Перейти к содержимому
Калькуляторы

lemut

Пользователи
  • Публикации

    40
  • Зарегистрирован

  • Посещение

Сообщения, опубликованные пользователем lemut


  1. Интересует вопрос реальной производительности Cisco 12404 PRP-2 с двумя 12000-SIP-601 и четырьмя SPA-1X10GE-L-V2. Имеет ли кто либо подобное оборудование. Хотелось бы знать сколько трафика он может через себя пропустить.

  2. Проблема состоит в следующем при физическом разрыве PPPoE тунеля, NAS в виде Cisco 10008 не формирует stop пакет RADIUS.

     

    При этом сессии нет, биллинг думает что аббонент активен, и начинает тикать таймер по наличию alive.

     

    Хотелось бы видеть stop.

     

    Судя по документации подобных глюков быть не должно. SMART отсутвует.

     

    Cisco 10008

    Version 12.2(33)SB11, RELEASE SOFTWARE (fc1)

     

    Cisco C10008 (PRE3-RP) processor (revision V02 ) with 1933311K/163839K bytes of memory.

    Processor board ID NWG124208LQ

    SB-1 CPU at 800Mhz, Implementation 0x401, Rev 0.2, 512KB L2 Cache

    Backplane version 1.0, 8 slot

     

     

    NAME: "module 3/0", DESCR: "4 bay Cisco 10000 SPA Jacket Card"

    PID: 10000-SIP-600 , VID: 1.0, SN: CAT1415F0PU

     

    NAME: "SPA subslot 3/0", DESCR: "1-port 10 Gigabit Ethernet Shared Port Adapter XFP based"

    PID: SPA-1X10GE-L-V2 , VID: V02, SN: JAE14070NVZ

     

    NAME: "subslot 3/0 transceiver 0", DESCR: "OC192 + 10GBASE-L"

    PID: XFP-10GLR-OC192SR , VID: 03 , SN: ONT140410LJ

     

    Настройки

     

    aaa group server radius group1

    server 10.10.xx.254 auth-port 1812 acct-port 1815

    !

    aaa authentication login local_log local

    aaa authentication login rad group group1 local

    aaa authentication login ISG group radius

    aaa authentication ppp local_ppp local

    aaa authentication ppp rad group group1 local

    aaa authentication ppp ISG group radius

    aaa authorization network default group group1 local

    aaa authorization network ISG group radius

    aaa authorization subscriber-service default local group group1

    aaa accounting delay-start all

    aaa accounting update periodic 1

    aaa accounting exec rad start-stop group radius group group1

    aaa accounting network rad start-stop group group1

    aaa accounting network ISG start-stop group radius

    !

    aaa attribute list ISG

    !

    aaa nas port extended

     

     

    bba-group pppoe global

    virtual-template 1

    sessions max limit 4000

    sessions per-mac limit 4

    sessions per-mac iwf limit 4

    sessions auto cleanup

     

     

    interface TenGigabitEthernet3/0/0.818

    description PPPoE for Lenina75

    encapsulation dot1Q 818

    pppoe enable group global

     

    interface Virtual-Template1

    description USED FOR VPN_Session

    ip unnumbered Loopback50

    ip tcp adjust-mss 1300

    load-interval 30

    peer default ip address pool vpn_pool

    ppp mtu adaptive

    ppp authentication chap pap ms-chap ms-chap-v2 callin ISG

    ppp accounting ISG

  3. В прайсе есть, вдруг кто уже купил и успел опробовать. Вопрос стоит ли вообще ориентироваться на данную модель. Задача на следующий год стоит тривиальная, теримнация около 20т. абонентов.

  4. Может кто либо поделится опытом эксплуатации Cisco ASR 9001 и других маршрутизаторов данной линейки. Инетерсует его производительность как NAT и как PPPoE терминации.

     

    Заранее благодарен за ответы.

  5. Сервис на текущий момент активируется. Но проблема в том что почему то при совпадении паролей

    в данной секции с паролем абонента. Что очень и очень странно.

     

    subscriber feature prepaid 200M

    threshold time 10 seconds

    threshold volume 2 Mbytes

    interim-interval 1 minutes

    method-list author ISG

    method-list accounting ISG

    password cisco

     

    Как добится того что бы не было подобной привязки?

    На всех лабах используется один и тот же пароль и все хорошо...

     

    Прелагаю логи FreeRadiusa

     

    Wed Aug 3 16:40:46 2011

    Packet-Type = Access-Request

    Framed-Protocol = PPP

    User-Name = "test1"

    NAS-Port-Type = Virtual

    Cisco-NAS-Port = "1/0/0/304"

    NAS-Port = 0

    NAS-Port-Id = "1/0/0/304"

    Connect-Info = "SF"

    Cisco-AVPair = "client-mac-address=0011.2233.4455"

    Service-Type = Framed-User

    NAS-IP-Address = 217.8.xx.yyy

    Acct-Session-Id = "00000496"

     

    Wed Aug 3 16:40:46 2011

    Packet-Type = Access-Request

    User-Name = "L10MT"

    NAS-Port-Type = Virtual

    Cisco-NAS-Port = "1/0/0/304"

    NAS-Port = 0

    NAS-Port-Id = "1/0/0/304"

    Connect-Info = "SF"

    Cisco-AVPair = "client-mac-address=0011.2233.4455"

    Service-Type = Outbound-User

    NAS-IP-Address = 217.8.xx.yyy

    Acct-Session-Id = "00000496"

     

    Wed Aug 3 16:40:46 2011

    Packet-Type = Access-Request

    User-Name = "W2MT"

    NAS-Port-Type = Virtual

    Cisco-NAS-Port = "1/0/0/304"

    NAS-Port = 0

    NAS-Port-Id = "1/0/0/304"

    Connect-Info = "SF"

    Cisco-AVPair = "client-mac-address=0011.2233.4455"

    Service-Type = Outbound-User

    NAS-IP-Address = 217.8.xx.yyy

    Acct-Session-Id = "00000496"

     

    Wed Aug 3 16:40:46 2011

    Packet-Type = Access-Request

    User-Name = "test1"

    Cisco-Service-Info = "NW2MT"

    Framed-Protocol = PPP

    NAS-Port-Type = Virtual

    Cisco-NAS-Port = "1/0/0/304"

    NAS-Port = 0

    NAS-Port-Id = "1/0/0/304"

    Connect-Info = "SF"

    Cisco-AVPair = "client-mac-address=0011.2233.4455"

    Service-Type = Framed-User

    NAS-IP-Address = 217.8.xx.yyy

    Acct-Session-Id = "00000497"

     

    Ответы радиуса

    Wed Aug 3 16:40:46 2011

    Packet-Type = Access-Accept

    Framed-IP-Address := 217.8.xx.zz

    Cisco-Account-Info := "AW2MT"

    Cisco-Account-Info := "AL10MT"

    Idle-Timeout := 600

    Cisco-Control-Info := "QV20000000"

     

    Wed Aug 3 16:40:46 2011

    Packet-Type = Access-Accept

    Cisco-Service-Info := "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    Cisco-AVPair := "ip:traffic-class=in access-group name LOCAL_IN priority 100"

    Cisco-AVPair := "ip:traffic-class=out access-group name LOCAL_OUT priority 110"

    Cisco-AVPair := "ip:traffic-class=in default drop"

    Cisco-AVPair := "ip:traffic-class=out default drop"

    Cisco-Service-Info := "IL10MT"

    Cisco-AVPair := "accounting-list=ISG"

     

    Wed Aug 3 16:40:46 2011

    Packet-Type = Access-Accept

    Cisco-AVPair := "ip:traffic-class=in access-group name WORLD_IN priority 200"

    Cisco-AVPair := "ip:traffic-class=out access-group name WORLD_OUT priority 210"

    Cisco-AVPair := "ip:traffic-class=in default drop"

    Cisco-AVPair := "ip:traffic-class=out default drop"

    Cisco-Service-Info := "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    Cisco-Service-Info := "IW2MT"

    Cisco-AVPair := "prepaid-config=200M"

     

    Wed Aug 3 16:40:46 2011

    Packet-Type = Access-Reject

    Framed-IP-Address := 217.8.xx.bb

    Cisco-Account-Info := "AW2MT"

    Cisco-Account-Info := "AL10MT"

    Idle-Timeout := 600

    Cisco-Control-Info := "QV20000000"

     

    В случаи если пароль в препейд конфиге совпадает с пользовательским по последнем запросу приходит Accept

  6. subscriber feature prepaid 200M

     

    порог исправил.

    А если квота не придет? то и сервис не активируется?

