0% found this document useful (0 votes)
78 views75 pages

02 GGSN9811 V900R007C02 APN Configuration-20090904-B-V1.0

Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PPT, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
78 views75 pages

02 GGSN9811 V900R007C02 APN Configuration-20090904-B-V1.0

Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PPT, PDF, TXT or read online on Scribd
You are on page 1/ 75

GGSN9811 V900R007

APN Data Configuration


www.huawei.com

www.huawei.com

HUAWEI TECHNOLOGIES Co., Ltd.


Contents

1. Basic Concept

2. APN Configuration

3. Virtual APN Configuration

4. Alias APN Configuration

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


APN - Definition and Function

 APN: Access Point Name


 APN function:

Use APN to identify the GGSN in the GPRS/WCDMA backbone

APN defines the external PDN which is connected to GGSN, such as the ISP
network and enterprise network

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


APN - Structure
internet. mnc<MNC>.mcc<MCC>.gprs
APN
APNNetwork
Network APN
APNOperator
Operator
Identifier
Identifier Identifier
Identifier
 APN NI defines the external network
 APN OI defines the GPRS backbone of GGSN
 APN classification

General APN: local accessing

Area APN: home accessing

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


APN - Application
DNS of internet

www.yahoo.co
Domain name: www.yahoo.com m=211.*.*.*

APN: web
Traffic

MS SGSN GGSN

APN=GGSN IP IP address
= 211.*.*.*

DNS of GPRS core network www.yahoo.com

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Contents

1. Basic Concept
1.1 APN

1.2 MS Access Mode

1.3 MS Address Allocation


1.4 Downlink Route to the MS

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


MS Access Mode

 Transparent mode

Fit for mobile operator acts as the ISP

The IP address allocate to the MS belong to the operator'ss network

Generally, no need to authenticate the subscriber
 None transparent mode

Fit for the mobile operator and ISP separate mode

The IP allocate to MS belong to the operator or ISP

Must authenticate the subscriber

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Authentication Mode

 The authentication mode is used when none-transparent, the user


name could be:

PCO

APN

MSISDN

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


MS Access Mode

Transparent
Radius

1. Create PDP context request


traffic
GGSN
2. Create PDP context respond

MS GGSN

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


MS Access Mode

No Transparent
Radius

g
g in
ar
ch
or
io n
at
t ic
en
th
Au
2.
1. Create PDP context request
traffic
username & GGSN
password 3. Create PDP context respond
MS GGSN

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


MS Access Mode

Transparent and authentication


Radius

g
g in
ar
username &

ch
password

or
io n
at
t ic
en
th
Au
2.
1. Create PDP context request
traffic
GGSN
3. Create PDP context respond
MS GGSN

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Contents

1. Basic Concept
1.1 APN
1.2 MS Access Mode

1.3 MS Address Allocation

1.4 Downlink Route to the MS

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


MS Address Allocation

 Static IP allocation

The subscriber get the IP address when the they subscribe the data service

 Dynamic IP allocation

Allocate by GGSN internal IP address pool

Allocate by RADIUS

Allocate by DHCP

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Contents

1. Basic Concept
1.1 APN

1.2 MS Access Mode


1.3 MS Address Allocation

1.4 Downlink Route to the MS

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Downlink Route to the MS
 When an MS is using a packet service, the GGSN9811 assigns an IP
address to the MS and records the information about the MS on the SPU.
A downlink route is generated for the MS. The destination is the IP
address of the MS and the next hop is the G interface on the SPU.
 The wireless route (WLR), developed by Huawei for GGSN9811
V900R007C02, is a downlink route to an MS. When an MS is accessing a
service, the GGSN9811 automatically generates a downlink route to the
MS, that is, a WLR, according to the IP address of the user during the
activation. The GGSN9811 then advertises the route through a dynamic
routing protocol to servers and routers. When the user is deactivated, the
GGSN9811 automatically deletes the route.
 The downlink route to an MS varies with the address assignment mode.

