Beruflich Dokumente
Kultur Dokumente
03
Nokia Siemens Networks Flexi ISN, Rel.
4.0,
Operating Documentation, v. 4
Access Points in Nokia Siemens
Networks Flexi ISN
DN04134496
Issue 6-3 en
The information in this document is subject to change without notice and describes only the
product defined in the introduction of this documentation. This documentation is intended for the
use of Nokia Siemens Networks customers only for the purposes of the agreement under which
the document is submitted, and no part of it may be used, reproduced, modified or transmitted
in any form or means without the prior written permission of Nokia Siemens Networks. The
documentation has been prepared to be used by professional and properly trained personnel,
and the customer assumes full responsibility when using it. Nokia Siemens Networks welcomes
customer comments as part of the process of continuous development and improvement of the
documentation.
The information or statements given in this documentation concerning the suitability, capacity,
or performance of the mentioned hardware or software products are given "as is" and all liability
arising in connection with such hardware or software products shall be defined conclusively and
finally in a separate agreement between Nokia Siemens Networks and the customer. However,
Nokia Siemens Networks has made all reasonable efforts to ensure that the instructions
contained in the document are adequate and free of material errors and omissions. Nokia
Siemens Networks will, if deemed necessary by Nokia Siemens Networks, explain issues which
may not be covered by the document.
Nokia Siemens Networks will correct errors in this documentation as soon as possible. IN NO
EVENT WILL Nokia Siemens Networks BE LIABLE FOR ERRORS IN THIS DOCUMENTATION OR FOR ANY DAMAGES, INCLUDING BUT NOT LIMITED TO SPECIAL, DIRECT, INDIRECT, INCIDENTAL OR CONSEQUENTIAL OR ANY LOSSES, SUCH AS BUT NOT LIMITED
TO LOSS OF PROFIT, REVENUE, BUSINESS INTERRUPTION, BUSINESS OPPORTUNITY
OR DATA,THAT MAY ARISE FROM THE USE OF THIS DOCUMENT OR THE INFORMATION
IN IT.
This documentation and the product it describes are considered protected by copyrights and
other intellectual property rights according to the applicable laws.
The wave logo is a trademark of Nokia Siemens Networks Oy. Nokia is a registered trademark
of Nokia Corporation. Siemens is a registered trademark of Siemens AG.
Other product names mentioned in this document may be trademarks of their respective
owners, and they are mentioned for identification purposes only.
Copyright Nokia Siemens Networks 2010. All rights reserved
Id:0900d8058071050b
DN04134496
Issue 6-3 en
Table of Contents
This document has 62 pages.
DN04134496
Issue 6-3 en
1
1.1
1.2
1.3
1.4
1.5
1.6
1.7
1.8
1.9
1.10
2
2.1
2.2
2.2.1
2.2.2
2.2.3
2.2.4
2.3
2.4
2.5
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.6
2.6.1
2.6.2
2.6.3
2.7
2.7.1
13
13
13
13
14
14
15
15
15
16
16
17
17
18
18
18
18
19
19
19
19
3
3.1
3.2
3.3
3.4
3.5
3.6
3.7
3.8
3.9
3.10
21
21
26
26
28
29
35
37
38
38
39
Id:0900d8058071050b
3.11
3.12
3.13
3.14
3.15
3.16
3.17
3.18
4
4.1
4.2
4.3
4.4
4.5
4.6
4.7
4.8
4.9
4.10
5
5.1
5.2
5.3
5.4
Abbreviations . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 61
Id:0900d8058071050b
DN04134496
Issue 6-3 en
List of Figures
Figure 1
Figure 2
DN04134496
Issue 6-3 en
Id:0900d8058071050b
List of Tables
Table 1
Id:0900d8058071050b
DN04134496
Issue 6-3 en
Section Licensing and access points has been updated with information about the
Diameter Policy Control license.
Section Configuring AP IPv4 Roaming Profile charging options has been updated.
A Note has been added in Section Configuring AP IPv4 authentication and address allocation methods.
1.2
1.3
DN04134496
Issue 6-3 en
Id:0900d805807104e2
Section Configuring AP IPv4 authentication and address allocation methods has been
updated with the addition of the Use GTP Information Enrichment drop-down list.
Section Defining RADIUS profiles has been updated with the addition of 3GPP, server
optional option for the Account Server Operation parameter.
Sections Configuring AP IPv4 charging options and Configuring AP IPv6 charging
options have been updated with new information about disabling CDRs for Flat-rate
Users.
1.4
1.5
Id:0900d805807104e2
DN04134496
Issue 6-3 en
Changes in documentation
Section Creating IPv4 access points has been updated with the above-mentioned
content change.
Section Licensing and access points has been updated with the new license.
Section Configuring AP IPv4 authentication and address allocation methods: the values
for the User Authentication Method parameter have been updated.
Sections Configuring AP IPv4 limitations and Configuring AP IPv6 limitations: instructions have been added for defining the IP address quarantine time.
Section Configuring AP IPv4 security: instructions have been added for the new IP
Spoofing Prevention parameter.
Configuring AP IPv4 charging options and Configuring AP IPv6 charging options:
instructions have been added for the new Overbilling Protection parameter.
A new section has been added: Defining RADIUS profiles.
The following section has been removed: Configuring RADIUS switch-over time (the
instructions for this are now included in Section Defining RADIUS profiles.
Section Creating IPv4 access points: the instructions for defining the user equipment IP
addresses has been updated.
Section Configuring AP IPv4 RADIUS interfaces: additional information has been added
related to RADIUS accounting servers 3-7.
1.6
Changes in documentation
Section Access point types: the descriptions concerning Generic Routing Encapsulation
(GRE) and IP over IP have been modified.
Section Network address translation (NAT): the information about disabling the NAT
functionality has been updated.
The instructions in the following sections have been updated with the above-listed
parameter changes:
The document has also been updated to reflect the layout changes in the Voyager interface.
DN04134496
Issue 6-3 en
Id:0900d805807104e2
1.7
1.8
1.9
GRE (all)
IP over IP (all)
10
Id:0900d805807104e2
DN04134496
Issue 6-3 en
A new attribute has been added for DHCP interface configuration: Tunneling.
A new attribute has been added for configuring charging options: Charging Limit Profile.
Changes in documentation
The following sections have been updated:
1.10
Four sets of RADIUS Disconnect Server configuration entries have been added into
the IPv4 access point. Each set consists of: Disconnect Server IP Address, Disconnect Server Secret Key, and Disconnect Server Description.
Vendor-specific attributes can be encoded in one attribute or each in a separate
attribute, depending on the configuration.
Responses to RADIUS authentication requests can be marked as optional.
It is possible to define whether the Flexi ISN sends RADIUS Accounting STOP or
OFF message when an access point is disabled or enabled.
