湖南广电7750SR-BRAS功能测试手册-xiaohe

合集下载

7750BRAS维护与配置(SR功能篇)

7750BRAS维护与配置(SR功能篇)

7750SR/BRAS维护与配置(SR功能篇)1.设备配置命令说明 (4)1.1.S YSTEM基本配置 (4)1.2.L OG配置 (7)1.3.P ORT配置 (9)1.3.1 上行端口和互联PORT端口配置 (9)1.3.2下联端口配置 (10)1.4.IGP协议配置 (14)1.4.1 OSPF协议配置 (14)1.4.2 ISIS协议配置 (17)1.5.M PLS、LDP协议配置 (19)1.6.设备安全配置(SECURITY) (24)1.6.1 设备访问安全 (24)1.6.2 主CPU 保护 (28)1.7.VPN-BGP配置 (35)1.8.P OLICY配置 (38)1.9.业务配置 (40)1.9.1 IES业务配置 (41)1.9.2二层VPN vpls业务配置 (45)1.9.3三层VPN VPRN业务配置 (48)1.10.SNMP配置 (52)1.11.C FLOWD配置 (53)2.业务运行状态检查命令 (55)2.1查看设备P ORT端口运行状态 (55)2.1.1 查看设备所有Port端口运行状态 (55)2.1.2 查看设备单个Port端口运行状态 (57)2.2查看S ERVICE业务运行状态 (60)2.3检查路由器接口运行状态 (62)2.3.1 查看所有接口状态 (62)2.3.1 查看单个业务的接口状态 (64)2.4查看设备MAC地址表信息 (66)2.4.1 查看所有MAC地址表 (66)2.4.2 查看单个业务的MAC地址表 (69)2.5查看设备路由表信息 (70)2.5.1 查看所有路由表地址表 (70)2.5.2 查看某个业务的路由表 (71)3.故障排除方法说明 (73)3.1光路正常但PORT端口DOWN (73)3.2PING 不通对端地址 (73)3.3ISIS邻接关系无法建立 (73)3.4BGP邻居无法正常建立 (73)3.5BGP表中有路由,但路由没有被放进VPN路由表中 (73)3.6VPN中用户CE设备无法访问远端 (74)3.7VPLS故障分析 (74)3.7.1 按照下列配置做mac-filter (74)3.7.2 在VPLS中应用MAC-FILTER (75)3.8.3 通过分析LOG找出问题 (75)4 删除SERVICE配置步骤 (76)4.1删除单个SAP S ERVICE配置步骤 (76)4.2删除多个SAP S ERVICE配置步骤 (76)1.设备配置命令说明1.1. System基本配置1.chassis-mode 要配置为C,以支持新的feature。

7750BRAS业务开局手册

7750BRAS业务开局手册

7750BRAS业务开局手册1. PPPOE拓扑通常将7750部署在城域网边缘,上联至城域网汇聚/核心路由器,下联通过二层汇聚网或直挂接入层DSLAM/PON设备,运营商典型的组网图如下;PPPOE业务典型拓扑RADIUSACCOUNTING城域网BAS二层汇聚网DSLAM/PONHGW/MODEMHGW/MODEM2. 详细的工作列表分类准备工作工作项获取radius参数工作列表 authentication server IP地址1authentication server 通讯端口 authertication server 通讯密匙 accounting server IP地址 accounting server 通讯端口 accounting server 通讯密匙 DNS参数DNS服务器地址 subscriber ID sub-profile-string radius返回7750私有属性需求sla-profile-string MSAP-serv-id MSAP-profile-string MSAP-interface DHCP server 需求 DHCP配置 dhcp server地址,一般使用system接口 IP pool地址 IP pool配置将DHCP server绑定到system接口 Authenticaton policy Radius accounting policy Sub-ident-policy 策略配置 Sub-profile Sla-profile PPPOE policy 配置工作 MSAP policy Local-user-db 配置物理接口配置VPLS 接口配置配置IES业务并创建对应interface 绑定IP pool 绑定相关策略接入internet 针对地址池创建黑洞路由创建策略,并export到BGP 21) IP地址池配置IP地址池(ip pool)通常配置在BAS本地,认证通过后BAS从IP地址池中选择一个IP地址分配给终端用户,并且生成一条32位掩码的路由,所以在此之前,在BAS必须将IP地址池所在的网段宣告出去,以便终端用户得到IP地址后能够正常通讯。