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Contents

1. Basic Concept

2. APN Configuration

3. Virtual APN Configuration

4. Alias APN Configuration

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


APN Information

Global Route
APN name
APN name

Basic info

Address Pool
VPN instance name Bind

APN name Radius

Dns

DHCP

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuration Steps

 Basic information about APN


 IP address pool for the APN
 Downlink route to the MS
 RADIUS information
 DNS information
 DHCP information

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


APN Basic Information

APN Basic Information command

APN name apn

selection-mode select-mode-check

access-mode
access-mode
authentication-mode

address-allocation address-allocation

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Optional Data for APN Basic Information

 Optional steps for APN basic information configuration



session-timeout

idle-timeout

max-bandwidth

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Optional Data for APN Basic Information

 Optional steps for APN basic information configuration



max-pdpnumber

apn-type-select

volume-statistic-mode

ppp-access authentication

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Create APN Instance

 apn apn-instance

[Huawei]apn huawei1

 vpn-instance vpn-instance-name

[Huawei-apn-huawei1]vpn-instance ch-gi

 select-mode-check { enable | disable }



[Huawei-apn-huawei1]select-mode-check disable

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Create APN Instance

 access-mode { transparent-authentication | transparent-non-


authentication | non-transparent [ authentication-mode { pco |
apn [ authentication-password password-string] [ pco-priority
enable | disable ] | msisdn [authentication-password
password-stirng ] [ pco-priority enable | disable ] } ] }

[Huawei-apn-huawei1]access-mode non-transparent authentication-mode pco

 [Huawei-apn-huawei1]common-user ch-mobile commonuser-


password ch-mobile

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Create APN Instance

 common-user user-name commonuser-password password



[Huawei-apn-huawei1]common-user ch-mobile commonuser-password ch-
mobile

 [Huawei-apn-huawei1]idle-timeout enable length 60 updatemsg


enable
 [Huawei-apn-huawei1]apn-type-select aaaacct service ocs
service perf service cg requested

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Maintenance

 Lock APN

[GGSN] apn isp.com

[GGSN-apn-isp.com] lock enable

 Display apn-userinfo

<GGSN> display apn-userinfo isp.com

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuration Steps

 Basic information about APN


 IP address pool for the APN
 Downlink route to the MS
 RADIUS information
 DNS information
 DHCP information

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Address Allocation Mode Enable

Local: Radius-priority
Disable
Enable
Command: [GGSN9811-apn-
huawei]address-allocate DHCP: Radius-priority
Disable

Radius

Radius
Enable
PDP req (null) IP
Local pool

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Static IP Processing
(1)
PDP req (APN/IP) APN

HLR: E/D
(2)
Static-ip: Conflict: E/D Y
Router: E/D Black-address-
list

N
(3)
White-address-list N
IP pool/section/static
Y (4)
PDP RES (IP) (6) (5) N The IP address has
been used by other
Mask IMSI?
Des Nhop Y
SPU IP add
Router:
32 E/D Gif
Reject

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Dynamic Address Processing
(1)
PDP req (APN/null) APN DHC
Local : Radius priority P
Address (2) (Agent IP)
allocate: DHCP: Radius priority
Radius (3)
Local pool
(4) Radius

(5)

PDP RES (IP) N (6) The IP address has


been used by other
Mask IMSI?
Des Nhop Y
IP add
SPU 27 Gif
Reject

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Gif

SGSN

Gnif interface

Other router
Gif interface
Data
LPU SPU
 GGSN is a router with GPRS function, so there are two kinds of data
to come in GGSN: the IP package (black line) which sends to MS and
Physical interface ordinary data package (red line). None but the MS IP package needs
to be transfer to Gnif interface to conduct GTP encapsulation; the
G interface ordinary data package does not need to.