The 'Override User Name Containing APN/MSISDN' function now also applies to L2TP
access points.
The Go interface in IPv4 and IPv6 access points is supported.
A new configuration defines attributes used in P-CSCF discovery.
The TREC identifier in access point configuration defines the default QoS for PDP contexts.
CDR generation for flat-rate users can be disabled in the access point configuration.
Changes in documentation
Section Configuring AP IPv4 RADIUS interfaces has been updated.
Section Configuring AP IPv4 allocation methods has been updated and renamed Configuring AP IPv4 authentication and address allocation methods.
More information has been added to Sections Configuring AP IPv4 session timeouts
and Configuring AP IPv6 session timeouts.
Instructions for configuring IPv6 access points have been added.
Configuration of services has been placed in a new separate document, Service Configuration in Flexi ISN.
Descriptions related to routing and tunnelling have been moved to Routing and Tunnelling in Flexi ISN.
DN04134496
Issue 6-3 en
Id:0900d805807104e2
11
RADIUS attributes are no longer listed in this document, as they can be found in
RADIUS Interface Description, Flexi ISN.
12
Id:0900d805807104e2
DN04134496
Issue 6-3 en
access point type, which defines the Gi connection type for the user plane traffic of
the PDP context
IP address allocation and IP address pools associated with the access point
RADIUS authentication and accounting
overload control, for example the maximum number of PDP contexts
security control for inter-mobile traffic
DNS configuration
IMS configuration for the P-CSCF discovery
access-point-specific QoS control
determination of allowed services for service aware PDP contexts
default charging profile
Static access point configuration also states how the dynamically defined information is
determined. For example, if the access point mode is RADIUS, the Flexi ISN will fetch
the user profile from the RADIUS authentication server, and the access point configuration also defines the used RADIUS authentication server.
The number of access points required in the Flexi ISN depends on the services that are
accessed through Flexi ISN. The minimum requirement is to have at least the following
access points:
If service awareness is not enabled in Flexi ISN, or the single access point name
concept has not been taken fully into use, the following additional differentiation may be
required:
Additional access points may be required for various intranet connections. In general, at
least one access point is required for each distinct data network, which has different IP
connectivity.
2.2
2.2.1
DN04134496
Issue 6-3 en
Id:0900d805806955ee
13
To make the APN available to the SGSN, the APN must be configured in the packet core
domain name system (DNS) as an A-type resource record. If the access point mode is
context prohibited, then the APN is not configured to the DNS system, because the APN
cannot be used directly in PDP context activations.
The APN is composed of two parts: the APN network identifier and the APN operator
identifier. When a PDP context is activated, the SGSN selects the correct Flexi ISN for
the PDP context creation based on the full APN, which consists of both the APN network
identifier and APN operator identifier. When the PDP context activation request arrives
at the Flexi ISN, the request contains only the APN network identifier.
The APN is defined in 3GPP specification 23.003.
APN network identifier
The APN network identifier is a mandatory label (for example, corporation), or a set of
labels separated by dots. The labels are fully qualified domain names according to the
DNS naming conventions (for example, company.com). To guarantee the identity of the
APN, the GPRS/3G PLMN should allocate, either to an internet service provider (ISP)
or a corporation, an APN network identifier identical to their domain name in the public
Internet. The APN network identifier should not end in '.gprs' because that value is used
in the APN operator identifier.
The APN configured in the Flexi ISN defines the APN network identifier.
APN operator identifier
The APN operator identifier is composed of three labels. The last label (or domain) must
be 'gprs'. The first and second labels together uniquely identify the GPRS PLMN. For
each operator, there is a default APN operator identifier (that is, the domain name). This
default APN operator identifier is derived from the IMSI as follows:
mnc<MNC>.mcc<MCC>.gprs.
The APN operator identifier is not used in the Flexi ISN configuration.
2.2.2
Alias name
Access points can also have alternative short names called aliases (but not in the
context prohibited mode. For more information, see Section Creating IPv4 access
points). To make an alias available to the SGSN, the alias has to be configured in the
packet core DNS as a CNAME-type resource record. This means that the alias name
should not point to an access point that has the context prohibited mode.
An alias is indistinguishable from a real access point from the point of view of the GPRS
subscriber. The charging records resulting from the sessions to an alias will always
indicate the name of the requested access point (that is, the alias), which can be used
to differentiate charging as if there were two separate actual access points.
2.2.3
14
Id:0900d805806955ee
DN04134496
Issue 6-3 en
2.2.4
2.3
Normal (IPv4)
User plane traffic is forwarded as plain IPv4 traffic in the Gi interface. The Flexi ISN
supports multiple routing instances and virtual LAN networking. This means that it is
possible to define plain IPv4 access points, which still provide distinct IPv4 connectivity.
Generic Routing Encapsulation (GRE)
User plane traffic is encapsulated inside a GRE tunnel. The access point configuration defines the end points of the GRE tunnel.
IP over IP
User plane traffic is encapsulated inside an IP-IP tunnel. The access point configuration defines the end points of the IP-IP tunnel.
Native IPv6
User plane traffic is forwarded as plain IPv6 traffic in the Gi interface.
IPv6 tunnelling over IPv4
User plane traffic is encapsulated inside an IPv4 tunnel.
Layer 2 Tunneling Protocol (L2TP)
User plane traffic is encapsulated inside an L2TP tunnel. There is one L2TP session
for each activated PDP context.
2.4
DN04134496
Issue 6-3 en
Id:0900d805806955ee
15
tion defined by separate access points. For more information about service awareness,
see Service Awareness in Nokia Siemens Networks Flexi ISN.
Access point modes
The service awareness functionality is enabled by the access point Mode parameter in
the access point configuration. The access point Mode parameter defines the Flexi
ISN's behavior regarding the subscriber's session when the access point is directly
requested by the subscriber in a Create PDP Context request or though an alias. The
access point modes are the following:
Normal
The session will use the access point in the traditional way, with no support for
service awareness. This is the only mode available for IPv6 access points.
GGSN
The session will use service awareness. The active services and the charging profile
are defined in the local configuration, but the active services may also be imposed
by the PCS/OCS.
PCRF
The session will use service awareness. The active services and the charging profile
are defined in the local configuration, but the active services may also be imposed
by the PCS.
RADIUS
The session will use service awareness. The user profile is fetched from the
RADIUS authentication server.
NPS
The session will use service awareness. The user profile is fetched from the Nokia
Siemens Networks Profile Server
Context prohibited
The activation request will be rejected when the AP is directly requested by the subscriber in a Create PDP Context request or through an alias. In this case the access
point is a private access point and it can be used only as service access points (see
Service Awareness in Nokia Siemens Networks Flexi ISN).
In summary, the access point mode defines how the user profile is defined when a PDP
context is activated. The user profile defines what services are active in the PDP
context. Each service is linked to an access point. Based on this linkage, the Flexi ISN
will activate one or more Gi connections for the new PDP context, and access points
define the configuration of these Gi connections.
