Sie sind auf Seite 1von 261

ZXA10 C220

xPON Optical Access Convergence


Equipment

Configuration Manual (CLI)


Version 1.2.1

ZTE CORPORATION
NO. 55, Hi-tech Road South, ShenZhen, P.R.China
Postcode: 518057
Tel: (86) 755 26771900
Fax: (86) 755 26770801
URL: http://ensupport.zte.com.cn
E-mail: support@zte.com.cn

LEGAL INFORMATION
Copyright 2010 ZTE CORPORATION.
The contents of this document are protected by copyright laws and international treaties. Any reproduction or distribution of
this document or any portion of this document, in any form by any means, without the prior written consent of ZTE CORPORATION is prohibited. Additionally, the contents of this document are protected by contractual confidentiality obligations.
All company, brand and product names are trade or service marks, or registered trade or service marks, of ZTE CORPORATION
or of their respective owners.
This document is provided as is, and all express, implied, or statutory warranties, representations or conditions are disclaimed, including without limitation any implied warranty of merchantability, fitness for a particular purpose, title or non-infringement. ZTE CORPORATION and its licensors shall not be liable for damages resulting from the use of or reliance on the
information contained herein.
ZTE CORPORATION or its licensors may have current or pending intellectual property rights or applications covering the subject
matter of this document. Except as expressly provided in any written license between ZTE CORPORATION and its licensee,
the user of this document shall not acquire any license to the subject matter herein.
ZTE CORPORATION reserves the right to upgrade or make technical change to this product without further notice.
Users may visit ZTE technical support website http://ensupport.zte.com.cn to inquire related information.
The ultimate right to interpret this product resides in ZTE CORPORATION.

Revision History
Revision No.

Revision Date

Revision Reason

R1.0

2010-10-30

First Edition

Serial Number:

Contents

About This Manual............................................. I


Declaration of RoHS Compliance ....................... I
Basic Configuration ...........................................1
Management Modes ........................................................ 1
Login Through HyperTerminal....................................... 1
Login Through Telnet................................................... 3
Login Through NetNumen N31 Unified Management
System ............................................................. 5
NM Configuration............................................................ 5
Configuring In-Band NM .............................................. 5
Configuring Out-Of-Band NM ........................................ 9
Physical Configuration ....................................................12
Adding a Rack ...........................................................12
Adding a Shelf ..........................................................13
Adding a Card ...........................................................14
Showing Card Information ..........................................15
Deleting a Card .........................................................15
Resetting a Card........................................................16
Swapping the Control and Switching Cards....................16

EPON Service Configuration ............................ 19


EPON Basic Service Configuration ....................................19
Overview..................................................................19
Configuring EPON Service ...........................................20
Configuring the ONU Type Profile .................................23
Authenticating an ONU ...............................................25
Configuring the ONU Bandwidth...................................26
Configuring the Bandwidth Profile ................................28
Configuring the ONU In-Band IP Address ......................30
ONU Configuration .....................................................32
Configuring the D-Series/F-Series ONU Access
Service .................................................32

Confidential and Proprietary Information of ZTE CORPORATION

ZXA10 C220 Configuration Manual (CLI)

Configuring the 9806H ADSL Access Service .........36


Managing the ONU Remotely.......................................39
Configuring the OLT Port.............................................42
10G EPON Service Configuration......................................45
Overview..................................................................45
Configuring the 10G EPON Service ...............................45
EPON Protection Configuration.........................................50
Overview..................................................................50
Configuring EPON Protection .......................................51

GPON Service Configuration ............................ 57


Overview......................................................................57
Configuring GPON Service...............................................57
Configuring the ONU Type Profile .....................................62
Authenticating an ONU ...................................................63
Configuring the T-CONT Profile ........................................65
Configuring the Traffic Profile ..........................................67
Configuring the Service Connection ..................................68
Configuring the ONU In-Band IP Address ..........................70
Configuring the OLT Port.................................................72
GPON Protection Configuration ........................................73
Overview..................................................................73
Configuring GPON Protection .......................................73

Multicast Service Configuration ....................... 79


Overview......................................................................79
Configuring the IGMP Snooping Multicast Service
(EPON) ................................................................80
Configuring the IGMP Snooping Multicast Service
(GPON) ................................................................84
Configuring the IGMP Proxy Multicast Service ....................91
Configuring the MVLAN Parameters ..................................92
Configuring the IGMP Global Parameters...........................94
Configuring the IGMP Port Parameters ..............................98
Configuring the IPTV Package........................................ 100
Configuring CAC .......................................................... 101
Configuring CDR.......................................................... 102

VoIP Service Configuration............................ 105


Overview.................................................................... 105
Configuring the VoIP Service (EPON) .............................. 105
Configuring the VoIP Service through the SIP Protocol
(GPON) .............................................................. 112

II

Confidential and Proprietary Information of ZTE CORPORATION

Configuring the VoIP Service through the H.248 protocol


(GPON) .............................................................. 117

CES Service Configuration ............................. 123


Overview.................................................................... 123
Configuring E1/T1 Uplink CES MEF8 Service (EPON) ......... 124
Configuring E1/T1 Uplink CES PWE3 Service (EPON) ......... 130
Configuring CL1A Uplink CES Service (EPON) .................. 137
Configuring E1/T1 Uplink CES MEF8 Service (GPON) ......... 144
Configuring CL1A Uplink CES Service (GPON) .................. 151
Configuring CES TDM Profile ......................................... 158
Configuring CES TDM Interface...................................... 160
Clock Configuration...................................................... 161
Clock ..................................................................... 162
Configuring System Clock ......................................... 163
Configuring External Input Clock................................ 165
Configuring External Output Clock ............................. 166

VLAN Configuration ....................................... 167


Overview.................................................................... 167
Configuring the TLS VLAN ............................................. 168
Configuring VLAN Smart QinQ ....................................... 169
Configuring the 1:1 VLAN ............................................. 172
Configuring the Service Port VLAN ................................. 174

STP Configuration.......................................... 177


Overview.................................................................... 177
SSTP Mode ............................................................. 177
RSTP Mode ............................................................. 178
MSTP Mode............................................................. 178
Configuring MSTP ........................................................ 178

DHCP Configuration ....................................... 183


Overview.................................................................... 183
Configuring DHCP Snooping .......................................... 184
Configuring the DHCP Server ........................................ 185
Configuring DHCP Relay ............................................... 186

ACL Configuration.......................................... 189


Configuring the Standard ACL ....................................... 189
Configuring the Extended ACL ....................................... 190
Configuring the Layer-2 ACL ......................................... 191
Configuring the Hybrid ACL ........................................... 193

Uplink Protection Configuration .................... 195

Confidential and Proprietary Information of ZTE CORPORATION

III

ZXA10 C220 Configuration Manual (CLI)

Overview.................................................................... 195
Configuring UAPS ........................................................ 195
Configuring CL1A 1+1 Protection ................................... 198
Configuring Link Aggregation ........................................ 200

QoS Configuration ......................................... 203


Overview.................................................................... 203
Traffic Management Based On ACL Rules......................... 203
Configuring Traffic Limit............................................ 204
Configuring Priority Mark .......................................... 205
Configuring Traffic Mirroring ...................................... 206
Configuring Redirection ............................................ 207
Configuring Traffic Statistics ...................................... 208
Configuring Traffic Shaping ........................................... 209
Queue Scheduling Configuration .................................... 209
Configuring Queue Scheduling................................... 210
Configuring Mapping Relations Between Queues and
802.1p Priorities .............................................. 212
Configuring DSCP Mapping............................................ 214
Configuring Bridge Port QoS.......................................... 217

Security Management Configuration.............. 221


User Port Location Configuration .................................... 221
Overview................................................................ 221
Configuring DHCP Option 82 ..................................... 221
Configuring PPPoE+ ................................................. 223
Configuring Control Panel Security ................................. 225

IP User Access Management ......................... 227


Configuring MFF .......................................................... 227
Configuring ARP Anti-Spoofing ...................................... 229

System Security Configuration ...................... 231


Overview.................................................................... 231
Configuring SSH .......................................................... 231
Configuring TACACS+ .................................................. 233
Configuring RADIUS..................................................... 234
Configuring Management ACL........................................ 235

Figures .......................................................... 237


Tables ........................................................... 239
Index ............................................................ 241
Glossary ........................................................ 245

IV

Confidential and Proprietary Information of ZTE CORPORATION

About This Manual


Purpose

The ZXA10 C220 xPON Optical Access Convergence Equipment


(ZXA10 C220 for short) is a full-service optical access platform.
It supports the video, data, voice, TDM, and CATV services. The
ZXA10 C220 can be connected with ONUs of medium or larger capacity through various networking technologies.
The ZXA10 C220 device consists of the main control and switching
card, xPON subscriber cards, CES uplink card, and Ethernet uplink
card. It provides large-capacity controllable multicast and high
QoS control.
This manual provides detailed information about configurations
(CLI) on the ZXA10 C220 xPON Optical Access Convergence Equipment.

Intended
Audience

Prerequisite Skill
and Knowledge

What Is in This
Manual

This document is intended for:

Installation and debugging engineer

System maintenance engineer

Data configuration engineer

To use this document effectively, users should have a general understanding of network technology. Familiarity with the following
is helpful:

The ZXA10 C220 system and its various components

Maintenance procedures

Local operating procedures

This manual contains the following chapters:


Chapter

Summary

Chapter 1, Basic Configuration

Introduces access methods,


NM configuration, and physical
configuration.

Chapter 2, EPON Service


Configuration

Describes EPON service


configuration, 10G EPON
service configuration, and EPON
protection service configuration.

Chapter 3, GPON Service


Configuration

Describes GPON service


configuration, ONU type profile
configuration, ONU authentication,
T-CONT configuration, traffic
profile configuration, ONU in-band
IP address configuration, OLT
port configuration, and GPON
protection service configuration.

Confidential and Proprietary Information of ZTE CORPORATION

ZXA10 C220 Configuration Manual (CLI)

II

Chapter

Summary

Chapter 4, Multicast Service


Configuration

Describes IGMP snooping


multicast configuration,
IGMP proxy multicast service
configuration, IGMP global
parameters configuration, IGMP
port parameters configuration,
MVLAN configuration, IPTV
package configuration ,CAC
configuration, and CDR
configuration.

Chapter 5, VoIP Service


Configuration

Describes VoIP service


configuration, VoIP service
configuration through the SIP
portocol, and VoIP service
configuration through the H.248
protocol.

Chapter 6, CES Service


Configuration

Describes CES MEF8 service


configuration, CES PWE3 service
configuration, CL1A CES service
configuration, CES TDM profile
configuration, CES PW link
configuration, CES TDM port
configuration, and clock source
configuration.

Chapter 7, VLAN Configuration

Describes basic VLAN


configuration, TLS VLAN
configuration, VLAN smart
QinQ configuration, 1:1 VLAN
configuration, and service port
VLAN configuration.

Chapter 8, STP Configuration

Describes STP mode and MSTP


configuration.

