ||
| - | swu { | + | auth { |
| - | < | + | iface = SWx |
| - | apn= | + | s6b { |
| - | ike=aes256-sha256-sha1-prfsha256-prfsha1-modp2048-modp1024! | + | realm = epc.mnc002.mcc250.3gppnetwork.org |
| - | esp=aes256-sha256-sha1-modp2048-modp1024! | + | host = epdg.epc.mnc002.mcc250.3gppnetwork.org |
| - | leftauth=eap | + | <server-name> {} |
| - | leftsubnet= | + | |
| - | rightauth=eap-diameter | + | |
| - | rightsourceip=%epdg | + | |
| } | } | ||
| } | } | ||
| + | } | ||
| + | </ | ||
| + | |||
| + | =====Секция " | ||
| + | |||
| + | ^ Параметр | ||
| + | | '' | ||
| + | | '' | ||
| + | | '' | ||
| + | |||
| + | **Шаблон: | ||
| + | <code bash> | ||
| + | fast-epdg { | ||
| auth { | auth { | ||
| - | interface | + | iface = |
| - | accounting = | + | s6b { |
| - | swm { | + | |
| - | app_id = swm | + | |
| realm = | realm = | ||
| host = | host = | ||
| - | vendor_id = | + | diameter-s6b-client-1 |
| - | < | + | |
| priority = | priority = | ||
| local = | local = | ||
| remote = | remote = | ||
| proto = | proto = | ||
| + | tls = | ||
| } | } | ||
| - | } | + | diameter-s6b-client-2 |
| - | swx { | + | |
| - | app_id = swx | + | |
| - | realm = | + | |
| - | host = | + | |
| - | vendor_id = | + | |
| - | < | + | |
| priority = | priority = | ||
| local = | local = | ||
| remote = | remote = | ||
| proto = | proto = | ||
| + | tls = | ||
| } | } | ||
| - | } | + | diameter-s6b-client-3 |
| - | s6b { | + | |
| - | app_id = s6b | + | |
| - | realm = | + | |
| - | host = | + | |
| - | vendor_id = | + | |
| - | < | + | |
| priority = | priority = | ||
| local = | local = | ||
| remote = | remote = | ||
| proto = | proto = | ||
| + | tls = | ||
| } | } | ||
| } | } | ||
| } | } | ||
| + | } | ||
| + | </ | ||
| - | tunnel | + | **Пример: |
| - | iface = | + | <code bash> |
| - | pdn = | + | fast-epdg { |
| - | pgw { | + | auth { |
| - | gtp { | + | iface = SWx |
| - | mcc = | + | s6b { |
| - | mnc = | + | realm |
| - | tac = | + | host = epdg.epc.mnc002.mcc250.3gppnetwork.org |
| - | cid = | + | diameter-s6b-client-1 |
| - | enbid = | + | priority |
| - | realm = | + | local = 192.168.1.1: |
| - | < | + | remote |
| - | apn = | + | proto = sctp |
| - | priority = | + | tls = on |
| - | devname | + | } |
| - | devmode | + | diameter-s6b-client-2 |
| - | subnet | + | priority = |
| - | qos { | + | local |
| - | qci | + | remote |
| - | mbr_ul = | + | proto |
| - | mbr_dl = | + | tls |
| - | gbr_ul = | + | } |
| - | gbr_dl = | + | diameter-s6b-client-3 { |
| - | } | + | priority |
| - | gtp-c { | + | local = 192.168.1.1: |
| - | local | + | remote = 192.168.2.3: |
| - | remote = | + | proto = tcp |
| - | } | + | tls = on |
| - | gtp-u { | + | |
| - | local = | + | |
| - | remote = | + | |
| - | } | + | |
| - | } | + | |
| } | } | ||
| - | } | ||
| - | } | ||
| - | |||
| - | syslog { | ||
| - | daemon { | ||
| - | ike = | ||
| - | cfg = | ||
| - | lib = | ||
| } | } | ||
| } | } | ||
| } | } | ||
| </ | </ | ||
| + | |||
| + | |||