2.5
2.5.1
IP management
Dynamic and static mobile addresses
The Flexi ISN can accept a static IP address for the user equipment or it can provide a
dynamic address that is valid only during the PDP context activation. Static addresses
are useful in some special cases, but usually dynamic addressing is preferred. Static
addresses are stored in the user profile in the HLR. Because the address defines the
router through which the Internet is accessed, the fixed address must be allocated either
from the accessed intranet or from the Flexi ISN network mask. The access point configuration defines the IP addresses that can be accepted as static addresses.
16
Id:0900d805806955ee
DN04134496
Issue 6-3 en
In most cases, the user equipment will request a dynamic IP address. There are four
ways to allocate a dynamic IP address:
2.5.2
The Flexi ISN has its own address pool. This is the only address allocation method
supported by the Flexi ISN when the address is an IPv6 address.
The Dynamic Host Configuration Protocol (DHCP) is able to discover a free IP
address in the address pool that is maintained by a DHCP server. Many other configuration parameters within the network can be set by the same negotiation.
A RADIUS server can give an IP address when authentication is done. The Flexi ISN
sends Accounting Start and Accounting Stop messages to release the allocated IP
address.
When using an L2TP type access point, the L2TP network server (LNS) assigns the
dynamic address for the user equipment.
Routing
Access point configuration defines the routing functionality. It is possible to rely on static
routes, but dynamic routing protocols such as OSPF can be also enabled in the access
point configuration. The available routing configuration depends on the access point
type. For example, OSPF is supported only in access points that are using a tunnelled
Gi connectivity. For more information about routing and tunnelling, see Routing and
Tunnelling in Nokia Siemens Networks Flexi ISN.
2.5.3
g The Flexi ISN generates the hardware address for the DHCP sessions from the last
12 digits of the IMSI. Therefore, it is important to make sure that none of the subscribers using a particular DHCP access point will be creating two sessions (that is,
two primary PDP contexts) to this access point simultaneously from the same equipment, by error or intentionally. If the Flexi ISN reports 'PDP address collision' under
a DHCP access point, it is a strong indicator of this problem.
DN04134496
Issue 6-3 en
Id:0900d805806955ee
17
If this cannot be avoided, it is advisable to use the IP address allocation from the
internal Flexi ISN pool.
2.5.4
DNS
User equipment may also need to get the IP address of DNS servers. This information
can be configured in the access point. The Flexi ISN may also receive the DNS server
address from the DHCP or RADIUS server. If L2TP is used in the access point, the LNS
may define the IP address of the DNS server.
Additional DNS servers may be defined in the secondary access point. The Flexi ISN is
able to redirect DNS requests to these servers, if needed. For more information, see
Service Awareness in Nokia Siemens Networks Flexi ISN.
2.5.5
NAT is disabled in the secondary access point configuration (the Use Primary
Address for Secondary Connection parameter is set to Enabled).
The IP address of the user equipment in the primary access point is valid also in the
secondary access point (it matches the static IP range defined in the secondary
access point).
The primary and the secondary access points are in different routing instances.
Access point provisioning should make sure that NAT is not used in cases where NAT
would break application protocols. For more information, see RFC 2993 and 3027. For
example, the FTP passive mode must be used according to the recommendation in
Section 4 of RFC 2428.
2.6
2.6.1
RADIUS servers
RADIUS authentication
Remote authentication dial-In user service (RADIUS) authentication is performed when
a primary PDP context is created. The RADIUS server can then authenticate the PDP
context and deny PDP context activation, if necessary. The RADIUS server may also
provide information to the PDP context, such as the IP address of the user equipment
18
Id:0900d805806955ee
DN04134496
Issue 6-3 en
and the DNS server address. RADIUS may also define the user profile used in service
aware PDP contexts.
The access point configuration defines whether RADIUS authentication is performed.
Responses to RADIUS authentication can be marked optional if RADIUS authentication
is used only to inform the RADIUS server about new PDP contexts. The access point
configuration defines 1-2 RADIUS authentication servers. The same servers can be
used in many access points.
2.6.2
RADIUS accounting
RADIUS accounting messages are sent in following cases:
The access point configuration defines whether sending these accounting messages is
enabled. It also defines the used RADIUS accounting servers. The access point configuration defines the primary and secondary RADIUS server, and additional 1-5 RADIUS
servers.
2.6.3
RADIUS Disconnect
The Flexi ISN also supports RADIUS Disconnect messages. The access point configuration defines the RADIUS servers that may send Disconnect messages. If the Flexi ISN
receives a Disconnect message, it will terminate the related PDP context.
2.7
2.7.1
IMS functionality
P-CSCF discovery
To use Session Initiation Protocol (SIP) services, the user equipment needs to know the
IP address of the P-CSCF. If this information is not configured in the user equipment,
3GPP has defined following alternatives in specification 23.228:
The Flexi ISN supports both of these methods, and they are supported in both IPv4 and
IPv6 access points.
If the GPRS procedure is used for P-CSCF discovery, the user equipment uses special
protocol configuration options (PCO) when it requests PDP context activation. The Flexi
ISN then returns P-CSCF addresses in the PDP context activation response. The
access point configuration defines how many P-CSCF addresses are returned to the
user equipment. The actual P-CSCF addresses are not part of the access point configuration.
If DHCP is used for P-CSCF discovery, the user equipment will send a DHCP request
after the PDP context has been activated. The Flexi ISN is then acting as a DHCP relay
agent and it will forward the DHCP request to the actual DHCP server. The access point
DN04134496
Issue 6-3 en
Id:0900d805806955ee
19
configuration defines the IP address of the DHCP relay agent and where the DHCP
requests are relayed. This DHCP configuration is separate from the basic DHCP configuration, which is used to allocate IP addresses for user equipment. The DHCP server
will then define the IP address of the P-CSCF and the Flexi ISN will relay the response
back to the user equipment.
20
Id:0900d805806955ee
DN04134496
Issue 6-3 en
DN04134496
Issue 6-3 en
Identification
Name
Mode
Connection Type
Type
Virtual Mobile Address
Tunnel Local IP Address
Tunnel Remote IP Address
Routing Instance
Secondary Tunnel Address
RADIUS Servers
From Radius Authentication Profile
Tunnel Remote IP Address
Secondary Tunnel Address
Routing Instance
Primary Authentication Server IP Address/Port and Secondary Authentication Server IP Address/Port
Authentication Operation
Client IP Address
Tunnel Local IP Address
Client Tunneling IP Address
From Radius Accounting Profile
Tunnel Remote IP Address
Secondary Tunnel Address
Routing Instance
All Accounting Server IP Addresses and Ports
Account Server Operation
Secondary Account Server Mode
Client IP Address
Id:0900d80580710501
21
Steps
1
normal IPv4
IP over IP
GRE tunnel
L2TP
This hides the configuration fields that are not used by the selected connection
type access points and reveals L2TP-specific fields.