Chapter 9, DHCP Configuration

Describes DHCP snooping


configuration, DHCP server
configuration, and DHCP relay
configuration.

Chapter 10, ACL Configuration

Describes standard ACL


configuration, extended ACL
configuration, Layer-2 ACL
configuration, and hybrid ACL
configuration.

Chapter 11, Uplink Protection


Configuration

Describes uplink port protection,


UAPS configuration, CL1A 1+1
protection configuration, and link
aggregation configuration.

Chapter 12, QoS Configuration

Describes traffic limit configuration


based on ACL rules, traffic shaping
configuration, queue scheduling
configuration, DSCP mapping
configuration, and bridge port
QoS configuration.

Confidential and Proprietary Information of ZTE CORPORATION

About This Manual

Related
Documentation

Conventions

Chapter

Summary

Chapter 13, Security Management


Configuration

Describes user port location


configuration and control plane
security configuration.

Chapter 14, IP User Access


Management

Describes MFF configuration, and


ARP anti-spoofing configuration.

Chapter 15, System Security


Configuration

Describes SSH configuration,


TACACS+ configuration, RADIUS
configuration, and management
ACL configuration.

The following documentation is related to this manual:

ZXA10 C220 (V1.2.1) xPON Optical Access Convergence Equipment Documentation Guide

ZXA10 C220 (V1.2.1) xPON Optical Access Convergence Equipment Feature Description

ZXA10 C220 (V1.2.1) xPON Optical Access Convergence Equipment Product Description

ZXA10 C220 (V1.2.1) xPON Optical Access Convergence Equipment Hardware Description

ZXA10 C220 (V1.2.1) xPON Optical Access Convergence Equipment Cabinet Installation Guide

ZXA10 C220 (V1.2.1) xPON Optical Access Convergence Equipment Configuration Manual (NetNumen)

ZXA10 C220 (V1.2.1) xPON Optical Access Convergence Equipment Maintenance Manual

ZXA10 C220 (V1.2.1) xPON Optical Access Convergence Equipment Alarm and Notification Message Reference

ZXA10 C220 (V1.2.1) xPON Optical Access Convergence Equipment Command Reference (Volume I)

ZXA10 C220 (V1.2.1) xPON Optical Access Convergence Equipment Command Reference (Volume II)

ZXA10 C220 (V1.2.1) xPON Optical Access Convergence Equipment Command Reference (Volume III)

ZXA10 C220 (V1.2.1) xPON Optical Access Convergence Equipment Command Reference (Volume IV)

ZXA10 C220 (V1.2.1) xPON Optical Access Convergence Equipment Command Reference (Volume V)

ZTE documents employ the following typographical conventions.

Confidential and Proprietary Information of ZTE CORPORATION

III

ZXA10 C220 Configuration Manual (CLI)

Typeface

Meaning

Italics

References to other Manuals and documents.

Quotes

Links on screens.

Bold

Menus, menu options, function names, input fields,


radio button names, check boxes, drop-down lists,
dialog box names, window names.

CAPS

Keys on the keyboard and buttons on screens and


company name.
Note: Provides additional information about a certain
topic.
Checkpoint: Indicates that a particular step needs to
be checked before proceeding further.
Tip: Indicates a suggestion or hint to make things
easier or more productive for the reader.

Mouse operation conventions are listed as follows:

IV

Typeface

Meaning

Click

Refers to clicking the primary mouse button (usually the


left mouse button) once.

Doubleclick

Refers to quickly clicking the primary mouse button


(usually the left mouse button) twice.

Right-click

Refers to clicking the secondary mouse button (usually


the right mouse button) once.

Confidential and Proprietary Information of ZTE CORPORATION

Declaration of RoHS
Compliance
To minimize the environmental impact and take more responsibility to the earth we live, this document shall serve as formal declaration that the ZXA10 C220 manufactured by ZTE CORPORATION
is in compliance with the Directive 2002/95/EC of the European
Parliament - RoHS (Restriction of Hazardous Substances) with respect to the following substances:

Lead (Pb)

Mercury (Hg)

Cadmium (Cd)

Hexavalent Chromium (Cr (VI))

PolyBrominated Biphenyls (PBBs)

PolyBrominated Diphenyl Ethers (PBDEs)

The ZXA10 C220 manufactured by ZTE CORPORATION meets


the requirements of EU 2002/95/EC; however, some assemblies
are customized to client specifications. Addition of specialized,
customer-specified materials or processes which do not meet the
requirements of EU 2002/95/EC may negate RoHS compliance of the
assembly. To guarantee compliance of the assembly, the need for
compliant product must be communicated to ZTE CORPORATION in
written form. This declaration is issued based on our current level
of knowledge. Since conditions of use are outside our control, ZTE
CORPORATION makes no warranties, express or implied, and assumes
no liability in connection with the use of this information.

Confidential and Proprietary Information of ZTE CORPORATION

ZXA10 C220 Configuration Manual (CLI)

This page is intentionally blank.

II

Confidential and Proprietary Information of ZTE CORPORATION

Chapter

Basic Configuration
Table of Contents
Management Modes ............................................................ 1
NM Configuration................................................................ 5
Physical Configuration ........................................................12

Management Modes
The ZXA10 C220 supports the following management modes:

HyperTerminal

Telnet

NetNumen N31 unified management system

This manual describes the CLI configuration after login through


HyperTerminal or Telnet. Refer to ZXA10 C220 (V1.2.1) xPON Optical Access Convergence Equipment Configuration Manual (NetNumen) for NetNumen configuration.

Login Through HyperTerminal


Short Description
Prerequisites

Perform this procedure to log in to the ZXA10 C220 through HyperTerminal.


Before this operation, make sure that:

Device installation is complete.

The serial port of the maintenance console computer is connected to the CLI port of the ZXA10 C220 control and switching
card through a serial port cable.

The ZXA10 C220 device is powered on.

Context

To log in to the ZXA10 C220 through HyperTerminal, perform the


following steps:

Steps

1. In Windows XP, choose Start > All Programs > Accessories


> Communications > HyperTerminal. The Connection
Description dialog box is displayed, as shown in Figure 1.

Confidential and Proprietary Information of ZTE CORPORATION

ZXA10 C220 Configuration Manual (CLI)

FIGURE 1 CONNECTION DESCRIPTION DIALOG BOX

2. Enter Name and click OK. The Connect To dialog box is displayed, as shown in Figure 2.
FIGURE 2 CONNECT TO DIALOG

BOX

3. Select COM1 or COM2, and then click OK. The COM1 Properties dialog box is displayed, as shown in Figure 3.
Select 9600 for Bits per second, 8 for Data bits, None for Parity, 1 for Stop bits, and None for Flow control. Click OK.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 1 Basic Configuration

FIGURE 3 COM1 PROPERTIES DIALOG BOX

4. If the system runs normally, the HyperTerminal interface is


displayed. The system enters the ZXAN> mode. Carry out the e
nable command and enter the enable password zxr10 to enter
the ZXAN# mode, as shown in Figure 4.
FIGURE 4 HYPERTERMINAL WINDOW

END OF STEPS
Result

The subscriber successfully logs in to the ZXA10 C220 through


HyperTerminal.

Login Through Telnet


Short Description
Prerequisites

Perform this procedure to log in to the ZXA10 C220 through Telnet.


Before this operation, make sure that:

Confidential and Proprietary Information of ZTE CORPORATION

ZXA10 C220 Configuration Manual (CLI)

The in-band or out-of-band NM IP address is configured.

The Telnet computer can ping the in-band or out-of-band NM


IP address.

Context

To log in to the ZXA10 C220 through Telnet, perform the following


steps:

Steps

1. In Windows, choose Start > Run to display the Run dialog


box, as shown in Figure 5.
FIGURE 5 RUN DIALOG BOX

2. In the dialog box, enter Telnet x.x.x.x. where, x.x.x.x is


the NE IP address. Click OK to start the Telnet client.
3. If the connection is normal, the login dialog box is displayed.
Enter the user name and password zte to access the command
line privilege mode ZXAN#, as shown in Figure 6.
FIGURE 6 TELNET WINDOW

END OF STEPS
Result

The subscriber successfully logs in to the ZXA10 C220 through


Telnet.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 1 Basic Configuration

Login Through NetNumen N31


Unified Management System
Before manage the ZXA10 C220 through NetNumen N31 unified
management system, install the SQL Server database and the NetNumen N31 NMS software.
To manage NEs through the NMS, start the SQL Server database,
NMS server, and NMS client. If NetNumen N31 unified management system is started successfully, the NetNumenN31 Unified
Management System Window appears, as shown in Figure 7.
FIGURE 7 NETNUMENN31 UNIFIED MANAGEMENT SYSTEM WINDOW

NM Configuration
The ZXA10 C220 supports both in-band NM and out-of-band NM.

In-band NM is implemented through the uplink port. It is usually used in practical engineering.

Out-of-band NM is implemented through the Q port on the


control and switching card. It uses the non-service channel
to transmit the management information so that the management channel and the service channel are separated. It is usually used in local management and maintenance.

Configuring In-Band NM
Short Description
Prerequisites

Perform this procedure to configure in-band NM.


Before this operation, make sure that:

Confidential and Proprietary Information of ZTE CORPORATION

ZXA10 C220 Configuration Manual (CLI)

Context

Networking
Diagram

The network devices and lines are normal.

The shelf, rack, and cards are added.

The user has logged in to the ZXA10 C220 through HyperTerminal.

In in-band NM mode, the NMS information is transmitted through


the service channel of the ZXA10 C220. It is flexible in networking
without any auxiliary devices, and low in cost. But it is hard to
maintain the ZXA10 C220 when the service is down.
Figure 8 shows the in-band NM networking diagram.
FIGURE 8 IN-BAND NM NETWORKING DIAGRAM

Data Scheme

Table 1 lists the in-band NM data scheme.


TABLE 1 IN-BAND NM DATA SCHEME
Item

Data

In-band NM interface

Router interface

IP address: 10.67.1.254/24

SNMP server

IP address: 10.63.10.105/24

VLAN ID: 1000


IP address: 10.67.1.10/24

Version: V2C
Community name: public
Alarm level: NOTIFICATIONS

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 1 Basic Configuration

Configuration
Flow

Figure 9 shows the in-band NM configuration flow.


FIGURE 9 IN-BAND NM CONFIGURATION FLOW

Note:
This section describes the configuration on the ZXA10 C220. The
corresponding data must be configured on the router as well.
To configure in-band NM, perform the following steps:
Steps

1. Configure the in-band NM VLAN.


i.

Enter the global configuration mode.


ZXAN#configure terminal
Enter configuration commands, one per line.
ZXAN(config)#

ii.

End with CTRL/Z.

Add the NM VLAN.


ZXAN(config)#vlan 1000
ZXAN(config-vlan)#exit
ZXAN(config)#

iii. Enter the uplink interface configuration mode.


ZXAN(config)#interface gei_0/14/1
ZXAN(config-if)#

Confidential and Proprietary Information of ZTE CORPORATION

ZXA10 C220 Configuration Manual (CLI)

iv. Add the uplink port to the NM VLAN in tag mode.