     

    Видимо я не правильно понял, что Access-accept передаются все параметры сервиса при старте, в том числе и квота

     

    Вот так я вижу пакеты

     

    Без квоты и препейда

    Jun 30 12:09:46.178 surgut: RADIUS: Received from id 1645/152 10.10.2.4:1812, Access-Accept, len 305

    Jun 30 12:09:46.178 surgut: RADIUS: authenticator 8B 82 78 4C EB 87 F2 F8 - 25 25 17 9C 48 36 15 DD

    Jun 30 12:09:46.178 surgut: RADIUS: Vendor, Cisco [26] 70

    Jun 30 12:09:46.178 surgut: RADIUS: Cisco AVpair [1] 64 "ip:traffic-class=in access-group name NO_TARIF_IN priority 50"

    Jun 30 12:09:46.178 surgut: RADIUS: Vendor, Cisco [26] 71

    Jun 30 12:09:46.178 surgut: RADIUS: Cisco AVpair [1] 65 "ip:traffic-class=out access-group name NO_TARIF_OUT priority 50"

    Jun 30 12:09:46.178 surgut: RADIUS: Vendor, Cisco [26] 41

    Jun 30 12:09:46.178 surgut: RADIUS: Cisco AVpair [1] 35 "ip:traffic-class=out default drop"

    Jun 30 12:09:46.178 surgut: RADIUS: Vendor, Cisco [26] 40

    Jun 30 12:09:46.178 surgut: RADIUS: Cisco AVpair [1] 34 "ip:traffic-class=in default drop"

    Jun 30 12:09:46.178 surgut: RADIUS: Vendor, Cisco [26] 25

    Jun 30 12:09:46.178 surgut: RADIUS: ssg-service-info [251] 19 "IPREPAID_INTERNET"

    Jun 30 12:09:46.178 surgut: RADIUS: Vendor, Cisco [26] 38

    Jun 30 12:09:46.178 surgut: RADIUS: Cisco AVpair [1] 32 "subscriber:accounting-list=ISG"

     

     

    С квотой и без препейда

    Jun 30 12:14:53.061 surgut: RADIUS: Received from id 1645/156 10.10.2.4:1812, Access-Accept, len 323

    Jun 30 12:14:53.061 surgut: RADIUS: authenticator 5E 45 4E B5 C7 B0 73 5E - 00 7A 43 B3 4E 1D 5E 0C

    Jun 30 12:14:53.061 surgut: RADIUS: Vendor, Cisco [26] 70

    Jun 30 12:14:53.061 surgut: RADIUS: Cisco AVpair [1] 64 "ip:traffic-class=in access-group name NO_TARIF_IN priority 50"

    Jun 30 12:14:53.061 surgut: RADIUS: Vendor, Cisco [26] 71

    Jun 30 12:14:53.061 surgut: RADIUS: Cisco AVpair [1] 65 "ip:traffic-class=out access-group name NO_TARIF_OUT priority 50"

    Jun 30 12:14:53.061 surgut: RADIUS: Vendor, Cisco [26] 41

    Jun 30 12:14:53.061 surgut: RADIUS: Cisco AVpair [1] 35 "ip:traffic-class=out default drop"

    Jun 30 12:14:53.061 surgut: RADIUS: Vendor, Cisco [26] 40

    Jun 30 12:14:53.061 surgut: RADIUS: Cisco AVpair [1] 34 "ip:traffic-class=in default drop"

    Jun 30 12:14:53.061 surgut: RADIUS: Vendor, Cisco [26] 25

    Jun 30 12:14:53.061 surgut: RADIUS: ssg-service-info [251] 19 "IPREPAID_INTERNET"

    Jun 30 12:14:53.061 surgut: RADIUS: Vendor, Cisco [26] 38

    Jun 30 12:14:53.061 surgut: RADIUS: Cisco AVpair [1] 32 "subscriber:accounting-list=ISG"

    Jun 30 12:14:53.061 surgut: RADIUS: Vendor, Cisco [26] 18

    Jun 30 12:14:53.061 surgut: RADIUS: ssg-control-info [253] 12 "QV20000000"

     

    Без квоты и с препейдом

    Jun 30 12:17:52.967 surgut: RADIUS: Received from id 1645/160 10.10.2.4:1812, Access-Accept, len 332

    Jun 30 12:17:52.967 surgut: RADIUS: authenticator 9B 3C E2 D0 A3 2C D8 A6 - 27 2D E6 15 95 1D 5E 7F

    Jun 30 12:17:52.967 surgut: RADIUS: Vendor, Cisco [26] 70

    Jun 30 12:17:52.967 surgut: RADIUS: Cisco AVpair [1] 64 "ip:traffic-class=in access-group name NO_TARIF_IN priority 50"

    Jun 30 12:17:52.967 surgut: RADIUS: Vendor, Cisco [26] 71

    Jun 30 12:17:52.967 surgut: RADIUS: Cisco AVpair [1] 65 "ip:traffic-class=out access-group name NO_TARIF_OUT priority 50"

    Jun 30 12:17:52.967 surgut: RADIUS: Vendor, Cisco [26] 41

    Jun 30 12:17:52.967 surgut: RADIUS: Cisco AVpair [1] 35 "ip:traffic-class=out default drop"

    Jun 30 12:17:52.967 surgut: RADIUS: Vendor, Cisco [26] 40

    Jun 30 12:17:52.967 surgut: RADIUS: Cisco AVpair [1] 34 "ip:traffic-class=in default drop"

    Jun 30 12:17:52.967 surgut: RADIUS: Vendor, Cisco [26] 25

    Jun 30 12:17:52.967 surgut: RADIUS: ssg-service-info [251] 19 "IPREPAID_INTERNET"

    Jun 30 12:17:52.967 surgut: RADIUS: Vendor, Cisco [26] 38

    Jun 30 12:17:52.967 surgut: RADIUS: Cisco AVpair [1] 32 "subscriber:accounting-list=ISG"

    Jun 30 12:17:52.967 surgut: RADIUS: Vendor, Cisco [26] 27

    Jun 30 12:17:52.967 surgut: RADIUS: Cisco AVpair [1] 21 "prepaid-config=200M"

  7. Да ACL имеются. Это точно Влияет на сервис только эта строчка , без нее сервис уходит в активность *Cisco-AVPair := prepaid-config=200M

     

     

    bras01-surgut.hmao.ugra#sh sss session

    Current Subscriber Information: Total sessions 1

     

    Uniq ID Interface State Service Identifier Up-time

    111 Vi2.1 authen Local Term test1 00:00:10

    112 Traffic-Clas unauthen Ltm Internal 00:00:10

    113 Traffic-Clas unauthen Ltm Internal 00:00:10

    114 Traffic-Clas unauthen Ltm Internal 00:00:10

     

    bras01-surgut.hmao.ugra#sh sss session detailed

    Current Subscriber Information: Total sessions 1

    --------------------------------------------------

    Unique Session ID: 111

    Identifier: test1

    SIP subscriber access type(s): PPPoE/PPP

    Current SIP options: Req Fwding/Req Fwded

    Session Up-time: 00:00:16, Last Changed: 00:00:16

    Interface: Virtual-Access2.1

     

    Policy information:

    Context 43874578: Handle 460000BA

    AAA_id 00000031: Flow_handle 0

    Authentication status: authen

    Downloaded User profile, excluding services:

    addr 217.8.xx.yy

    ssg-account-info "AW2MT"

    ssg-account-info "AL10MT"

    idletime 600 (0x258)

    ssg-account-info "APREPAID_INTERNET"

    Downloaded User profile, including services:

    addr 217.8.xx.yy

    ssg-account-info "AW2MT"

    ssg-account-info "AL10MT"

    idletime 600 (0x258)

    ssg-account-info "APREPAID_INTERNET"

    ssg-control-info "QV20000000"

    accounting-list "ISG"

    traffic-class "in access-group name WORLD_IN priority 200"

    traffic-class "out access-group name WORLD_OUT priority 210"

    traffic-class "in default drop"

    traffic-class "out default drop"

    ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    ssg-service-info "IW2MT"

    Config history for session (recent to oldest):

    Access-type: Web-service-logon Client: SM

    Policy event: Apply Config Success (Service)

    Profile name: W2MT, 4 references

    traffic-class "in access-group name WORLD_IN priority 200"

    traffic-class "out access-group name WORLD_OUT priority 210"

    traffic-class "in default drop"

    traffic-class "out default drop"

    ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    ssg-service-info "IW2MT"

    Access-type: Web-service-logon Client: SM

    Policy event: Apply Config Success (Service)

    Profile name: L10MT, 4 references

    ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    traffic-class "in access-group name LOCAL_IN priority 100"

    traffic-class "out access-group name LOCAL_OUT priority 110"

    traffic-class "in default drop"

    traffic-class "out default drop"

    ssg-service-info "IL10MT"

    accounting-list "ISG"

    Access-type: Web-service-logon Client: SM

    Policy event: Apply Config Success (Service)

    Profile name: PREPAID_INTERNET, 4 references

    traffic-class "in access-group name NO_TARIF_IN priority 50"

    traffic-class "out access-group name NO_TARIF_OUT priority 50"

    traffic-class "out default drop"

    traffic-class "in default drop"

    ssg-service-info "IPREPAID_INTERNET"

    ssg-control-info "QV20000000"

    accounting-list "ISG"

    Access-type: PPP Client: SM

    Policy event: Process Config Connecting

    Profile name: test1, 2 references

    addr 217.8.xx.yy

    ssg-account-info "AW2MT"

    ssg-account-info "AL10MT"

    idletime 600 (0x258)

    ssg-account-info "APREPAID_INTERNET"

    Active services associated with session:

    name "W2MT"

    name "L10MT"

    name "PREPAID_INTERNET"

     

    Session inbound features:

    Traffic classes:

    Traffic class session ID: 112

    ACL Name: NO_TARIF_IN, Packets = 0, Bytes = 0

    Traffic class session ID: 113

    ACL Name: LOCAL_IN, Packets = 32, Bytes = 1968

    Traffic class session ID: 114

    ACL Name: WORLD_IN, Packets = 10, Bytes = 1708

    Default traffic is dropped

    Unmatched Packets = 0, Re-classified packets (redirected) = 0

     

    Session outbound features:

    Feature: PPP Idle Timeout

    Timeout value is 600

    Idle time is 00:00:11

    Traffic classes:

    Traffic class session ID: 112

    ACL Name: NO_TARIF_OUT, Packets = 0, Bytes = 0

    Traffic class session ID: 113

    ACL Name: LOCAL_OUT, Packets = 29, Bytes = 3215

    Traffic class session ID: 114

    ACL Name: WORLD_OUT, Packets = 4, Bytes = 548

    Default traffic is dropped

    Unmatched Packets = 0, Re-classified packets (redirected) = 0

     

    Non-datapath features:

    Feature: IP Config

    Peer IP Address: 217.8.xx.yy (F/F)