7750SR配置方法

7750SR配置方法

7750SR路由器配置规范V2.1上海贝尔阿尔卡特股份有限公司互联网事业部二零零六年十一月目录1.概述 (4)2.系统基本配置 (6)2.1.层次化命令结构 (6)2.2.在CLI中获得帮助 (7)2.3.硬件板卡配置 (8)2.4.设备名称配置 (9)2.5.系统时间配置 (9)2.6.NTP配置 (9)2.7.主备卡切换配置 (10)2.8.AAA配置(登录用户) (11)3.端口配置 (13)3.1.Loopback端口配置 (13)3.2.GE端口配置 (13)3.3.POS端口配置 (14)3.4.端口镜像配置 (15)4.安全配置 (18)4.1.ACL配置 (18)4.2.防攻击配置 (18)5.网管配置 (24)5.1.网管地址配置 (24)5.2.TELNET配置 (24)5.3.FTP配置 (25)5.4.SNMP (25)5.5.SYSLOG (26)5.6.配置备份 (27)5.7.SSH配置 (27)Flow备份 (28)6.路由配置 (29)6.1.黑洞路由配置 (29)6.2.静态路由配置 (29)6.3.OSPF配置 (29)6.4.ISIS配置 (33)6.5.BGP配置 (35)7.业务配置 (40)7.1.专线业务配置(IES配置) (40)7.2.MPLS VPN业务配置 (41)7.2.1P路由器配置 (41)7.2.2PE路由器配置(VPRN) (44)7.2.3PE路由器配置(VPLS) (46)8.7750SR常用维护命令 (49)1.概述阿尔卡特7750SR路由器是业内第一个专为高级互联网和虚拟专用网络(VPN)业务而设计和优化的IP/MPLS业务路由器。

阿尔卡特7750SR有三种尺寸可供选择:单槽、7槽和12槽,可提供具有卓越性能和高密度的各种接口。

作为目前业内最具扩展性的路由器平台,阿尔卡特7750SR具有为高效传送基于服务等级协议(SLA)的业务而设计的软件和硬件架构,因此阿尔卡特7750SR不仅仅是强大的互联网路由器,更是一个灵活、强大的业务供应平台。

7750BRAS pppoe配置脚本

7750BRAS pppoe配置脚本

新增端口的pppoe配置:config port 1/1/5端口根据需求更改description "tes" 描述ethernetmode accessno autonegotiateencap-type qinqexitno shutdownexitconfig service ies 3000subscriber-interface "pppoe" 名字根据现网配置为准group-interface "ge-1/1/5" create 端口号根据现场情况变化arp-populatedhcpserver 20.1.1.1指定本接口使用的DHCP servertrusted 保证在dhcp-request中携带gi地址client-applications pppoe 指定使用DHCP用户业务类型 lease-populate 32767 允许分配的用户数no shutdownexitauthentication-policy "auth-pppoe-1" 调用预设置的验证模板 pppoepppoe-policy "pppoe-policy-1" 调用预设置的PPPoE模板 session-limit 32767 session数量限制开到最大 sap-session-limit 32767 session数量限制开到最大 no shutdownexitexitexitexitconfig servicevpls 2011 customer 1 create 为交换机所在接口创建VPLS sap 1/1/5:*.* capture-sap create 接受本端口所有Q-tag,并捕获PPPoE报文 trigger-packet pppoe 配置何种业务触发端口 pppoe-policy "pppoe-policy-1" 调用PPPOE-policy模板 msap-defaultsgroup-interface "ge-1/1/5" 关联到group-interface policy "msap-pppoe" 调用MSAP-policy模板 service 3000 关联到IES号exitauthentication-policy "auth-pppoe-1"exitno shutdownexit注意:蓝色字体必须更换新增地址池配置:config service ies 3000subscriber-interface "pppoe"address10.1.1.1/24 指定新增网段网关exitexitconfig router policy-optionsbeginprefix-list "toospf"prefix 10.1.1.0/24 exact 将新增地址池地址导入OSPF exitcommit 策略生效命令exitconfig router dhcplocal-dhcp-server "pppoe"进入本地DHCP配置,名字根据现网配置为准pool "pppoe_1" create 名字根据现网配置为准subnet 10.1.1.0/24 create 在地址池里添加1个网段 address-range 10.1.1.2 10.1.1.254指定可分配的地址范围 exitexitexit注意:蓝色字体必须更换添加网管命令:config port 1/1/6端口根据需求更改description "tes" 描述ethernetmode accessno autonegotiate 根据现场情况修改encap-type dot1qexitno shutdownexitconfig service ies 5000interface "ge-1/1/6:10" createaddress 172.29.7.254/24 配置网管地址sap 1/1/6:10 createexitexitexitconfig router policy-optionsbeginprefix-list "toospf"prefix 172.29.7.0/24exitcommit 策略生效命令exit基本查看命令:1,检查IP pool 的地址占用情况show router dhcp local-dhcp-server pppoe summary2、测试7750BRAS与radius互通性命令tools perform security authentication-server-check server-address 221.6.4.135 port 1645 user-name 0515******** password 123456 secret jstx显示结果为成功或者超时3、常用show 命令show subscriber-mgmt authentication "auth-pppoe-1"show subscriber-mgmt radius-accounting-policy "acc-pppoe-1"show service active-subscribers summaryshow service active-subscribers detailshow service active-subscribers subscriber "0515********" detailshow service id 3000 pppoe session (后面可选择mac xxx、ip-address xxx、detail)show service id 3000 subscriber-hostsshow service id 3000 pppoe session interface "ge-1/2/5" statistics4、清除pppoe用户session命令clear service id 3000 pppoe session allclear service id 3000 pppoe session interface ge-1/1/5 (后面可选mac xxx、ip-address xxx)clear service id 3000 pppoe session sap 1/1/5:100.50 (后面可选mac xxx、ip-address xxx)。