ZXAN(config-if)#switchport vlan 1000 tag
ZXAN(config-if)#exit
ZXAN(config)#

Note:
The out-of-band and in-band NM IP addresses cannot be in
the same network segment.
2. Configure the IP address of the in-band NM interface.
i.

Enter the VLAN interface configuration mode.


ZXAN(config)#interface vlan 1000
ZXAN(config-if)#

ii.

Configure the IP address of the in-band NM interface.


ZXAN(config-if)#ip address 10.67.1.10 255.255.255.0
ZXAN(config-if)#exit
ZXAN(config)#

3. Configure the in-band NM route.


ZXAN(config)#ip route 10.63.10.0 255.255.255.0 10.67.1.254

4. (Optional) Configure the SNMP community.


The system has a default public community. Use the snmp-se
rver community command to configure the community if necessary. For detailed information, refer to ZXA10 C220 (V1.2.1)
xPON Optical Access Convergence Equipment Command Manual.
ZXAN(config)#show snmp config
snmp-server location No.889 BiBo Rd.
PuDong District, ShangHai, China
snmp-server contact +86-021-68895000
snmp-server packetSize 3000
snmp-server engine-id 80000f3e0300005858588888
snmp-server community public view allview rw
snmp-server view allview internet included
snmp-server view DefaultView system included
snmp-server enable trap SNMP
snmp-server enable trap VPN
snmp-server enable trap BGP
snmp-server enable trap OSPF
snmp-server enable trap RMON
snmp-server enable trap STALARM

5. Configure the IP address of the SNMP server (trap server).


ZXAN(config)#snmp-server host 10.63.10.105 trap
version 2c public enable NOTIFICATIONS
server-index 1 udp-port 162

Note:
Besides the ZTE NetNumen NMS, the network may contain a
third-party NMS that receives the reported traps, so multiple
SNMP server hosts can be configured.
6. (Optional) Configure the trap types that can be sent.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 1 Basic Configuration

The ZXA10 C220 supports six types of traps: SNMP, BGP,


OSPF, RMON, STALARM, and VPN. All traps are enabled by default and do not need to be configured. To configure the trap
type, use the snmp-server enable trap [bgp | ospf | rmon
| snmp | stalarm | vpn] command. For detailed information,
refer to ZXA10 C220 (V1.2.1) xPON Optical Access Convergence Equipment Command Manual.
ZXAN(config)#snmp-server enable trap
ZXAN(config)#exit
ZXAN#

7. Save the configuration data.


ZXAN#write
Building configuration...
...[OK]

Result

The ZXA10 C220 can be managed through the in-band NM IP address.

Configuring Out-Of-Band NM
Short Description
Prerequisites

Context

Networking
Diagram

Perform this procedure to configure out-of-band NM.


Before this operation, make sure that:

The network devices and lines are normal.

The shelf, rack, and cards are added.

The user has logged in to the ZXA10 C220 through HyperTerminal.

In out-of-band NM mode, the NMS information is transmitted


through the non-service channel. The management channel is
independent from the service channel. Thus, out-of-band NM is
more reliable compared with in-band NM.
Figure 10 shows the out-of-band NM networking diagram.
FIGURE 10 OUT-OF-BAND NM NETWORKING DIAGRAM

Confidential and Proprietary Information of ZTE CORPORATION

ZXA10 C220 Configuration Manual (CLI)

Data Scheme

Table 2 lists the out-of-band NM data scheme.


TABLE 2 OUT-OF-BAND NM DATA SCHEME

Configuration
Flow

Items

Data

Out-of-band NM interface (Q
interface)

IP address: 136.1.1.10/24

Router interface

IP address: 136.1.1.254/24

SNMP server

IP address: 10.63.10.105/24
Version: V2C
Community: private
Alarm: NOTIFICATIONS

Figure 11 shows the out-of-band NM configuration flow.


FIGURE 11 OUT-OF-BAND NM CONFIGURATION FLOW

Note:
This section describes the configuration on the ZXA10 C220. The
corresponding data must be configured on the router as well.
To configure out-of-band NM, perform the following steps:
Steps

10

1. Configure the IP address of the out-of-band NM interface.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 1 Basic Configuration

i.

Enter the global configuration mode.


ZXAN#configure terminal
Enter configuration commands, one per line.
ZXAN(config)#

ii.

End with CTRL/Z.

Enter the management interface configuration mode.


ZXAN(config)#interface mng1
ZXAN(config-if)#

iii. Configure the IP address of the out-of-band NM interface.


ZXAN(config-if)#ip address 136.1.1.10 255.255.255.0
ZXAN(config-if)#exit
ZXAN(config)#

Note:
The out-of-band and in-band NM IP addresses cannot be in the
same network segment.
2. Configure the out-of-band NM route.
ZXAN(config)#ip route 10.63.10.0 255.255.255.0 136.1.1.254

3. (Optional) Configure the SNMP community.


The system has a default public community. Use the snmp-se
rver community command to configure the community if necessary. For detailed information, refer to ZXA10 C220 (V1.2.1)
xPON Optical Access Convergence Equipment Command Manual.
ZXAN(config)#show snmp config
snmp-server location No.889 BiBo Rd.
PuDong District, ShangHai, China
snmp-server contact +86-021-68895000
snmp-server packetSize 3000
snmp-server engine-id 80000f3e0300005858588888
snmp-server community public view allview rw
snmp-server view allview internet included
snmp-server view DefaultView system included
snmp-server enable trap SNMP
snmp-server enable trap VPN
snmp-server enable trap BGP
snmp-server enable trap OSPF
snmp-server enable trap RMON
snmp-server enable trap STALARM

4. Configure the IP address of the SNMP server (trap server).


ZXAN(config)#snmp-server host 10.63.10.105 trap
version 2c public enable NOTIFICATIONS
server-index 1 udp-port 162

Note:
Besides the ZTE NetNumen NMS, the network may contain a
third-party NMS that receives the reported traps, so multiple
SNMP server hosts can be configured.
5. (Optional) Configure the trap types that can be sent.
The ZXA10 C220 supports six types of traps: SNMP, BGP,
OSPF, RMON, STALARM, and VPN. All traps are enabled by default and do not need to be configured. To configure the trap

Confidential and Proprietary Information of ZTE CORPORATION

11

ZXA10 C220 Configuration Manual (CLI)

type, use the snmp-server enable trap [bgp | ospf | rmon


| snmp | stalarm | vpn] command. For detailed information,
refer to ZXA10 C220 (V1.2.1) xPON Optical Access Convergence Equipment Command Manual.
ZXAN(config)#snmp-server enable trap
ZXAN(config)#exit
ZXAN#

6. Save the configuration data.


ZXAN#write
Building configuration...
...[OK]

Result

The ZXA10 C220 can be managed through the out-of-band NM IP


address.

Physical Configuration
This section includes the following:

Adding a Rack

Adding a Shelf

Adding a Card

Deleting a Card

Showing Card Information

Resetting a Card

Swapping the Main Control Cards

Adding a Rack
Short Description
Prerequisites

Context
Steps

Perform this procedure to add a rack.


Before this operation, make sure that:

The network devices work properly.

The user has logged in to the ZXA10 C220 through HyperTerminal or Telnet.

To add a rack, perform the following steps:


1. Use the configure terminal command to enter the global configuration mode.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.

2. Use the add-rack command to add the rack.


ZXAN(config)#add-rack rackno 1 racktype ETSI21

12

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 1 Basic Configuration

Note:
The ZXA10 C220 supports only one rack at present, and thus
rackno can only be 0.
END OF STEPS
Result

The rack is added successfully.

Adding a Shelf
Short Description
Prerequisites

Context

Perform this procedure to add a shelf to the rack.


Before this operation, make sure that:

The network devices work properly.

The user has logged in to the ZXA10 C220 through HyperTerminal or Telnet.

The rack is successfully added.

The ZXA10 C220 supports two types of shelves:

ZXA10C220-A: ZXA10 C220 shelf of type A, front outlet shelf

ZXA10C220-B: ZXA10 C220 shelf of type B, back outlet shelf

To add a shelf, perform the following steps:


Steps

1. Enter the global configuration mode.


ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.

2. Use the add-shelf command to add the shelf.


ZXAN(config)#add-shelf shelfno 1 shelftype ETSI_SHELF

Note:
The ZXA10 C220 supports only one shelf at present, and thus
shelfno can only be 1.
3. Use the show shelf command to check whether the shelf is
successfully added.
ZXAN(config)#show shelf
Rack
Shelf
ShelfType
ConnectId
CleiCode
-------------------------------------------------------1
1
ETSI_SHELF
0
BVM5Z00GRA

END OF STEPS
Result

The shelf is added successfully.

After the shelf is added, the system automatically adds two


main control cards. Use the show card command to view the
information on the main control cards.

Confidential and Proprietary Information of ZTE CORPORATION

13

ZXA10 C220 Configuration Manual (CLI)

ZXAN(config)#show card
Rack Shelf Slot CfgType RealType Port HardVer SoftVer Status
-------------------------------------------------------------1
1
10
SCXL
SCXL
0
080600 V1.0T7 INSERVICE
1
1
11
SCXL
0
OFFLINE

Adding a Card
Short Description
Prerequisites

Context

Perform this procedure to add a card.


Before this operation, make sure that:

The network devices work properly.

The user has logged in to the ZXA10 C220 through HyperTerminal or Telnet.

The rack is added successfully.

The shelf is added successfully.

The card can be added in the following ways:

Enable card auto-configuration.


After this function is enabled, the system automatically identifies the card in each slot and you do not need to add the cards
manually.

Add a card to each slot manually.


According to the actual configuration, use the add-card command to add a card to each slot.

To add a card, perform the following steps:


Steps

1. Enter the global configuration mode.


ZXAN#configure terminal
Enter configuration commandsone per line. End with CTRL/Z.

2. Add cards.
i.

Enable card auto-configuration.


ZXAN(config)#set-pnp enable
ZXAN(config)#show pnp
pnp function is enable.

ii. Use the add-card command to add a subscriber card or


uplink card according to the slot number and card type.
To add the XUTQ card in slot 21:
ZXAN(config)#add-card slotno 21 XUTQ

3. Use the show card command to check whether the card is


successfully added.
ZXAN(config)#show card
Rack Shelf Slot CfgType RealType Port HardVer SoftVer Status
-------------------------------------------------------------0
0
6
EIGM
EIGM
4
V0.0
V1.2.1
INSERVICE
0
0
7
GCSD
GCSD
0
V1
V1.2.1
INSERVICE
0
0
8
GCSD
GCSD
0
V1
V1.2.1
STANDBY
0
0
10
GPFA
GPFAE
4
V1.19 V1.2.1
INSERVICE
0
0
11
GPFA
GPFAC
4
V0
V1.2.1
INSERVICE
0
0
12
GPFA
GPFAB
4
V0
V1.2.1
INSERVICE

14

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 1 Basic Configuration

14

GPFA

GPFAB

V0

V1.2.1

INSERVICEE

END OF STEPS
Result

The cards is added successfully.