For more information about the types, see Section Access point types.
22
Click Apply.
In the Name text box, enter the access point name (APN).
Id:0900d80580710501
DN04134496
Issue 6-3 en
The APN Network Identifier is a label (for example 'corporation') or a set of labels
separated by dots, which is a fully qualified domain name according to the DNS
naming conventions (for example 'company.com').
10 In the Description text box, enter a description for the access point.
11 Verify that Row Status is Not in Service.
Some of the fields cannot be changed if the access point is active.
12 Select a mode from the following: Normal, GGSN, PCRF, Radius (not used in
L2TP), NPS, or Context prohibited.
For information about the different AP modes, see Section Access point modes.
13 In the Numeric ID text box, give the possibility to substitute the APN with an integer
in the RADIUS and Diameter messages' Called Station ID attribute.
This feature is required sometimes for the RADIUS servers that do not understand
an alphanumeric string. The maximum value is 2147483647. An empty edit box
value (or the value zero) indicates the use of the Name as the APN.
14 Define the connection type.
Steps
1. If APs utilizing tunnelling are used, follow the steps below, otherwise start with
step b:
Steps
1.1 Select the Tunnel Local IP Address.
This is the address for the remote end-router to use as the destination
address for the tunnelled packets. Select the address from the list of
loopback interface addresses.
1.2 Enter the Tunnel Remote IP Address.
This is the address to use as the destination address for the tunnelled
packets. If there are several APs using the tunnel to the same remote IP
address, make sure the Tunnel Remote IP Address is also the same in all
these access points.
1.3 Enter the Secondary Tunnel Address.
This is the destination address of secondary GRE/IP-over-IP or L2TP tunnel.
When both tunnel destination addresses are specified, under normal conditions load balancing is performed between the tunnels. When one of the
tunnels fail, the other tunnel is used for all traffic if the tunnel is of type
GRE/IPIP. For L2TP, the PDP contexts of the failed tunnel are deleted and
new PDP contexts are created solely to the not failed tunnel.
DN04134496
Issue 6-3 en
Id:0900d80580710501
23
g The primary/secondary tunnel address pair must be the same for all
access points that have the same tunnelling protocol, MRI and tunnel
local address.
Further Information
If the dynamic tunnelling is enabled in the access point and the Flexi ISN
receives tunnel parameters from the RADIUS server, the Flexi ISN will use those
parameters for the user instead of the ones described above.
2. Enter the Virtual Mobile Address.
The Virtual Mobile Address is the address that the Flexi ISN uses when it is
acting as the DHCP relay agent. The Virtual Mobile Address is the first of
several addresses from the IP address space of the user equipment. The Virtual
Mobile Address is also used for setting up static routes for GRE/IP over IP
tunnels.
3. For Normal IPv4 type APs, enable or disable the Redistribute to RIP setting.
4.
5.
6.
7.
If this option is enabled, static routes created for collecting packets for this
access point will be marked for redistribution to RIP.
For Normal IPv4 type APs, enable or disable the Redistribute to OSPF External
setting.
If this option is enabled, static routes created for collecting packets for this
access point will be marked for redistribution to OSPF.
Enable or disable OSPF.
The open shortest path first (OSPF) protocol can be enabled for the GRE or IPin-IP tunnels. OSPF is a routing protocol that advertises the dynamic and/or
static mobile address spaces to the remote end router.
To use OSPF, the Virtual Mobile Address must be set. It is used as the router
identifier.
Other settings, such as the OSPF area or OSPF hello/dead intervals, are not
necessary since the Flexi ISN learns those from the OSPF hello packets of the
remote router.
Select the routing instance for the Gi connection defined by the AP.
An AP belongs to one of the existing routing instances. There is always at least
the 'default' instance. All of the traffic on the Gi side is controlled by the selected
instance routing tables.
For other than L2TP type APs, enter the ping interval
The delay, in seconds, between the Internet Control Message Protocol (ICMP)
Echo messages (ping) sent to the tunnel Remote IP Addresses. This parameter
specifies the interval that a single service blade uses when sending the ping
messages. Because all the service blades send these messages, the observed
interval is shorter than configured one. If this is set to zero, no ICMP Echo
messages are sent.
24
Id:0900d80580710501
DN04134496
Issue 6-3 en
1. Use the IP Address Range and the corresponding Mask Length text boxes to
allocate IP addresses for the user equipment.
The type of the subnetwork IP address can be dynamic or static.
DN04134496
Issue 6-3 en
Id:0900d80580710501
25
equal to the number of the SBs available in the Chassis. This ensures that
all the SBs will get their fair-share of IP Addresses and guarantee a better
system performance.
16 Click Apply.
Note that the access point is not ready yet.
If the creation and naming of the access point fails, you will receive an error message.
Otherwise, the procedure has been successful.
3.2
Steps
1
In the Max Active PDP Contexts text box, enter the maximum number of active
PDP contexts allowed.
In the Max Dynamic IP Addresses text box, enter the maximum number of dynamic
IP addresses allowed.
Click Apply.
Note that the access point is not ready yet.
3.3
26
Id:0900d80580710501
DN04134496
Issue 6-3 en
Steps
1
Select the method for allocation of the dynamic IP address from the IP Address
Generation Method text box.
The Flexi ISN may use the DHCP server, the RADIUS server, or its own address
pool. When the connection type is L2TP, the value is always L2TP.
Radius: PAP tokens from the user equipment are required to be used as a user
name and a password.
Radius With MSISDN: the MSISDN of the user equipment is used as the user
name and 'password' is used as the password.
Radius With APN: the access point name (APN) is used as the user name and
'password' is used as the password.
When the Connection Type is L2TP, select one of the following authentication
methods:
DN04134496
Issue 6-3 en
L2TP PAP: PAP/PPP/L2TP authentication, PAP tokens from the user are
required.
L2TP PAP with MSISDN: PAP/PPP/L2TP authentication, where the MSISDN is
used as the username, and 'password' is the password.
L2TP PAP with APN: PAP/PPP/L2TP, where the APN is used as the username,
and 'password' is the password.
L2TP PAP with IMSI: PAP/PPP/L2TP, where the IMSI is used as the username,
and 'password' is the password.
L2TP CHAP: CHAP/PPP/L2TP, PAP tokens from the user are required.
g CHAP credentials received from PCO IE in Create PDP Context Request
can not be used for L2TP Authentication. If CHAP challenge and response
are sent from UE, then the only possible options for L2TP are not to use any
authentication or to use the L2TP proxy authentication, where CHAP challenge and response are simply forwarded to LNS and there is no real CHAP
authentication.