7750扭矩测试仪显示器说明

7750扭矩测试仪显示器说明

扭矩测试仪显示器7750使用说明
显示器7750(图1)设计紧凑,功能多样,适用于在多种场合与扭矩传感器搭配使用。

按键功能:
Off :关机
On :开机
Unit :切换单位(包括N m , ft.lb , in.lb )
Tare :清零
Clear :清除记录的扭矩值
Mode :模式切换(track-跟踪;peak hold-峰值保持;first
peak-第一峰值,适用于手动模式)
连接方式:
显示器7750的底部有安装柄,通过连接座固定在扭矩测试仪
支架上。

左侧第一个孔为电源输入,接电源适配器输
出,左侧其余为数据输入孔,通过数据电缆(图2)
连接扭矩传感器。

使用方法:
按照以上描述连接好所有元件后按 on 键开机,屏幕
首先显示产品编号和软件版本,然后设备自动进入测
量模式。

通过 Mode 和Unit 键选择所需测量模式和单位之后把扭矩扳
手装入扭矩测试仪,旋转扭矩测试仪摇把,至发扭矩扳手到达预设扭矩
发出脱锁响声或发生变形时立即停止旋转,此时屏幕显示值即为扭矩传感器检测到的测量值。

7750 SR OS 基本系统配置指南.pdf_1701713446.1597066说明书

7750 SR OS 基本系统配置指南.pdf_1701713446.1597066说明书

Configuration CommandsFile System CommandsshutdownSyntax[no] shutdown [active] [standby][no] shutdown [cflash-id]Context fileDescription This command shuts down (unmounts) the specified CPM(s).Use the no shutdown [active] [standby] command to enable one or both CPM.Use the no shutdown [cflash-id] command to enable a compact flash (cf1:, cf2:, or cf3:) on the SF/CPMcard. The no shutdown command can be issued for a specific slot when no compact flash is present. Whena flash card is installed in the slot, the card will be activated upon detection.In redundant systems, use the no shutdown command on cf3: on both SF/CPMs in order to facilitate syn-chronization. See the synchronize command on page 408.NOTE: The shutdown command must be issued prior to removing a flash card. If no parameters are speci-fied, then the drive referred to by the current working directory will be shut down.LED Status Indicators — The following states are possible for the compact flash:Operational:If a compact flash is present in a drive and operational (no shutdown), the respective LED is lit green.The LED flickers when the compact flash is accessed.NOTE: Do not remove the compact flash during a read/write operation.State:admin = up, operational = up, equippedFlash defective:If a compact flash is defective, the respective LED blinks amber to reflect the error condition and a trapis raised.State:admin = up/down, operational = faulty, equipped = noFlash drive shut down:When the compact flash drive is shut down and a compact flash present, the LED is lit amber. In thisstate, the compact flash can be ejected.State:admin = down, operational = down, equipped = yesNo compact flash present, drive shut down:If no compact flash is present and the drive is shut down the LED is unlit.State:admin = down, operational = down, equipped = noNo compact flash present, drive enabled:If no compact flash is present and the drive is not shut down the LED is unlit.State:admin = up, operational = down, equipped = noEjecting a compact flash:The compact flash drive should be shut down before ejecting a compact flash card. The LED shouldturn to solid (not blinking) amber. This is the only mode to safely remove the flash card.If a compact flash drive is not shut down before a compact flash is ejected, the LED blinks amber forapproximately 5 seconds before shutting off.State:admin = down, operational = down, equipped = yesThe shutdown or no shutdown state is not saved in the configuration file. Following a reboot all compactflash drives are in their default state.Default no shutdown — compact flash device administratively enabledParameters cflash-id — Enter the compact flash slot ID to be shut down or enabled. When a specific cflash-id is speci-fied, then that drive is shutdown. If no cflash-id is specified, the drive referred to by the current workingdirectory is assumed. If a slot number is not specified, then the active CPM is assumed.Default The current compact flash deviceValues cf1:, cf1-A:, cf1-B:, cf2:, cf2-A:, cf2-B:, cf3:, cf3-A:, cf3-B:active — If active is selected, then all drives on the active CPM are shutdown or enabled.standby — If standby is selected, then all drives on the standby CPM are shutdown or enabled.Note: When both active and standby keywords are specified, then all drives on both CPM are shut-down.File CommandsattribSyntax attrib [+r | -r]file-urlattribContext fileDescription This command sets or clears/resets the read-only attribute for a file in the local file system. To list all files and their current attributes enter attrib or attrib x where x is either the filename or a wildcard (*).When an attrib command is entered to list a specific file or all files in a directory, the file’s attributes are dis-played with or without an “R” preceding the filename. The “R” implies that the +r is set and that the file isread-only. Files without the “R” designation implies that the -r is set and that the file is read-write-all. Forexample:ALA-1>file cf3:\ # attribcf3:\bootlog.txtcf3:\bof.cfgcf3:\boot.ldrcf3:\sr1.cfgcf3:\testcf3:\bootlog_prev.txtcf3:\BOF.SAVParameters file-url — The URL for the local file.Values local-url | remote-url:255 chars maxlocal-url:[cflash-id/][file-path]remote-url[ftp://login:pswd@remote-locn/][file-path]cf1:,cf1-A:,cf1-B:,cf2:,cf2-A:,cf2-B:,cf3:,cf3-A:,cf3-B:+r — Sets the read-only attribute on the specified file.-r — Clears/resets the read-only attribute on the specified file.cdSyntax cd [file-url]Context fileDescription This command displays or changes the current working directory in the local file system.Parameters file-url — Syntax: [local-url | remote-url (255 chars max)local-url - [cflash-id/][file-path]remote-url - [{ftp://|tftp://}login:pswd@remote-locn/][file-path]cf1,cf1-A:,cf1-B:,cf2:,cf2-A:,cf2-B:,cf3:,cf3-A:,cf3-B:<none> — Displays the current working directory... — Signifies the parent directory. This can be used in place of an actual directory name in a directory-url.directory-url — The destination directory.copySyntax copy source-file-url dest-file-url [force]Context fileDescription This command copies a file or all files in a directory from a source URL to a destination URL. At least one of the specified URLs should be a local URL. The optional wildcard (*) can be used to copy multiple filesthat share a common (partial) prefix and/or (partial) suffix.When a file is copied to a destination with the same file name, the original file is overwritten by the new filespecified in the operation. The following prompt appears if the destination file already exists:“Overwrite destination file (y/n)?”For example:To copy a file named srcfile in a directory called test on cf2 in slot B to a filecalled destfile in a directory called production on cf1 in slot A, the syntax is:sr1>file cf2:\ # copy cf2-B/test/srcfile cf1-A/production/destfileTo FTP a file named 121201.cfg in directory mydir stored on cf1 in slot A to a networkFTP server with IP address 131.12.31.79 in a directory called backup with a destinationfile name of 121201.cfg, the FTP syntax is:copy cf1-A/mydir/121201.cfg 131.12.31.79/backup/121201.cfgParameters source-file-url — The location of the source file or directory to be copied.dest-file-url — The destination of the copied file or directory.force — Forces an immediate copy of the specified file(s).file copy force executes the command without displaying a user prompt message.deleteSyntax delete file-url[force]Context fileDescription This command deletes the specified file.The optional wildcard “*” can be used to delete multiple files that share a common (partial) prefix and/or(partial) suffix. When the wildcard is entered, the following prompt displays for each file that matches thewildcard:“Delete file <filename> (y/n)?”file-url — The file name to delete.Values local-url | remote-url:255 chars maxlocal-url:[cflash-id/][file-path]remote-url[ftp://login:pswd@remote-locn/][file-path]cf1:,cf1-A:,cf1-B:,cf2:,cf2-A:,cf2-B:,cf3:,cf3-A:,cf3-B:force — Forces an immediate deletion of the specified file(s).file delete*force deletes all the wildcard matching files without displaying a user prompt message.dirSyntax dir [file-url] [sort-order { d | n | s}] [reverse]Context fileDescription This command displays a list of files and subdirectories in a directory.Parameters file-url — The