Showing Card Information


Short Description
Context

Perform this procedure to show card information.


The ZXA10 C220 supports the following card states:

DISABLE: The card is added and is online, but the system fails
to receive the card information.

INSERVICE: The card is working properly.

STANDBY: The card is in standby state.

OFFLINE: The card is added but is offline.

CONFIGING: The card is being configured.

CONFIGFAILED: The card configuration fails.

TYPEMISMATCH: The card type is different from the configured


type.

HWONLINE: The card type is not added in the system or the


main control card does not identify the card type.

To show cards, perform the following steps:


Steps

1. Use the show card command to show the configuration and


status of all the cards in the ZXA10 C220 system.
ZXAN(config)#show card
Rack Shelf Slot CfgType RealType Port HardVer SoftVer Status
-------------------------------------------------------------0
0
7
GCSD
GCSD
0
V1
V1.2.1 INSERVICE
0
0
8
GCSD
GCSD
0
V1
V1.2.1 STANDBY
0
0
10
GPFA
GPFAE
4
V1.19
V1.2.1 INSERVICE

END OF STEPS
Result

The system displays the shelf, rack, and slot numbers of the main
control cards and subscriber cards, as well as the card configured
type, actual type, hardware version, software version, and card
states.

Deleting a Card
Short Description
Prerequisites

Perform this procedure to delete a card.


Before this operation, make sure that:

The network devices work properly.

The user has logged in to the ZXA10 C220 through HyperTerminal or Telnet.

Confidential and Proprietary Information of ZTE CORPORATION

15

ZXA10 C220 Configuration Manual (CLI)

Context

When the card in a slot needs to be changed, it needs to be deleted


first. The main control card cannot be deleted.
To delete a card, perform the following steps:

Steps

1. Enter the global configuration mode.


ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.

2. Use the del-card command to delete the card.


To delete the card in slot 5:
ZXAN(config)#del-card slotno 5
Confirm to delete card? [yes/no]:y

END OF STEPS
Result

The card is deleted successfully.

Resetting a Card
Short Description
Prerequisites

Context

Perform this procedure to reset a card.


Before this operation, make sure that:

The network devices work properly.

The user has logged in to the ZXA10 C220 through HyperTerminal or Telnet.

When a card is faulty, it needs to be reset.


To reset a card, perform the following steps:

Steps

1. Enter the privilege mode.


ZXAN(config)#exit
ZXAN#

2. Use the reset-card command to reset the card.


To reset the card in slot 5:
ZXAN#reset-card slotno 5
Confirm to reset card? [yes/no]:y

END OF STEPS
Result

The card is reset successfully.

Swapping the Control and Switching


Cards
Short Description
Prerequisites

Perform this procedure to swap the active control and switching


card with the standby control and switching card.
Before this operation, make sure that:

16

The network devices work properly.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 1 Basic Configuration

Context

The user has logged in to the ZXA10 C220 through HyperTerminal or Telnet.

The standby main control card works properly.

When the active control and switching card is faulty, swap it to the
standby control and switching card.
To swap the active control and switching card with the standby
control and switching card, perform the following steps:

Steps

1. Enter the privilege mode.


ZXAN(config)#exit
ZXAN#

2. Use the swap command to swap the active main control card
to the standby main control card.
ZXAN#swap
Confirm to master swap? [yes/no]:y

END OF STEPS
Result

The active control and switching card is swapped with the standby
control and switching card.

Confidential and Proprietary Information of ZTE CORPORATION

17

ZXA10 C220 Configuration Manual (CLI)

This page is intentionally blank.

18

Confidential and Proprietary Information of ZTE CORPORATION

Chapter

EPON Service
Configuration
Table of Contents
EPON Basic Service Configuration ........................................19
10G EPON Service Configuration..........................................45
EPON Protection Configuration.............................................50

EPON Basic Service


Configuration
This section includes the following:

Overview

Configuring EPON Service

Configuring the ONU Type Profile

Authenticating an ONU

Configuring the ONU Bandwidth

Configuring the Bandwidth Profile

Configuring the ONU In-Band IP Address

ONU Configuration

Managing the ONU Remotely

Configuring the OLT Port

Overview
Service
Description

EPON access is a flexible access technology that provides super


bandwidth access in both broadband and narrowband service environment. It supports multiple rate modes and uses a single optical fiber to provide user with voice, data, and video services.

Service
Specifications

The ZXA10 C220 supports EPON access service through the


EPFC/EPFCB card:

Confidential and Proprietary Information of ZTE CORPORATION

19

ZXA10 C220 Configuration Manual (CLI)

Each EPFC/EPFCB card provides four EPON interfaces, supports the


splitting ratio of 1:64 at the maximum, and provides up to 2560
ports for ONU access.

Configuring EPON Service


Short Description
Prerequisites

Perform this procedure to configure EPON service.


Before this operation, make sure that:

The network devices and lines are normal.

The VLAN of the upper-layer device interface corresponds to


the VLAN configured on the uplink interface.

The EPON service card status is normal.

Context

The EPON access service can be applied in the following scenarios:


FTTH, FTTB, and FTTC. The basic configuration steps are the same
for different scenarios. This instance takes the Internet service in
FTTB application as an example.

Networking
Diagram

Figure 12 shows the networking diagram of the EPON access service.


FIGURE 12 EPON ACCESS SERVICE NETWORKING DIAGRAM

In the networking, the user computer is connected to the ONU


FE port. The user data frame is added with the VLAN tag on the
ONU FE port. The user data are distributed to each service channel
according to the user-side VLAN. The ZXA10 C220 completes VLAN

20

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

tag translation (from user-side VLAN to uplink VLAN) and sends


data out through the upstream port.
Data Scheme

Table 3 lists the EPON access service data scheme.


TABLE 3 EPON ACCESS SERVICE DATA SCHEME
Item

Data

Remarks

VLAN

VLAN ID: 100

Upstream port

0/6/1

OLT port

0/5/4

ONU information

Type: F820
MAC address:
0019.c600.0011
ONU ID: 1
Port ID for
the ONU to be
connected to PC:
No.1 ETH port

Upstream: 5
Mbps
Downstream: 10
Mbps

ONU bandwidth

Requirements for
upstream devices

Ethernet Switch

Ethernet Layer-2
Switch transmits
the ZXA10 C220
service packets
transparently.
Configure the
VLAN connected
with the ZXA10
C220 device and
keep the VLAN ID
consistent with
the ZXA10 C220
uplink VLAN.

For detailed ES
and BRAS device
configuration, refer to
the relevant operation
manual.

Note:
According to the authentication and accounting requirements
of dial-in users, complete the BRAS configuration, for example,
the access user domain (including the authentication scheme,
accounting scheme, and authorization scheme that the domain
needs to bind) and specify the RADIUS server.

Confidential and Proprietary Information of ZTE CORPORATION

21

ZXA10 C220 Configuration Manual (CLI)

Configuration
Flow

Figure 13 shows the configuration flow of the EPON access service.


FIGURE 13 EPON ACCESS SERVICE CONFIGURATION FLOW

To configure EPON service, perform the following steps:


Steps

1. Create a VLAN.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan 100
ZXAN(config-vlan)#exit
ZXAN(config)#

Note:
To display the created VLAN information, use the show vlan
summary command.
2. Configure the VLAN of the OLT uplink port.
ZXAN(config)#interface gei_0/6/1
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 100 tag
ZXAN(config-if)#exit

3. View the unauthenticated ONU information on the port.

22

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

ZXAN(config-if)#show onu unauthentication epon-olt_0/5/4


Onu interface :
MAC address :
SN :
AuthState State :
OnTime :

epon-onu_0/5/4:1
0019.c600.0011
deny
2009/08/19 11:12:29

ZXAN(config)#

4. Enter the EPON-OLT interface mode and authenticate the ONU


by the MAC address.
ZXAN(config)#interface epon-olt_0/5/4
ZXAN(config-if)#onu 1 type ZTE-F820 mac 0019.c600.0011
ZXAN(config-if)#exit

5. Enter the EPON-ONU interface mode and enable the interface


authentication protocol.
ZXAN(config)#interface epon-onu_0/5/4:1
ZXAN(config-if)#admin enable

Note:
To display the detailed information of the current ONU, use the
show onu detail-info command.
6. Set the ONU upstream and downstream bandwidth.
ZXAN(config-if)#sla upstream maximum 5120
ZXAN(config-if)#sla downstream maximum 10240

7. Configure the VLAN of the PON ONU port.


ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 100 tag
ZXAN(config-if)#exit

8. Enter the ONU remote management mode to configure the


VLAN of the ONU Ethernet port.
ZXAN(config)#pon-onu-mng epon-onu_0/5/4:1
ZXAN(epon-onu-mng)#vlan port eth_0/1 mode tag vlan 100 priority 0
ZXAN(epon-onu-mng)#exit

Note:
F820 provides at most 24 FE interfaces ranging from eth_0/1
to eth_0/24.
9. Save the data.
ZXAN(config)#exit
ZXAN#write
Building configuration...
..[OK]

Result

EPON access service is configured successfully.

Configuring the ONU Type Profile


Short Description

Perform this procedure to configure the ONU type profile.

Confidential and Proprietary Information of ZTE CORPORATION

23

ZXA10 C220 Configuration Manual (CLI)

Prerequisites

Context

Before this operation, make sure that:

The network devices and lines are normal.

The in-band or out-of-band NM is configured.

When the new ONU type does not exist in the system, perform this
procedure.
Users can use the show onu-type epon command to view the
default ONU types in the system.
To configure the ONU type profile, perform the following steps:

Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the pon command to enter the PON configuration mode.
3. Use the onu-type command to add an ONU type profile.

Note:
In the ZXA10 C220 system, the ONU type name must be unique
in EPON and GPON service.
4. Use the onu-type-if command to configure the user port of
the new ONU type.
5. Use the EPON command to enter the EPON configuration
mode.
6. Use the auto-dispatch-set command to enable or disable
auto-dispatch for the new ONU type.

Note:
After auto-dispatch is enabled, the OLT automatically dispatches the configuration, covering the ONU local configuration
data, when the ONU gets online.
7. Use the show onu-type epon command to view the properties of the new ONU type.
END OF STEPS
Result
Example

The ONU type profile is configured successfully.


Add a 10G EPON ONU with the type name of ZTE-F822A, including
24 Ethernet ports and 24 POTS ports. Disable ZTE-F822A autodispatch.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#pon
ZXAN(config-pon)#onu-type ZTE-F822A epon description 24FE,
24POTS speed 10g-asymmetric
ZXAN(config-pon)#onu-type-if ZTE-F822A eth_0/1-24
ZXAN(config-pon)#onu-type-if ZTE-F822A pots_0/1-24
ZXAN(config-pon)#exit
ZXAN(config)#epon
ZXAN(config-epon)#auto-dispatch-set ZTE-F822A disable
ZXAN(config-epon)#show onu-type epon ZTE-F822A
Onu type name : ZTE-F822A

24

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

Pon type : epon


Description : 24FE,24POTS
Protect type: none
Speed: 10g-asymmetric

Authenticating an ONU
Short Description
Prerequisites

Context

Perform this procedure to authenticate an ONU.