L2TP CHAP with MSISDN: CHAP/PPP/L2TP, where the MSISDN is the
username and 'password' is the password.
L2TP CHAP with APN: CHAP/PPP/L2TP, where the APN is the username and
'password' is the password.
L2TP CHAP with IMSI: CHAP/PPP/L2TP, where the IMSI is the username and
'password' is the password.
Id:0900d80580710501
27
When Override User Name Containing APN/MSISDN is set to Enabled, the Flexi
ISN's behavior is modified as follows:
If PAP or CHAP authentication tokens are received from the UE in PCO IE, and the
user name token is not empty, both the user name and the password from the corresponding tokens will be submitted for authentication. If the password provided by
the UE is 'password', the authentication will be immediately rejected.
If the User Authentication Method is set as:
Radius With MSISDN, the MSISDN of the user equipment is used as the user
name and 'password' as password.
Radius With APN, the APN is used as the user name and 'password' as password.
Select Enabled or Disabled from the Use Primary Address for Secondary Connection drop-down list.
The secondary connection may use the IP address of the primary connection if this
variable is enabled and if the IP address belongs to the address space defined by
static IP address/mask of the Access Point of the secondary connection. In this
case, network address translation (NAT) is disabled. Address spaces cannot be
overlapping if they use the same tunnel or both APs are of type Normal IPv4 in the
same routing instance. For more information about overlapping addresses, see
Routing and Tunnelling in Nokia Siemens Networks Flexi ISN. If the Flexi ISN fails
to use the secondary address, it tries to allocate a new dynamic address for the secondary connection.
Select Enabled or Disabled from the Use GTP Information Enrichment drop-down
list.
This option permits the use of GTP Information Enrichment feature for this access
point. If this parameter is set to Enabled, the GTP Information Enrichment feature is
enabled for every pdp context created on this access point. This feature must be
configured for each access point separately and is under GTP Information Enrichment licence. If the GTP Information Enrichment licence is set to Off, the Use
GTP Information Enrichment drop-down list is not visible.
Click Apply.
Note that the access point is not ready yet.
3.4
28
Id:0900d80580710501
DN04134496
Issue 6-3 en
Before starting these instructions, make sure that you have the IP address of the DHCP
server.
The creation of an access point with the identification information is a prerequisite. For
more information, see Section Creating IPv4 access points.
Steps
1
In the IP address edit boxes, enter the IP addresses of the DHCP servers that may
be used.
Start filling from IP address 1. Unused DHCP servers should have an IP address of
0.0.0.0.
Define whether DHCP messages are tunnelled according to the other access point
tunnelling configuration.
This parameter is visible only if the access type is GRE Tunnel or IP over IP.
Click Apply.
Note that the access point is not ready yet.
3.5
DN04134496
Issue 6-3 en
Id:0900d80580710501
29
Steps
1
On the main Flexi ISN configuration page in Voyager, in the External Interface Configuration section, click RADIUS Profiles.
30
Id:0900d80580710501
DN04134496
Issue 6-3 en
DN04134496
Issue 6-3 en
Id:0900d80580710501
31
32
Id:0900d80580710501
DN04134496
Issue 6-3 en
DN04134496
Issue 6-3 en
Id:0900d80580710501
33
secondary RADIUS server, the Flexi ISN will try the primary server again
after the configured switchover time. The default value is 5 (minutes).
Note that this can be set only if the ISN Function has been disabled.
Notify AP Status Change: This determines whether RADIUS will act on the
access point status change.
- ON/OFF: changing the access point status from Active to Not in Service
leads to the sending of a 'RADIUS accounting OFF' message but no
'RADIUS accounting STOP' messages are sent. Changing the access point
status from Not in Service to Active leads to the sending of a 'RADIUS
accounting ON' message.
- ON/OFF/STOP: changing the access point status from Active to Not in
Service leads to the sending of a 'RADIUS accounting OFF' message and
possible 'RADIUS accounting STOP' messages. Changing the access point
status from Not in Service to Active leads to the sending of a 'RADIUS
accounting ON' message.
- STOP: no 'RADIUS accounting ON or OFF' messages are sent but
possible 'RADIUS accounting STOP' messages are sent if the access point
status is changed from Active to Not in service.
Accounting to Authenticated Server: If this parameter is set to Enabled
and if authentication is used, accounting for the PDP context will be transmitted to the RADIUS server which has the same configuration parameters
except the port number (fixed value 1813)
Tunnel Local IP Address: The local tunnel IP address for an access point
(tunnel GRE, IP-over-IP, or L2TP).
Client Tunneling IP Address: If the access point type is GRE Tunnel or IP
over IP and RADIUS authentication is configured to be tunnelled, this IP
address will be put into the NAS-IP-Address attribute of the RADIUS
request. This parameter specifies the actual source address of the RADIUS
message.
7. Click Apply and Save.
4
34
Id:0900d80580710501
DN04134496
Issue 6-3 en
Client IP Address: The Flexi ISN will use this address as the source
address for RADIUS messages for the access point. It is also used as the
value for the NAS-IP-Address attribute. If RADIUS is enabled, the Client IP
Address cannot be set to 0.0.0.0.
Tunnel Local IP Address: The local tunnel IP address for an access point
(tunnel GRE, IP-over-IP, or L2TP).
Client Tunneling IP Address: If the access point type is GRE Tunnel or IP
over IP and RADIUS authentication is configured to be tunnelled, this IP
address will be put into the NAS-IP-Address attribute of the RADIUS
request. This parameter specifies the actual source address of the RADIUS
message.
6. Click Apply and Save.
3.6
an access point with the identification information. For more information, see Section
Creating IPv4 access points
the RADIUS profiles. For more information see Section Defining RADIUS profiles.
Before starting the configuration of RADIUS interfaces, you should become familiar with
the items in Table 1. The information is essential to RADIUS configuration.
Parameter
Value range
Description
Identification
Numeric ID
Integer
Methods
IP Address Gen- Options:
eration Method
GGSN
DHCP
RADIUS
Options:
Table 1
DN04134496
Issue 6-3 en
RADIUS
RADIUS with
MSISDN
RADIUS with APN
Id:0900d80580710501
35
Parameter
Override User
Name Containing APN/
MSISDN
Value range
Enabled/Disabled
Description
This parameter may be used to fine-tune
the Flexi ISN's behaviour when the User
Authentication Method is RADIUS /
L2TP PAP / L2TP CHAP with MSISDN /
APN / IMSI.
When Enabled, the Flexi ISN's behaviour
is modified as follows:
If PAP or CHAP authentication tokens are
received from the UE in the PCO information element (IE), and the user name token
is not empty, both the user name and the
password from the corresponding tokens
will be submitted for authentication. If the
password provided by the UE is 'password', the authentication will be immediately rejected.
See Section Configuring AP IPv4 authentication and address allocation methods.