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Address Allocate Mode

 address-allocate { local [ radius-prior { enable | disable }] |


dhcp [ radius-prior { enable | disable }] | radius }

[Huawei-apn-huawei1]address-allocate radius

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Local Pool Configuration
Local pool for dynamic ip allocation
pool name
create IP pool Local/remote [GGSN-access]ip pool
section-num
start-ip-address
IP pool section [GGSN-access-ip-pool-testpool]
configuration end-ip-address section

binding with APN pool name [GGSN-apn-huawei1] address-pool

[Huawei-access-ip-pool-
binding with VPN pool name huawei1]vpn-instance ch-gi

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Blacklist and Whitelist Configuration

Static IP Attribution Configuration


start-ip-address

configure black-address- end-ip-address


list [GGSN-access] black-address-list vpn-instance-name (o)
pool-name
[GGSN-access]ip pool remote
section-num
start-ip-address

configure white-address- end-ip-address


list [GGSN-access-ip-pool-testpool] section static
[GGSN-access-ip-pool-testpool] vpn-
binding with VPN (o) instance vrf1
binding with APN [GGSN-apn-isp.com] address-pool pool-name

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Whitelist Configuration

 ip pool pool-name [ remote | local [ ipv4 | ipv6 ] ]



[Huawei-access] ip pool huawei1 local

 section section-num start-ip-address end-ip-address [ static ]



[Huawei-access-ip-pool-huawei1] section 2 100.100.1.1 100.100.1.100 static

 [Huawei-access-ip-pool-huawei1]vpn-instance ch-gi
 [Huawei-apn-huawei1]address-pool huawei1

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Enable Active PDP by Static IP

Enable active by static IP

hlr-provided

conflict

route
Configure the static IP vpn-instance-
function [GGSN-apn-isp.com] static-ip name (o)

 static-ip [ hlr-provided { enable [ conflict { deactive | ignore } ]


| disable } ] [ route { enable [ hlr | radius | all ] | disable } ]

[Huawei-apn-huawei1]static-ip hlr-provided enable route enable all

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Maintenance

 Lock Pool

[GGSN-access] ip pool testpool local

[GGSN-access-ip-pool-testpool] lock

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Maintenance

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuration Steps

 Basic information about APN


 IP address pool for the APN
 Downlink route to the MS
 RADIUS information
 DNS information
 DHCP information

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuring the Downlink Route to the MS
in Local Address Assignment Mode
 The local address pool of the GGSN9811 is configured for the entire GGSN9811.
During the configuration of the local address pool, the GGSN9811 automatically
creates a sink route corresponding to the local address pool. The sink route is a static
route whose next hop is the null interface. When an MS is activated on the GGSN9811,
the GGSN9811 obtains part of the address pool and generates a WLR whose next hop
is the corresponding G interface on the GGSN9811. The part of the address pool
obtained by the GGSN9811 contains 32 IP addresses.
route-policy
 The GGSN9811 advertises the sink route corresponding to the address pool to routers
on the backbone network. Then, all packets destined for IP addresses in the address
pool are sent to the GGSN9811. When a packet arrives, the GGSN9811 searches the
local routing table, and then forwards the packet to the SPU through the WLR route
according to the longest-match principle.

 In the case of address assignment from the local address pool, you do not need to
configure the downlink route to the MS on the GGSN9811. If a dynamic routing protocol
is used, you must configure the GGSN9811 to import the static route to the routing
protocol and advertise the static route to the routers on the backbone network.

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuring the Downlink Route to the MS
in Local Address Assignment Mode
(Complete Network Segment)
Configure the downlink route to the MS in local address assignment mode.
route-policy-name
Permit/deny
Configure the routing policy. node [GGSN] route-policy

Configure that only the route


route-policy
whose subtype is black hole is
imported. route-type [GGSN-route-policy] if-match route-type
process-id
vpn-instance-name
Start the OSPF process. router-id [GGSN] ospf
Configure the GGSN9811 to
import the donwlink route and
to advertise it to the backbone
network. protocol [GGSN-ospf-xx] import-route

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuring the Downlink Route to the MS
in Local Address Assignment Mode
(Incomplete Network Segment)

Configure the downlink route to the MS in local address assignment mode.


process-id
vpn-instance-name
Start the OSPF process. router-id [GGSN] ospf
Configure the GGSN9811 to route-policy
import the donwlink route and
to advertise it to the backbone
network. protocol [GGSN-ospf-xx] import-route
Configure the GGSN9811 to
aggregate the imported routes. ip-address mask [GGSN-ospf-xx] asbr-summary

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Downlink Route to the MS in RADIUS
Address Assignment Mode
 Assume that the address segment is assigned by the RADIUS server managed by an
ISP or intranet and that the address segment is known in advance.