Before this operation, make sure that:

The network devices and lines are normal.

The EPON service card status is normal.

The ZXA10 C220 supports the following ONU authentication


modes:

MAC address authentication: using the ONU PON MAC address


for authentication. By default, this mode is used.

Logical ID authentication: using the ONU logical ID for authentication.

SN authentication: using the ONU SN for authentication.

Hybrid authentication: using any of the MAC address, logical


ID, or SN for authentication.

SN+MAC authentication: using the ONU SN for authentication


when the ONU enters the network for the first time, and using
the PON MAC address for authentication when the ONU gets
online for the second time.

In EPON configuration mode, the user can use the onu-authentic


ation-mode service command to change the ONU authentication
mode. For example, to change the authentication mode of the
ONU in slot 0/5 to SN, carry out the following commands:
ZXAN(config)#epon
ZXAN(config-epon)#onu-authentication-mode service 0/5 sn
ZXAN(config-epon)#exit

To authenticate an ONU, perform the following steps:


Steps

1. Use the show onu unauthentication command to view the


unauthenticated ONU information.
2. Use the configure terminal command to enter the global configuration mode.
3. Use the interface command to enter the OLT interface configuration mode.
4. Use the onu command to authenticate the ONU.
5. User the show onu authentication command to view the authenticated ONU information.
6. Use the interface command to enter the ONU interface configuration mode.
7. Use the admin enable command to enable the ONU interface
authentication protocol.
END OF STEPS

Confidential and Proprietary Information of ZTE CORPORATION

25

ZXA10 C220 Configuration Manual (CLI)

Result
Example

ONU authentication is complete.


View the unauthenticated ONU information on port epon-olt_0/6/4
and authenticate the ONU.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#interface epon-olt_0/6/4
ZXAN(config-if)#show onu unauthentication epon-olt_0/6/4
Onu interface :
epon-onu_0/6/4:1
MAC address :
0019.c600.0011
SN :
AuthState State :
deny
OnTime :
2009/08/19 11:12:29
ZXAN(config-if)#onu 1 type ZTE-F820 mac 0019.c600.0011
ZXAN(config-if)#exit
ZXAN(config)#show onu authentication epon-olt_0/6/4
Onu interface :
epon-onu_0/6/4:1
Onu type :
ZTE-F820
MAC address :
0019.c600.0011
SN :
LOID :
Active status :
active
State :
Online
LastAuthTime :
2009/08/19 11:12:29
ZXAN(config)#interface epon-onu_0/6/4:1
ZXAN(config-if)#admin enable

Configuring the ONU Bandwidth


Short Description
Prerequisites

Context

Perform this procedure to configure the ONU bandwidth.


Before this operation, make sure that:

The network devices and lines are normal.

The EPON service card status is normal.

The ONU is authenticated.

The ZXA10 C220 supports the following ONU bandwidth configuration methods:

Configure the bandwidth for a single ONU.

Create a bandwidth profile.

This topic describes how to configure the bandwidth for a single


ONU.
Table 4 lists the parameters for configuring the ONU bandwidth.
TABLE 4 PARAMETERS

26

FOR

CONFIGURING

THE

ONU BANDWIDTH

Parameter

Description

Assured
bandwidth

The assured upstream bandwidth that the system


allocates to the ONU when the ONU sends the
request message

Maximum
bandwidth

The maximum upstream/downstream bandwidth


that the system can allocate to the ONU in the
idle period

Maximum burst
size

The maximum burst upstream/downstream traffic


on the ONU

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

Parameter

Description

Priority

The ONU priority compared with other ONUs on


extra bandwidth allocation (except the assured
bandwidth)
By default, all the ONUs have the same priority.
The default value is recommended.

Fixed bandwidth

The bandwidth that the OLT allocates to the ONU


after the ONU is enabled, regardless whether the
ONU has the upstream traffic

Fixed packet
length

The fixed length of a packet reported by the ONU

To configure the ONU bandwidth, perform the following steps:


Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the interface command to enter the ONU interface configuration mode.
3. Use the sla upstream command to configure the ONU upstream bandwidth.
4. Use the sla downstream command to configure the ONU
downstream bandwidth.
5. Use the show onu sla upstream command to view the ONU
upstream bandwidth.
6. Use the show onu sla downstream command to view the
ONU downstream bandwidth.
END OF STEPS

Result
Example

The ONU bandwidth is configured successfully.


Configure the bandwidth of ONU 1 under EPON interface 4 of slot
5 and view the configuration information. Table 5 lists the configuration information.
TABLE 5 ONU BANDWIDTH CONFIGURATION DATA
Item

Data

Assured bandwidth

10000 Kbps

Maximum bandwidth

100000 Kbps

Maximum bandwidth

10240 Kbps

Upstream

Downstream

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#interface epon-onu_0/5/4:1
ZXAN(config-if)#sla upstream assured 10000 maximum 10000
ZXAN(config-if)#sla downstream maximum 10240
ZXAN(config-if)#show onu sla upstream epon-onu_0/5/4:1

Confidential and Proprietary Information of ZTE CORPORATION

27

ZXA10 C220 Configuration Manual (CLI)

ID

MaxBw
MinBw
FixBw
FixPkt MaxBurst Pri ProfileName
(Kbps) (Kbps) (Kbps) (Bytes) (Bytes)
-----------------------------------------------------------1
10000
10000
0
64
45000
0
N/A
ZXAN(config-if)#show onu sla downstream epon-onu_0/5/4:1
ID MaxBw(Kbps) MaxBurstSize(Bytes) ProfileName
--------------------------------------------------------------1
10240
208600
N/A

Configuring the Bandwidth Profile


Short Description
Prerequisites

Context

Perform this procedure to configure the ONU bandwidth profile.


Before this operation, make sure that:

The network devices and lines are normal.

The EPON service card status is normal.

The ONU is authenticated.

The ZXA10 C220 supports the following ONU bandwidth configuration methods:

Configure the bandwidth for a single ONU.

Create a bandwidth profile.

The bandwidth profile is used in batch configuration of ONU bandwidth.


The system default profile is default. Table 6 lists its parameters.
TABLE 6 DEFAULT BANDWIDTH PROFILE PARAMETERS
Direction

Parameter

Default Value

Upstream

Maximum bandwidth

2000 Kbps

Minimum bandwidth

1000 Kbps

Fixed bandwidth

Fixed packet size

64 byte

Maximum burst size

45000 byte

Priority

Maximum bandwidth

512 Kbps

Maximum burst size

45000 byte

Downstream

To configure the ONU bandwidth profile, perform the following


steps:
Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the epon command to enter the EPON configuration mode.
3. Use the onu-sla-profile profile-name create command to
create a bandwidth profile.

28

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

4. Use the onu-sla-profile profile-set command to configure


the downstream and upstream parameters of the bandwidth
profile.

Note:
Among the upstream bandwidth configuration parameters, the
assured bandwidth and maximum bandwidth parameters are
mandatory. The default values are recommended for other
parameters.
Among the downstream bandwidth configuration parameters,
the maximum bandwidth parameter is mandatory. The system
automatically calculates and sets the maximum burst size parameter according to the maximum bandwidth.
5. Use the show epon onu-sla-profile command to view the
bandwidth profile.
6. Use the exit command to exit the EPON configuration mode.
7. Use the interface command to enter the ONU interface configuration mode.
8. Use the sla-profile command to apply the bandwidth profile
to the ONU.
9. Use the show onu sla command to view the ONU bandwidth
configuration.
END OF STEPS
Result
Example

The bandwidth profile is configured successfully.


Configure the bandwidth profile and apply it to ONU 1 under EPON
interface 4 of slot 5. Table 7 lists the configuration information.
TABLE 7 ONU BANDWIDTH PROFILE CONFIGURATION DATA
Item

Data

Upstream

Downstream

Fixed bandwidth

2000 Kbps

Maximum bandwidth

5000 Kbps

Maximum bandwidth

10000 Kbps

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#epon
ZXAN(config-epon)#onu-sla-profile profile-name create zte
ZXAN(config-epon)#onu-sla-profile profile-set zte upstream assured 2000
maximum 5000
ZXAN(config-epon)#onu-sla-profile profile-set zte downstream maximum 10000
ZXAN(config-epon)#show epon onu-sla-profile zte
ProfileName :zte
UpStream
MaxBw
MinBw
FixBw
FixPktSize MaxBurstSize Priority
(Kbps)
(Kbps)
(Kbps)
(Bytes)
(Bytes)
----------------------------------------------------------------------5000
2000
0
64
45000
0
Downstream
MaxBw(Kbps) MaxBurstSize(Bytes)

Confidential and Proprietary Information of ZTE CORPORATION

29

ZXA10 C220 Configuration Manual (CLI)

-----------------------------------------------------------------10000
205000
Onu reference:
ZXAN(config-epon)#exit
ZXAN(config)#interface epon-onu_0/5/4:1
ZXAN(config-if)#sla-profile zte
ZXAN(config-if)#show onu sla upstream epon-onu_0/5/4:1
ID MaxBw
MinBw
FixBw
FixPkt MaxBurst Pri ProfileName
(Kbps) (Kbps) (Kbps) (Bytes) (Bytes)
-----------------------------------------------------------1
5000
2000
0
64
45000
0
zte
ZXAN(config-if)#show onu sla downstream epon-onu_0/5/4:1
ID MaxBw(Kbps) MaxBurstSize(Bytes) ProfileName
--------------------------------------------------------------1
10000
205000
zte

Configuring the ONU In-Band IP


Address
Short Description
Prerequisites

Context

Perform this procedure to configure the ONU in-band IP address


on the OLT to manage the ONU remotely.
Before this operation, make sure that:

The network devices and lines are normal.

The EPON service card status is normal.

The ONU is authenticated.

The EPON ONU can be configured in the following ways:

In-band configuration
Create an ONU in-band NM channel, and then log in to the
ONU to implement configuration. The data are configured on
the ONU and needs to be saved on the ONU.
The ONU in-band NM IP address refers to the IP address that
can be connected to the ONU through the ZXA10 C220 uplink
port. The ONU can be configured and upgraded through this
IP address.

Extended OAM configuration


The EPON technology provides the OAM channel for remote
configuration. In this mode, in-band NM does not need to be
configured. This configuration can be implemented only when
the ONU is successfully registered and authenticated. The configuration data are saved on the OLT and delivered to the ONU
to take effect through the OAM channel.

