lemut
-
Публикации
40 -
Зарегистрирован
-
Посещение
Сообщения, опубликованные пользователем lemut
-
-
Проблема состоит в следующем при физическом разрыве PPPoE тунеля, NAS в виде Cisco 10008 не формирует stop пакет RADIUS.
При этом сессии нет, биллинг думает что аббонент активен, и начинает тикать таймер по наличию alive.
Хотелось бы видеть stop.
Судя по документации подобных глюков быть не должно. SMART отсутвует.
Cisco 10008
Version 12.2(33)SB11, RELEASE SOFTWARE (fc1)
Cisco C10008 (PRE3-RP) processor (revision V02 ) with 1933311K/163839K bytes of memory.
Processor board ID NWG124208LQ
SB-1 CPU at 800Mhz, Implementation 0x401, Rev 0.2, 512KB L2 Cache
Backplane version 1.0, 8 slot
NAME: "module 3/0", DESCR: "4 bay Cisco 10000 SPA Jacket Card"
PID: 10000-SIP-600 , VID: 1.0, SN: CAT1415F0PU
NAME: "SPA subslot 3/0", DESCR: "1-port 10 Gigabit Ethernet Shared Port Adapter XFP based"
PID: SPA-1X10GE-L-V2 , VID: V02, SN: JAE14070NVZ
NAME: "subslot 3/0 transceiver 0", DESCR: "OC192 + 10GBASE-L"
PID: XFP-10GLR-OC192SR , VID: 03 , SN: ONT140410LJ
Настройки
aaa group server radius group1
server 10.10.xx.254 auth-port 1812 acct-port 1815
!
aaa authentication login local_log local
aaa authentication login rad group group1 local
aaa authentication login ISG group radius
aaa authentication ppp local_ppp local
aaa authentication ppp rad group group1 local
aaa authentication ppp ISG group radius
aaa authorization network default group group1 local
aaa authorization network ISG group radius
aaa authorization subscriber-service default local group group1
aaa accounting delay-start all
aaa accounting update periodic 1
aaa accounting exec rad start-stop group radius group group1
aaa accounting network rad start-stop group group1
aaa accounting network ISG start-stop group radius
!
aaa attribute list ISG
!
aaa nas port extended
bba-group pppoe global
virtual-template 1
sessions max limit 4000
sessions per-mac limit 4
sessions per-mac iwf limit 4
sessions auto cleanup
interface TenGigabitEthernet3/0/0.818
description PPPoE for Lenina75
encapsulation dot1Q 818
pppoe enable group global
interface Virtual-Template1
description USED FOR VPN_Session
ip unnumbered Loopback50
ip tcp adjust-mss 1300
load-interval 30
peer default ip address pool vpn_pool
ppp mtu adaptive
ppp authentication chap pap ms-chap ms-chap-v2 callin ISG
ppp accounting ISG
-
В прайсе есть, вдруг кто уже купил и успел опробовать. Вопрос стоит ли вообще ориентироваться на данную модель. Задача на следующий год стоит тривиальная, теримнация около 20т. абонентов.
-
Может кто либо поделится опытом эксплуатации Cisco ASR 9001 и других маршрутизаторов данной линейки. Инетерсует его производительность как NAT и как PPPoE терминации.
Заранее благодарен за ответы.
-
Сервис на текущий момент активируется. Но проблема в том что почему то при совпадении паролей
в данной секции с паролем абонента. Что очень и очень странно.
subscriber feature prepaid 200M
threshold time 10 seconds
threshold volume 2 Mbytes
interim-interval 1 minutes
method-list author ISG
method-list accounting ISG
password cisco
Как добится того что бы не было подобной привязки?
На всех лабах используется один и тот же пароль и все хорошо...
Прелагаю логи FreeRadiusa
Wed Aug 3 16:40:46 2011
Packet-Type = Access-Request
Framed-Protocol = PPP
User-Name = "test1"
NAS-Port-Type = Virtual
Cisco-NAS-Port = "1/0/0/304"
NAS-Port = 0
NAS-Port-Id = "1/0/0/304"
Connect-Info = "SF"
Cisco-AVPair = "client-mac-address=0011.2233.4455"
Service-Type = Framed-User
NAS-IP-Address = 217.8.xx.yyy
Acct-Session-Id = "00000496"
Wed Aug 3 16:40:46 2011
Packet-Type = Access-Request
User-Name = "L10MT"
NAS-Port-Type = Virtual
Cisco-NAS-Port = "1/0/0/304"
NAS-Port = 0
NAS-Port-Id = "1/0/0/304"
Connect-Info = "SF"
Cisco-AVPair = "client-mac-address=0011.2233.4455"
Service-Type = Outbound-User
NAS-IP-Address = 217.8.xx.yyy
Acct-Session-Id = "00000496"
Wed Aug 3 16:40:46 2011
Packet-Type = Access-Request
User-Name = "W2MT"
NAS-Port-Type = Virtual
Cisco-NAS-Port = "1/0/0/304"
NAS-Port = 0
NAS-Port-Id = "1/0/0/304"
Connect-Info = "SF"
Cisco-AVPair = "client-mac-address=0011.2233.4455"
Service-Type = Outbound-User
NAS-IP-Address = 217.8.xx.yyy
Acct-Session-Id = "00000496"
Wed Aug 3 16:40:46 2011
Packet-Type = Access-Request
User-Name = "test1"
Cisco-Service-Info = "NW2MT"
Framed-Protocol = PPP
NAS-Port-Type = Virtual
Cisco-NAS-Port = "1/0/0/304"
NAS-Port = 0
NAS-Port-Id = "1/0/0/304"
Connect-Info = "SF"
Cisco-AVPair = "client-mac-address=0011.2233.4455"
Service-Type = Framed-User
NAS-IP-Address = 217.8.xx.yyy
Acct-Session-Id = "00000497"
Ответы радиуса
Wed Aug 3 16:40:46 2011
Packet-Type = Access-Accept
Framed-IP-Address := 217.8.xx.zz
Cisco-Account-Info := "AW2MT"
Cisco-Account-Info := "AL10MT"
Idle-Timeout := 600
Cisco-Control-Info := "QV20000000"
Wed Aug 3 16:40:46 2011
Packet-Type = Access-Accept
Cisco-Service-Info := "QU;10240000;512000;10240000;D;10240000;512000;10240000"
Cisco-AVPair := "ip:traffic-class=in access-group name LOCAL_IN priority 100"
Cisco-AVPair := "ip:traffic-class=out access-group name LOCAL_OUT priority 110"
Cisco-AVPair := "ip:traffic-class=in default drop"
Cisco-AVPair := "ip:traffic-class=out default drop"
Cisco-Service-Info := "IL10MT"
Cisco-AVPair := "accounting-list=ISG"
Wed Aug 3 16:40:46 2011
Packet-Type = Access-Accept
Cisco-AVPair := "ip:traffic-class=in access-group name WORLD_IN priority 200"
Cisco-AVPair := "ip:traffic-class=out access-group name WORLD_OUT priority 210"
Cisco-AVPair := "ip:traffic-class=in default drop"
Cisco-AVPair := "ip:traffic-class=out default drop"
Cisco-Service-Info := "QU;10240000;512000;10240000;D;10240000;512000;10240000"
Cisco-Service-Info := "IW2MT"
Cisco-AVPair := "prepaid-config=200M"
Wed Aug 3 16:40:46 2011
Packet-Type = Access-Reject
Framed-IP-Address := 217.8.xx.bb
Cisco-Account-Info := "AW2MT"
Cisco-Account-Info := "AL10MT"
Idle-Timeout := 600
Cisco-Control-Info := "QV20000000"
В случаи если пароль в препейд конфиге совпадает с пользовательским по последнем запросу приходит Accept
-
subscriber feature prepaid 200M
порог исправил.
А если квота не придет? то и сервис не активируется?