path or directory name.Use the file-url with the optional wildcard (*) to reduce the number of files to list.Default Lists all files in the present working directorysort-order { d | n | s — Specifies the sort order.Values d — daten — names — sizereverse — Specifies to reverse the sort order.Sample OutputA:cses-E12>file cf3:\ # dir- dir [<file-url>] [sort-order { d | n | s}] [reverse]<file-url> : <local-url>|<remote-url>local-url - [<cflash-id>/][<file-path>]200 chars max, including cflash-iddirectory length 99 chars max eachremote-url - [ftp://<login>:<pswd>@<remote-locn>/][<file-path>]255 chars maxdirectory length 99 chars max eachremote-locn - [ <hostname> | <ipv4-address> |"["<ipv6-address>"]" ]ipv4-address - a.b.c.dipv6-address - x:x:x:x:x:x:x:x[-interface]x:x:x:x:x:x:d.d.d.d[-interface]x - [0..FFFF]Hd - [0..255]Dinterface - 32 chars max, for linklocal addressescflash-id - cf1:|cf1-A:|cf1-B:|cf2:|cf2-A:|cf2-B:|cf3:|cf3-A:|cf3-B:< d | n | s> : Sort order: d - date, n - name, s - size<reverse> : keyword - reverse orderA:cses-E12>file cf3:\ # dirfileSyntax fileContext rootDescription The context to enter and perform file system operations. When entering the file context, the prompt changes to reflect the present working directory. Navigating the file system with the cd.. command results in achanged prompt.The exit all command leaves the file system/file operation context and returns to the <ROOT> CLI context.The state of the present working directory is maintained for the CLI session. Entering the file commandreturns the cursor to the working directory where the exit command was issued.formatSyntax format cflash cflash-id [reliable]Context root>fileDescription This command formats the compact flash. The compact flash must be shutdown before starting the format. Parameters cflash-id — The compact flash type.cf1:, cf1-A:,cf1-B:,cf2:,cf2-A:,cf2-B:,cf3:,cf3-A:,cf3-B:reliable — Enables the reliance file system and dis-ables the default DOS file system. This option is valid only on compact flashes 1 and 2.mdSyntax md file-urlContext fileDescription This command creates a new directory in a file system.Directories can only be created one level at a time.Parameters file-url — The directory name to be created.Values local-url | remote-url:255 chars maxlocal-url:[cflash-id/][file-path]remote-url[ftp://login:pswd@remote-locn/][file-path]cf1:, cf1-A:,cf1-B:,cf2:,cf2-A:,cf2-B:,cf3:,cf3-A:,cf3-B:moveSyntax move old-file-url new-file-url [force]Context fileDescription This command moves a local file, system file, or a directory. If the target already exists, the command fails and an error message displays.The following prompt appears if the destination file already exists:“Overwrite destination file (y/n)?”Parameters old-file-url — The file or directory to be moved.Values local-url | remote-url:255 chars maxlocal-url:[cflash-id/][file-path]remote-url[ftp://login:pswd@remote-locn/][file-path]cf1:, cf1-A:,cf1-B:,cf2:,cf2-A:,cf2-B:,cf3:,cf3-A:,cf3-B:new-file-url — The new destination to place the old-file-url.Values local-url | remote-url:255 chars maxlocal-url:[cflash-id/][file-path]remote-url[ftp://login:pswd@remote-locn/][file-path]cf1:, cf1-A:,cf1-B:,cf2:,cf2-A:,cf2-B:,cf3:,cf3-A:,cf3-B:force — Forces an immediate move of the specified file(s).file move force executes the command without displaying a user prompt message.rdSyntax rd file-url rfrd file-url [force]Context fileDescription The rd command is used to delete a directory.If a directory has files and no sub-directories, the force option must be used to force delete the directory andfiles it contains.If a directory has sub-directories, then the force option will fail and the rf parameter should be used insteadto force delete that directory including the sub-directories.Example:A:nE1>file cf1:\ # rd alcateltestAre you sure (y/n)? yDeleting directory cf1:\alcateltest ..MINOR: CLI Cannot delete cf1:\alcateltest.A:nE1>file cf1:\ # rd