30

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

Note:
In an actual project, the user does not need to configure the
in-band NM IP addresses for all the ONUs. Configure the in-band
NM IP addresses for the ONUs that need voice configuration or
upgrade, such as ZTE-F820 and ZTE-F822.
It is recommended to configure the ONU in-band NM IP address in
the same management VLAN and network segment as the ZXA10
C220 device. Then, the NMS server can connect the ONU when it
connects the OLT.
To configure the ONU in-band IP address, perform the following
steps:
Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the vlan command to create the ONU in-band NM VLAN.
3. Use the interface command to enter the ONU interface configuration mode.
4. Use the switchport mode command to change the PON-ONU
port mode.
5. Use the switchport vlan command to add the PON-ONU port
to the NM VLAN in tagged mode.
6. Use the interface command to enter the OLT uplink port configuration mode.
7. Use the switchport mode command to change the OLT uplink
port mode.
8. Use the switchport vlan command to add the OLT uplink port
to the NM VLAN in tagged mode.
9. Use the pon-onu-mng command to enter the ONU remote
management mode.
10. Use the mgmt-ip command to set the ONU in-band NM IP
address.
END OF STEPS

Result
Example

The ONU in-band IP address is configured successfully.


Set the in-band NM VLAN of No.1 ONU F820 under interface 4 of
slot 5 to 2600 and the in-band IP address to 198.2.128.5/24.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan 2600
ZXAN(config-vlan)#exit
ZXAN(config)#interface epon-onu_0/5/4:1
ZXAN(config-if)#switchport mode hybrid
ZXAN(config-if)#switchport vlan 2600 tag
ZXAN(config-if)#exit
ZXAN(config)#interface gei_0/6/1
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 2600 tag
ZXAN(config)#pon-onu-mng epon-onu_0/5/4:1
ZXAN(epon-onu-mng)#mgmt-ip 192.2.128.5 255.255.255.0 vlan
2600 priority 7 route 192.2.128.0 255.255.255.0 192.2.128.1
status enable
ZXAN(epon-onu-mng)#exit

Confidential and Proprietary Information of ZTE CORPORATION

31

ZXA10 C220 Configuration Manual (CLI)

Postrequisite

Carry out the ping command on the OLT to check whether the
ONU in-band IP address is successfully configured.
ZXAN#ping 198.2.128.5
sending 5,100-byte ICMP echos to 10.1.1.2,timeout is 2 seconds.
!!!!!
Success rate is 100 percent(5/5),round-trip min/avg/max= 0/8/40 ms.
//The ONU in-band IP address is successfully configured.

ONU Configuration
In EPON service configuration, the configuration procedures for D
series and F series are the same. The configuration procedure for
ZXDSL 9806H is different.
This topic includes the following:

Configuring the D-Series/F-Series ONU Access Service

Configuring the 9806H ADSL Access Service

Configuring the D-Series/F-Series ONU Access


Service
Short Description
Prerequisites

Context

Perform this procedure to configure the D-series/F-series ONU access service.


Before this operation, make sure that:

The network devices and lines are normal.

The EPON access service configuration is completed.

The ONU device runs properly.

The ONU port supports six VLAN modes, as listed in Table 8.


TABLE 8 VLAN MODES
Mode

Direction

Handling

Transparent

Upstream

The system does not change the tagged


frame (reserving the old VLAN tag) and
forwards the frame.
The system does not change the
untagged frame and forwards the frame.

Downstream

The system does not change the tagged


frame (reserving the old VLAN tag) and
forwards the frame.
The system does not change the
untagged frame and forwards the frame.

32

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

Mode

Direction

Handling

Tag

Upstream

The system discards the tagged frame.


The system adds a new VLAN tag to the
untagged frame according to the VID
parameter and forwards the frame.

Downstream

If the VLAN ID of the downstream


tagged frame is the same as the
configured VID, the system forwards
the frame to the corresponding UNI
port according to the VID. If the VLAN
ID of the downstream tagged frame is
different from the configured VID, the
system discards the frame.
The system discards the untagged
frame.

Translation

Upstream

If the original VID of the tagged frame


has a corresponding entry (input VID) in
the VLAN translation list of the related
port, the system transfers the VID to
the output VID according to the entry,
and then forwards the frame. If the VID
has no corresponding entry in the VLAN
translation list of the related port, the
system discards the frame.
The system adds the default VLAN ID to
the untagged frame and forwards the
frame.

Downstream

If the original VID of the tagged frame


has a corresponding entry (input VID) in
the VLAN translation list of the related
port, the system transfers the VID to the
output VID according to the entry, and
then forwards the frame. If the original
VID is the default VID, the system strips
the tag and forwards the frame. If the
VID has no corresponding entry in the
VLAN translation list of the related port,
the system discards the frame.
The system discards the untagged
frame.

Aggregation

Upstream

If the VLAN ID of the frame is the


same as an aggregated VLAN in the
VLAN aggregation table entries, the
system transfers the frame VID to the
corresponding VLAN to be aggregated,
records the source MAC address of the
service traffic, and then forwards the
frame. If the VLAN ID of the frame is
different from any aggregated VLAN in
the VLAN aggregation table entries, the
system discards the frame.
The system adds the default VLAN ID to
the untagged frame and forwards the
frame.

Downstream

If the VLAN ID of the frame is the


same as a VLAN to be aggregated in
the VLAN aggregation table entries, the

Confidential and Proprietary Information of ZTE CORPORATION

33

ZXA10 C220 Configuration Manual (CLI)

Mode

Direction

Handling
system transfers the frame VID to the
corresponding aggregated VLAN, and
then forwards the frame. If the original
VID is the default VID, the system strips
the tag and forwards the frame. If the
VLAN ID of the frame is different from
VLAN to be aggregated or default VLAN
ID, the system discards the frame.
The system discards the untagged
frame.

Trunk

Upstream

If the VLAN ID of the tagged frame


is permitted by the port, the system
forwards the frame to the upper-layer
device. If the VLAN ID of the tagged
frame is denied by the port, the system
discards the frame.
The system handles the untagged
frames in two ways:

Downstream

If the ONU does not support the


CTC2.1 standard, the system
discards the frame.
If the ONU supports the CTC2.1
standard, the system adds the
default VLAN ID to the frame and
forwards it.

The system handles the tagged frames


in two ways:

If the ONU does not support the


CTC2.1 standard and the VLAN ID of
the frame is permitted by the port,
the system forwards the frame to
the lower-layer device. If the VLAN
ID of the frame is denied by the
port, the system discards the frame.
If the ONU supports the CTC2.1
standard and the VLAN ID of the
frame is permitted by the port, the
system forwards the frame to the
lower-layer device. If the VLAN ID
of the frame is the default VLAN, the
system strips the tag and forwards
the frame to the lower-layer device.
If the VLAN ID of the frame is denied
by the port, the system discards the
frame.

The system discards the untagged


frame.

34

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

Mode

Direction

Handling

Hybrid (for
the ONUs
that do
not support
the CTC2.1
standard)

Upstream

If the VLAN ID of the tagged frame


is permitted by the port, the system
forwards the frame to the upper-layer
device. If the VLAN ID of the tagged
frame is denied by the port, the system
discards the frame.
The system adds the default VLAN ID to
the untagged frame and forwards the
frame.

Downstream

If the VLAN ID of the tagged frame


is permitted by the port, the system
forwards the frame to the lower-layer
device. If the VLAN ID of the frame
is the default VLAN, the system strips
the tag and forwards the frame to the
lower-layer device. If the VLAN ID of
the tagged frame is denied by the port,
the system discards the frame.
The system discards the untagged
frame.

To configure the D-series/F-series ONU access service, perform


the following steps:
Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the pon-onu-mng command to enter the ONU remote
management mode.
3. Use the vlan port command to configure the ONU Ethernet
port VLAN.
4. Use the show remote onu vlan to view the ONU VLAN configuration information.
END OF STEPS

Result
Example

The ONU access service is configured successfully.


Add VLAN tag 100 and priority 1 to the upstream Ethernet frames
on port eth_0/1 of F822.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#pon-onu-mng epon-onu_0/5/4:1
ZXAN(epon-onu-mng)#vlan port eth_0/1 mode tag vlan 100 priority 1
ZXAN(epon-onu-mng)#show remote onu vlan epon-onu_0/5/4:1
Ethport
Mode
vlan
priority

:
:
:
:

Eth_0/1
tag
100
1

Ethport
Mode
vlan
priority

:
:
:
:

Eth_0/2
tag
4092
0

Ethport
Mode
vlan
priority

:
:
:
:

Eth_0/3
tag
4092
0

Confidential and Proprietary Information of ZTE CORPORATION

35

ZXA10 C220 Configuration Manual (CLI)

Configuring the 9806H ADSL Access Service


Short Description
Prerequisites

Context
Steps

Perform this procedure to configure the 9806H ADSL access service.


Before this operation, make sure that:

The network devices and lines are normal.

The EPON access service configuration is completed.

The 9806H device runs properly.

To configure the 9806H ADSL access service, perform the following


steps:
1. Authenticate the ONU.
2. Use the vlan command to create a service VLAN.
3. Use the interface command to enter the OLT uplink port and
EPON-ONU interface configuration mode respectively.
4. Use the switchport mode command to configure the OLT uplink port and EPON-ONU interface mode respectively.
5. Use the switchport vlan command to configure the VLAN
properties for the OLT uplink port and the EPON-ONU interface respectively.
6. Log in to the 9806H device (user name/password: admin). Use
the enable command to enter the administrator mode (password: admin).
7. Use the configure command to enter the global configuration
mode.
8. Configure the in-band NM service VLAN.
i.

Use the add-vlan command to configure the in-band NM


service VLAN.

ii. Use the vlan command to configure the VLAN uplink port.
9. Configure the in-band NM IP address and route.
i.

Use the ip subnet command to configure the in-band NM


IP address.

ii. Use the ip route command to configure the in-band NM


route.
10. Configure the broadband service VLAN.
i.

Use the add-vlan command to configure the broadband


service VLAN.

ii. Use the vlan command to configure the VLAN uplink port
and service port.
11. Use the adsl-profile command to configure the line profile.
12. Use the adsl-alarm-profile command to configure the alarm
profile.
13. Configure the service port properties.
i.

Use the pvid command to configure the port PVID.

ii. Use the atm pvc command to configure the port PVC.

36

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

iii. Use the adsl profile command to apply the line profile to
the port.
iv. Use the adsl alarm-profile command to apply the alarm
profile to the port.
v. Use the adsl trans-mode command to configure the line
transmission mode.
END OF STEPS
Result
Example

The 9806H ADSL access service is configured successfully.