    Address Pool: [None] (F)

    Unnumbered Intf: [None]

    Configuration sources associated with this session:

    Service: W2MT, Active Time = 00:00:53

    Service: L10MT, Active Time = 00:00:53

    AAA Service ID = 2197815354

    Service: PREPAID_INTERNET, Active Time = 00:00:53

    AAA Service ID = 1946157113

    Interface: Virtual-Template10, Active Time = 00:00:53

     

    --------------------------------------------------

    Unique Session ID: 112

    Identifier:

    SIP subscriber access type(s): Traffic-Class

    Current SIP options: None

    Session Up-time: 00:00:53, Last Changed: 00:00:53

     

    Policy information:

    Context 43874110: Handle 750000BB

    AAA_id 00000031: Flow_handle 1

    Authentication status: unauthen

    Downloaded User profile, including services:

    traffic-class "in access-group name NO_TARIF_IN priority 50"

    traffic-class "out access-group name NO_TARIF_OUT priority 50"

    traffic-class "out default drop"

    traffic-class "in default drop"

    ssg-service-info "IPREPAID_INTERNET"

    ssg-control-info "QV20000000"

    accounting-list "ISG"

    Config history for session (recent to oldest):

    Access-type: Web-service-logon Client: Service Command-Handler

    Policy event: Service-Start (Service)

    Profile name: PREPAID_INTERNET, 4 references

    traffic-class "in access-group name NO_TARIF_IN priority 50"

    traffic-class "out access-group name NO_TARIF_OUT priority 50"

    traffic-class "out default drop"

    traffic-class "in default drop"

    ssg-service-info "IPREPAID_INTERNET"

    ssg-control-info "QV20000000"

    accounting-list "ISG"

     

    Session inbound features:

    Feature: Service accounting

    Service: PREPAID_INTERNET

    Method List: ISG

    Packets = 0, Bytes = 0

     

    Session outbound features:

    Feature: Service accounting

    Service: PREPAID_INTERNET

    Method List: ISG

    Packets = 0, Bytes = 0

     

    Configuration sources associated with this session:

    Service: PREPAID_INTERNET, Active Time = 00:01:00

     

    --------------------------------------------------

    Unique Session ID: 113

    Identifier:

    SIP subscriber access type(s): Traffic-Class

    Current SIP options: None

    Session Up-time: 00:01:00, Last Changed: 00:01:00

     

    Policy information:

    Context 43874400: Handle 2D0000BC

    AAA_id 00000031: Flow_handle 2

    Authentication status: unauthen

    Downloaded User profile, including services:

    ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    traffic-class "in access-group name LOCAL_IN priority 100"

    traffic-class "out access-group name LOCAL_OUT priority 110"

    traffic-class "in default drop"

    traffic-class "out default drop"

    ssg-service-info "IL10MT"

    accounting-list "ISG"

    Config history for session (recent to oldest):

    Access-type: Web-service-logon Client: Service Command-Handler

    Policy event: Service-Start (Service)

    Profile name: L10MT, 4 references

    ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    traffic-class "in access-group name LOCAL_IN priority 100"

    traffic-class "out access-group name LOCAL_OUT priority 110"

    traffic-class "in default drop"

    traffic-class "out default drop"

    ssg-service-info "IL10MT"

    accounting-list "ISG"

     

    Session inbound features:

    Feature: Service accounting

    Service: L10MT

    Method List: ISG

    Packets = 62, Bytes = 3768

     

    Feature: Policing

    Upstream Params:

    Average rate = 10240000, Normal burst = 512000, Excess burst = 10240000

    Config level = Service

     

    Session outbound features:

    Feature: Service accounting

    Service: L10MT

    Method List: ISG

    Packets = 59, Bytes = 5015

     

    Feature: Policing

    Dnstream Params:

    Average rate = 10240000, Normal burst = 512000, Excess burst = 10240000

    Config level = Service

     

    Configuration sources associated with this session:

    Service: L10MT, Active Time = 00:04:10

     

    --------------------------------------------------

    Unique Session ID: 114

    Identifier:

    SIP subscriber access type(s): Traffic-Class

    Current SIP options: None

    Session Up-time: 00:04:10, Last Changed: 00:04:10

     

    Policy information:

    Context 43874288: Handle AC0000BD

    AAA_id 00000031: Flow_handle 0

    Authentication status: unauthen

    Downloaded User profile, including services:

    traffic-class "in access-group name WORLD_IN priority 200"

    traffic-class "out access-group name WORLD_OUT priority 210"

    traffic-class "in default drop"

    traffic-class "out default drop"

    ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    ssg-service-info "IW2MT"

    Config history for session (recent to oldest):

    Access-type: Web-service-logon Client: Service Command-Handler

    Policy event: Service-Start (Service)

    Profile name: W2MT, 4 references

    traffic-class "in access-group name WORLD_IN priority 200"

    traffic-class "out access-group name WORLD_OUT priority 210"

    traffic-class "in default drop"

    traffic-class "out default drop"

    ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    ssg-service-info "IW2MT"

     

    Session inbound features:

    Feature: Policing

    Upstream Params:

    Average rate = 10240000, Normal burst = 512000, Excess burst = 10240000

    Config level = Service

     

    Session outbound features:

    Feature: Policing

    Dnstream Params:

    Average rate = 10240000, Normal burst = 512000, Excess burst = 10240000

    Config level = Service

     

    Configuration sources associated with this session:

    Service: W2MT, Active Time = 00:04:10

     

     

    Вот сервисы без злопалучной строчки.

  8. Именно так

    name "W2MT"

    name "L10MT"

    Это два серивиса, безо всяких препейдов, они стартуют вообще без проблем, третий сервис, не хочет на сессию прицеплятся

     

     

    Jun 28 16:35:37.098 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: breaking parent-child lock

    Jun 28 16:35:37.098 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: destroy

    Jun 28 16:35:37.102 surgut: SVM [DC00008C/PREPAID_INTERNET]: destroy

  9. Насколько я понимаю, сервисы я могу и без service-policy type control на virtual-templete подключить к сессии, если по ходу активности ни каких изменений проводить не планируется. Или активация диактивация сессий перелогиниванием планируется.

     

    На текущий момент задача простая, сделать просто картоный сервис, абонент скачал трафик, абонент идет за новой картой.

     

     

    bras01-surgut.hmao.ugra#

    Jun 28 16:35:36.062 surgut: RADIUS/ENCODE(0000002E):Orig. component type = PPoE

    Jun 28 16:35:36.062 surgut: RADIUS(0000002E): Config NAS IP: 217.8.zz.zz

    Jun 28 16:35:36.062 surgut: RADIUS/ENCODE(0000002E): acct_session_id: 148

    Jun 28 16:35:36.062 surgut: RADIUS(0000002E): sending

    Jun 28 16:35:36.062 surgut: RADIUS(0000002E): Send Access-Request to 10.10.2.4:1812 id 1645/133, len 158

    Jun 28 16:35:36.062 surgut: RADIUS: authenticator C8 0F DB EA 35 9E 1A 91 - A6 04 67 59 1C 48 FE D8

    Jun 28 16:35:36.062 surgut: RADIUS: Framed-Protocol [7] 6 PPP [1]

    Jun 28 16:35:36.062 surgut: RADIUS: User-Name [1] 7 "test1"

    Jun 28 16:35:36.062 surgut: RADIUS: User-Password [2] 18 *

    Jun 28 16:35:36.062 surgut: RADIUS: NAS-Port-Type [61] 6 Virtual [5]

    Jun 28 16:35:36.062 surgut: RADIUS: Vendor, Cisco [26] 17

    Jun 28 16:35:36.062 surgut: RADIUS: cisco-nas-port [2] 11 "1/0/0/304"

    Jun 28 16:35:36.062 surgut: RADIUS: NAS-Port [5] 6 0

    Jun 28 16:35:36.062 surgut: RADIUS: NAS-Port-Id [87] 11 "1/0/0/304"

    Jun 28 16:35:36.062 surgut: RADIUS: Connect-Info [77] 4 "SF"

    Jun 28 16:35:36.062 surgut: RADIUS: Vendor, Cisco [26] 41

    Jun 28 16:35:36.062 surgut: RADIUS: Cisco AVpair [1] 35 "client-mac-address=0016.d46a.0344"

    Jun 28 16:35:36.062 surgut: RADIUS: Service-Type [6] 6 Framed [2]

    Jun 28 16:35:36.062 surgut: RADIUS: NAS-IP-Address [4] 6 217.8.zz.zz

    Jun 28 16:35:36.062 surgut: RADIUS: Acct-Session-Id [44] 10 "00000094"

    Jun 28 16:35:36.062 surgut: RADIUS: Received from id 1645/133 10.10.2.4:1812, Access-Accept, len 84

    Jun 28 16:35:36.062 surgut: RADIUS: authenticator 7C DE E8 1C 5D 9F ED 83 - 44 52 AA 4B B1 FA 9D 74

    Jun 28 16:35:36.062 surgut: RADIUS: Framed-IP-Address [8] 6 217.8.xx.xx

     

     

     

    Jun 28 16:35:36.062 surgut: RADIUS: Vendor, Cisco [26] 13

    Jun 28 16:35:36.062 surgut: RADIUS: ssg-account-info [250] 7 "AW2MT"

    Jun 28 16:35:36.062 surgut: RADIUS: Vendor, Cisco [26] 14

    Jun 28 16:35:36.062 surgut: RADIUS: ssg-account-info [250] 8 "AL10MT"

    Jun 28 16:35:36.062 surgut: RADIUS: Idle-Timeout [28] 6 600

    Jun 28 16:35:36.062 surgut: RADIUS: Vendor, Cisco [26] 25

    Jun 28 16:35:36.062 surgut: RADIUS: ssg-account-info [250] 19 "APREPAID_INTERNET"