alcateltest forceDeleting directory cf1:\alcateltest .MINOR: CLI Cannot delete cf1:\alcateltest.A:nE1>file cf1:\ # rd hussein rfDeleting all subdirectories and files in specified directory. y/n ?yDeleting directory cf1:\hussein\hussein1 ..OKDeleting directory cf1:\alcateltest .OKParameters file-url — The directory to be removed.local-url | remote-url:255 chars maxlocal-url:[cflash-id/][file-path]remote-url[ftp://login:pswd@remote-locn/][file-path]cf1:, cf1-A:,cf1-B:,cf2:,cf2-A:,cf2-B:,cf3:,cf3-A:,cf3-B:rf — The parameter forces a recursive delete.force — Forces an immediate deletion of the specified directory.For example, rd file-url force executes the command without displaying a user prompt message.repairSyntax repair [cflash-id]Context fileDescription This command checks a compact flash device for errors and repairs any errors found.Parameters cflash-id — Specify the compact flash slot ID to be shut down or enabled. When a specific cflash-id is spec-ified, then that drive is shutdown. If no cflash-id is specified, the drive referred to by the current work-ing directory is assumed. If a slot number is not specified, then the active SF/CPMCFM is assumed.Default The current compact flash deviceValues cf1:, cf1-A:, cf1-B:, cf2:, cf2-A:, cf2-B:, cf3:, cf3-A:, cf3-B:scpSyntax scp local-file-url destination-file-url [router router-instance] [force]Context fileDescription This command copies a local file to a remote host file system. It uses ssh for data transfer, and uses the same authentication and provides the same security as ssh. The following prompt appears:“Are you sure (y/n)?” The destination must specify a user and a host.Parameters local-file-url — The local source file or directory.Values[cflash-id/][file-path]: Up to 256 characters.destination-file-url — The destination file.Values user@hostname:destination-fileuser — The SSH user.host — The remote host IP address of DNS name.file-path — The destination path.router-instance — Specify the router name or service ID.Values router-name: Base , managementservice-id: 1 — 2147483647Default Baseforce — Forces an immediate copy of the specified file.file scp local-file-url destination-file-url[router] force executes the command without displaying auser prompt message.typeSyntax type file-urlContext fileDescription Displays the contents of a text file.Parameters file-url — The file contents to display.Values file-url<local-url>|<remote-url>local-url [<cflash-id>/][<file-path>]200 chars max, including cflash-iddirectory length 99 chars max eachremote-url[{ftp://|tftp://}<login>:<pswd>@<remote-locn>/][<file-path>] 255 chars maxdirectory length 99 chars max eachremote-locn [ <hostname> | <ipv4-address> |<ipv6-address> ]ipv4-address a.b.c.dipv6-address x:x:x:x:x:x:x:x[-interface]x:x:x:x:x:x:d.d.d.d[-interface]x - [0..FFFF]Hd - [0..255]Dinterface - 32 chars max, for linklocal addressescflash-id cf1:, cf1-A:, cf1-B:versionSyntax version file-url [check]Context fileDescription This command displays the version of an SR OS *.tim file.Parameters file-url — The file name of the target file.Values local-url | remote-url:255 characters maximumlocal-url:[cflash-id/][file-path]remote-url: [{ftp://|tftp://}login:pswd@remote-locn/][file-path]cflash-id:cf1:, cf1-A:, cf1-B:check — Validates the .tim file.Sample OutputA:Redundancy>filecf3:\#versionftp://test:************.xxx.xx/usr/global/images/6.1/R4/cpm.timTiMOS-C-6.1.R4 for 7750Thu Oct 30 14:21:09 PDT 2008 by builder in /rel6.1/b1/R4/panos/mainA:Redundancy>filecf3:\#versioncheckftp://test:************.xxx.xx/usr/global/images/6.1/R4/cpm.timTiMOS-C-6.1.R4 for 7750Thu Oct 30 14:21:09 PDT 2008 by builder in /rel6.1/b1/R4/panos/mainValidation successfulA:Redundancy>file cf3:\ #viSyntax vi local-urlContext fileDescription Edit files using the vi editor. Refer to VI Editor on page 45.Parameters local-url — Specifies the local source file or directory.Values[cflash-id>/]file-pathcflash-id: cf1:, cf2:, cf3:。