Видимо я не правильно понял, что Access-accept передаются все параметры сервиса при старте, в том числе и квота
Вот так я вижу пакеты
Без квоты и препейда
Jun 30 12:09:46.178 surgut: RADIUS: Received from id 1645/152 10.10.2.4:1812, Access-Accept, len 305
Jun 30 12:09:46.178 surgut: RADIUS: authenticator 8B 82 78 4C EB 87 F2 F8 - 25 25 17 9C 48 36 15 DD
Jun 30 12:09:46.178 surgut: RADIUS: Vendor, Cisco [26] 70
Jun 30 12:09:46.178 surgut: RADIUS: Cisco AVpair [1] 64 "ip:traffic-class=in access-group name NO_TARIF_IN priority 50"
Jun 30 12:09:46.178 surgut: RADIUS: Vendor, Cisco [26] 71
Jun 30 12:09:46.178 surgut: RADIUS: Cisco AVpair [1] 65 "ip:traffic-class=out access-group name NO_TARIF_OUT priority 50"
Jun 30 12:09:46.178 surgut: RADIUS: Vendor, Cisco [26] 41
Jun 30 12:09:46.178 surgut: RADIUS: Cisco AVpair [1] 35 "ip:traffic-class=out default drop"
Jun 30 12:09:46.178 surgut: RADIUS: Vendor, Cisco [26] 40
Jun 30 12:09:46.178 surgut: RADIUS: Cisco AVpair [1] 34 "ip:traffic-class=in default drop"
Jun 30 12:09:46.178 surgut: RADIUS: Vendor, Cisco [26] 25
Jun 30 12:09:46.178 surgut: RADIUS: ssg-service-info [251] 19 "IPREPAID_INTERNET"
Jun 30 12:09:46.178 surgut: RADIUS: Vendor, Cisco [26] 38
Jun 30 12:09:46.178 surgut: RADIUS: Cisco AVpair [1] 32 "subscriber:accounting-list=ISG"
С квотой и без препейда
Jun 30 12:14:53.061 surgut: RADIUS: Received from id 1645/156 10.10.2.4:1812, Access-Accept, len 323
Jun 30 12:14:53.061 surgut: RADIUS: authenticator 5E 45 4E B5 C7 B0 73 5E - 00 7A 43 B3 4E 1D 5E 0C
Jun 30 12:14:53.061 surgut: RADIUS: Vendor, Cisco [26] 70
Jun 30 12:14:53.061 surgut: RADIUS: Cisco AVpair [1] 64 "ip:traffic-class=in access-group name NO_TARIF_IN priority 50"
Jun 30 12:14:53.061 surgut: RADIUS: Vendor, Cisco [26] 71
Jun 30 12:14:53.061 surgut: RADIUS: Cisco AVpair [1] 65 "ip:traffic-class=out access-group name NO_TARIF_OUT priority 50"
Jun 30 12:14:53.061 surgut: RADIUS: Vendor, Cisco [26] 41
Jun 30 12:14:53.061 surgut: RADIUS: Cisco AVpair [1] 35 "ip:traffic-class=out default drop"
Jun 30 12:14:53.061 surgut: RADIUS: Vendor, Cisco [26] 40
Jun 30 12:14:53.061 surgut: RADIUS: Cisco AVpair [1] 34 "ip:traffic-class=in default drop"
Jun 30 12:14:53.061 surgut: RADIUS: Vendor, Cisco [26] 25
Jun 30 12:14:53.061 surgut: RADIUS: ssg-service-info [251] 19 "IPREPAID_INTERNET"
Jun 30 12:14:53.061 surgut: RADIUS: Vendor, Cisco [26] 38
Jun 30 12:14:53.061 surgut: RADIUS: Cisco AVpair [1] 32 "subscriber:accounting-list=ISG"
Jun 30 12:14:53.061 surgut: RADIUS: Vendor, Cisco [26] 18
Jun 30 12:14:53.061 surgut: RADIUS: ssg-control-info [253] 12 "QV20000000"
Без квоты и с препейдом
Jun 30 12:17:52.967 surgut: RADIUS: Received from id 1645/160 10.10.2.4:1812, Access-Accept, len 332
Jun 30 12:17:52.967 surgut: RADIUS: authenticator 9B 3C E2 D0 A3 2C D8 A6 - 27 2D E6 15 95 1D 5E 7F
Jun 30 12:17:52.967 surgut: RADIUS: Vendor, Cisco [26] 70
Jun 30 12:17:52.967 surgut: RADIUS: Cisco AVpair [1] 64 "ip:traffic-class=in access-group name NO_TARIF_IN priority 50"
Jun 30 12:17:52.967 surgut: RADIUS: Vendor, Cisco [26] 71
Jun 30 12:17:52.967 surgut: RADIUS: Cisco AVpair [1] 65 "ip:traffic-class=out access-group name NO_TARIF_OUT priority 50"
Jun 30 12:17:52.967 surgut: RADIUS: Vendor, Cisco [26] 41
Jun 30 12:17:52.967 surgut: RADIUS: Cisco AVpair [1] 35 "ip:traffic-class=out default drop"
Jun 30 12:17:52.967 surgut: RADIUS: Vendor, Cisco [26] 40
Jun 30 12:17:52.967 surgut: RADIUS: Cisco AVpair [1] 34 "ip:traffic-class=in default drop"
Jun 30 12:17:52.967 surgut: RADIUS: Vendor, Cisco [26] 25
Jun 30 12:17:52.967 surgut: RADIUS: ssg-service-info [251] 19 "IPREPAID_INTERNET"
Jun 30 12:17:52.967 surgut: RADIUS: Vendor, Cisco [26] 38
Jun 30 12:17:52.967 surgut: RADIUS: Cisco AVpair [1] 32 "subscriber:accounting-list=ISG"
Jun 30 12:17:52.967 surgut: RADIUS: Vendor, Cisco [26] 27
Jun 30 12:17:52.967 surgut: RADIUS: Cisco AVpair [1] 21 "prepaid-config=200M"
-
Да ACL имеются. Это точно Влияет на сервис только эта строчка , без нее сервис уходит в активность *Cisco-AVPair := prepaid-config=200M
bras01-surgut.hmao.ugra#sh sss session
Current Subscriber Information: Total sessions 1
Uniq ID Interface State Service Identifier Up-time
111 Vi2.1 authen Local Term test1 00:00:10
112 Traffic-Clas unauthen Ltm Internal 00:00:10
113 Traffic-Clas unauthen Ltm Internal 00:00:10
114 Traffic-Clas unauthen Ltm Internal 00:00:10
bras01-surgut.hmao.ugra#sh sss session detailed
Current Subscriber Information: Total sessions 1
--------------------------------------------------
Unique Session ID: 111
Identifier: test1
SIP subscriber access type(s): PPPoE/PPP
Current SIP options: Req Fwding/Req Fwded
Session Up-time: 00:00:16, Last Changed: 00:00:16
Interface: Virtual-Access2.1
Policy information:
Context 43874578: Handle 460000BA
AAA_id 00000031: Flow_handle 0
Authentication status: authen
Downloaded User profile, excluding services:
addr 217.8.xx.yy
ssg-account-info "AW2MT"
ssg-account-info "AL10MT"
idletime 600 (0x258)
ssg-account-info "APREPAID_INTERNET"
Downloaded User profile, including services:
addr 217.8.xx.yy
ssg-account-info "AW2MT"
ssg-account-info "AL10MT"
idletime 600 (0x258)
ssg-account-info "APREPAID_INTERNET"
ssg-control-info "QV20000000"
accounting-list "ISG"
traffic-class "in access-group name WORLD_IN priority 200"
traffic-class "out access-group name WORLD_OUT priority 210"
traffic-class "in default drop"
traffic-class "out default drop"
ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"
ssg-service-info "IW2MT"
Config history for session (recent to oldest):
Access-type: Web-service-logon Client: SM
Policy event: Apply Config Success (Service)
Profile name: W2MT, 4 references
traffic-class "in access-group name WORLD_IN priority 200"
traffic-class "out access-group name WORLD_OUT priority 210"
traffic-class "in default drop"
traffic-class "out default drop"
ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"
ssg-service-info "IW2MT"
Access-type: Web-service-logon Client: SM
Policy event: Apply Config Success (Service)
Profile name: L10MT, 4 references
ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"
traffic-class "in access-group name LOCAL_IN priority 100"
traffic-class "out access-group name LOCAL_OUT priority 110"
traffic-class "in default drop"
traffic-class "out default drop"
ssg-service-info "IL10MT"
accounting-list "ISG"
Access-type: Web-service-logon Client: SM
Policy event: Apply Config Success (Service)
Profile name: PREPAID_INTERNET, 4 references
traffic-class "in access-group name NO_TARIF_IN priority 50"
traffic-class "out access-group name NO_TARIF_OUT priority 50"
traffic-class "out default drop"
traffic-class "in default drop"
ssg-service-info "IPREPAID_INTERNET"
ssg-control-info "QV20000000"
accounting-list "ISG"
Access-type: PPP Client: SM
Policy event: Process Config Connecting
Profile name: test1, 2 references
addr 217.8.xx.yy
ssg-account-info "AW2MT"
ssg-account-info "AL10MT"
idletime 600 (0x258)
ssg-account-info "APREPAID_INTERNET"
Active services associated with session:
name "W2MT"
name "L10MT"
name "PREPAID_INTERNET"
Session inbound features:
Traffic classes:
Traffic class session ID: 112
ACL Name: NO_TARIF_IN, Packets = 0, Bytes = 0
Traffic class session ID: 113
ACL Name: LOCAL_IN, Packets = 32, Bytes = 1968
Traffic class session ID: 114
ACL Name: WORLD_IN, Packets = 10, Bytes = 1708
Default traffic is dropped
Unmatched Packets = 0, Re-classified packets (redirected) = 0
Session outbound features:
Feature: PPP Idle Timeout
Timeout value is 600
Idle time is 00:00:11
Traffic classes:
Traffic class session ID: 112
ACL Name: NO_TARIF_OUT, Packets = 0, Bytes = 0
Traffic class session ID: 113
ACL Name: LOCAL_OUT, Packets = 29, Bytes = 3215
Traffic class session ID: 114
ACL Name: WORLD_OUT, Packets = 4, Bytes = 548
Default traffic is dropped
Unmatched Packets = 0, Re-classified packets (redirected) = 0
Non-datapath features:
Feature: IP Config
Peer IP Address: 217.8.xx.yy (F/F)
Address Pool: [None] (F)
Unnumbered Intf: [None]
Configuration sources associated with this session:
Service: W2MT, Active Time = 00:00:53
Service: L10MT, Active Time = 00:00:53
AAA Service ID = 2197815354
Service: PREPAID_INTERNET, Active Time = 00:00:53
AAA Service ID = 1946157113
Interface: Virtual-Template10, Active Time = 00:00:53
--------------------------------------------------