    Jun 28 16:35:36.066 surgut: RADIUS(0000002E): Received from id 1645/133

    Jun 28 16:35:36.066 surgut: SVM [PREPAID_INTERNET]: needs downloading

    Jun 28 16:35:36.066 surgut: SVM [DC00008C/PREPAID_INTERNET]: allocated version 1

    Jun 28 16:35:36.066 surgut: SVM [DC00008C/PREPAID_INTERNET]: [bE0000AD]: client queued

    Jun 28 16:35:36.066 surgut: SVM [DC00008C/PREPAID_INTERNET]: [PM-Download:BE0000AD] locked 0->1

    Jun 28 16:35:36.066 surgut: SVM [DC00008C/PREPAID_INTERNET]: [AAA-Download:43B083B0] locked 0->1

    Jun 28 16:35:36.066 surgut: SVM [L10MT]: needs downloading

    Jun 28 16:35:36.066 surgut: SVM [6400008D/L10MT]: allocated version 1

    Jun 28 16:35:36.066 surgut: SVM [6400008D/L10MT]: [A00000AE]: client queued

    Jun 28 16:35:36.066 surgut: SVM [6400008D/L10MT]: [PM-Download:A00000AE] locked 0->1

    Jun 28 16:35:36.066 surgut: SVM [6400008D/L10MT]: [AAA-Download:D2DFAA60] locked 0->1

    Jun 28 16:35:36.066 surgut: SVM [W2MT]: needs downloading

    Jun 28 16:35:36.066 surgut: SVM [8C00008E/W2MT]: allocated version 1

    Jun 28 16:35:36.066 surgut: SVM [8C00008E/W2MT]: [250000AF]: client queued

    Jun 28 16:35:36.066 surgut: SVM [8C00008E/W2MT]: [PM-Download:250000AF] locked 0->1

    Jun 28 16:35:36.066 surgut: SVM [8C00008E/W2MT]: [AAA-Download:561D6F0C] locked 0->1

    Jun 28 16:35:36.066 surgut: RADIUS/ENCODE(0000002E):Orig. component type = PPoE

    Jun 28 16:35:36.066 surgut: RADIUS(0000002E): Config NAS IP: 217.8.zz.zz

    Jun 28 16:35:36.066 surgut: RADIUS/ENCODE(0000002E): acct_session_id: 148

    Jun 28 16:35:36.066 surgut: RADIUS(0000002E): sending

    Jun 28 16:35:36.066 surgut: RADIUS/ENCODE(0000002E):Orig. component type = PPoE

    Jun 28 16:35:36.066 surgut: RADIUS(0000002E): Config NAS IP: 217.8.zz.zz

    Jun 28 16:35:36.066 surgut: RADIUS/ENCODE(0000002E): acct_session_id: 148

    Jun 28 16:35:36.066 surgut: RADIUS(0000002E): sending

    Jun 28 16:35:36.070 surgut: RADIUS/ENCODE(0000002E):Orig. component type = PPoE

    Jun 28 16:35:36.070 surgut: RADIUS(0000002E): Config NAS IP: 217.8.zz.zz

    Jun 28 16:35:36.070 surgut: RADIUS/ENCODE(0000002E): acct_session_id: 148

    Jun 28 16:35:36.070 surgut: RADIUS(0000002E): sending

    Jun 28 16:35:36.070 surgut: RADIUS(0000002E): Send Access-Request to 10.10.2.4:1812 id 1645/134, len 163

    Jun 28 16:35:36.070 surgut: RADIUS: authenticator BF 13 6D 33 F3 87 5F 46 - EE 18 0A 2A E4 EE 5B C6

    Jun 28 16:35:36.070 surgut: RADIUS: User-Name [1] 18 "PREPAID_INTERNET"

    Jun 28 16:35:36.070 surgut: RADIUS: User-Password [2] 18 *

    Jun 28 16:35:36.070 surgut: RADIUS: NAS-Port-Type [61] 6 Virtual [5]

    Jun 28 16:35:36.070 surgut: RADIUS: Vendor, Cisco [26] 17

    Jun 28 16:35:36.070 surgut: RADIUS: cisco-nas-port [2] 11 "1/0/0/304"

    Jun 28 16:35:36.070 surgut: RADIUS: NAS-Port [5] 6 0

    Jun 28 16:35:36.070 surgut: RADIUS: NAS-Port-Id [87] 11 "1/0/0/304"

    Jun 28 16:35:36.070 surgut: RADIUS: Connect-Info [77] 4 "SF"

    Jun 28 16:35:36.070 surgut: RADIUS: Vendor, Cisco [26] 41

    Jun 28 16:35:36.070 surgut: RADIUS: Cisco AVpair [1] 35 "client-mac-address=0016.d46a.0344"

    Jun 28 16:35:36.070 surgut: RADIUS: Service-Type [6] 6 Outbound [5]

    Jun 28 16:35:36.070 surgut: RADIUS: NAS-IP-Address [4] 6 217.8.zz.zz

    Jun 28 16:35:36.070 surgut: RADIUS: Acct-Session-Id [44] 10 "00000094"

    Jun 28 16:35:36.070 surgut: RADIUS(0000002E): Send Access-Request to 10.10.2.4:1812 id 1645/135, len 152

    Jun 28 16:35:36.070 surgut: RADIUS: authenticator F9 EE 6A 5E FB 6E 86 0D - 21 11 A4 F6 36 08 52 EA

    Jun 28 16:35:36.070 surgut: RADIUS: User-Name [1] 7 "L10MT"

    Jun 28 16:35:36.070 surgut: RADIUS: User-Password [2] 18 *

    Jun 28 16:35:36.070 surgut: RADIUS: NAS-Port-Type [61] 6 Virtual [5]

    Jun 28 16:35:36.070 surgut: RADIUS: Vendor, Cisco [26] 17

    Jun 28 16:35:36.070 surgut: RADIUS: cisco-nas-port [2] 11 "1/0/0/304"

    Jun 28 16:35:36.070 surgut: RADIUS: NAS-Port [5] 6 0

    Jun 28 16:35:36.070 surgut: RADIUS: NAS-Port-Id [87] 11 "1/0/0/304"

    Jun 28 16:35:36.070 surgut: RADIUS: Connect-Info [77] 4 "SF"

    Jun 28 16:35:36.070 surgut: RADIUS: Vendor, Cisco [26] 41

    Jun 28 16:35:36.070 surgut: RADIUS: Cisco AVpair [1] 35 "client-mac-address=0016.d46a.0344"

    Jun 28 16:35:36.070 surgut: RADIUS: Service-Type [6] 6 Outbound [5]

    Jun 28 16:35:36.070 surgut: RADIUS: NAS-IP-Address [4] 6 217.8.zz.zz

    Jun 28 16:35:36.070 surgut: RADIUS: Acct-Session-Id [44] 10 "00000094"

    Jun 28 16:35:36.074 surgut: RADIUS(0000002E): Send Access-Request to 10.10.2.4:1812 id 1645/136, len 151

    Jun 28 16:35:36.074 surgut: RADIUS: authenticator C2 52 A4 5A 11 14 70 E7 - C3 19 FD 09 CA 33 E7 27

    Jun 28 16:35:36.074 surgut: RADIUS: User-Name [1] 6 "W2MT"

    Jun 28 16:35:36.074 surgut: RADIUS: User-Password [2] 18 *

    Jun 28 16:35:36.074 surgut: RADIUS: NAS-Port-Type [61] 6 Virtual [5]

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 17

    Jun 28 16:35:36.074 surgut: RADIUS: cisco-nas-port [2] 11 "1/0/0/304"

    Jun 28 16:35:36.074 surgut: RADIUS: NAS-Port [5] 6 0

    Jun 28 16:35:36.074 surgut: RADIUS: NAS-Port-Id [87] 11 "1/0/0/304"

    Jun 28 16:35:36.074 surgut: RADIUS: Connect-Info [77] 4 "SF"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 41

    Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 35 "client-mac-address=0016.d46a.0344"

    Jun 28 16:35:36.074 surgut: RADIUS: Service-Type [6] 6 Outbound [5]

    Jun 28 16:35:36.074 surgut: RADIUS: NAS-IP-Address [4] 6 217.8.zz.zz

    Jun 28 16:35:36.074 surgut: RADIUS: Acct-Session-Id [44] 10 "00000094"

    Jun 28 16:35:36.074 surgut: RADIUS: Received from id 1645/134 10.10.2.4:1812, Access-Accept, len 312

    Jun 28 16:35:36.074 surgut: RADIUS: authenticator 85 2C 0F 10 4D 8E B0 5D - A3 94 D8 8B CD EE CE 36

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 70

    Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 64 "ip:traffic-class=in access-group name NO_TARIF_IN priority 50"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 71

    Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 65 "ip:traffic-class=out access-group name NO_TARIF_OUT priority 50"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 41

    Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 35 "ip:traffic-class=out default drop"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 40

    Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 34 "ip:traffic-class=in default drop"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 25

    Jun 28 16:35:36.074 surgut: RADIUS: ssg-service-info [251] 19 "IPREPAID_INTERNET"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 18

    Jun 28 16:35:36.074 surgut: RADIUS: ssg-control-info [253] 12 "QV20000000"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 27

    Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 21 "prepaid-config=200M"

    Jun 28 16:35:36.074 surgut: RADIUS(0000002E): Received from id 1645/134

    Jun 28 16:35:36.074 surgut: RADIUS: Received from id 1645/135 10.10.2.4:1812, Access-Accept, len 340

    Jun 28 16:35:36.074 surgut: RADIUS: authenticator D9 DD 1D 46 FD 66 8A 37 - ED 4E CD 4B FF F8 10 24