The 9806H device is connected to ONU 1 under port 2 of slot 3.
Table 9 shows the 9806H ADSL access service configuration data.
TABLE 9 9806H ADSL ACCESS SERVICE CONFIGURATION DATA
Item

Data

ADSL access service VLAN

VLAN ID: 100

C220 uplink port

0/14/1

C220 OLT port

0/3/2

9806H upstream port

5/1

9806H service port

2/124

In-band NM

VLAN ID: 1000


IP: 172.16.234.10
Gateway: 172.16.234.254

Line configuration profile

Name: zte2m
Downstream bandwidth: 2
Mbps
Others: default

MODEM PVC

8:81

The commands on the ZXA10 C220 are as follows:


ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#interface epon-olt_0/3/2
ZXAN(config-if)#onu 1 type ZTE-9806 mac 0001.1300.0012
ZXAN(config-if)#exit
ZXAN(config)#interface epon-onu_0/3/2:1
ZXAN(config-if)#admin enable
ZXAN(config-if)#exit
ZXAN(config)#vlan 100
ZXAN(config-vlan)#exit
ZXAN(config)#interface gei_0/14/1
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 100 tag
ZXAN(config-if)#exit
ZXAN(config)#interface epon-onu_0/3/2:1
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 100 tag
ZXAN(config-if)#exit

The commands on the ZXDSL 9806H are as follows:


Login:admin
Password:
9806>en

Confidential and Proprietary Information of ZTE CORPORATION

37

ZXA10 C220 Configuration Manual (CLI)

Please input password:


9806# configure
9806(config)# add-vlan 1000
9806(config)# vlan 1000 5/1 tag
9806(config)# ip subnet 172.16.234.10 255.255.255.0 1000
9806(config)# ip route 0.0.0.0 0.0.0.0 172.16.234.254
9806(config)# add-vlan 100
9806(config)# vlan 100 5/1 tag
9806(config)# vlan 100 2/1-24 untag pvc 1
9806(config)# adsl-profile zte2m.prf
9806(config)# adsl-profile zte2m.prf
AtucConfRateMode(1-fixed,2-adaptAtStartup,3-adaptAtRuntime):[2]
AtucConfRateChanRatio(0..100):[0]
AtucConfTargetSnrMgn(0..310(0.1dB)):[80]
AtucConfMaxSnrMgn(80..310(0.1dB)):[310]
AtucConfMinSnrMgn(0..80(0.1dB)):[0]
AtucConfDownshiftSnrMgn(0..310):[0]
AtucConfUpshiftSnrMgn(0..310):[0]
AtucConfMinUpshiftTime(0..16383):[0]
AtucConfMinDownshiftTime(0..16383):[0]
ConfProfileLineType(1-fast-only,2-interleaved-only):[2]
AtucChanConfFastMaxTxRate(0..102400kbps):[1024]2048
// Maximum rate of the downstream fast channel
AtucChanConfFastMinTxRate(0..2048kbps):[32]
AtucChanConfInterleaveMaxTxRate(0..102400kbps):[1024]2048
// Maximum rate of the downstream interleave channel
AtucChanConfInterleaveMinTxRate(0..2048kbps):[32]
AtucChanConfMaxInterleaveDelay(0..255ms):[16]
AturConfRateMode(1-fixed,2-adaptAtStartup,3-adaptAtRuntime):[2]
AturConfRateChanRatio(0..100):[0]
AturConfTargetSnrMgn(0..310(0.1dB)):[80]
AturConfMaxSnrMgn(80..310(0.1dB)):[310]
AturConfMinSnrMgn(0..80(0.1dB)):[0]
AturConfDownshiftSnrMgn(0..310(0.1dB)):[0]
AturConfUpshiftSnrMgn(0..310(0.1dB)):[0]
AturConfMinUpshiftTime(0..16383):[0]
AturConfMinDownshiftTime(0..16383):[0]
AturChanConfFastMaxTxRate(0..10240kbps):[512]
AturChanConfFastMinTxRate(0..512kbps):[32]
AturChanConfInterleaveMaxTxRate(0..10240kbps):[512]
AturChanConfInterleaveMinTxRate(0..512kbps):[32]
AturChanConfMaxInterleaveDelay(0..255ms):[16]
AtucDMTConfFreqBinsOperType(1-open,2-cancel):[2]
AturDMTConfFreqBinsOperType(1-open,2-cancel):[2]
LineDMTConfEOC(1-byte ,2-streaming ):[1]
LineDMTConfTrellis(1-on,2-off):[1]
AtucConfMaxBitsPerBin(0..15):[15]
AtucConfTxStartBin(6..511):[32]
AtucConfTxEndBin(32..511):[511]
AtucConfRxStartBin(6..63):[6]
AtucConfRxEndBin(6..63):[31]
AtucConfUseCustomBins(1-on,2-off):[2]
AtucConfDnBitSwap(1-on,2-off):[2]
AtucConfUpBitSwap(1-on,2-off):[2]
AtucConfREADSL2Enable(1-on,2-off):[2]
AtucConfPsdMaskType(1-DMT_PSD_MSK,2-ADSL2_PSD_MSK,3-ADSL2_READSL_WIDE_PSD_MSK,4ADSL2_READSL_NARROW_PSD_MSK):[3]
AtucConfPMMode(1-DISABLE,2-L2_ENABLE,3-L3_ENABLE,4-L3_ENABLE | L2_ENABLE):[1]
AtucConfPML0Time(0..255s):[240]
AtucConfPML2Time(0..255s):[120]
AtucConfPML2ATPR(0..31db):[3]
AtucConfPML2Rate(512..1024kbps):[512]
Press M or m key to modify, or the other key to complete?[C]
9806(config)# interface range adsl 2/1-24
9806(cfg-if-range-adsl)# pvid 100 pvc 1
9806(cfg-if-range-adsl)# adsl profile zte2m.prf
9806(cfg-if-range-adsl)# atm pvc 1 vpi 8 vci 81
9806(cfg-if-range-adsl)# end
9806# save

38

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

Managing the ONU Remotely


Short Description
Prerequisites

Context
Steps

Perform this procedure to manage the ONU remotely.


Before this operation, make sure that:

The network devices and lines are normal.

The EPON service card status is normal.

The ONU is authenticated.

To manage the ONU remotely, perform the following steps:


1. Use the configure terminal command to enter the global configuration mode.
2. Use the pon-onu-mng command to enter the ONU remote
management mode.
3. Use the active pon-if command to enable the primary or secondary uplink EPON port of the ONU.
4. Use the alarm command to enable or disable the ONU alarm
reporting function. The ZXA10 C220 supports enabling or disabling the alarm function on the ONU, user port, and uplink
EPON port.
i.

Use the alarm enable/disable command to enable or disable the global alarm function.

ii. Use the alarm onu command to enable or disable the


alarm function at the ONU level, for example, the ONU temperature alarm and ONU power supply alarm.
iii. Use the alarm interface command to enable or disable the
alarm function on the ONU user port, including the Ethernet
port, VoIP port, and E1 port.
iv. Use the alarm pon-if command to enable or disable the
alarm function on the uplink EPON port of the ONU, including the optical output power alarm and optical input power
alarm.
5. Use the alarm-threshold command to set the alarm report
threshold and clearance threshold on the ONU or uplink EPON
port.
6. Use the auto-config command to enable or disable ONU configuration auto-dispatch by the OLT. If this function is enabled,
when the ONU gets online or is restarted after power-off, the
OLT automatically delivers the configuration, covering the ONU
local configuration data.
7. Use the auto-config voip command to enable or disable ONU
VoIP service auto-dispatch by the OLT.
8. Use the classification command to configure the upstream
classification rule and mapping control rule on the ONU Ethernet port.
i.

Use the classification rule-profile command to add the


mapping rule between the user port queue and the 802.1p
priority.

ii. Use the classification condition-profile command to add


the classification profile of the user port service stream.

Confidential and Proprietary Information of ZTE CORPORATION

39

ZXA10 C220 Configuration Manual (CLI)

iii. Use the classification port command to configure the upstream classification rule and the mapping control rule on
the EPON-ONU Ethernet port. That means, use this command to add the service stream according with the classification profile to the defined queue of the mapping rule,
and map to the corresponding 802.1p priority.
9. Use the mac command to configure the MAC address information on the user port. Set the maximum MAC addresses
supported by the port. Add or delete three types of MAC address information: filtered the MAC address/VLAN, bound MAC
address/VLAN, and static MAC address/VLAN.
i.

Use the mac aging-time command to set the aging time


of the ONU MAC address.

ii. Use the mac add command to add the user port MAC
address information, including the filtered the MAC address/VLAN, bound MAC address/VLAN, and static MAC
address/VLAN.
iii. Use the mac delete command to delete the user port
MAC address information, including the filtered the MAC
address/VLAN, bound MAC address/VLAN, and static MAC
address/VLAN.
iv. Use the mac clear command to clear all the user port
MAC address information, including the filtered the MAC
address/VLAN, bound MAC address/VLAN, and static MAC
address/VLAN.
v. Use the mac limit-num command to set the maximum
MAC addresses that the user port can learn.
10. Use the dba command to set the DBA queue parameter of the
ONU.
i.

Use the dba queue-set command to set the threshold of


Queue Set in the Report frame sent by the ONU.

ii. Use the dba queue-set active command to activate the


DBA queue parameter of the ONU.
11. Use the holdover command to set the ONU state holding function. This function protects the ONU from offline. To enable the
state holding function, set the state holding time.
12. Use the interface command to set the ONU user port properties.
i.

Use the interface eth eth_slot/portId auto-neg command


to set the auto-negotiation function on the ONU Ethernet
port.

Note:
It is recommended to enable the auto-negotiation function
on the ONU Ethernet port.
ii. Use the interface eth eth_slot/portId flow-control command to set traffic control on the ONU Ethernet port.
iii. Use the interface eth eth_slot/portId mode command to
configure the ONU Ethernet port mode.

40

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

iv. Use the interface eth eth_slot/portId phy-state command to enable or disable the Ethernet port.
v. Use the interface eth eth_slot/portId policing command
to set the upstream and downstream traffic control parameters on the ONU Ethernet port, including CIR, CBS, and
EBS.
vi. Use the interface eth eth_slot/portId policing-profile
command to set the bandwidth profile on the ONU Ethernet
port.

Note:
Before carrying out this command, create a bandwidth profile on the ONU user port by using the following commands:
ZXAN(config)#epon
ZXAN(config-epon)#onu-uni-profile profile-name create zte
ZXAN(config-epon)#onu-uni-profile profile-set
zte downstream cir 2000 cbs 1522 ebs 1522
ZXAN(config-epon)#onu-uni-profile
profile-set zte upstream cir 2000

vii. Use the interface voip command to enable or disable the


ONU POTS port.
viii.Use the interface e1 command to enable or disable the
ONU E1 port.
13. Use the interface-loopdetect command to set the loopback
detection function on the ONU port.
14. Use the isolation command to enable or disable ONU port isolation.
15. Use the llid-queue command to set the binding relations between the LLIDs and queues on the ONU when multiple LLIDs
exist.
16. Use the mng-snmp command to set the ONU SNMP parameters, such as the SNMP version, trap host IP address, read
community name, and write community name.
17. Use the onu-queue command to use the ONU queue scheduling profile.

Note:
Before carrying out this command, create an ONU queue
scheduling profile by using the following commands:
ZXAN(config)#epon
ZXAN(config-epon)#onu-queue-profile zte queue1 64 0 20 25 4

18. Use the pon-buffer command to set the upstream and downstream buffer capacity of the ONU.

Confidential and Proprietary Information of ZTE CORPORATION

41

ZXA10 C220 Configuration Manual (CLI)

Note:
The total upstream and downstream buffer capacity of each
SFU cannot be less than 256 KB.
The MDU/MTU buffer capacity cannot be less than 64 KB user
ports.
19. Use the pon-downstream-shaping command to set the traffic shaping parameter on the ONU user port.
20. Use the reboot command to restart the ONU.
21. Use the reset-card command to restart the ONU card.
22. Use the transceiver command to set the threshold detection
function of the ONU optical module performance.
i.