Unique Session ID: 112
Identifier:
SIP subscriber access type(s): Traffic-Class
Current SIP options: None
Session Up-time: 00:00:53, Last Changed: 00:00:53
Policy information:
Context 43874110: Handle 750000BB
AAA_id 00000031: Flow_handle 1
Authentication status: unauthen
Downloaded User profile, including services:
traffic-class "in access-group name NO_TARIF_IN priority 50"
traffic-class "out access-group name NO_TARIF_OUT priority 50"
traffic-class "out default drop"
traffic-class "in default drop"
ssg-service-info "IPREPAID_INTERNET"
ssg-control-info "QV20000000"
accounting-list "ISG"
Config history for session (recent to oldest):
Access-type: Web-service-logon Client: Service Command-Handler
Policy event: Service-Start (Service)
Profile name: PREPAID_INTERNET, 4 references
traffic-class "in access-group name NO_TARIF_IN priority 50"
traffic-class "out access-group name NO_TARIF_OUT priority 50"
traffic-class "out default drop"
traffic-class "in default drop"
ssg-service-info "IPREPAID_INTERNET"
ssg-control-info "QV20000000"
accounting-list "ISG"
Session inbound features:
Feature: Service accounting
Service: PREPAID_INTERNET
Method List: ISG
Packets = 0, Bytes = 0
Session outbound features:
Feature: Service accounting
Service: PREPAID_INTERNET
Method List: ISG
Packets = 0, Bytes = 0
Configuration sources associated with this session:
Service: PREPAID_INTERNET, Active Time = 00:01:00
--------------------------------------------------
Unique Session ID: 113
Identifier:
SIP subscriber access type(s): Traffic-Class
Current SIP options: None
Session Up-time: 00:01:00, Last Changed: 00:01:00
Policy information:
Context 43874400: Handle 2D0000BC
AAA_id 00000031: Flow_handle 2
Authentication status: unauthen
Downloaded User profile, including services:
ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"
traffic-class "in access-group name LOCAL_IN priority 100"
traffic-class "out access-group name LOCAL_OUT priority 110"
traffic-class "in default drop"
traffic-class "out default drop"
ssg-service-info "IL10MT"
accounting-list "ISG"
Config history for session (recent to oldest):
Access-type: Web-service-logon Client: Service Command-Handler
Policy event: Service-Start (Service)
Profile name: L10MT, 4 references
ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"
traffic-class "in access-group name LOCAL_IN priority 100"
traffic-class "out access-group name LOCAL_OUT priority 110"
traffic-class "in default drop"
traffic-class "out default drop"
ssg-service-info "IL10MT"
accounting-list "ISG"
Session inbound features:
Feature: Service accounting
Service: L10MT
Method List: ISG
Packets = 62, Bytes = 3768
Feature: Policing
Upstream Params:
Average rate = 10240000, Normal burst = 512000, Excess burst = 10240000
Config level = Service
Session outbound features:
Feature: Service accounting
Service: L10MT
Method List: ISG
Packets = 59, Bytes = 5015
Feature: Policing
Dnstream Params:
Average rate = 10240000, Normal burst = 512000, Excess burst = 10240000
Config level = Service
Configuration sources associated with this session:
Service: L10MT, Active Time = 00:04:10
--------------------------------------------------
Unique Session ID: 114
Identifier:
SIP subscriber access type(s): Traffic-Class
Current SIP options: None
Session Up-time: 00:04:10, Last Changed: 00:04:10
Policy information:
Context 43874288: Handle AC0000BD
AAA_id 00000031: Flow_handle 0
Authentication status: unauthen
Downloaded User profile, including services:
traffic-class "in access-group name WORLD_IN priority 200"
traffic-class "out access-group name WORLD_OUT priority 210"
traffic-class "in default drop"
traffic-class "out default drop"
ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"
ssg-service-info "IW2MT"
Config history for session (recent to oldest):
Access-type: Web-service-logon Client: Service Command-Handler
Policy event: Service-Start (Service)
Profile name: W2MT, 4 references
traffic-class "in access-group name WORLD_IN priority 200"
traffic-class "out access-group name WORLD_OUT priority 210"
traffic-class "in default drop"
traffic-class "out default drop"
ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"
ssg-service-info "IW2MT"
Session inbound features:
Feature: Policing
Upstream Params:
Average rate = 10240000, Normal burst = 512000, Excess burst = 10240000
Config level = Service
Session outbound features:
Feature: Policing
Dnstream Params:
Average rate = 10240000, Normal burst = 512000, Excess burst = 10240000
Config level = Service
Configuration sources associated with this session:
Service: W2MT, Active Time = 00:04:10
Вот сервисы без злопалучной строчки.
-
Именно так
name "W2MT"
name "L10MT"
Это два серивиса, безо всяких препейдов, они стартуют вообще без проблем, третий сервис, не хочет на сессию прицеплятся
Jun 28 16:35:37.098 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: breaking parent-child lock
Jun 28 16:35:37.098 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: destroy
Jun 28 16:35:37.102 surgut: SVM [DC00008C/PREPAID_INTERNET]: destroy
-
Насколько я понимаю, сервисы я могу и без service-policy type control на virtual-templete подключить к сессии, если по ходу активности ни каких изменений проводить не планируется. Или активация диактивация сессий перелогиниванием планируется.
На текущий момент задача простая, сделать просто картоный сервис, абонент скачал трафик, абонент идет за новой картой.
bras01-surgut.hmao.ugra#
Jun 28 16:35:36.062 surgut: RADIUS/ENCODE(0000002E):Orig. component type = PPoE
Jun 28 16:35:36.062 surgut: RADIUS(0000002E): Config NAS IP: 217.8.zz.zz
Jun 28 16:35:36.062 surgut: RADIUS/ENCODE(0000002E): acct_session_id: 148
Jun 28 16:35:36.062 surgut: RADIUS(0000002E): sending
Jun 28 16:35:36.062 surgut: RADIUS(0000002E): Send Access-Request to 10.10.2.4:1812 id 1645/133, len 158
Jun 28 16:35:36.062 surgut: RADIUS: authenticator C8 0F DB EA 35 9E 1A 91 - A6 04 67 59 1C 48 FE D8
Jun 28 16:35:36.062 surgut: RADIUS: Framed-Protocol [7] 6 PPP [1]
Jun 28 16:35:36.062 surgut: RADIUS: User-Name [1] 7 "test1"
Jun 28 16:35:36.062 surgut: RADIUS: User-Password [2] 18 *
Jun 28 16:35:36.062 surgut: RADIUS: NAS-Port-Type [61] 6 Virtual [5]
Jun 28 16:35:36.062 surgut: RADIUS: Vendor, Cisco [26] 17
Jun 28 16:35:36.062 surgut: RADIUS: cisco-nas-port [2] 11 "1/0/0/304"
Jun 28 16:35:36.062 surgut: RADIUS: NAS-Port [5] 6 0
Jun 28 16:35:36.062 surgut: RADIUS: NAS-Port-Id [87] 11 "1/0/0/304"
Jun 28 16:35:36.062 surgut: RADIUS: Connect-Info [77] 4 "SF"
Jun 28 16:35:36.062 surgut: RADIUS: Vendor, Cisco [26] 41
Jun 28 16:35:36.062 surgut: RADIUS: Cisco AVpair [1] 35 "client-mac-address=0016.d46a.0344"
Jun 28 16:35:36.062 surgut: RADIUS: Service-Type [6] 6 Framed [2]
Jun 28 16:35:36.062 surgut: RADIUS: NAS-IP-Address [4] 6 217.8.zz.zz
Jun 28 16:35:36.062 surgut: RADIUS: Acct-Session-Id [44] 10 "00000094"
Jun 28 16:35:36.062 surgut: RADIUS: Received from id 1645/133 10.10.2.4:1812, Access-Accept, len 84
Jun 28 16:35:36.062 surgut: RADIUS: authenticator 7C DE E8 1C 5D 9F ED 83 - 44 52 AA 4B B1 FA 9D 74
Jun 28 16:35:36.062 surgut: RADIUS: Framed-IP-Address [8] 6 217.8.xx.xx
Jun 28 16:35:36.062 surgut: RADIUS: Vendor, Cisco [26] 13
Jun 28 16:35:36.062 surgut: RADIUS: ssg-account-info [250] 7 "AW2MT"
Jun 28 16:35:36.062 surgut: RADIUS: Vendor, Cisco [26] 14
Jun 28 16:35:36.062 surgut: RADIUS: ssg-account-info [250] 8 "AL10MT"
Jun 28 16:35:36.062 surgut: RADIUS: Idle-Timeout [28] 6 600
Jun 28 16:35:36.062 surgut: RADIUS: Vendor, Cisco [26] 25
Jun 28 16:35:36.062 surgut: RADIUS: ssg-account-info [250] 19 "APREPAID_INTERNET"
Jun 28 16:35:36.066 surgut: RADIUS(0000002E): Received from id 1645/133
Jun 28 16:35:36.066 surgut: SVM [PREPAID_INTERNET]: needs downloading
Jun 28 16:35:36.066 surgut: SVM [DC00008C/PREPAID_INTERNET]: allocated version 1
Jun 28 16:35:36.066 surgut: SVM [DC00008C/PREPAID_INTERNET]: [bE0000AD]: client queued
Jun 28 16:35:36.066 surgut: SVM [DC00008C/PREPAID_INTERNET]: [PM-Download:BE0000AD] locked 0->1
Jun 28 16:35:36.066 surgut: SVM [DC00008C/PREPAID_INTERNET]: [AAA-Download:43B083B0] locked 0->1
Jun 28 16:35:36.066 surgut: SVM [L10MT]: needs downloading
Jun 28 16:35:36.066 surgut: SVM [6400008D/L10MT]: allocated version 1
Jun 28 16:35:36.066 surgut: SVM [6400008D/L10MT]: [A00000AE]: client queued
Jun 28 16:35:36.066 surgut: SVM [6400008D/L10MT]: [PM-Download:A00000AE] locked 0->1