The address pools on the clients contain different address segments. Different
SPUs employ address pools of different clients. When an MS is activated on a
SPU, the GGSN9811 assigns an IP address from the address segment of this
SPU to the MS.
In this case, you must manually configure static downlink routes to MSs on the
GGSN9811. The routes are destined for the address segment of the SPU and the
next hop is the G interface of the SPU. Then, these static routes are imported to
the routing protocol and advertised.
 Assume that the address segment is assigned by the RADIUS server managed by an
ISP or intranet and that the address segment is unknown.

 In this case, static downlink routes to MSs cannot be configured on the


GGSN9811. The GGSN9811 can automatically generate WLRs according to IP
addresses of the MSs during user activation. Then, the WLR routes are
imported to the dynamic routing protocol and advertised.

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Downlink Route to the MS in RADIUS
Address Assignment Mode (Network
Segment Known in Advance)
Configure the downlink route to the MS in RADIUS address assignment mode.
Configure the static routes to Ip-address mask
[GGSN] ip route-static
the network address segment. nexthop-address
process-id
Start the OSPF process. vpn-instance-name [GGSN] ospf
router-id
Configure the GGSN9811 to
import the donwlink route and
protocol [GGSN-ospf-xx] import-route
to advertise it to the backbone
network.
Disable the automatic
route
generation of downlink routes [GGSN-apn-xx] static-ip
{enable/disable}
for users of the APN.

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Downlink Route to the MS in RADIUS
Address Assignment Mode (Network
Segment Unknown)

Configure the downlink route to the MS in RADIUS address assignment mode.


process-id
Start the OSPF process. vpn-instance-name [GGSN] ospf
router-id
Configure the GGSN9811 to
import the donwlink route and
protocol [GGSN-ospf-xx] import-route
to advertise it to the backbone
network.

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuring the Downlink Route to
the MS in DHCP Address
Assignment Mode
 The DHCP server assigns different agent IP addresses to address pools with
different address segments. Different SPUs employ address pools with
different address segments.
 When an MS is activated on an SPU, the GGSN9811 assigns an IP address
from the address segment of this SPU to the MS. In addition, the GGSN9811
automatically generates a downlink WLR. The destination of the WLR is the
address segment assigned by the DHCP server and the next hop is the G
interface of the SPU.
 In this case, you do not need to manually configure static routes. You need
only to import the WLRs and advertise them to the backbone network.

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuring the Downlink Route to
the MS in DHCP Address
Assignment Mode

Configure the downlink route to the MS in DHCP address assignment mode.


process-id
Start the OSPF process. vpn-instance-name [GGSN] ospf
router-id
Configure the GGSN9811 to
import the donwlink route and
protocol [GGSN-ospf-xx] import-route
to advertise it to the backbone
network.

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuring the Downlink Route to
the MS in Static Address
Assignment Mode (Scenario 1)
Both of the following conditions are met.
 The MSs of the same APN must be activated on only one CPU.
 The address segments of MSs with static IP addresses must be known in advance.

If these two conditions are met, you can manually configure downlink routes on the
GGSN9811. The downlink routes are destined for the address segments of the MSs and
the next hop is the G interface on the SPU. Then, the routes are imported to the dynamic
routing protocol and advertised to the backbone network.
Configuring the downlink route to the MS in static address assignment mode.
Configure the static routes to the network Ip-address mask
[GGSN] ip route-static
address segment. nexthop-address
process-id
Start the OSPF process. vpn-instance-name [GGSN] ospf
router-id
Configure the GGSN9811 to import the
[GGSN-ospf-xx]
donwlink route and to advertise it to the protocol
import-route
backbone network.
Disable the automatic generation of [GGSN-apn-xx] static-
Route {enable/disable}
downlink routes for users of the APN. ip

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuring the Downlink Route to the
MS in Static Address Assignment Mode
(Scenario 2)
Either or neither of the following conditions is met.
 The MSs of the same APN must be activated on only one CPU.
 The address segments of MSs with static IP addresses must be known in advance.