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 62

    Jun 28 16:35:36.074 surgut: RADIUS: ssg-service-info [251] 56 "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 67

    Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 61 "ip:traffic-class=in access-group name LOCAL_IN priority 100"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 69

    Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 63 "ip:traffic-class=out access-group name LOCAL_OUT priority 110"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 40

    Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 34 "ip:traffic-class=in default drop"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 41

    Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 35 "ip:traffic-class=out default drop"

    Jun 28 16:35:36.074 surgut:

    bras01-surgut.hmao.ugra# RADIUS: Vendor, Cisco [26] 14

    Jun 28 16:35:36.074 surgut: RADIUS: ssg-service-info [251] 8 "IL10MT"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 27

    Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 21 "accounting-list=ISG"

    Jun 28 16:35:36.074 surgut: RADIUS: Received from id 1645/136 10.10.2.4:1812, Access-Accept, len 312

    Jun 28 16:35:36.074 surgut: RADIUS: authenticator DD F8 CB E8 80 DD 8A E2 - 9F 2B 07 6F 90 FD 24 8D

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 67

    Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 61 "ip:traffic-class=in access-group name WORLD_IN priority 200"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 69

    Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 63 "ip:traffic-class=out access-group name WORLD_OUT priority 210"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 40

    Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 34 "ip:traffic-class=in default drop"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 41

    Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 35 "ip:traffic-class=out default drop"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 62

    Jun 28 16:35:36.074 surgut: RADIUS: ssg-service-info [251] 56 "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 13

    Jun 28 16:35:36.074 surgut: RADIUS: ssg-service-info [251] 7 "IW2MT"

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: TC feature info found

    Jun 28 16:35:36.078 surgut: SVM [7900008F/PREPAID_INTERNET]: added child

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [TC-Child:CF755260] locked 0->1

    Jun 28 16:35:36.078 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: [TC-Parent:CF755170] locked 0->1

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: TC flow feature info not found

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: downloaded first version

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [bE0000AD]: client download ok

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [sVM-to-client-msg:BE0000AD] locked 0->1

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [AAA-Download:43B083B0] unlocked 1->0

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: alloc feature info

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [sVM-Feature-Info:561F8224] locked 0->1

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: has Policy info

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [PM-Info:D11B8C48] locked 0->1

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: populated client

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [PM-Download:BE0000AD] unlocked 1->0

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [sVM-to-client-msg:BE0000AD] unlocked 1->0

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [PM-Service:439223FC] locked 0->1

    Jun 28 16:35:36.078 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: [sM-SIP-Apply:7900008F] locked 0->1

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [FM-Bind:2E000088] locked 0->1

    Jun 28 16:35:36.078 surgut: SSS LTERM: ERROR: Unable to set as required with CCM

    Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [sVM-Feature-Info:561F8224] unlocked 1->0

    Jun 28 16:35:36.078 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: alloc feature info

    Jun 28 16:35:36.078 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: [sVM-Feature-Info:561F8224] locked 0->1

    Jun 28 16:35:36.078 surgut: RADIUS(0000002E): Received from id 1645/135

    Jun 28 16:35:36.078 surgut: RADIUS(0000002E): Received from id 1645/136

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: TC feature info found

    Jun 28 16:35:36.082 surgut: SVM [4C000090/L10MT]: added child

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [TC-Child:CF7552D8] locked 0->1

    Jun 28 16:35:36.082 surgut: SVM [4C000090/CHILD/L10MT]: [TC-Parent:CF7551E8] locked 0->1

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: TC flow feature info found

    Jun 28 16:35:36.082 surgut: SVM [4C000090/CHILD/L10MT]: set accounting handle

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: downloaded first version

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [A00000AE]: client download ok

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [sVM-to-client-msg:A00000AE] locked 0->1

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [AAA-Download:D2DFAA60] unlocked 1->0

    Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: TC feature info found

    Jun 28 16:35:36.082 surgut: SVM [78000091/W2MT]: added child

    Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [TC-Child:CF7553C8] locked 0->1

    Jun 28 16:35:36.082 surgut: SVM [78000091/CHILD/W2MT]: [TC-Parent:CF755350] locked 0->1

    Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: TC flow feature info found

    Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: downloaded first version

    Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [250000AF]: client download ok

    Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [sVM-to-client-msg:250000AF] locked 0->1

    Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [AAA-Download:561D6F0C] unlocked 1->0

    Jun 28 16:35:36.082 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: [FM-Bind:9A000089] locked 0->1

    Jun 28 16:35:36.082 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: [sVM-Feature-Info:561F8224] unlocked 1->0

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: alloc feature info

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [sVM-Feature-Info:561F8224] locked 0->1

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: has Policy info

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [PM-Info:D11B8F90] locked 0->1

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: populated client

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [PM-Download:A00000AE] unlocked 1->0

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [sVM-to-client-msg:A00000AE] unlocked 1->0

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [PM-Service:43922414] locked 0->1

    Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: alloc feature info

    Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [sVM-Feature-Info:561F820C] locked 0->1

    Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: has Policy info

    Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [PM-Info:D11BA458] locked 0->1

    Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: populated client

    Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [PM-Download:250000AF] unlocked 1->0

    Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [sVM-to-client-msg:250000AF] unlocked 1->0

    Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [PM-Service:439223E4] locked 0->1

    Jun 28 16:35:36.082 surgut: SVM [4C000090/CHILD/L10MT]: [sM-SIP-Apply:4C000090] locked 0->1

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [FM-Bind:2E000088] locked 0->1

    Jun 28 16:35:36.082 surgut: SSS LTERM: ERROR: Unable to set as required with CCM

    Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [sVM-Feature-Info:561F8224] unlocked 1->0

    Jun 28 16:35:36.082 surgut: SVM [4C000090/CHILD/L10MT]: alloc feature info

    Jun 28 16:35:36.082 surgut: SVM [4C000090/CHILD/L10MT]: [sVM-Feature-Info:561F8224] locked 0->1

    Jun 28 16:35:36.086 surgut: SVM [6400008D/L10MT]: [Accounting-Feature:43A2D888] locked 0->1

    Jun 28 16:35:36.086 surgut: SVM [4C000090/CHILD/L10MT]: [FM-Bind:BE00008A] locked 0->1

    Jun 28 16:35:36.086 surgut: SVM [4C000090/CHILD/L10MT]: [sVM-Feature-Info:561F8224] unlocked 1->0

    Jun 28 16:35:36.086 surgut: SVM [78000091/CHILD/W2MT]: [sM-SIP-Apply:78000091] locked 0->1

    Jun 28 16:35:36.086 surgut: SVM [8C00008E/W2MT]: [FM-Bind:2E000088] locked 0->1

    Jun 28 16:35:36.086 surgut: SSS LTERM: ERROR: Unable to set as required with CCM

    Jun 28 16:35:36.086 surgut: SVM [8C00008E/W2MT]: [sVM-Feature-Info:561F820C] unlocked 1->0

    Jun 28 16:35:36.086 surgut: SVM [78000091/CHILD/W2MT]: alloc feature info

    Jun 28 16:35:36.086 surgut: SVM [78000091/CHILD/W2MT]: [sVM-Feature-Info:561F820C] locked 0->1

    Jun 28 16:35:36.086 surgut: SVM [78000091/CHILD/W2MT]: [FM-Bind:3700008B] locked 0->1

    Jun 28 16:35:36.086 surgut: SVM [78000091/CHILD/W2MT]: [sVM-Feature-Info:561F820C] unlocked 1->0

    Jun 28 16:35:36.094 surgut: RADIUS/ENCODE(0000002E):Orig. component type = PPoE

    Jun 28 16:35:36.094 surgut: RADIUS(0000002E): Config NAS IP: 217.8.zz.zz

    Jun 28 16:35:36.094 surgut: RADIUS/ENCODE(0000002E): acct_session_id: 149

    Jun 28 16:35:36.094 surgut: RADIUS(0000002E): sending

    Jun 28 16:35:36.094 surgut: RADIUS/ENCODE(0000002E):Orig. component type = PPoE

    Jun 28 16:35:36.094 surgut: RADIUS(0000002E): Config NAS IP: 217.8.zz.zz

    Jun 28 16:35:36.094 surgut: RADIUS(0000002E): sending

    Jun 28 16:35:36.094 surgut: RADIUS/ENCODE(0000002E):Orig. component type = PPoE

    Jun 28 16:35:36.094 surgut: RADIUS(0000002E): Config NAS IP: 217.8.zz.zz

    Jun 28 16:35:36.094 surgut: RADIUS(0000002E): sending

    Jun 28 16:35:36.094 surgut: RADIUS(0000002E): Send Access-Request to 10.10.2.4:1812 id 1645/137, len 183

    Jun 28 16:35:36.094 surgut: RADIUS: authenticator 2E 01 9D 74 40 27 3E 79 - D5 16 21 48 65 6A 3F 4F

    Jun 28 16:35:36.094 surgut: RADIUS: User-Name [1] 7 "test1"

    Jun 28 16:35:36.094 surgut: RADIUS: User-Password [2] 18 *

    Jun 28 16:35:36.094 surgut: RADIUS: Vendor, Cisco [26] 25

    Jun 28 16:35:36.094 surgut: RADIUS: ssg-service-info [251] 19 "NPREPAID_INTERNET"

    Jun 28 16:35:36.094 surgut: RADIUS: Framed-Protocol [7] 6 PPP [1]

    Jun 28 16:35:36.094 surgut: RADIUS: NAS-Port-Type [61] 6 Virtual [5]

    Jun 28 16:35:36.094 surgut: RADIUS: Vendor, Cisco [26] 17

    Jun 28 16:35:36.094 surgut: RADIUS: cisco-nas-port [2] 11 "1/0/0/304"

    Jun 28 16:35:36.094 surgut: RADIUS: NAS-Port [5] 6 0

    Jun 28 16:35:36.094 surgut: RADIUS: NAS-Port-Id [87] 11 "1/0/0/304"