Jun 28 16:35:36.066 surgut: SVM [6400008D/L10MT]: [AAA-Download:D2DFAA60] locked 0->1
Jun 28 16:35:36.066 surgut: SVM [W2MT]: needs downloading
Jun 28 16:35:36.066 surgut: SVM [8C00008E/W2MT]: allocated version 1
Jun 28 16:35:36.066 surgut: SVM [8C00008E/W2MT]: [250000AF]: client queued
Jun 28 16:35:36.066 surgut: SVM [8C00008E/W2MT]: [PM-Download:250000AF] locked 0->1
Jun 28 16:35:36.066 surgut: SVM [8C00008E/W2MT]: [AAA-Download:561D6F0C] locked 0->1
Jun 28 16:35:36.066 surgut: RADIUS/ENCODE(0000002E):Orig. component type = PPoE
Jun 28 16:35:36.066 surgut: RADIUS(0000002E): Config NAS IP: 217.8.zz.zz
Jun 28 16:35:36.066 surgut: RADIUS/ENCODE(0000002E): acct_session_id: 148
Jun 28 16:35:36.066 surgut: RADIUS(0000002E): sending
Jun 28 16:35:36.066 surgut: RADIUS/ENCODE(0000002E):Orig. component type = PPoE
Jun 28 16:35:36.066 surgut: RADIUS(0000002E): Config NAS IP: 217.8.zz.zz
Jun 28 16:35:36.066 surgut: RADIUS/ENCODE(0000002E): acct_session_id: 148
Jun 28 16:35:36.066 surgut: RADIUS(0000002E): sending
Jun 28 16:35:36.070 surgut: RADIUS/ENCODE(0000002E):Orig. component type = PPoE
Jun 28 16:35:36.070 surgut: RADIUS(0000002E): Config NAS IP: 217.8.zz.zz
Jun 28 16:35:36.070 surgut: RADIUS/ENCODE(0000002E): acct_session_id: 148
Jun 28 16:35:36.070 surgut: RADIUS(0000002E): sending
Jun 28 16:35:36.070 surgut: RADIUS(0000002E): Send Access-Request to 10.10.2.4:1812 id 1645/134, len 163
Jun 28 16:35:36.070 surgut: RADIUS: authenticator BF 13 6D 33 F3 87 5F 46 - EE 18 0A 2A E4 EE 5B C6
Jun 28 16:35:36.070 surgut: RADIUS: User-Name [1] 18 "PREPAID_INTERNET"
Jun 28 16:35:36.070 surgut: RADIUS: User-Password [2] 18 *
Jun 28 16:35:36.070 surgut: RADIUS: NAS-Port-Type [61] 6 Virtual [5]
Jun 28 16:35:36.070 surgut: RADIUS: Vendor, Cisco [26] 17
Jun 28 16:35:36.070 surgut: RADIUS: cisco-nas-port [2] 11 "1/0/0/304"
Jun 28 16:35:36.070 surgut: RADIUS: NAS-Port [5] 6 0
Jun 28 16:35:36.070 surgut: RADIUS: NAS-Port-Id [87] 11 "1/0/0/304"
Jun 28 16:35:36.070 surgut: RADIUS: Connect-Info [77] 4 "SF"
Jun 28 16:35:36.070 surgut: RADIUS: Vendor, Cisco [26] 41
Jun 28 16:35:36.070 surgut: RADIUS: Cisco AVpair [1] 35 "client-mac-address=0016.d46a.0344"
Jun 28 16:35:36.070 surgut: RADIUS: Service-Type [6] 6 Outbound [5]
Jun 28 16:35:36.070 surgut: RADIUS: NAS-IP-Address [4] 6 217.8.zz.zz
Jun 28 16:35:36.070 surgut: RADIUS: Acct-Session-Id [44] 10 "00000094"
Jun 28 16:35:36.070 surgut: RADIUS(0000002E): Send Access-Request to 10.10.2.4:1812 id 1645/135, len 152
Jun 28 16:35:36.070 surgut: RADIUS: authenticator F9 EE 6A 5E FB 6E 86 0D - 21 11 A4 F6 36 08 52 EA
Jun 28 16:35:36.070 surgut: RADIUS: User-Name [1] 7 "L10MT"
Jun 28 16:35:36.070 surgut: RADIUS: User-Password [2] 18 *
Jun 28 16:35:36.070 surgut: RADIUS: NAS-Port-Type [61] 6 Virtual [5]
Jun 28 16:35:36.070 surgut: RADIUS: Vendor, Cisco [26] 17
Jun 28 16:35:36.070 surgut: RADIUS: cisco-nas-port [2] 11 "1/0/0/304"
Jun 28 16:35:36.070 surgut: RADIUS: NAS-Port [5] 6 0
Jun 28 16:35:36.070 surgut: RADIUS: NAS-Port-Id [87] 11 "1/0/0/304"
Jun 28 16:35:36.070 surgut: RADIUS: Connect-Info [77] 4 "SF"
Jun 28 16:35:36.070 surgut: RADIUS: Vendor, Cisco [26] 41
Jun 28 16:35:36.070 surgut: RADIUS: Cisco AVpair [1] 35 "client-mac-address=0016.d46a.0344"
Jun 28 16:35:36.070 surgut: RADIUS: Service-Type [6] 6 Outbound [5]
Jun 28 16:35:36.070 surgut: RADIUS: NAS-IP-Address [4] 6 217.8.zz.zz
Jun 28 16:35:36.070 surgut: RADIUS: Acct-Session-Id [44] 10 "00000094"
Jun 28 16:35:36.074 surgut: RADIUS(0000002E): Send Access-Request to 10.10.2.4:1812 id 1645/136, len 151
Jun 28 16:35:36.074 surgut: RADIUS: authenticator C2 52 A4 5A 11 14 70 E7 - C3 19 FD 09 CA 33 E7 27
Jun 28 16:35:36.074 surgut: RADIUS: User-Name [1] 6 "W2MT"
Jun 28 16:35:36.074 surgut: RADIUS: User-Password [2] 18 *
Jun 28 16:35:36.074 surgut: RADIUS: NAS-Port-Type [61] 6 Virtual [5]
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 17
Jun 28 16:35:36.074 surgut: RADIUS: cisco-nas-port [2] 11 "1/0/0/304"
Jun 28 16:35:36.074 surgut: RADIUS: NAS-Port [5] 6 0
Jun 28 16:35:36.074 surgut: RADIUS: NAS-Port-Id [87] 11 "1/0/0/304"
Jun 28 16:35:36.074 surgut: RADIUS: Connect-Info [77] 4 "SF"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 41
Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 35 "client-mac-address=0016.d46a.0344"
Jun 28 16:35:36.074 surgut: RADIUS: Service-Type [6] 6 Outbound [5]
Jun 28 16:35:36.074 surgut: RADIUS: NAS-IP-Address [4] 6 217.8.zz.zz
Jun 28 16:35:36.074 surgut: RADIUS: Acct-Session-Id [44] 10 "00000094"
Jun 28 16:35:36.074 surgut: RADIUS: Received from id 1645/134 10.10.2.4:1812, Access-Accept, len 312
Jun 28 16:35:36.074 surgut: RADIUS: authenticator 85 2C 0F 10 4D 8E B0 5D - A3 94 D8 8B CD EE CE 36
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 70
Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 64 "ip:traffic-class=in access-group name NO_TARIF_IN priority 50"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 71
Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 65 "ip:traffic-class=out access-group name NO_TARIF_OUT priority 50"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 41
Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 35 "ip:traffic-class=out default drop"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 40
Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 34 "ip:traffic-class=in default drop"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 25
Jun 28 16:35:36.074 surgut: RADIUS: ssg-service-info [251] 19 "IPREPAID_INTERNET"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 18
Jun 28 16:35:36.074 surgut: RADIUS: ssg-control-info [253] 12 "QV20000000"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 27
Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 21 "prepaid-config=200M"
Jun 28 16:35:36.074 surgut: RADIUS(0000002E): Received from id 1645/134
Jun 28 16:35:36.074 surgut: RADIUS: Received from id 1645/135 10.10.2.4:1812, Access-Accept, len 340
Jun 28 16:35:36.074 surgut: RADIUS: authenticator D9 DD 1D 46 FD 66 8A 37 - ED 4E CD 4B FF F8 10 24
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 62
Jun 28 16:35:36.074 surgut: RADIUS: ssg-service-info [251] 56 "QU;10240000;512000;10240000;D;10240000;512000;10240000"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 67
Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 61 "ip:traffic-class=in access-group name LOCAL_IN priority 100"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 69
Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 63 "ip:traffic-class=out access-group name LOCAL_OUT priority 110"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 40
Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 34 "ip:traffic-class=in default drop"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 41
Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 35 "ip:traffic-class=out default drop"
Jun 28 16:35:36.074 surgut:
bras01-surgut.hmao.ugra# RADIUS: Vendor, Cisco [26] 14
Jun 28 16:35:36.074 surgut: RADIUS: ssg-service-info [251] 8 "IL10MT"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 27
Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 21 "accounting-list=ISG"
Jun 28 16:35:36.074 surgut: RADIUS: Received from id 1645/136 10.10.2.4:1812, Access-Accept, len 312
Jun 28 16:35:36.074 surgut: RADIUS: authenticator DD F8 CB E8 80 DD 8A E2 - 9F 2B 07 6F 90 FD 24 8D
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 67
Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 61 "ip:traffic-class=in access-group name WORLD_IN priority 200"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 69
Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 63 "ip:traffic-class=out access-group name WORLD_OUT priority 210"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 40
Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 34 "ip:traffic-class=in default drop"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 41
Jun 28 16:35:36.074 surgut: RADIUS: Cisco AVpair [1] 35 "ip:traffic-class=out default drop"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 62
Jun 28 16:35:36.074 surgut: RADIUS: ssg-service-info [251] 56 "QU;10240000;512000;10240000;D;10240000;512000;10240000"
Jun 28 16:35:36.074 surgut: RADIUS: Vendor, Cisco [26] 13
Jun 28 16:35:36.074 surgut: RADIUS: ssg-service-info [251] 7 "IW2MT"