7750BRAS业务PPPOE开局配置手册

7750BRAS业务PPPOE开局配置手册

未经公司书面授权,任何人不得擅自传播、复制、交流与使用本文档的部分或全部内容。

A l l r i g h t s r e s e r v e d . P a s s i n g o n a n d c o p y i n g o f t h i s d o c u m e n t , u s e a n d c o m m u n i c a t i o n o f i t s c o n t e n t s n o t p e r m i t t e d w i t h o u t a u t h o r i z a t i o n f r o m A l c a t e l S h a n g h a iB e l l .未经公司书面授权,任何人不得擅自传播、复制、交流与使用本文档的部分或全部内容。

A l l r i g h t s r e s e r v e d . P a s s i n g o n a n d c o p y i n g o f t h i s d o c u m e n t , u s e a n d c o m m u n i c a t i o n o f i t s c o n t e n t s n o t p e r m i t t e d w i t h o u t a u t h o r i z a t i o n f r o m A l c a t e l S h a n g h a iB e l l .未经公司书面授权,任何人不得擅自传播、复制、交流与使用本文档的部分或全部内容。

A l l r i g h t s r e s e r v e d . P a s s i n g o n a n d c o p y i n g o f t h i s d o c u m e n t , u s ea n d c o m m u n i c a t i o n o f i t s c o n t e n t s n o t p e r m i t t e d w i t h o u t a u t h o r i z a t i o n f r o m A l c a t e l S h a n g h a i B e l l .未经公司书面授权,任何人不得擅自传播、复制、交流与使用本文档的部分或全部内容。

7750SR-BRAS业务配置手册

7750SR-BRAS业务配置手册

7750SR BRAS业务配置手册上海贝尔股份有限公司广东分公司2009-6-4林常键目录PPPOE业务概述 (3)BRAS业务的硬件需求 (3)静态VLAN方式的PPPOE业务流程 (3)静态VLAN方式的PPPOE业务配置流程 (5)动态VLAN方式的PPPOE业务流程 (9)动态VLAN方式的PPPOE业务配置流程 (10)动态VLAN方式的L2TP业务流程 (15)动态VLAN方式的L2TP业务配置流程 (17)静态VLAN方式接入的PPPOE业务debug信息 (21)动态VLAN方式接入的PPPOE业务debug信息 (21)动态VLAN方式接入的L2TP业务debug信息 (21)附录:7750SR Release7.0 Radius 属性 (21)PPPOE业务概述7750SR在6.0版本开始正式支持PPPOE业务,6.1版本添了Radius认证PPPOE用户功能,7.0版本将PPPOE与L2TP业务关联,7750SR可以支持L2TPv2的LAC功能。

PPPOE业务可以在7750SR的IES、VPRN三层业务上实现,用户可以是静态VLAN配置的方式接入,也可以通过msap实现是动态VLAN配置的方式接入。

静态VLAN相对配置而言会更为繁锁,适用于少量VLAN的配置,动态VLAN配置的方式适用于per user per vlan的方式下接入大量PPPOE用户。

对于PPPOE业务可以在Null、Dot1q和 QinQ封装下均支持。

L2TP业务可以在7750SR的PPPOE拔号接入条件下为企业远端用户提供从用户终端到用户路由器的二层VPN隧道业务,其典型组网拓扑如下:BRAS业务的硬件需求7750SR路由器的PPPOE业务将在IOM2-20G和IOM3-XP上支持。

7750SR路由器的L2TP业务将需要有IOM3-XP为作L2TP业务出接口。

静态VLAN方式的PPPOE业务流程1、PPPOE客户端通过PPPOE拔号程序发送PADI报文来发现二层网络内的PPPOE-Server2、二层以太网内的PPPOE-Server收到PADI报文后回应PADO报文。

  1. 1、下载文档前请自行甄别文档内容的完整性,平台不提供额外的编辑、内容补充、找答案等附加服务。
  2. 2、"仅部分预览"的文档,不可在线预览部分如存在完整性等问题,可反馈申请退款(可完整预览的文档不适用该条件!)。
  3. 3、如文档侵犯您的权益,请联系客服反馈,我们会尽快为您处理(人工客服工作时间:9:00-18:30)。

1 测试环境1.1 设备信息上海贝尔7750SR 6.1R6凌亚科技RADIUS Server V1.3 1.2 链路信息2 测试案例2.1 用户正常拨号测试步骤:1. 用户通过测试机器PPPOE拨号。