    Jun 28 16:35:36.094 surgut: RADIUS: Connect-Info [77] 4 "SF"

    Jun 28 16:35:36.094 surgut: RADIUS: Vendor, Cisco [26] 41

    Jun 28 16:35:36.094 surgut: RADIUS: Cisco AVpair [1] 35 "client-mac-address=0016.d46a.0344"

    Jun 28 16:35:36.094 surgut: RADIUS: Service-Type [6] 6 Framed [2]

    Jun 28 16:35:36.094 surgut: RADIUS: NAS-IP-Address [4] 6 217.8.zz.zz

    Jun 28 16:35:36.094 surgut: RADIUS: Acct-Session-Id [44] 10 "00000095"

    Jun 28 16:35:36.094 surgut: RADIUS(0000002E): Send Accounting-Request to 10.10.2.4:1813 id 1646/113, len 205

    Jun 28 16:35:36.094 surgut: RADIUS: authenticator B5 AB 9D 97 6A 74 92 64 - 0E 6B E0 CC 1D 85 CF 3A

    Jun 28 16:35:36.094 surgut: RADIUS: Acct-Session-Id [44] 10 "00000094"

    Jun 28 16:35:36.094 surgut: RADIUS: Framed-Protocol [7] 6 PPP [1]

    Jun 28 16:35:36.094 surgut: RADIUS: Framed-IP-Address [8] 6 217.8.xx.xx

    Jun 28 16:35:36.094 surgut: RADIUS: User-Name [1] 7 "test1"

    Jun 28 16:35

    bras01-surgut.hmao.ugra#:36.094 surgut: RADIUS: Vendor, Cisco [26] 35

    Jun 28 16:35:36.094 surgut: RADIUS: Cisco AVpair [1] 29 "connect-progress=LAN Ses Up"

    Jun 28 16:35:36.094 surgut: RADIUS: Acct-Authentic [45] 6 RADIUS [1]

    Jun 28 16:35:36.094 surgut: RADIUS: Acct-Status-Type [40] 6 Start [1]

    Jun 28 16:35:36.094 surgut: RADIUS: NAS-Port-Type [61] 6 Virtual [5]

    Jun 28 16:35:36.094 surgut: RADIUS: Vendor, Cisco [26] 17

    Jun 28 16:35:36.094 surgut: RADIUS: cisco-nas-port [2] 11 "1/0/0/304"

    Jun 28 16:35:36.094 surgut: RADIUS: NAS-Port [5] 6 0

    Jun 28 16:35:36.094 surgut: RADIUS: NAS-Port-Id [87] 11 "1/0/0/304"

    Jun 28 16:35:36.094 surgut: RADIUS: Connect-Info [77] 4 "SF"

    Jun 28 16:35:36.098 surgut: RADIUS: Vendor, Cisco [26] 41

    Jun 28 16:35:36.098 surgut: RADIUS: Cisco AVpair [1] 35 "client-mac-address=0016.d46a.0344"

    Jun 28 16:35:36.098 surgut: RADIUS: Service-Type [6] 6 Framed [2]

    Jun 28 16:35:36.098 surgut: RADIUS: NAS-IP-Address [4] 6 217.8.zz.zz

    Jun 28 16:35:36.098 surgut: RADIUS: Event-Timestamp [55] 6 1309257336

    Jun 28 16:35:36.098 surgut: RADIUS: Acct-Delay-Time [41] 6 0

    Jun 28 16:35:36.098 surgut: RADIUS(0000002E): Send Accounting-Request to 10.10.2.4:1813 id 1646/114, len 212

    Jun 28 16:35:36.098 surgut: RADIUS: authenticator 2A 90 19 2E 6A 67 9D 94 - E5 64 29 3B 2B 81 F9 9E

    Jun 28 16:35:36.098 surgut: RADIUS: Acct-Session-Id [44] 10 "00000096"

    Jun 28 16:35:36.098 surgut: RADIUS: Framed-Protocol [7] 6 PPP [1]

    Jun 28 16:35:36.098 surgut: RADIUS: Vendor, Cisco [26] 14

    Jun 28 16:35:36.098 surgut: RADIUS: ssg-service-info [251] 8 "NL10MT"

    Jun 28 16:35:36.098 surgut: RADIUS: Vendor, Cisco [26] 34

    Jun 28 16:35:36.098 surgut: RADIUS: Cisco AVpair [1] 28 "parent-session-id=00000094"

    Jun 28 16:35:36.098 surgut: RADIUS: Framed-IP-Address [8] 6 217.8.xx.xx

    Jun 28 16:35:36.098 surgut: RADIUS: User-Name [1] 7 "test1"

    Jun 28 16:35:36.098 surgut: RADIUS: Acct-Status-Type [40] 6 Start [1]

    Jun 28 16:35:36.098 surgut: RADIUS: NAS-Port-Type [61] 6 Virtual [5]

    Jun 28 16:35:36.098 surgut: RADIUS: Vendor, Cisco [26] 17

    Jun 28 16:35:36.098 surgut: RADIUS: cisco-nas-port [2] 11 "1/0/0/304"

    Jun 28 16:35:36.098 surgut: RADIUS: NAS-Port [5] 6 0

    Jun 28 16:35:36.098 surgut: RADIUS: NAS-Port-Id [87] 11 "1/0/0/304"

    Jun 28 16:35:36.098 surgut: RADIUS: Connect-Info [77] 4 "SF"

    Jun 28 16:35:36.098 surgut: RADIUS: Vendor, Cisco [26] 41

    Jun 28 16:35:36.098 surgut: RADIUS: Cisco AVpair [1] 35 "client-mac-address=0016.d46a.0344"

    Jun 28 16:35:36.098 surgut: RADIUS: Service-Type [6] 6 Framed [2]

    Jun 28 16:35:36.098 surgut: RADIUS: NAS-IP-Address [4] 6 217.8.zz.zz

    Jun 28 16:35:36.098 surgut: RADIUS: Event-Timestamp [55] 6 1309257336

    Jun 28 16:35:36.098 surgut: RADIUS: Acct-Delay-Time [41] 6 0

    Jun 28 16:35:36.098 surgut: RADIUS: Received from id 1646/113 10.10.2.4:1813, Accounting-response, len 20

    Jun 28 16:35:36.098 surgut: RADIUS: authenticator D7 AB 42 54 C8 7B C4 BE - 49 76 1F 93 63 9B 68 BE

    Jun 28 16:35:36.098 surgut: RADIUS: Received from id 1646/114 10.10.2.4:1813, Accounting-response, len 20

    Jun 28 16:35:36.098 surgut: RADIUS: authenticator 95 B3 F0 F5 AB 0F 24 C0 - 9E 9C CB 43 C0 A7 77 3C

    Jun 28 16:35:37.098 surgut: RADIUS: Received from id 1645/137 10.10.2.4:1812, Access-Reject, len 20

    Jun 28 16:35:37.098 surgut: RADIUS: authenticator 28 44 22 B1 EF 88 EA 2C - 0D 97 F2 56 63 EC 70 66

    Jun 28 16:35:37.098 surgut: RADIUS(0000002E): Received from id 1645/137

    Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: already downloaded; sharing

    Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [bE0000AD]: client download ok

    Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [sVM-to-client-msg:BE0000AD] locked 0->1

    Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [PM-Download:BE0000AD] locked 0->1

    Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: alloc feature info

    Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: is a feature remove

    Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [sVM-Feature-Info:561F820C] locked 0->1

    Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: populated client

    Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [PM-Download:BE0000AD] unlocked 1->0

    Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [sVM-to-client-msg:BE0000AD] unlocked 1->0

    Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [FM-Bind:2E000088] unlocked 1->0

    Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [sVM-Feature-Info:561F820C] unlocked 1->0

    Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [PM-Service:439223FC] unlocked 1->0

    Jun 28 16:35:37.098 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: [FM-Bind:9A000089] unlocked 1->0

    Jun 28 16:35:37.098 surgut: SSS LTERM: ERROR: Invalid session received from SSM

    Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [PM-Info:D11B8C48] unlocked 1->0

    Jun 28 16:35:37.098 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: [sM-SIP-Apply:7900008F] unlocked 1->0

    Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: breaking parent-child lock

    Jun 28 16:35:37.098 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: breaking parent-child lock

    Jun 28 16:35:37.098 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: destroy

    Jun 28 16:35:37.102 surgut: SVM [DC00008C/PREPAID_INTERNET]: destroy

     

     

     

    bras01-surgut.hmao.ugra#sh sss ses de

    Current Subscriber Information: Total sessions 1

    --------------------------------------------------

    Unique Session ID: 103

    Identifier: test1

    SIP subscriber access type(s): PPPoE/PPP

    Current SIP options: Req Fwding/Req Fwded

    Session Up-time: 00:02:38, Last Changed: 00:02:37

    Interface: Virtual-Access2.1

     

    Policy information:

    Context 43874578: Handle C50000AC

    AAA_id 0000002E: Flow_handle 0

    Authentication status: authen

    Downloaded User profile, excluding services:

    addr 217.8.xx.xx

    ssg-account-info "AW2MT"

    ssg-account-info "AL10MT"

    idletime 600 (0x258)

    ssg-account-info "APREPAID_INTERNET"

    Downloaded User profile, including services:

    addr 217.8.xx.xx

    ssg-account-info "AW2MT"

    ssg-account-info "AL10MT"

    idletime 600 (0x258)

    ssg-account-info "APREPAID_INTERNET"

    accounting-list "ISG"

    traffic-class "in access-group name WORLD_IN priority 200"

    traffic-class "out access-group name WORLD_OUT priority 210"

    traffic-class "in default drop"

    traffic-class "out default drop"

    ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    ssg-service-info "IW2MT"

    Config history for session (recent to oldest):

    Access-type: Web-service-logon Client: SM

    Policy event: Apply Config Success (Unapplied) (Service)

    Profile name: PREPAID_INTERNET, 3 references

    traffic-class "in access-group name NO_TARIF_IN priority 50"

    traffic-class "out access-group name NO_TARIF_OUT priority 50"

    traffic-class "out default drop"

    traffic-class "in default drop"

    ssg-service-info "IPREPAID_INTERNET"

    ssg-control-info "QV20000000"

    Access-type: Web-service-logon Client: SM

    Policy event: Apply Config Success (Service)

    Profile name: W2MT, 4 references

    traffic-class "in access-group name WORLD_IN priority 200"

    traffic-class "out access-group name WORLD_OUT priority 210"

    traffic-class "in default drop"

    traffic-class "out default drop"

    ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    ssg-service-info "IW2MT"

    Access-type: Web-service-logon Client: SM

    Policy event: Apply Config Success (Service)

    Profile name: L10MT, 4 references

    ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    traffic-class "in access-group name LOCAL_IN priority 100"

    traffic-class "out access-group name LOCAL_OUT priority 110"

    traffic-class "in default drop"

    traffic-class "out default drop"

    ssg-service-info "IL10MT"

    accounting-list "ISG"

    Access-type: Web-service-logon Client: SM

    Policy event: Apply Config Success (Service)

    Profile name: PREPAID_INTERNET, 3 references

    traffic-class "in access-group name NO_TARIF_IN priority 50"

    traffic-class "out access-group name NO_TARIF_OUT priority 50"

    traffic-class "out default drop"

    traffic-class "in default drop"

    ssg-service-info "IPREPAID_INTERNET"

    ssg-control-info "QV20000000"

    Access-type: PPP Client: SM

    Policy event: Process Config Connecting

    Profile name: test1, 2 references

    addr 217.8.xx.xx

    ssg-account-info "AW2MT"

    ssg-account-info "AL10MT"

    idletime 600 (0x258)

    ssg-account-info "APREPAID_INTERNET"

    Active services associated with session:

    name "W2MT"

    name "L10MT"

     

    Session inbound features:

    Traffic classes:

    Traffic class session ID: 105

    ACL Name: LOCAL_IN, Packets = 151, Bytes = 9110

    Traffic class session ID: 106

    ACL Name: WORLD_IN, Packets = 10, Bytes = 1526

    Default traffic is dropped

    Unmatched Packets = 0, Re-classified packets (redirected) = 0

     

    Session outbound features:

    Feature: PPP Idle Timeout

    Timeout value is 600

    Idle time is 00:00:11

    Traffic classes:

    Traffic class session ID: 105

    ACL Name: LOCAL_OUT, Packets = 148, Bytes = 9843

    Traffic class session ID: 106

    ACL Name: WORLD_OUT, Packets = 2, Bytes = 274

    Default traffic is dropped

    Unmatched Packets = 0, Re-classified packets (redirected) = 0

     

    Non-datapath features:

    Feature: IP Config

    Peer IP Address: 217.8.xx.xx (F/F)

    Address Pool: [None] (F)

    Unnumbered Intf: [None]

    Configuration sources associated with this session:

    Service: W2MT, Active Time = 00:02:39

    Service: L10MT, Active Time = 00:02:39

    AAA Service ID = 3690987574

    Interface: Virtual-Template10, Active Time = 00:02:39

     

    --------------------------------------------------

    Unique Session ID: 106

    Identifier:

    SIP subscriber access type(s): Traffic-Class

    Current SIP options: None

    Session Up-time: 00:02:39, Last Changed: 00:02:39

     

    Policy information:

    Context 43874110: Handle 250000AF

    AAA_id 0000002E: Flow_handle 0

    Authentication status: unauthen

    Downloaded User profile, including services:

    traffic-class "in access-group name WORLD_IN priority 200"

    traffic-class "out access-group name WORLD_OUT priority 210"

    traffic-class "in default drop"

    traffic-class "out default drop"

    ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    ssg-service-info "IW2MT"

    Config history for session (recent to oldest):

    Access-type: Web-service-logon Client: Service Command-Handler

    Policy event: Service-Start (Service)

    Profile name: W2MT, 4 references

    traffic-class "in access-group name WORLD_IN priority 200"

    traffic-class "out access-group name WORLD_OUT priority 210"

    traffic-class "in default drop"

    traffic-class "out default drop"

    ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    ssg-service-info "IW2MT"

     

    Session inbound features:

    Feature: Policing

    Upstream Params:

    Average rate = 10240000, Normal burst = 512000, Excess burst = 10240000

    Config level = Service

     

    Session outbound features:

    Feature: Policing

    Dnstream Params:

    Average rate = 10240000, Normal burst = 512000, Excess burst = 10240000

    Config level = Service

     

    Configuration sources associated with this session:

    Service: W2MT, Active Time = 00:02:39

     

    --------------------------------------------------

    Unique Session ID: 105

    Identifier:

    SIP subscriber access type(s): Traffic-Class

    Current SIP options: None

    Session Up-time: 00:02:39, Last Changed: 00:02:39

     

    Policy information:

    Context 43874288: Handle A00000AE

    AAA_id 0000002E: Flow_handle 2

    Authentication status: unauthen

    Downloaded User profile, including services:

    ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    traffic-class "in access-group name LOCAL_IN priority 100"

    traffic-class "out access-group name LOCAL_OUT priority 110"

    traffic-class "in default drop"

    traffic-class "out default drop"

    ssg-service-info "IL10MT"

    accounting-list "ISG"

    Config history for session (recent to oldest):

    Access-type: Web-service-logon Client: Service Command-Handler

    Policy event: Service-Start (Service)

    Profile name: L10MT, 4 references

    ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"

    traffic-class "in access-group name LOCAL_IN priority 100"

    traffic-class "out access-group name LOCAL_OUT priority 110"

    traffic-class "in default drop"

    traffic-class "out default drop"

    ssg-service-info "IL10MT"

    accounting-list "ISG"

     

    Session inbound features:

    Feature: Service accounting

    Service: L10MT

    Method List: ISG

    Packets = 151, Bytes = 9110

     

    Feature: Policing

    Upstream Params:

    Average rate = 10240000, Normal burst = 512000, Excess burst = 10240000

    Config level = Service

     

    Session outbound features:

    Feature: Service accounting

    Service: L10MT

    Method List: ISG

    Packets = 148, Bytes = 9843

     

    Feature: Policing

    Dnstream Params:

    Average rate = 10240000, Normal burst = 512000, Excess burst = 10240000

    Config level = Service

     

    Configuration sources associated with this session:

    Service: L10MT, Active Time = 00:02:39

  10. Не активируется сервис с функцией Prepaid на Cisco 10008 PRE3

     

     

    #sh ver

    Cisco IOS Software, 10000 Software (C10K3-P11-M), Version 12.2(31)SB18, RELEASE SOFTWARE (fc1)

    Technical Support: http://www.cisco.com/techsupport

    Copyright © 1986-2010 by Cisco Systems, Inc.

    Compiled Thu 25-Mar-10 10:59 by debajpal

     

     

     

    aaa group server radius group1

    server-private 10.10.2.4 auth-port 1812 acct-port 1813 key 7 03560B2D091D791A79080B014642

    ip vrf forwarding SF

    !

    aaa authentication login default local

    aaa authentication login local_log local

    aaa authentication ppp ISG group group1

    aaa authorization template

    aaa authorization exec default local

    aaa authorization commands 1 default local

    aaa authorization commands 15 default local

    aaa authorization network ISG group group1

    aaa authorization auth-proxy default local group group1

    aaa authorization subscriber-service default local group group1

    aaa authorization subscriber-service ISG group group1

    aaa accounting send stop-record authentication failure vrf default

    aaa accounting delay-start all

    aaa accounting update periodic 1

    aaa accounting network default start-stop group group1

    aaa accounting network ISG start-stop group group1

    !

    aaa attribute list ISG

    !

    aaa nas port extended

    !

    !

    aaa server radius dynamic-author

    client 10.10.2.4 vrf SF server-key 7 055956292E5E165F2E0405165A5C

    auth-type any

    ignore session-key

    ignore server-key

    !

     

    subscriber feature prepaid 200M

    threshold time 0 seconds

    threshold volume 1900000000 bytes

    interim-interval 2 minutes

    method-list author ISG

    method-list accounting ISG

    password cisco

     

    interface Virtual-Template10

    ip vrf forwarding SF

    ip unnumbered Loopback50

    peer default ip address pool sfpool

    ppp authentication pap chap callin ISG

    ppp authorization ISG

    ppp accounting ISG

     

     

    radius-server attribute 44 include-in-access-req vrf SF

    radius-server attribute 55 include-in-acct-req

    radius-server retransmit 2

    radius-server timeout 60

    radius-server deadtime 10

    radius-server directed-request

    radius-server vsa send cisco-nas-port

    radius-server vsa send accounting

    radius-server vsa send authentication

     

    Сервис с прейпейд загружается с радису, как и два других, которые разделяют трафик на направления, Локально и Глобальное.

    Данный сервис не включается, если убрать строку со *, то все три сервиса становятся активными.

    Cisco-AVPair := ip:traffic-class=in access-group name NO_TARIF_IN priority 50

    Cisco-AVPair := ip:traffic-class=out access-group name NO_TARIF_OUT priority 50

    Cisco-AVPair := ip:traffic-class=in default drop

    Cisco-AVPair := ip:traffic-class=out default drop

    Cisco-Service-Info := IPREPAID_INTERNET

    Cisco-Control-Info := QV20000000

    *Cisco-AVPair := prepaid-config=200M

  11. 41 градус, как то подозрительно... можно рассматривать как проблему???