Table 1
Steps
1
On the access point configuration page, from the Dynamic Tunnels drop-down list,
select Enabled or Disabled.
If Enabled is selected, the RADIUS server can specify the tunnel type and the
parameters for opening a dynamic tunnel. Attributes are included in the AccessResponse packets.
36
Id:0900d80580710501
DN04134496
Issue 6-3 en
In the synchronous mode the Flexi ISN waits for the accounting reply to arrive before
responding to the SGSN. The PDP context will not be activated unless the accounting reply has been received.
4
Click Apply.
Note that the AP is not ready yet.
Further Information
For instructions on how to select user authentication and address allocation
methods, see Section Configuring AP IPv4 authentication and address allocation
methods.
3.7
Steps
1
g Do not use excessively long shared secrets, this will penalize performance
when processing RADIUS messages.
2
Click Apply.
Note that the access point is not ready yet.
DN04134496
Issue 6-3 en
Id:0900d80580710501
37
3.8
Steps
1
Select Enabled from the Intermobile Traffic drop-down list to allow traffic from one
user equipment to another user equipment if they belong to the same access point.
g The flow initiation rules apply also here and the uplink/downlink packets may be
dropped if the flow initiation is not allowed.
2
Traffic from one user equipment to another user equipment inside different access
points is allowed if you select Enabled from the Inter-AP Traffic drop-down menu.
This applies only to access points inside one Flexi ISN.
When the Selection Mode value in the GTP message indicates that the user equipment is not verified, the Flexi ISN will reject the PDP context activation request
unless you set Unverified Mobile Acceptance to Enabled.
Click Apply.
Note that the access point is not ready yet.
3.9
g The configuration of toll-free networks is not necessary for service aware sessions,
because the charging of the traffic flows is determined based on the charging class
configuration. If a toll-free network is nevertheless used, it must be configured in the
38
Id:0900d80580710501
DN04134496
Issue 6-3 en
AP which allocates the IP address visible to the user of this session, that is, the
primary service access point. Toll-free networks from other service access points of
this session will not apply to it.
Before you start
The creation of an access point with the identification information is a prerequisite. For
more information, see Section Creating IPv4 access points. Note the following procedures also: Configuring AP IPv4 DHCP interfaces and Configuring AP IPv4 RADIUS
interfaces.
Steps
1
In the Toll Free Network and the Toll Free Network Mask Length edit boxes,
determine the network to be used.
Click Apply.
Note that the access point is not ready yet.
3.10
Steps
1
In the DNS 1 and the DNS 2 text boxes, verify that the set values are not 0.0.0.0.
Define the primary DNS server in DNS1 and the secondary DNS server in DNS2.
Note that DNS redirection is configured by defining additional DNS servers to the
secondary access point. If DNS redirection is not required, the same DNS servers
are defined for both the primary and secondary access points.
DNS server IP addresses may be overridden by RADIUS, DHCP, or L2TP.
In the IP Address for L7 DNS Queries text box, enter the IPv4 address that layer 7
proxy analysers use as a source address in DNS queries.
This parameter should be defined when L7 analysers are used, in other cases it has
no meaning.
DN04134496
Issue 6-3 en
Id:0900d80580710501
39
Click Apply.
Note that the access point is not ready yet.
3.11
Steps
1
Click Apply.
Note that the access point is not ready yet.
3.12
Steps
1
Use the Session Timeout text box to limit the overall lifetime of a PDP context.
Note that because of the internal implementation the actual time is longer than the
configured value. This additional time varies from 0 seconds to 1 minute.
In the Idle Timeout text box, set the maximum time the PDP context can stay idle
without any traffic.
Or
40
Id:0900d80580710501
DN04134496
Issue 6-3 en
If you choose not to use timeouts, in the Session Timeout or the Idle Timeout text
box, either leave the field empty or set the value to 0 to indicate that the time-out
function is not used.
Further Information
Timeouts are expressed in seconds. Timeouts may be overridden by the attributes
in the RADIUS Access Accept message.
Timeouts are not dynamic. The PDP context activation is done with the information
available in the APN settings during activation or supplied by RADIUS during activation only. If the settings are changed during the lifetime of a PDP context, the
timeouts are not changed for that PDP context.
The duration of the G-CDR differs from the Session Timeout value. When you set
the Session Timeout to a certain value, the G-duration within the G-CDR is not automatically the same value.
For service-aware sessions, the session timeouts and idle timeouts calculated for
the primary service access point will be applied to the whole session, and the
timeouts from the other access points will be ignored.
3
Click Apply.
Note that the access point is not ready yet.
3.13
Steps
1
Enable the DSCP marking. When enabled, the DSCP of IP packets is remarked.
OR
Disable the DSCP marking. When disabled, the DSCP of IP packets is not touched
Set the limit of total bit rate capacity for real time contexts.
In the Max Bitrate for Realtime Traffic text box, set the limit for the total bit rate
capacity that can be used for real-time (conversational and streaming) contexts. The
dimension is kilobits per second. It should be greater than or equal to the sum of Max
Bitrate for Conversational Traffic and Max Bitrate for Streaming Traffic.
DN04134496
Issue 6-3 en
Id:0900d80580710501
41
Set the limit of total bit rate capacity used for the conversational class.
In the Max Bitrate for Conversational Traffic, set the limit for the total bit rate
capacity used for the Conversational class. The dimension is kilobits per second.
When summed with Max Bitrate for Streaming Traffic it should be smaller than or
equal to Max Bitrate for Realtime Traffic.
Set the limit of total bit rate capacity used for the streaming class.
In the Max Bitrate for Streaming Traffic, set the limit for the total bit rate capacity
used for the Streaming class. The dimension is kilobits per second. When summed
with Max Bitrate for Conversational Traffic it should smaller than or equal to Max
Bitrate for Realtime Traffic.
Determine whether real-time primary PDP context activations are permitted to the
access point.
Click Apply.
Note that the AP is not ready yet.
g Configuring the maximum bit rates has an effect only on non-service aware
access points (Normal mode).
3.14
42
Id:0900d80580710501
DN04134496
Issue 6-3 en
addresses if the GPRS procedure for P-CSCF discovery is required. Here you can configure how many of these addresses are returned to the user equipment.
Before you start
The creation of an access point with the identification information, the selection of the
connection type, and configuring the P-CSCF addresses are prerequisites. For more
information, see Section Creating IPv4 access points.
Steps
1
Enter the IPv4 address of the DHCP server in the corresponding text box.
This is the IPv4 address of a DHCPv4 server that the Flexi ISN contacts as a
DHCPv4 relay agent. If this address is not specified, the DHCP relay agent functionality for P-CSCF discovery is not supported under this access point.
Enter the IPv4 address of the DHCP relay agent in the corresponding text box.