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: TC feature info found
Jun 28 16:35:36.078 surgut: SVM [7900008F/PREPAID_INTERNET]: added child
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [TC-Child:CF755260] locked 0->1
Jun 28 16:35:36.078 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: [TC-Parent:CF755170] locked 0->1
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: TC flow feature info not found
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: downloaded first version
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [bE0000AD]: client download ok
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [sVM-to-client-msg:BE0000AD] locked 0->1
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [AAA-Download:43B083B0] unlocked 1->0
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: alloc feature info
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [sVM-Feature-Info:561F8224] locked 0->1
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: has Policy info
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [PM-Info:D11B8C48] locked 0->1
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: populated client
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [PM-Download:BE0000AD] unlocked 1->0
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [sVM-to-client-msg:BE0000AD] unlocked 1->0
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [PM-Service:439223FC] locked 0->1
Jun 28 16:35:36.078 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: [sM-SIP-Apply:7900008F] locked 0->1
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [FM-Bind:2E000088] locked 0->1
Jun 28 16:35:36.078 surgut: SSS LTERM: ERROR: Unable to set as required with CCM
Jun 28 16:35:36.078 surgut: SVM [DC00008C/PREPAID_INTERNET]: [sVM-Feature-Info:561F8224] unlocked 1->0
Jun 28 16:35:36.078 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: alloc feature info
Jun 28 16:35:36.078 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: [sVM-Feature-Info:561F8224] locked 0->1
Jun 28 16:35:36.078 surgut: RADIUS(0000002E): Received from id 1645/135
Jun 28 16:35:36.078 surgut: RADIUS(0000002E): Received from id 1645/136
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: TC feature info found
Jun 28 16:35:36.082 surgut: SVM [4C000090/L10MT]: added child
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [TC-Child:CF7552D8] locked 0->1
Jun 28 16:35:36.082 surgut: SVM [4C000090/CHILD/L10MT]: [TC-Parent:CF7551E8] locked 0->1
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: TC flow feature info found
Jun 28 16:35:36.082 surgut: SVM [4C000090/CHILD/L10MT]: set accounting handle
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: downloaded first version
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [A00000AE]: client download ok
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [sVM-to-client-msg:A00000AE] locked 0->1
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [AAA-Download:D2DFAA60] unlocked 1->0
Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: TC feature info found
Jun 28 16:35:36.082 surgut: SVM [78000091/W2MT]: added child
Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [TC-Child:CF7553C8] locked 0->1
Jun 28 16:35:36.082 surgut: SVM [78000091/CHILD/W2MT]: [TC-Parent:CF755350] locked 0->1
Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: TC flow feature info found
Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: downloaded first version
Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [250000AF]: client download ok
Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [sVM-to-client-msg:250000AF] locked 0->1
Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [AAA-Download:561D6F0C] unlocked 1->0
Jun 28 16:35:36.082 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: [FM-Bind:9A000089] locked 0->1
Jun 28 16:35:36.082 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: [sVM-Feature-Info:561F8224] unlocked 1->0
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: alloc feature info
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [sVM-Feature-Info:561F8224] locked 0->1
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: has Policy info
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [PM-Info:D11B8F90] locked 0->1
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: populated client
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [PM-Download:A00000AE] unlocked 1->0
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [sVM-to-client-msg:A00000AE] unlocked 1->0
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [PM-Service:43922414] locked 0->1
Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: alloc feature info
Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [sVM-Feature-Info:561F820C] locked 0->1
Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: has Policy info
Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [PM-Info:D11BA458] locked 0->1
Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: populated client
Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [PM-Download:250000AF] unlocked 1->0
Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [sVM-to-client-msg:250000AF] unlocked 1->0
Jun 28 16:35:36.082 surgut: SVM [8C00008E/W2MT]: [PM-Service:439223E4] locked 0->1
Jun 28 16:35:36.082 surgut: SVM [4C000090/CHILD/L10MT]: [sM-SIP-Apply:4C000090] locked 0->1
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [FM-Bind:2E000088] locked 0->1
Jun 28 16:35:36.082 surgut: SSS LTERM: ERROR: Unable to set as required with CCM
Jun 28 16:35:36.082 surgut: SVM [6400008D/L10MT]: [sVM-Feature-Info:561F8224] unlocked 1->0
Jun 28 16:35:36.082 surgut: SVM [4C000090/CHILD/L10MT]: alloc feature info
Jun 28 16:35:36.082 surgut: SVM [4C000090/CHILD/L10MT]: [sVM-Feature-Info:561F8224] locked 0->1
Jun 28 16:35:36.086 surgut: SVM [6400008D/L10MT]: [Accounting-Feature:43A2D888] locked 0->1
Jun 28 16:35:36.086 surgut: SVM [4C000090/CHILD/L10MT]: [FM-Bind:BE00008A] locked 0->1
Jun 28 16:35:36.086 surgut: SVM [4C000090/CHILD/L10MT]: [sVM-Feature-Info:561F8224] unlocked 1->0
Jun 28 16:35:36.086 surgut: SVM [78000091/CHILD/W2MT]: [sM-SIP-Apply:78000091] locked 0->1
Jun 28 16:35:36.086 surgut: SVM [8C00008E/W2MT]: [FM-Bind:2E000088] locked 0->1
Jun 28 16:35:36.086 surgut: SSS LTERM: ERROR: Unable to set as required with CCM
Jun 28 16:35:36.086 surgut: SVM [8C00008E/W2MT]: [sVM-Feature-Info:561F820C] unlocked 1->0
Jun 28 16:35:36.086 surgut: SVM [78000091/CHILD/W2MT]: alloc feature info
Jun 28 16:35:36.086 surgut: SVM [78000091/CHILD/W2MT]: [sVM-Feature-Info:561F820C] locked 0->1
Jun 28 16:35:36.086 surgut: SVM [78000091/CHILD/W2MT]: [FM-Bind:3700008B] locked 0->1
Jun 28 16:35:36.086 surgut: SVM [78000091/CHILD/W2MT]: [sVM-Feature-Info:561F820C] unlocked 1->0
Jun 28 16:35:36.094 surgut: RADIUS/ENCODE(0000002E):Orig. component type = PPoE
Jun 28 16:35:36.094 surgut: RADIUS(0000002E): Config NAS IP: 217.8.zz.zz
Jun 28 16:35:36.094 surgut: RADIUS/ENCODE(0000002E): acct_session_id: 149
Jun 28 16:35:36.094 surgut: RADIUS(0000002E): sending
Jun 28 16:35:36.094 surgut: RADIUS/ENCODE(0000002E):Orig. component type = PPoE
Jun 28 16:35:36.094 surgut: RADIUS(0000002E): Config NAS IP: 217.8.zz.zz
Jun 28 16:35:36.094 surgut: RADIUS(0000002E): sending
Jun 28 16:35:36.094 surgut: RADIUS/ENCODE(0000002E):Orig. component type = PPoE
Jun 28 16:35:36.094 surgut: RADIUS(0000002E): Config NAS IP: 217.8.zz.zz
Jun 28 16:35:36.094 surgut: RADIUS(0000002E): sending
Jun 28 16:35:36.094 surgut: RADIUS(0000002E): Send Access-Request to 10.10.2.4:1812 id 1645/137, len 183
Jun 28 16:35:36.094 surgut: RADIUS: authenticator 2E 01 9D 74 40 27 3E 79 - D5 16 21 48 65 6A 3F 4F
Jun 28 16:35:36.094 surgut: RADIUS: User-Name [1] 7 "test1"
Jun 28 16:35:36.094 surgut: RADIUS: User-Password [2] 18 *
Jun 28 16:35:36.094 surgut: RADIUS: Vendor, Cisco [26] 25
Jun 28 16:35:36.094 surgut: RADIUS: ssg-service-info [251] 19 "NPREPAID_INTERNET"
Jun 28 16:35:36.094 surgut: RADIUS: Framed-Protocol [7] 6 PPP [1]
Jun 28 16:35:36.094 surgut: RADIUS: NAS-Port-Type [61] 6 Virtual [5]
Jun 28 16:35:36.094 surgut: RADIUS: Vendor, Cisco [26] 17
Jun 28 16:35:36.094 surgut: RADIUS: cisco-nas-port [2] 11 "1/0/0/304"
Jun 28 16:35:36.094 surgut: RADIUS: NAS-Port [5] 6 0
Jun 28 16:35:36.094 surgut: RADIUS: NAS-Port-Id [87] 11 "1/0/0/304"