2.BAS向RADIUS Server发起认证请求,RADIUS Server响应认证请求报文。

3.BAS向用户授权,并向RADIUS Server 发起计费开始报文。

(1)Local-DCHP配置//配置router Interfacerouterinterface "dhcp"address 220.249.143.206/32loopbacklocal-dhcp-server "server-1"//配置dhcp 地址池routerdhcplocal-dhcp-server "server-1" createuse-gi-addresspool "pool-2" createoptionsdns-server 58.20.127.170exitsubnet 10.240.5.0/24 createaddress-range 10.240.5.10 10.240.5.100 exitexitno shutdownexitexitexit(2)Radius配置//配置router Interfaceinterface "to-radius"address 192.168.0.34/30port 1/2/2exit//配置认证模板subscriber-mgmtauthentication-policy "knock-door" createdescription "RADIUS policy"//配置radius server属性,IP及Keyradius-authentication-serversource-address 192.168.0.34server 1 address 172.16.1.2 secret "/ND.T9I/ID3lmtEMVxSCuE" hash2exitexitexit//配置PPPoE报文属性,报文公共及扩展属性user-name-format circuit-idaccept-authorization-changepppoe-access-method pap-chapinclude-radius-attributecircuit-idremote-idnas-port-idnas-identifierpppoe-service-namemac-addressexitexit报文属性可参考数据字典://配置account server属性,IP及Keyradius-accounting-policy "GiveMeMoney"radius-accounting-serversource-address 192.168.0.34server 1 address 172.16.1.2 secret "/ND.T9I/ID3lmtEMVxSCuE" hash2exitexit//配置account server属性,报文公共及扩展属性radius-accounting-policy "GiveMeMoney" createupdate-interval 10include-radius-attributeframed-ip-addrframed-ip-netmasksubscriber-idcircuit-idremote-idnas-port-idnas-identifiersub-profilesla-profileexitsession-id-format numberuse-std-acct-attributes(3)Subscriber-mgmt用户模板配置//配置sub-profile模板,配合用户QoS属性下发sub-profile "ipd" createingress-scheduler-policy "upstream"exitegress-scheduler-policy "downstream"exitradius-accounting-policy "GiveMeMoney"sla-profile-mapuse-direct-map-as-defaultentry key "default" sla-profile "default"exitexit//配置sla-profile模板,配合sap Qos拥塞管理 sla-profile "ipd" createingressqos 10 multipoint-sharedexitexitegressqos 20exitexitexit//配置sub-ident-policy模板,配合用户QoS属性下发sub-ident-policy "sub_ident_all" createsub-profile-mapuse-direct-map-as-defaultexitsla-profile-mapuse-direct-map-as-defaultexitexit(4)QoS模板配置//sub-profile/sla-profile模板,关联的qos模板qos//配置QoS下行预留带宽scheduler-policy "downstream" create tier 1scheduler "downstream" create rate 100000 cir 100000exitexitexit//配置QoS上行预留带宽scheduler-policy "upstream" createtier 1scheduler "upstream" createrate 512 cir 512exitexitexit//配置ingress Qos策略sap-ingress 10 createqueue 1 createparent "upstream"rate 500 cir 500exitqueue 11 multipoint createrate 10 cir 10exitexit//配置egress Qos策略sap-egress 20 createqueue 1 createparent "downstream"exitexitexit(5)PPPoE模板配置//配置IES接口及IPies 100 customer 100 createsubscriber-interface "test" createdescription "Routed CO"address 10.240.5.1/24//配置group-interface接口group-interface "pppoe-radius" create arp-populate//指定本地DHCP及下发属性dhcpserver 220.249.143.206trustedlease-populate 32767gi-address 10.240.5.1client-applications dhcp pppoeno shutdownexit//指定关联的认证属性authentication-policy "knock-door"//用户下线检测host-connectivity-verify interval 1 action remove//PPPoE client接口配置:VLAN 100 sap 1/1/8:100 createsub-sla-mgmt//关联subscriber-mgt属性 def-sub-id string "test"def-sub-profile "ipd"def-sla-profile "ipd"sub-ident-policy"sub_ident_all"multi-sub-sap 200no shutdownexitexit//配置pppoe属性pppoesession-limit 32767sap-session-limit 32500no shutdownexitexit2.2 用户正常断线测试步骤:用户通过PPPoE拨号连接成功后,正常断开拨号连接,BAS向RADIUS发起计费结束报文,RADIUS计费并生成上网记录。

(1)配置Debug//配置debug 观察认证及计费消息show debugdebugserviceid 100pppoepacketmode dropped-onlydetail-level mediumdiscoverypppdhcp-clientexitexitexitexitradius detailexit2.3 用户异常断线流程测试步骤:1. 用户通过测试机器登录后等待10秒后直接断开网线。

2.BAS向RADIUS Server发起计费结束报文。

3.RADIUS Server计费并生成上网记录。

(1)配置pppoe-policy//配置pppoe-policy,设置检测时长pppoe-policy "test" createkeepalive 10 hold-up-multiplier 3exit//在pppoe属性中应用pppoepppoe-policy "test"(2)配置后,异常掉线用户在20内可重新拨号上网。

2.4 会话超时断线流程测试步骤:1. 用户通过测试机器PPPOE拨号成功。

2.180秒后BAS迫使用户下线,并向RADIUS Server发送计费结束报文,RADIUS Server计费并生成上网记录。

(1)由Radius下发属性控制。

radius下发session timeout 属性2.5 计费开始、结束流程测试步骤:1. BAS关闭或手工发起Accounting-Off报文,RADIUS Server收到计费结束报文,下线所有在线用户,并生成上网记录。

相关文档
最新文档