For example, the IP address configured in the Virtual Mobile Address.
This is the IPv4 address of the Flexi ISN acting as a DHCPv4 relay agent announced
to the DHCPv4 server. If this address is not specified, the DHCPv4 relay agent functionality P-CSCF discovery under this access point is not supported.
Click Apply.
Note that the AP is not ready yet.
3.15
If the user profile is fetched from the NPS or RADIUS authentication server, the user
profile defines the charging profile, otherwise
The user profile is defined by the local configuration and the charging profile is
selected based on the access point configuration.
DN04134496
Issue 6-3 en
Id:0900d80580710501
43
Steps
1
In the Default Charging Profile, select Prepaid, Postpaid, Postpaid with Credit
Control, HLR, or Hot Billing.
The selection determines the default charging profile.
If the default charging profile is applied and set to Postpaid or Hot Billing, the online
charging system (OCS) is not used.
If the value 'HLR' has been selected, the charging characteristics field coming from
the HLR is used to determine the types of CDRs generated. (For more information
about which CDRs the PDP context will generate, see Section How to find out the
type of CDR created in Charging in Nokia Siemens Networks Flexi ISN.) If the HLR
does not send the field, the Flexi ISN sets the default value as Postpaid.
The value Hot Billing can only be used if the value for the Version Level for CDRs
parameter (on the Basic Charging Configuration page) is ISN3.1 or higher.
The value Postpaid with Credit Control can only be used if the OCS is in use.
44
Id:0900d80580710501
DN04134496
Issue 6-3 en
If Disabled is selected, CDRs are not generated if the respective AP is the primary
AP and flat rate charging has been enabled for the PDP context. The concept
'primary AP' is explained in Service Awareness in Nokia Siemens Networks Flexi
ISN.
5
Click Apply.
Note that the AP is not ready yet.
3.16
In Access Points Configuration, click the access point you want to configure.
Figure 1
6
Click Apply
Click Save
g In RADIUS and Nokia Profile Server (NPS) mode the context is created to service
access point, hence the roaming DCCA must be configured to service access point.
In case of NPS, when the NPS mode access point has the default services, it is recommended to add also the roaming DCCA in this Access point.
Primary Online Charging Server
This is the Primary Roaming Charging Server. The default value is None. While this
value is None, the Roaming Profile feature, is considered disabled.
DN04134496
Issue 6-3 en
Id:0900d80580710501
45
g If the primary online charging server - prepaid is the same with the one already used
for a prepaid subscriber, either from the Online Charging Configuration or the
NPS/RADIUS server, the Roaming Profile feature is considered disabled.
Secondary Online Charging Server
This is the Secondary Roaming Charging Server. The default value is None. It is up to
the operator to choose or not secondary Online Charging System (OCS) for roamers.
The values of the primary and secondary online charging servers correspond to the id
of the OCS Diameter Peer Configuration to be used for roamers. See Figure 2 for more
information.
Figure 2
Restrictions
The operator needs to have the correct configuration. In this way the subscribers
coming from cooperating PLMNs (for example, sharing the same SGSN/GGSN) will
not be considered as outbound roamers and the feature will not apply to them even
if they are in the same country.
The failure handling mechanism of the OCS Configuration in Voyager provides the
option to turn a prepaid subscriber into a postpaid one, in case both primary and secondary OCSs fail. It is up to the operator to configure prepaid roamers not to use this
option, by setting the Roaming entry field to continue as postpaid. This mechanism
also applies to postpaid roamers that turn into prepaid due to the Roaming Profile
feature. For more information, see Section Configuring the interface to online
charging system (OCS) in General Configuration in Nokia Siemens Networks Flexi
ISN.
When the feature gets activated and enabled for an AP, then it is only on the next
PDP Create/Update that the Roaming Profile feature will take effect.
g The Roaming Profile feature is independent of the connection type, for example
IPv4 or IPv6.
3.17
46
Id:0900d80580710501
DN04134496
Issue 6-3 en
Steps
1
On the access point configuration page in Voyager, make sure that the Row Status
is set to Active.
Further Information
g The row status can also be changed on the main access point configuration page in
Voyager.
After changing the row status in the Access Point table, click Apply and Save.
3.18
Click Def.services in the Default Services column on the row of the access point
you want to set default services for.
This link is visible only if the AP mode is GGSN, NPS or PCRF.
DN04134496
Issue 6-3 en
Click Apply.
Id:0900d80580710501
47
Identification
Name
Mode
Connection Type
Type
Tunnel Local IP Address
Tunnel Remote IP Address
Limitations
Mobile's IP Addresses
Steps
1
48
Click Apply.
Id:0900d8058069561f
DN04134496
Issue 6-3 en
In the Name text box, enter the access point name (APN).
The APN Network Identifier is a label (for example, 'corporation') or a set of labels
separated by dots which is a fully qualified domain name according to the DNS
naming conventions (for example, 'company.com').
10 In the Description edit box, enter a description for the access point.
11 Verify that Row Status is Not in Service.
Some of the fields cannot be changed if the access point is active.
12 Select AP mode Normal.
Select Normal to create an AP. The normal mode AP means an AP without service
aware functionality.
g The normal mode is the only option when creating APs for IPv6.
It is not possible to configure DHCP and RADIUS for IPv6 APs.
13 Define the connection type.
Steps
1. If the AP type is native IPv6, do the following:
DN04134496
Issue 6-3 en
Id:0900d8058069561f
49
4.2
In the Max. Active PDP Contexts text box, enter the maximum number of active
PDP contexts allowed.
In the Max. Dynamic IP Addresses text box, enter the maximum number of
dynamic IP addresses allowed.
Click Apply.
Note that the AP is not ready yet.
4.3
50
Id:0900d8058069561f
DN04134496
Issue 6-3 en
Note that these parameters cannot be changed when the Row Status is set to Active.
Steps
1
Make sure that the IPv6 prefix entered in the corresponding text box conforms to the
connection type of the IPv6 access point.
Only dynamic IP addresses from the Flexi address pool can be used with the IPv6
connections. The IPv6 prefix of an access point (AP) is delivered to all user equipment that are connected to the AP. When IPv6 to IPv4 tunnelling is used for the AP,
use the IPv4 address in the prefix. In practice that means the address
2002:<IPv4_address> is to be used, where the <IPv4_address> is the same as the
Local IPv4 address on the Voyager IPv6 to IPv4 configuration page (Routing
Instance Config IPv6 Configuration IPv6 to IPv4).
Enter the mask length for the prefix in the corresponding text box.
The mask length and the prefix define the IPv6 prefix pool from which the prefixes
of the user equipment are defined.
Click Apply.
Note that the AP is not ready yet.
4.4
If
the access point type is native IPv6,
Then
Do the following steps:
1. All the traffic from one UE to another UE will be prohibited unless the two UEs
belong to the same access point and you set Intermobile Traffic to Enabled.