Jun 28 16:35:36.094 surgut: RADIUS: Connect-Info [77] 4 "SF"
Jun 28 16:35:36.094 surgut: RADIUS: Vendor, Cisco [26] 41
Jun 28 16:35:36.094 surgut: RADIUS: Cisco AVpair [1] 35 "client-mac-address=0016.d46a.0344"
Jun 28 16:35:36.094 surgut: RADIUS: Service-Type [6] 6 Framed [2]
Jun 28 16:35:36.094 surgut: RADIUS: NAS-IP-Address [4] 6 217.8.zz.zz
Jun 28 16:35:36.094 surgut: RADIUS: Acct-Session-Id [44] 10 "00000095"
Jun 28 16:35:36.094 surgut: RADIUS(0000002E): Send Accounting-Request to 10.10.2.4:1813 id 1646/113, len 205
Jun 28 16:35:36.094 surgut: RADIUS: authenticator B5 AB 9D 97 6A 74 92 64 - 0E 6B E0 CC 1D 85 CF 3A
Jun 28 16:35:36.094 surgut: RADIUS: Acct-Session-Id [44] 10 "00000094"
Jun 28 16:35:36.094 surgut: RADIUS: Framed-Protocol [7] 6 PPP [1]
Jun 28 16:35:36.094 surgut: RADIUS: Framed-IP-Address [8] 6 217.8.xx.xx
Jun 28 16:35:36.094 surgut: RADIUS: User-Name [1] 7 "test1"
Jun 28 16:35
bras01-surgut.hmao.ugra#:36.094 surgut: RADIUS: Vendor, Cisco [26] 35
Jun 28 16:35:36.094 surgut: RADIUS: Cisco AVpair [1] 29 "connect-progress=LAN Ses Up"
Jun 28 16:35:36.094 surgut: RADIUS: Acct-Authentic [45] 6 RADIUS [1]
Jun 28 16:35:36.094 surgut: RADIUS: Acct-Status-Type [40] 6 Start [1]
Jun 28 16:35:36.094 surgut: RADIUS: NAS-Port-Type [61] 6 Virtual [5]
Jun 28 16:35:36.094 surgut: RADIUS: Vendor, Cisco [26] 17
Jun 28 16:35:36.094 surgut: RADIUS: cisco-nas-port [2] 11 "1/0/0/304"
Jun 28 16:35:36.094 surgut: RADIUS: NAS-Port [5] 6 0
Jun 28 16:35:36.094 surgut: RADIUS: NAS-Port-Id [87] 11 "1/0/0/304"
Jun 28 16:35:36.094 surgut: RADIUS: Connect-Info [77] 4 "SF"
Jun 28 16:35:36.098 surgut: RADIUS: Vendor, Cisco [26] 41
Jun 28 16:35:36.098 surgut: RADIUS: Cisco AVpair [1] 35 "client-mac-address=0016.d46a.0344"
Jun 28 16:35:36.098 surgut: RADIUS: Service-Type [6] 6 Framed [2]
Jun 28 16:35:36.098 surgut: RADIUS: NAS-IP-Address [4] 6 217.8.zz.zz
Jun 28 16:35:36.098 surgut: RADIUS: Event-Timestamp [55] 6 1309257336
Jun 28 16:35:36.098 surgut: RADIUS: Acct-Delay-Time [41] 6 0
Jun 28 16:35:36.098 surgut: RADIUS(0000002E): Send Accounting-Request to 10.10.2.4:1813 id 1646/114, len 212
Jun 28 16:35:36.098 surgut: RADIUS: authenticator 2A 90 19 2E 6A 67 9D 94 - E5 64 29 3B 2B 81 F9 9E
Jun 28 16:35:36.098 surgut: RADIUS: Acct-Session-Id [44] 10 "00000096"
Jun 28 16:35:36.098 surgut: RADIUS: Framed-Protocol [7] 6 PPP [1]
Jun 28 16:35:36.098 surgut: RADIUS: Vendor, Cisco [26] 14
Jun 28 16:35:36.098 surgut: RADIUS: ssg-service-info [251] 8 "NL10MT"
Jun 28 16:35:36.098 surgut: RADIUS: Vendor, Cisco [26] 34
Jun 28 16:35:36.098 surgut: RADIUS: Cisco AVpair [1] 28 "parent-session-id=00000094"
Jun 28 16:35:36.098 surgut: RADIUS: Framed-IP-Address [8] 6 217.8.xx.xx
Jun 28 16:35:36.098 surgut: RADIUS: User-Name [1] 7 "test1"
Jun 28 16:35:36.098 surgut: RADIUS: Acct-Status-Type [40] 6 Start [1]
Jun 28 16:35:36.098 surgut: RADIUS: NAS-Port-Type [61] 6 Virtual [5]
Jun 28 16:35:36.098 surgut: RADIUS: Vendor, Cisco [26] 17
Jun 28 16:35:36.098 surgut: RADIUS: cisco-nas-port [2] 11 "1/0/0/304"
Jun 28 16:35:36.098 surgut: RADIUS: NAS-Port [5] 6 0
Jun 28 16:35:36.098 surgut: RADIUS: NAS-Port-Id [87] 11 "1/0/0/304"
Jun 28 16:35:36.098 surgut: RADIUS: Connect-Info [77] 4 "SF"
Jun 28 16:35:36.098 surgut: RADIUS: Vendor, Cisco [26] 41
Jun 28 16:35:36.098 surgut: RADIUS: Cisco AVpair [1] 35 "client-mac-address=0016.d46a.0344"
Jun 28 16:35:36.098 surgut: RADIUS: Service-Type [6] 6 Framed [2]
Jun 28 16:35:36.098 surgut: RADIUS: NAS-IP-Address [4] 6 217.8.zz.zz
Jun 28 16:35:36.098 surgut: RADIUS: Event-Timestamp [55] 6 1309257336
Jun 28 16:35:36.098 surgut: RADIUS: Acct-Delay-Time [41] 6 0
Jun 28 16:35:36.098 surgut: RADIUS: Received from id 1646/113 10.10.2.4:1813, Accounting-response, len 20
Jun 28 16:35:36.098 surgut: RADIUS: authenticator D7 AB 42 54 C8 7B C4 BE - 49 76 1F 93 63 9B 68 BE
Jun 28 16:35:36.098 surgut: RADIUS: Received from id 1646/114 10.10.2.4:1813, Accounting-response, len 20
Jun 28 16:35:36.098 surgut: RADIUS: authenticator 95 B3 F0 F5 AB 0F 24 C0 - 9E 9C CB 43 C0 A7 77 3C
Jun 28 16:35:37.098 surgut: RADIUS: Received from id 1645/137 10.10.2.4:1812, Access-Reject, len 20
Jun 28 16:35:37.098 surgut: RADIUS: authenticator 28 44 22 B1 EF 88 EA 2C - 0D 97 F2 56 63 EC 70 66
Jun 28 16:35:37.098 surgut: RADIUS(0000002E): Received from id 1645/137
Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: already downloaded; sharing
Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [bE0000AD]: client download ok
Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [sVM-to-client-msg:BE0000AD] locked 0->1
Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [PM-Download:BE0000AD] locked 0->1
Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: alloc feature info
Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: is a feature remove
Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [sVM-Feature-Info:561F820C] locked 0->1
Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: populated client
Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [PM-Download:BE0000AD] unlocked 1->0
Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [sVM-to-client-msg:BE0000AD] unlocked 1->0
Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [FM-Bind:2E000088] unlocked 1->0
Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [sVM-Feature-Info:561F820C] unlocked 1->0
Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [PM-Service:439223FC] unlocked 1->0
Jun 28 16:35:37.098 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: [FM-Bind:9A000089] unlocked 1->0
Jun 28 16:35:37.098 surgut: SSS LTERM: ERROR: Invalid session received from SSM
Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: [PM-Info:D11B8C48] unlocked 1->0
Jun 28 16:35:37.098 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: [sM-SIP-Apply:7900008F] unlocked 1->0
Jun 28 16:35:37.098 surgut: SVM [DC00008C/PREPAID_INTERNET]: breaking parent-child lock
Jun 28 16:35:37.098 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: breaking parent-child lock
Jun 28 16:35:37.098 surgut: SVM [7900008F/CHILD/PREPAID_INTERNET]: destroy
Jun 28 16:35:37.102 surgut: SVM [DC00008C/PREPAID_INTERNET]: destroy
bras01-surgut.hmao.ugra#sh sss ses de
Current Subscriber Information: Total sessions 1
--------------------------------------------------
Unique Session ID: 103
Identifier: test1
SIP subscriber access type(s): PPPoE/PPP
Current SIP options: Req Fwding/Req Fwded
Session Up-time: 00:02:38, Last Changed: 00:02:37
Interface: Virtual-Access2.1
Policy information:
Context 43874578: Handle C50000AC
AAA_id 0000002E: Flow_handle 0
Authentication status: authen
Downloaded User profile, excluding services:
addr 217.8.xx.xx
ssg-account-info "AW2MT"
ssg-account-info "AL10MT"
idletime 600 (0x258)
ssg-account-info "APREPAID_INTERNET"
Downloaded User profile, including services:
addr 217.8.xx.xx
ssg-account-info "AW2MT"
ssg-account-info "AL10MT"
idletime 600 (0x258)
ssg-account-info "APREPAID_INTERNET"
accounting-list "ISG"
traffic-class "in access-group name WORLD_IN priority 200"
traffic-class "out access-group name WORLD_OUT priority 210"
traffic-class "in default drop"
traffic-class "out default drop"
ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"
ssg-service-info "IW2MT"
Config history for session (recent to oldest):
Access-type: Web-service-logon Client: SM
Policy event: Apply Config Success (Unapplied) (Service)
Profile name: PREPAID_INTERNET, 3 references
traffic-class "in access-group name NO_TARIF_IN priority 50"
traffic-class "out access-group name NO_TARIF_OUT priority 50"
traffic-class "out default drop"
traffic-class "in default drop"
ssg-service-info "IPREPAID_INTERNET"
ssg-control-info "QV20000000"
Access-type: Web-service-logon Client: SM
Policy event: Apply Config Success (Service)
Profile name: W2MT, 4 references
traffic-class "in access-group name WORLD_IN priority 200"
traffic-class "out access-group name WORLD_OUT priority 210"
traffic-class "in default drop"
traffic-class "out default drop"
ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"
ssg-service-info "IW2MT"
Access-type: Web-service-logon Client: SM
Policy event: Apply Config Success (Service)
Profile name: L10MT, 4 references
ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"
traffic-class "in access-group name LOCAL_IN priority 100"
traffic-class "out access-group name LOCAL_OUT priority 110"