If either or neither of the conditions are met, the GGSN9811 automatically generates
WLRs during the activation. Then, the WLRs are imported to the dynamic routing
protocol and advertised.

Configuring the downlink route to the MS in static address assignment mode.


process-id
Start the OSPF process. vpn-instance-name [GGSN] ospf
router-id
Configure the GGSN9811 to
import the donwlink route and
protocol [GGSN-ospf-xx] import-route
to advertise it to the backbone
network.

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuration Steps

 Basic information about APN


 IP address pool for the APN
 Downlink route to the MS
 RADIUS information
 DNS information
 DHCP information

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


AAA Authentication Configuration
[GGSN-access] radius-server group isp.com

Configure AAA server [GGSN-access-radius- isp.com] radius-server


authentication authentication

Configure radius-server
retransmit timeout [GGSN-access-radius- isp.com] radius-server

Configure radius server [GGSN-access-radius- isp.com] radius-server auth-


authentication attribute attribute

Configure radius server


authentication 3GPP [GGSN-access-radius- isp.com] radius-server auth-
extension attributes 3gppvsa

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


AAA Authentication Configuration

Configure radius-server accept-


attribute [GGSN-access-radius-server1] radius-server accept-attribute

Bind RADIUS server group to APN [GGSN] apn test

instance [GGSN-apn-test] radius-server group isp.com

Configure public user name and


password of the APN [GGSN-apn-test] common-user

Configure that the domain name of


the APN can be stripped [GGSN-apn-isp.com] strip-domain-name enable

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


AAA Accounting Configuration
[GGSN-access] radius-server group TMO
Configure active AAA
[GGSN-access-radius- tmo] radius-server
accounting server
accounting

Configure AAA accounting


[GGSN-access-radius- tmo] radius-server
server retransmit timeout

configure AAA accounting [GGSN-access-radius- tmo] radius-server acct-


private extension attributes attribute

Configure radius server 3GPP [GGSN-access-radius-server1] radius-server acct-


accounting extension attributes 3gppvsa

configure cache-acct-stop-
[GGSN-apn- Germany] cache-acct-stop-msg enable
message

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


AAA Accounting Configuration

[GGSN] apn Germany

Bind RADIUS server group to


APN instance [GGSN-apn- Germany] radius-server group TMO

configure the charging


signaling control attributes of
the AAA client [GGSN-apn- Germany] radius acctctrl

configure the traffic threshold [GGSN-apn- Germany] radius threshold time-


and time threshold threshold

configure cache-acct-stop-
message [GGSN-apn- Germany] cache-acct-stop-msg enable

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Optional Steps

 Optional steps

radius-server auth-attribute

radius-server auth-3gppvsa

radius-server acct-attribute

radius-server acct-3gppvsa

radius-server acct-onoffsig

strip-domain-name

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuration

 radius-server group group-name



[Huawei-access] radius-server group huawei1

 radius-server authentication ip-address [vpn-instance vpn-


instance] [port port] key key-string

[Huawei-access-radius-huawei1] radius-server authentication 10.111.23.7 vpn-
instance ch-gi key huawei1

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuration
 radius-server auth-attribute [ acct-session-id { enable |
disable } | nas-id { enable { sys-name | apn } | disable } | imsi
{ enable | disable } | charging-id { enable | disable } | prepaid-
ind { enable | disable } | ggsn-ip { enable | disable } | sgsn-ip
{ enable | disable } | apn-alias { enable | disable } | ggsn-
vendor { enable | disable } | ggsn-version { enable | disable } ]
*