2. Traffic from one UE to another UE inside different access points (in the same
GGSN) is allowed if you set the Inter-AP Traffic edit box to Enabled in these
access points.
DN04134496
Issue 6-3 en
Id:0900d8058069561f
51
When the Selection Mode value in the GTP message indicates that the UE is not
verified, the Flexi ISN rejects the PDP context activation request unless you set
Unverified Mobile Acceptance to Enabled.
This applies to both connection types, native IPv6 and IPv6 tunnel over IPv4.
Click Apply.
Note that the AP is not ready yet.
4.5
Steps
1
Use the Session Timeout text box to limit the overall lifetime.
Timeouts are expressed in seconds.
Note that because of the internal implementation the actual time is longer than the
configured value. This additional time varies from 0 seconds to 1 minute.
In the Idle Timeout text box, set the maximum time the session may stay idle
without any traffic.
If you choose not to use timeouts, leave the text box for Session Timeout or Idle
Timeout empty or set to the value, '0'.
Such settings as '0' or empty indicates that the timeout function is not used.
Click Apply.
Note that the AP is not ready yet.
Further Information
Timeouts are not dynamic. The session activation is done with the information available
in the APN settings during activation. If the settings are changed during the lifetime of a
session, the timeouts are not changed for that session.
The duration of the G-CDR differs from the Session Timeout value. When you set the
Session Timeout to a certain value, the G-duration within the G-CDR is not automatically the same value.
52
Id:0900d8058069561f
DN04134496
Issue 6-3 en
4.6
Steps
1
To use the DSCP marking for uplink packets in IPv6 access points, select Enabled
from the DSCP Mark Uplink Packets drop-down list.
When enabled, the DSCP of the IP packet is remarked.
Set the limit of total bitrate capacity used for conversational class.
In the Max bitrate for Conversational Traffic, set the limit of the total bitrate
capacity used for Conversational class. The dimension is kilobits per second. When
summed with Max bitrate for Streaming traffic, it should be less than or equal to
Max bitrate for Realtime Traffic.
Set the limit of total bitrate capacity used for streaming class.
In the Max bitrate for Streaming traffic, set the limit for the total bitrate capacity
used for the Streaming class. The dimension is kilobits per second. When summed
with Max bitrate for Conversational Traffic, it should be less than or equal to Max
bitrate for Realtime Traffic.
Click Apply.
Note that the AP is not ready yet.
DN04134496
Issue 6-3 en
Id:0900d8058069561f
53
4.7
Steps
1
Click Apply.
Note that the AP is not ready yet.
4.8
Steps
1
Enter the IPv6 address of the DHCPv6 server in the corresponding text box.
This is the IPv6 address of a DHCPv6 server that the Flexi ISN contacts as a
DHCPv6 relay agent. If the address is unspecified, the Flexi ISN uses the
All_DHCP_Server's multicast address (specified in IETF RFC 3315) as the default.
Enter the IPv6 address of the DHCPv6 relay agent in the corresponding text box.
This is the address of the Flexi ISN acting as a DHCPv6 relay agent announced to
the DHCPv6 server. If this address is specified, the Flexi ISN sets an O-flag in the
Router Advertisement messages (described in IETF RFC 2461) to indicate the user
54
Id:0900d8058069561f
DN04134496
Issue 6-3 en
equipment to start the DHCPv6 session to retrieve the other configuration information. If this address is unspecified, the DHCPv6 relay agent functionality under this
access point is not supported.
3
Click Apply.
Note that the AP is not ready yet.
4.9
Steps
1
In the Default Charging Profile, select Prepaid, Postpaid, Postpaid with Credit
Control, HLR, or Hot Billing.
The selection determines the default charging profile.
If the default charging profile is applied and set to Postpaid or Hot Billing, the online
charging system (OCS) is not used.
If the value 'HLR' has been selected, the charging characteristics field coming from
the HLR is used to determine the types of CDRs generated. For more information
about which CDRs the PDP context will generate, see Section How to find out the
type of CDR created in Charging in Nokia Siemens Networks Flexi ISN. If the HLR
does not send the field, the Flexi ISN sets the default value as Postpaid.
The value Hot Billing can only be used if the value for the Version Level for CDRs
parameter (on the Basic Charging Configuration page) is ISN3.1 or higher.
The value Postpaid with Credit Control can only be used if the OCS is in use.
DN04134496
Issue 6-3 en
Id:0900d8058069561f
55
Click Apply.
4.10
On the access point configuration page in Voyager, make sure that the Row Status
is set to Active.
Further Information
56
Id:0900d8058069561f
DN04134496
Issue 6-3 en
g The row status can also be changed on the main access point configuration page in
Voyager.
After changing the row status in the Access Point table, click Apply and Save.
DN04134496
Issue 6-3 en
Id:0900d8058069561f
57
Configuring aliases
Purpose
Aliases enable the smart use of access points (APs). APs that can be used in the Create
PDP Context request can have alternative short names called aliases. By binding an
alias name to a traditional access point name, you can use traditional APs without
further reconfiguration requirements. Aliases can apply to all AP types in the Normal,
GGSN, PCRF, NPS, or RADIUS mode.
g In order to make the alias available to the SGSN, the alias has to be configured also
in the packet core DNS as a CNAME-type resource record.
Before you start
Before configuring an alias for an AP, make sure that there is an AP configured in the
Flexi ISN.
5.2
Enter the alias and choose an access point from those previously configured.
Click Apply.
58
Id:0900d8058069563f
DN04134496
Issue 6-3 en
At the bottom of the page, click Create new Access Point using this as a template.
5.3
Click Apply.
From the Row Status drop-down list for the access point you want to deactivate,
select Not in Service.
Click Apply.
5.4
DN04134496
Issue 6-3 en
Id:0900d8058069563f
59
In the row for the access point you want to delete, select the Delete check box.
Or
1. Select the access point you want to delete.
2. At the bottom of the page, select the Delete check box.
Click Apply.
60
Id:0900d8058069563f
DN04134496
Issue 6-3 en
Abbreviations
6 Abbreviations
This section lists the abbreviations used in this document. See the general Nokia
Siemens Networks Glossary if you cannot find the term that you need.
DN04134496
Issue 6-3 en
AP
Access Point
APN
CCR
CHAP
DCCA
DHCP
DNS
GGSN
GPRS
HLR
IE
Information Element
IMSI
ISN
ISP
L2TP
LAN
LDAP
LNS
MCC
MMS
MNC
NAT
NBNS
NPS
OCS
PAP
PCO
PCRF
PDP context
RADIUS
SGSN
TCP
UDP
UE
User Equipment
URI
URL
Id:0900d805806955d6
61
Abbreviations
62
WAP
WINS
Id:0900d805806955d6
DN04134496
Issue 6-3 en