traffic-class "in default drop"
traffic-class "out default drop"
ssg-service-info "IL10MT"
accounting-list "ISG"
Access-type: Web-service-logon Client: SM
Policy event: Apply Config Success (Service)
Profile name: PREPAID_INTERNET, 3 references
traffic-class "in access-group name NO_TARIF_IN priority 50"
traffic-class "out access-group name NO_TARIF_OUT priority 50"
traffic-class "out default drop"
traffic-class "in default drop"
ssg-service-info "IPREPAID_INTERNET"
ssg-control-info "QV20000000"
Access-type: PPP Client: SM
Policy event: Process Config Connecting
Profile name: test1, 2 references
addr 217.8.xx.xx
ssg-account-info "AW2MT"
ssg-account-info "AL10MT"
idletime 600 (0x258)
ssg-account-info "APREPAID_INTERNET"
Active services associated with session:
name "W2MT"
name "L10MT"
Session inbound features:
Traffic classes:
Traffic class session ID: 105
ACL Name: LOCAL_IN, Packets = 151, Bytes = 9110
Traffic class session ID: 106
ACL Name: WORLD_IN, Packets = 10, Bytes = 1526
Default traffic is dropped
Unmatched Packets = 0, Re-classified packets (redirected) = 0
Session outbound features:
Feature: PPP Idle Timeout
Timeout value is 600
Idle time is 00:00:11
Traffic classes:
Traffic class session ID: 105
ACL Name: LOCAL_OUT, Packets = 148, Bytes = 9843
Traffic class session ID: 106
ACL Name: WORLD_OUT, Packets = 2, Bytes = 274
Default traffic is dropped
Unmatched Packets = 0, Re-classified packets (redirected) = 0
Non-datapath features:
Feature: IP Config
Peer IP Address: 217.8.xx.xx (F/F)
Address Pool: [None] (F)
Unnumbered Intf: [None]
Configuration sources associated with this session:
Service: W2MT, Active Time = 00:02:39
Service: L10MT, Active Time = 00:02:39
AAA Service ID = 3690987574
Interface: Virtual-Template10, Active Time = 00:02:39
--------------------------------------------------
Unique Session ID: 106
Identifier:
SIP subscriber access type(s): Traffic-Class
Current SIP options: None
Session Up-time: 00:02:39, Last Changed: 00:02:39
Policy information:
Context 43874110: Handle 250000AF
AAA_id 0000002E: Flow_handle 0
Authentication status: unauthen
Downloaded User profile, including services:
traffic-class "in access-group name WORLD_IN priority 200"
traffic-class "out access-group name WORLD_OUT priority 210"
traffic-class "in default drop"
traffic-class "out default drop"
ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"
ssg-service-info "IW2MT"
Config history for session (recent to oldest):
Access-type: Web-service-logon Client: Service Command-Handler
Policy event: Service-Start (Service)
Profile name: W2MT, 4 references
traffic-class "in access-group name WORLD_IN priority 200"
traffic-class "out access-group name WORLD_OUT priority 210"
traffic-class "in default drop"
traffic-class "out default drop"
ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"
ssg-service-info "IW2MT"
Session inbound features:
Feature: Policing
Upstream Params:
Average rate = 10240000, Normal burst = 512000, Excess burst = 10240000
Config level = Service
Session outbound features:
Feature: Policing
Dnstream Params:
Average rate = 10240000, Normal burst = 512000, Excess burst = 10240000
Config level = Service
Configuration sources associated with this session:
Service: W2MT, Active Time = 00:02:39
--------------------------------------------------
Unique Session ID: 105
Identifier:
SIP subscriber access type(s): Traffic-Class
Current SIP options: None
Session Up-time: 00:02:39, Last Changed: 00:02:39
Policy information:
Context 43874288: Handle A00000AE
AAA_id 0000002E: Flow_handle 2
Authentication status: unauthen
Downloaded User profile, including services:
ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"
traffic-class "in access-group name LOCAL_IN priority 100"
traffic-class "out access-group name LOCAL_OUT priority 110"
traffic-class "in default drop"
traffic-class "out default drop"
ssg-service-info "IL10MT"
accounting-list "ISG"
Config history for session (recent to oldest):
Access-type: Web-service-logon Client: Service Command-Handler
Policy event: Service-Start (Service)
Profile name: L10MT, 4 references
ssg-service-info "QU;10240000;512000;10240000;D;10240000;512000;10240000"
traffic-class "in access-group name LOCAL_IN priority 100"
traffic-class "out access-group name LOCAL_OUT priority 110"
traffic-class "in default drop"
traffic-class "out default drop"
ssg-service-info "IL10MT"
accounting-list "ISG"
Session inbound features:
Feature: Service accounting
Service: L10MT
Method List: ISG
Packets = 151, Bytes = 9110
Feature: Policing
Upstream Params:
Average rate = 10240000, Normal burst = 512000, Excess burst = 10240000
Config level = Service
Session outbound features:
Feature: Service accounting
Service: L10MT
Method List: ISG
Packets = 148, Bytes = 9843
Feature: Policing
Dnstream Params:
Average rate = 10240000, Normal burst = 512000, Excess burst = 10240000
Config level = Service
Configuration sources associated with this session:
Service: L10MT, Active Time = 00:02:39
-
Не активируется сервис с функцией Prepaid на Cisco 10008 PRE3
#sh ver
Cisco IOS Software, 10000 Software (C10K3-P11-M), Version 12.2(31)SB18, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright © 1986-2010 by Cisco Systems, Inc.
Compiled Thu 25-Mar-10 10:59 by debajpal
aaa group server radius group1
server-private 10.10.2.4 auth-port 1812 acct-port 1813 key 7 03560B2D091D791A79080B014642
ip vrf forwarding SF
!
aaa authentication login default local
aaa authentication login local_log local
aaa authentication ppp ISG group group1
aaa authorization template
aaa authorization exec default local
aaa authorization commands 1 default local
aaa authorization commands 15 default local
aaa authorization network ISG group group1
aaa authorization auth-proxy default local group group1
aaa authorization subscriber-service default local group group1
aaa authorization subscriber-service ISG group group1
aaa accounting send stop-record authentication failure vrf default
aaa accounting delay-start all
aaa accounting update periodic 1
aaa accounting network default start-stop group group1
aaa accounting network ISG start-stop group group1
!
aaa attribute list ISG
!
aaa nas port extended
!
!
aaa server radius dynamic-author
client 10.10.2.4 vrf SF server-key 7 055956292E5E165F2E0405165A5C
auth-type any
ignore session-key
ignore server-key
!
subscriber feature prepaid 200M
threshold time 0 seconds
threshold volume 1900000000 bytes
interim-interval 2 minutes
method-list author ISG
method-list accounting ISG
password cisco
interface Virtual-Template10
ip vrf forwarding SF
ip unnumbered Loopback50
peer default ip address pool sfpool
ppp authentication pap chap callin ISG
ppp authorization ISG
ppp accounting ISG
radius-server attribute 44 include-in-access-req vrf SF
radius-server attribute 55 include-in-acct-req
radius-server retransmit 2
radius-server timeout 60
radius-server deadtime 10
radius-server directed-request
radius-server vsa send cisco-nas-port
radius-server vsa send accounting
radius-server vsa send authentication
Сервис с прейпейд загружается с радису, как и два других, которые разделяют трафик на направления, Локально и Глобальное.
Данный сервис не включается, если убрать строку со *, то все три сервиса становятся активными.
Cisco-AVPair := ip:traffic-class=in access-group name NO_TARIF_IN priority 50
Cisco-AVPair := ip:traffic-class=out access-group name NO_TARIF_OUT priority 50
Cisco-AVPair := ip:traffic-class=in default drop
Cisco-AVPair := ip:traffic-class=out default drop
Cisco-Service-Info := IPREPAID_INTERNET
Cisco-Control-Info := QV20000000
*Cisco-AVPair := prepaid-config=200M
-
41 градус, как то подозрительно... можно рассматривать как проблему???
module 7:
module 7 power-output-fail: OK
module 7 outlet temperature: 28C
module 7 inlet temperature: 28C
module 7 device-1 temperature: 41C
module 7 device-2 temperature: 35C
module 7 EARL outlet temperature: 22C
module 7 EARL inlet temperature: 31C
А вот первый модуль вообще 53 показывает.
module 1:
module 1 power-output-fail: OK
module 1 outlet temperature: 53C
module 1 inlet temperature: 28C
-
В недавнем времени произошло странное проишествие выключился и включился модуль 7600-ES20-2X10G.
Возможна ли аппаратная проблема?
Подобное происходит не в первый раз. так же выключался модуль в первом слоте.