     

    module 7:

    module 7 power-output-fail: OK

    module 7 outlet temperature: 28C

    module 7 inlet temperature: 28C

    module 7 device-1 temperature: 41C

    module 7 device-2 temperature: 35C

    module 7 EARL outlet temperature: 22C

    module 7 EARL inlet temperature: 31C

     

    А вот первый модуль вообще 53 показывает.

    module 1:

    module 1 power-output-fail: OK

    module 1 outlet temperature: 53C

    module 1 inlet temperature: 28C

  12. В недавнем времени произошло странное проишествие выключился и включился модуль 7600-ES20-2X10G.

     

    Возможна ли аппаратная проблема?

    Подобное происходит не в первый раз. так же выключался модуль в первом слоте.

     

    Софт следующий.

    c7600rsp72043_rp-ADVIPSERVICES-M), Version 12.2(33)SRC6

     

    May 11 09:35:39.220 surgut: %OSPF-5-ADJCHG: Process 10, Nbr 10.19.6.1 on TenGigabitEthernet7/0/1 from FULL to DOWN, Neighbor Down: BFD node down

    May 11 09:35:39.224 surgut: %OSPF-5-ADJCHG: Process 10, Nbr 10.40.6.10 on TenGigabitEthernet7/0/0 from FULL to DOWN, Neighbor Down: BFD node down

    May 11 09:35:40.084 surgut: %LDP-5-NBRCHG: LDP Neighbor 10.19.6.1:0 (7) is DOWN (Interface not operational)

    May 11 09:35:40.084 surgut: %SNMP-5-MODULETRAP: Module 7 [Down] Trap

    May 11 09:35:40.088 surgut: %OIR-6-REMCARD: Card removed from slot 7, interfaces disabled

    May 11 09:35:40.092 surgut: %SPA_OIR-6-OFFLINECARD: SPA (7600-ES20-2X10G) offline in subslot 7/0

    May 11 09:35:40.112 surgut: %SPA_OIR-6-OFFLINECARD: SPA (7600-ES20-2X10G) offline in subslot 7/1

    May 11 09:35:40.028 surgut: %OIR-SP-6-PWRFAILURE: Module 7 is being disabled due to power convertor failure 0x0

    May 11 09:35:40.076 surgut: %C7600_PWR-SP-4-DISABLED: power to module in slot 7 set off (FRU-power failed)

    May 11 09:37:03.326 surgut: %CWAN_RP-6-CARDRELOAD: Module reloaded on slot 7/0

    May 11 09:37:03.326 surgut: %OIR-6-INSCARD: Card inserted in slot 7, interfaces administratively shut down

    May 11 03:37:04.346: %FABRIC_INTF_ASIC-DFC7-5-FABRICSYNC_DONE: Fabric ASIC 0 Channel 1: Fabric sync done.

    May 11 03:37:04.610: %FABRIC_INTF_ASIC-DFC7-5-FABRICSYNC_DONE: Fabric ASIC 1 Channel 1: Fabric sync done.

    May 11 09:37:04.866 surgut: %OBFL_ERRMSG-DFC7-5-FILECREATEFAIL: OBFL Message App failed to open/create file disk0:errmsg_cont . Errno = 5

    May 11 09:37:11.353 surgut: %DIAG-SP-6-RUN_MINIMUM: Module 7: Running Minimal Diagnostics...

    May 11 09:37:11.973 surgut: %DIAG-SP-6-DIAG_OK: Module 7: Passed Online Diagnostics

    May 11 09:37:12.401 surgut: %SNMP-5-MODULETRAP: Module 7 [up] Trap

    May 11 09:37:12.374 surgut: %SCP-DFC7-5-ONLINE: Module online

    May 11 09:37:12.402 surgut: %SPA_OIR-DFC7-6-INSCARD: Card inserted in Subslot 0

    May 11 09:37:12.402 surgut: %SPA_OIR-DFC7-6-INSCARD: Card inserted in Subslot 1

    May 11 09:37:13.914 surgut: %OIR-SP-6-INSCARD: Card inserted in slot 7, interfaces are now online

    May 11 09:37:15.962 surgut: %DIAG-SP-6-RUN_MINIMUM: Module 7/0: Running Minimal Diagnostics...

    May 11 09:37:25.461 surgut: %SPA_OIR-6-ONLINECARD: SPA (7600-ES20-2X10G) online in subslot 7/0

    May 11 09:37:25.413 surgut: %DIAG-SP-6-DIAG_OK: Module 7/0: Passed Online Diagnostics

    May 11 09:37:25.461 surgut: %DIAG-SP-6-RUN_MINIMUM: Module 7/1: Running Minimal Diagnostics...

    May 11 09:37:25.473 surgut: %DIAG-SP-6-DIAG_OK: Module 7/1: Passed Online Diagnostics

    May 11 09:37:27.304 surgut: %SPA_OIR-6-ONLINECARD: SPA (7600-ES20-2X10G) online in subslot 7/1

    May 11 09:37:28.034 surgut: %LINK-DFC7-3-UPDOWN: Interface TenGigabitEthernet7/0/0, changed state to up

    May 11 09:37:28.534 surgut: %LINK-DFC7-3-UPDOWN: Interface TenGigabitEthernet7/0/1, changed state to up

    May 11 09:37:29.034 surgut: %LINEPROTO-DFC7-5-UPDOWN: Line protocol on Interface TenGigabitEthernet7/0/0, changed state to up

    May 11 09:37:29.534 surgut: %LINEPROTO-DFC7-5-UPDOWN: Line protocol on Interface TenGigabitEthernet7/0/1, changed state to up

    May 11 09:37:31.312 surgut: %LDP-5-NBRCHG: LDP Neighbor 10.19.6.1:0 (7) is UP

    May 11 09:38:10.374 surgut: %OSPF-5-ADJCHG: Process 10, Nbr 10.40.6.10 on TenGigabitEthernet7/0/0 from LOADING to FULL, Loading Done

    May 11 09:38:11.270 surgut: %OSPF-5-ADJCHG: Process 10, Nbr 10.19.6.1 on TenGigabitEthernet7/0/1 from LOADING to FULL, Loading Done

  13. Вопрос про аутсорсинговые ЦОДы, как они организованы, каким образом решены следующие вопросы:

    1. Управление ресурсами

    2. Выделение ресурусов

    3. Управление выделеным сервером

    4. Средняя стоимость услуги, среднего по мощности сервера

  14. Может ли кто то подсказать какое количество сесии вытянет подобный модуль

    если делать NAT один к одному (то есть не PAT)

     

    NAME: "module 5", DESCR: "RSP720-3C-GE 2 ports Route Switch Processor 720 Rev. 5.7"

     

    NAME: "msfc sub-module of 5", DESCR: "7600-MSFC4 C7600 MSFC4 Daughterboard Rev. 1.1"

     

    NAME: "switching engine sub-module of 5", DESCR: "7600-PFC3C Policy Feature Card 3 Rev. 1.1"

     

    NAME: "module 6", DESCR: "RSP720-3C-GE 2 ports Route Switch Processor 720 Rev. 5.7"

     

    NAME: "msfc sub-module of 6", DESCR: "7600-MSFC4 C7600 MSFC4 Daughterboard Rev. 1.1"

     

    NAME: "switching engine sub-module of 6", DESCR: "7600-PFC3C Policy Feature Card 3 Rev. 1.1"

     

     

  15. Вопрос состоит в том реализован ли NAT аппаратно в Cisco моделях

    XR 12404 or Cisco 10008 RP3

    ХR планируется для BGP и судя по всему это его основная задача,

    а 10008 планируется для BRAS.

    Железки планируется купить на долгие времена так что стоит второй вопрос, а что будет

    если NAT IPv4 to IPv6 необходимо будет организовать.

     

    Объем трафика 4Гбита/s в 900Кps

  16. Правильные примеры построения СКС в ЦОДе, правильная СКС для узлов агрегации Ethernet.

    Под ЦОДом подразумевается стойки с серверами. Узел агрегации - полки с медиаконверторами плюс коммутаторы.

    Куда копать?? Может кто может фото предоставить, разумные идеи, ссылки на ресурсы где делятся подобным опытом...

    Есть конечно путь идти и наступать на грабли.

     

  17. Bидимо пользователь не ходит по локалу.

    Вот моя сесия

    vpn_7206VXR#sh sss session username lem

    Unique Session ID: 3594

    Identifier: lem

    SIP subscriber access type(s): VPDN/PPP

    Current SIP options: Req Fwding/Req Fwded

    Session Up-time: 00:01:27, Last Changed: 00:01:27

    Interface: Virtual-Access2.328

     

    Policy information:

    Authentication status: authen

    Active services associated with session:

    name "traffic_local"

    name "traffic_world"

     

    Session inbound features:

    Traffic classes:

    Traffic class session ID: 3546

    ACL Name: 140, Packets = 43, Bytes = 5286

    Traffic class session ID: 3631

    ACL Name: 120, Packets = 7141, Bytes = 289816

    Default traffic is dropped

    Unmatched Packets (dropped) = 0, Re-classified packets (redirected) = 0

     

    Session outbound features:

    Traffic classes:

    Traffic class session ID: 3546

    ACL Name: 150, Packets = 3, Bytes = 342

    Traffic class session ID: 3631

    ACL Name: 130, Packets = 13959, Bytes = 19431168

    Default traffic is dropped

    Unmatched Packets (dropped) = 0, Re-classified packets (redirected) = 0

     

    Configuration sources associated with this session:

    Service: traffic_local, Active Time = 00:01:27

    AAA Service ID = 1722611368

    Service: traffic_world, Active Time = 00:01:27

    AAA Service ID = 1722617640

    Interface: Virtual-Template2, Active Time = 00:01:27