[Huawei-access-radius-huawei1]radius-server auth-attribute acct-session-id
enable charging-id enable ggsn-ip enable ggsn-vendor enable apn-alias
enable ggsn-version enable

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuration

 3GPP extension attributes configuration



[Huawei-access-radius-huawei1] radius-server auth-3gppvsa 3gpp enable

 radius-server accounting ip-address [ port port-number ] [ vpn-


instance vpn-instance ] key key-string

[Huawei-access-radius-huawei1]radius-server accounting 10.111.23.7 vpn-
instance ch-gi key huawei1

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuration

 Accounting attribute configuration



[Huawei-access-radius-huawei1]radius-server acct-attribute charging-id enable

 3GPP extension attributes configuration



[Huawei-access-radius-huawei1]radius-server acct-3gppvsa 3gpp enable

 Optional accounting message attributes configuration



[Huawei-access-radius-huawei1]radius-server acct-onoffsig optional-account-
message enable

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuration

 radius-server group group-name



[Huawei-apn-huawei1]radius-server group huawei1

 control attributes of accounting signaling of an AAA client



[Huawei-apn-huawei1] radius acctctrl wait-accounting-response enable

 radius threshold [ time-threshold time-threshold | volume-


threshold volume-threshold ] *

[Huawei-apn-huawei1] radius threshold time-threshold 10

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuration Steps

 Basic information about APN


 IP address pool for the APN
 Downlink route to the MS
 RADIUS information
 DNS information
 DHCP information

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


DNS Configuration

[GGSN] access-view

Configure the DNS for the specific APN

[GGSN-access] APN huawei

[GGSN-access-huawei] dns primary-ip 192.168.2.1 secondary-ip


192.168.1.1 priority radius

Configure the DNS for default

[GGSN-access] defdns primary-ip 192.168.2.1 secondary-ip 192.168.1.1


radius

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuration Steps

 Basic information about APN


 IP address pool for the APN
 Downlink route to the MS
 RADIUS information
 DNS information
 DHCP information

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


DHCP Configuration
 Set the DHCP group information

[GGSN-access] dhcp-server group

[GGSN-access-dhcp-server-group-group1] dhcp-server

[GGSN-access-dhcp-server-group-group1] dhcp-server leasetime

 Set the ip pool information



[GGSN-access]ip pool

[GGSN-access-ip-pool-testpool] agent-ip

[GGSN-access-ip-pool-testpool] dhcp-server group

 Binding the ip pool with APN



[GGSN-apn-isp.com] address-pool

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Contents

1. Basic Concept

2. APN Configuration

3. Virtual APN Configuration

4. Alias APN Configuration

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Virtual and Alias APN

 Virtual APN

The virtual APN means that multiple users who access different PDNs can
carry the same APN, that is, they can access different PDNs through the same
virtual APN on the GGSN.

 Alias APN

Multiple APNs in the current network can be aliases of a single APN and they
can use the same resources.

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Virtual APN by IMSI

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Virtual APN by MSISDN

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Virtual APN by RAT

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Virtual APN by PCO

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Virtual APN by PCO

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuration Steps

 virtual-apn { enable [ virtual-apn-activate { enable | disable } ] |


disable }

[GGSN9811-apn-huawei1] virtual-apn enable virtual-apn-activate enable

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Configuration Steps

 virtual-apn-rule virtual-apn-instance { imsi imsi-matching-


number apn apn-instance | msisdn msisdn-matching-number
apn apn-instance | rat matching-mode apn apn-instance | pco |
radius }

[GGSN-access] virtual-apn-rule huawei imsi 46001 apn beijing

 prefix-separator and suffix-separator

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Contents

1. Basic Concept

2. APN Configuration

3. Virtual APN Configuration

4. Alias APN Configuration

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Virtual and Alias APN

 Virtual APN

The virtual APN means that multiple users who access different PDNs can
carry the same APN, that is, they can access different PDNs through the same
virtual APN on the GGSN.

 Alias APN

Multiple APNs in the current network can be aliases of a single APN and they
can use the same resources.

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI Confidential


Thank you
www.huawei.com

You might also like