Софт следующий.
c7600rsp72043_rp-ADVIPSERVICES-M), Version 12.2(33)SRC6
May 11 09:35:39.220 surgut: %OSPF-5-ADJCHG: Process 10, Nbr 10.19.6.1 on TenGigabitEthernet7/0/1 from FULL to DOWN, Neighbor Down: BFD node down
May 11 09:35:39.224 surgut: %OSPF-5-ADJCHG: Process 10, Nbr 10.40.6.10 on TenGigabitEthernet7/0/0 from FULL to DOWN, Neighbor Down: BFD node down
May 11 09:35:40.084 surgut: %LDP-5-NBRCHG: LDP Neighbor 10.19.6.1:0 (7) is DOWN (Interface not operational)
May 11 09:35:40.084 surgut: %SNMP-5-MODULETRAP: Module 7 [Down] Trap
May 11 09:35:40.088 surgut: %OIR-6-REMCARD: Card removed from slot 7, interfaces disabled
May 11 09:35:40.092 surgut: %SPA_OIR-6-OFFLINECARD: SPA (7600-ES20-2X10G) offline in subslot 7/0
May 11 09:35:40.112 surgut: %SPA_OIR-6-OFFLINECARD: SPA (7600-ES20-2X10G) offline in subslot 7/1
May 11 09:35:40.028 surgut: %OIR-SP-6-PWRFAILURE: Module 7 is being disabled due to power convertor failure 0x0
May 11 09:35:40.076 surgut: %C7600_PWR-SP-4-DISABLED: power to module in slot 7 set off (FRU-power failed)
May 11 09:37:03.326 surgut: %CWAN_RP-6-CARDRELOAD: Module reloaded on slot 7/0
May 11 09:37:03.326 surgut: %OIR-6-INSCARD: Card inserted in slot 7, interfaces administratively shut down
May 11 03:37:04.346: %FABRIC_INTF_ASIC-DFC7-5-FABRICSYNC_DONE: Fabric ASIC 0 Channel 1: Fabric sync done.
May 11 03:37:04.610: %FABRIC_INTF_ASIC-DFC7-5-FABRICSYNC_DONE: Fabric ASIC 1 Channel 1: Fabric sync done.
May 11 09:37:04.866 surgut: %OBFL_ERRMSG-DFC7-5-FILECREATEFAIL: OBFL Message App failed to open/create file disk0:errmsg_cont . Errno = 5
May 11 09:37:11.353 surgut: %DIAG-SP-6-RUN_MINIMUM: Module 7: Running Minimal Diagnostics...
May 11 09:37:11.973 surgut: %DIAG-SP-6-DIAG_OK: Module 7: Passed Online Diagnostics
May 11 09:37:12.401 surgut: %SNMP-5-MODULETRAP: Module 7 [up] Trap
May 11 09:37:12.374 surgut: %SCP-DFC7-5-ONLINE: Module online
May 11 09:37:12.402 surgut: %SPA_OIR-DFC7-6-INSCARD: Card inserted in Subslot 0
May 11 09:37:12.402 surgut: %SPA_OIR-DFC7-6-INSCARD: Card inserted in Subslot 1
May 11 09:37:13.914 surgut: %OIR-SP-6-INSCARD: Card inserted in slot 7, interfaces are now online
May 11 09:37:15.962 surgut: %DIAG-SP-6-RUN_MINIMUM: Module 7/0: Running Minimal Diagnostics...
May 11 09:37:25.461 surgut: %SPA_OIR-6-ONLINECARD: SPA (7600-ES20-2X10G) online in subslot 7/0
May 11 09:37:25.413 surgut: %DIAG-SP-6-DIAG_OK: Module 7/0: Passed Online Diagnostics
May 11 09:37:25.461 surgut: %DIAG-SP-6-RUN_MINIMUM: Module 7/1: Running Minimal Diagnostics...
May 11 09:37:25.473 surgut: %DIAG-SP-6-DIAG_OK: Module 7/1: Passed Online Diagnostics
May 11 09:37:27.304 surgut: %SPA_OIR-6-ONLINECARD: SPA (7600-ES20-2X10G) online in subslot 7/1
May 11 09:37:28.034 surgut: %LINK-DFC7-3-UPDOWN: Interface TenGigabitEthernet7/0/0, changed state to up
May 11 09:37:28.534 surgut: %LINK-DFC7-3-UPDOWN: Interface TenGigabitEthernet7/0/1, changed state to up
May 11 09:37:29.034 surgut: %LINEPROTO-DFC7-5-UPDOWN: Line protocol on Interface TenGigabitEthernet7/0/0, changed state to up
May 11 09:37:29.534 surgut: %LINEPROTO-DFC7-5-UPDOWN: Line protocol on Interface TenGigabitEthernet7/0/1, changed state to up
May 11 09:37:31.312 surgut: %LDP-5-NBRCHG: LDP Neighbor 10.19.6.1:0 (7) is UP
May 11 09:38:10.374 surgut: %OSPF-5-ADJCHG: Process 10, Nbr 10.40.6.10 on TenGigabitEthernet7/0/0 from LOADING to FULL, Loading Done
May 11 09:38:11.270 surgut: %OSPF-5-ADJCHG: Process 10, Nbr 10.19.6.1 on TenGigabitEthernet7/0/1 from LOADING to FULL, Loading Done
-
Опубликовано · Изменено пользователем lemut · Жалоба на ответ
Вопрос про аутсорсинговые ЦОДы, как они организованы, каким образом решены следующие вопросы:
1. Управление ресурсами
2. Выделение ресурусов
3. Управление выделеным сервером
4. Средняя стоимость услуги, среднего по мощности сервера
-
В наличии таких устройств нет. Планируем терменировать около двухсот сессий. Вот интересуемся данным типом желаза.
-
Прошу натравить на ссылки на информацию по теме "Cisco 2800 PPPoE реальное и заявленое кол. сессий."
Может у кого то стоят в продакшене...
-
To alks . Аппаратная ли реализация NAT в juniper
-
Предлагаемый вами варинты перспективны и при переходе на ipv6??
то есть для НАТа IPv4toIPv6
-
Может ли кто то подсказать какое количество сесии вытянет подобный модуль
если делать NAT один к одному (то есть не PAT)
NAME: "module 5", DESCR: "RSP720-3C-GE 2 ports Route Switch Processor 720 Rev. 5.7"
NAME: "msfc sub-module of 5", DESCR: "7600-MSFC4 C7600 MSFC4 Daughterboard Rev. 1.1"
NAME: "switching engine sub-module of 5", DESCR: "7600-PFC3C Policy Feature Card 3 Rev. 1.1"
NAME: "module 6", DESCR: "RSP720-3C-GE 2 ports Route Switch Processor 720 Rev. 5.7"
NAME: "msfc sub-module of 6", DESCR: "7600-MSFC4 C7600 MSFC4 Daughterboard Rev. 1.1"
NAME: "switching engine sub-module of 6", DESCR: "7600-PFC3C Policy Feature Card 3 Rev. 1.1"
-
Спасибо за ответы. Видимо данные железки не заточены под NAT.
-
Господа можно дать просто направление в виде доков на cisco.com, самостоятельный поиск приводит в тупик.
-
Вопрос состоит в том реализован ли NAT аппаратно в Cisco моделях
XR 12404 or Cisco 10008 RP3
ХR планируется для BGP и судя по всему это его основная задача,
а 10008 планируется для BRAS.
Железки планируется купить на долгие времена так что стоит второй вопрос, а что будет
если NAT IPv4 to IPv6 необходимо будет организовать.
Объем трафика 4Гбита/s в 900Кps
-
К сожалению география не позволяет просто погулять по ЦОДам.
А судя по фото пользы много не будет, такого порядка и у нас хватает.
-
Правильные примеры построения СКС в ЦОДе, правильная СКС для узлов агрегации Ethernet.
Под ЦОДом подразумевается стойки с серверами. Узел агрегации - полки с медиаконверторами плюс коммутаторы.
Куда копать?? Может кто может фото предоставить, разумные идеи, ссылки на ресурсы где делятся подобным опытом...
Есть конечно путь идти и наступать на грабли.
-
Добовление по теме, поднял ppptp на cisco 7401 и наблюдается таже ситуация...
скорость на FastEthernet 50 Мбит/c
-
Bидимо пользователь не ходит по локалу.
Вот моя сесия
vpn_7206VXR#sh sss session username lem
Unique Session ID: 3594
Identifier: lem
SIP subscriber access type(s): VPDN/PPP
Current SIP options: Req Fwding/Req Fwded
Session Up-time: 00:01:27, Last Changed: 00:01:27
Interface: Virtual-Access2.328
Policy information:
Authentication status: authen
Active services associated with session:
name "traffic_local"
name "traffic_world"
Session inbound features:
Traffic classes:
Traffic class session ID: 3546
ACL Name: 140, Packets = 43, Bytes = 5286
Traffic class session ID: 3631
ACL Name: 120, Packets = 7141, Bytes = 289816
Default traffic is dropped
Unmatched Packets (dropped) = 0, Re-classified packets (redirected) = 0
Session outbound features:
Traffic classes:
Traffic class session ID: 3546
ACL Name: 150, Packets = 3, Bytes = 342
Traffic class session ID: 3631
ACL Name: 130, Packets = 13959, Bytes = 19431168
Default traffic is dropped
Unmatched Packets (dropped) = 0, Re-classified packets (redirected) = 0
Configuration sources associated with this session:
Service: traffic_local, Active Time = 00:01:27
AAA Service ID = 1722611368
Service: traffic_world, Active Time = 00:01:27
AAA Service ID = 1722617640
Interface: Virtual-Template2, Active Time = 00:01:27
Производительность Cisco 12404 SIP-601
в Активное оборудование Ethernet, IP, MPLS, SDN/NFV...
Опубликовано · Жалоба на ответ
Интересует вопрос реальной производительности Cisco 12404 PRP-2 с двумя 12000-SIP-601 и четырьмя SPA-1X10GE-L-V2. Имеет ли кто либо подобное оборудование. Хотелось бы знать сколько трафика он может через себя пропустить.