Use the transceiver enable command to enable the detection function.

ii. Use the transceiver disable command to disable the detection function.
iii. Use the transceiver alarm command to set the threshold
detection alarm of the ONU optical module performance.
23. Use the save command to save the configuration data of the
ONU.
END OF STEPS
Result
Example

ONU remote management is complete.


Limit the downstream rate on Ethernet port 1 of ONU F820 under
epon-onu_0/5/4:1 to 3 Mbps.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#pon-onu-mng epon-onu_0/5/4:1
ZXAN(epon-onu-mng)#interface eth eth_0/1 flow-control enable
ZXAN(epon-onu-mng)#interface eth eth_0/1 policing downstream enable cir
3000 cbs 10000 ebs 1522

Configuring the OLT Port


Short Description
Prerequisites

Context
Steps

Perform this procedure to configure the OLT port.


Before this operation, make sure that:

The network devices and lines are normal.

The EPON service card status is normal.

To configure the OLT port, perform the following steps:


1. Use the configure terminal command to enter the global configuration mode.
2. Use the epon command to enter the EPON configuration mode.

42

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

3. Use the onu-authentication-mode command to configure


the ONU authentication mode. All the ONUs on the same EPON
service card must use the same authentication mode.
Use the onu-authentication-mode register command to set
the ONU authentication mode to hardware authentication.
Use the onu-authentication-mode service command to set
the ONU authentication mode to software authentication. The
software authentication includes five modes: LOID, SN, MAC,
Hybrid, and SN+MAC.
4. Use the encrypt algorithm command to configure the OLT
encryption algorithm. The encryption algorithm includes AES
and Triple-churning.
5. Use the pon command to enter the PON configuration mode.
6. Use the ip-pool command to configure the OLT IP address
pool.
7. Use the ip-pool-bind command to select the IP address pool
name on the OLT port. This address pool is used to configure
the ONU in-band IP address.
8. Use the interface command to enter the OLT interface configuration mode.
9. Use the alarm command to configure the alarm function on
the OLT port.
10. Use the als command to set the auto-control of the laser on the
OLT port. After the auto-control is enabled, the system turns
off the laser when there is no ONU online on the OLT port. That
provides low power cost and safety.
11. Use the linktrap command to configure the alarm report mode
when a link break occurs on the OLT port.
12. Use the maxrtt command to set the maximum ONU distance.

Note:
The relation between maxrtt and distance is as follows:
Distance (fiber length) = maxrtt/2 fiber optical speed
(1.64E8 approximately)
13. Use the multi-llid command to set multi-LLID function and
the maximum LLID number. This command is applicable for
the ONU that support multiple LLIDs.
14. Use the dba-priority command to set the rolling rates for different DBA priorities. To allocate bandwidth to the services
with higher priorities first, set shorter rolling period and higher
authority frequency for these priorities.
15. Use the fec command to enable or disable the FEC function on
the PON port.
16. Use the high-priority-frame command to set the downstream frame with the specified priority to high-priority frame.
17. Use the priority-queue-map command to set mapping
relations between the priorities of the upstream/downstream
frame on the OLT port and the queues.

Confidential and Proprietary Information of ZTE CORPORATION

43

ZXA10 C220 Configuration Manual (CLI)

i.

Use the priority-queue-map downstream command to


set mapping relations between the priorities of the downstream frame on the OLT port and the queues.

ii. Use the priority-queue-map upstream command to set


mapping relations between the priorities of the upstream
frame on the OLT port and the queues.
18. Use the performance start command to start the performance statistic function on the OLT port.
19. Use the loopback phy system command to set OLT port loopback.
20. Use the loopback-detection command to enable or disable
loopback detection on the OLT port.
21. Use the rx-hec command to set whether the HEC receiving
mode at the OLT side is compatible with the HEC mode defined
in the 802.3AH standard draft. This affects the registration of
the interworking ONU and uninterworking ONU on the OLT.
22. Use the reset command to reset the OLT port.
23. Use the reset counter command to reset the performance
statistic counter of the OLT port.
24. Use the security packet-limit command to limit the forwarding rate of the broadcast packets, multicast packets, and unknown packets on the OLT port. The unit is pps.
25. Use the shutdown command to shutdown the OLT port.
26. Use the speed command to configure the bandwidth capability
on the OLT port. That is, the total bandwidth of all the ONUs
on the OLT port cannot exceed the bandwidth configured by
this command.
END OF STEPS
Result
Example

The OLT port is configured successfully.


Set the EPON card in slot 3 to SN authentication mode, enabling
the tribple-churning encryption algorithm.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#epon
ZXAN(config-epon)#onu-authentication-mode service 0/3 sn
ZXAN(config-epon)#encrypt algorithm 0/3 triple-churning

Note:
0/3 in the commands means shelf/slot.

44

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

10G EPON Service


Configuration
This section includes the following:

Overview

Configuring the 10G EPON Service

Overview
Service
Description

The principle of the 10G EPON service is similar with that of the
EPON service. 10G EPON can provide 10 Gbps bandwidth for subscribers.

Service
Specifications

The ZXA10 C220 supports the 10G EPON access service through
the EPXS service card. Each card provides one 10G EPON ports.
A 10G EPON port can reach up to 1.25 Gbps upstream rate and
10.3125 Gbps downstream rate. A single port supports up to 128
ONUs and a single shelf supports up to 1280 ONUs.

Configuring the 10G EPON Service


Short Description
Prerequisites

Perform this procedure to configure the 10G EPON service.


Before this operation, make sure that:

The network devices and lines are normal.

The interface VLAN of the upper-layer device is consistent with


the VLAN configured on the uplink port.

The 10G EPON service card status is normal.

Context

The EPON access service can be applied in the following scenarios:


FTTH, FTTB, and FTTC. The basic configuration steps are the same
for different scenarios. This instance takes the Internet service in
FTTB application as an example.

Networking
Diagram

Figure 14 shows the networking diagram of the 10G EPON access


service.

Confidential and Proprietary Information of ZTE CORPORATION

45

ZXA10 C220 Configuration Manual (CLI)

FIGURE 14 10G EPON ACCESS SERVICE NETWORKING DIAGRAM

The user computer is connected to the FE port of the ONU, on


which the user data frames are tagged with the user-side VLAN
IDs. The user data are dispatched to the corresponding service
channels according to the user-side VLAN IDs. ZXA10 C220 transfers the user-side VLAN to the uplink VLAN, and send data out
through the uplink port.
Data Scheme

Table 10 lists the data scheme for the 10G EPON access service.
TABLE 10 10G EPON ACCESS SERVICE DATA SCHEME
Item

Data

Remarks

VLAN

VLAN ID: 100

Uplink port

0/2/1

OLT port

0/5/1

ONU information

46

Type: F822
MAC address:
001e.7391.5f36
ONU ID: 1
Port through
which the ONU
connects the
computer:
Ethernet port 1

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

Item

Data

Remarks

ONU bandwidth

Upstream: 100 Mbps

Downstream: 1 Gbps
Requirements on the
uplink device

Ethernet switch:

The Ethernet
Switch
transparently
transmits the
ZXA10 C220
service packets
at layer 2.
Configure the
VLAN that the
ZXA10 C220
device accesses.
The VLAN ID is
consistent with
the uplink VLAN
of ZXA10 C220.

For detailed ES
and BRAS device
configuration, refer to
the relevant operation
manual.

Note:
According to the requirements on the dial-up subscriber authentication and accounting, complete the BRAS configuration. For
example, configure the access user domain (including the AAA solutions) and specify the RADIUS server.
Configuration
Flow

Figure 15 shows the configuration flow of the 10G EPON access


service.

Confidential and Proprietary Information of ZTE CORPORATION

47

ZXA10 C220 Configuration Manual (CLI)

FIGURE 15 10G EPON ACCESS SERVICE CONFIGURATION FLOW

To configure the 10G EPON service, perform the following steps:


Steps

1. Create a VLAN.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan 100
ZXAN(config-vlan)#exit
ZXAN(config)#

Note:
To display the created VLAN information, use the show vlan
summary command.
2. Configure the VLAN of the OLT uplink port.
ZXAN(config)#interface xgei_0/2/1
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 100 tag
ZXAN(config-if)#exit

48

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

3. View the unauthenticated ONU information on the port.


ZXAN(config)#show onu unauthentication epon-olt_0/5/1
Onu interface :
MAC address :
SN :
AuthState State :
OnTime :

epon-onu_0/5/1:1
001e.7391.5f36
deny
2008/01/01 22:34:29

ZXAN(config)#

4. Configure the ONU type profile.


The speed of the default ZTE-F822 ONU type profile is 1 Gbps.
The speed can be configured accordingly.
ZXAN(config)#show onu-type epon ZTE-F822
Onu type name :
ZTE-F822
Pon type :
epon
Description :
24FE
Protect type:
none
Speed:
1g

Create a new ZTE-F822 type profile ZTE-F822A, including 24 FE


ports and 24 POTS ports. The rate is 10 Gbps asymmetrically,
that is, the ONU upstream rate is 1 Gbps and downstream rate
is 10 Gbps. Disable the auto-dispatch of ZTE-F822A.
ZXAN(config)#pon
ZXAN(config-pon)#onu-type ZTE-F822A epon description 24FE,
24POTS speed 10g-asymmetric
ZXAN(config-pon)#onu-type-if ZTE-F822A eth_0/1-24
ZXAN(config-pon)#onu-type-if ZTE-F822A pots_0/1-24
ZXAN(config-pon)#exit
ZXAN(config)#epon
ZXAN(config-epon)#auto-dispatch-set ZTE-F822A disable
ZXAN(config-epon)#show onu-type epon ZTE-F822A
Onu type name : ZTE-F822A
Pon type : epon
Description : 24FE,24POTS
Protect type: none
Speed: 10g-asymmetric
ZXAN(config-epon)#exit

5. Enter the EPON-OLT interface mode. Authenticate the ONU


through the MAC address.
ZXAN(config)#interface epon-olt_0/5/1
ZXAN(config-if)#onu 1 type ZTE-F822A mac 001e.7391.5f36
ZXAN(config-if)#exit

6. Enter the EPON-ONU interface mode. Enable the interface authentication protocol.
ZXAN(config)#interface epon-onu_0/5/1:1
ZXAN(config-if)#admin enable

Note:
To display the detailed information of the current ONU, use the
show onu detail-info command.
7. Set the upstream and downstream bandwidth of the ONU.
ZXAN(config-if)#sla upstream maximum 102400
ZXAN(config-if)#sla downstream maximum 1024000

8. Configure the VLAN service port.


ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 100 tag

Confidential and Proprietary Information of ZTE CORPORATION

49

ZXA10 C220 Configuration Manual (CLI)

ZXAN(config-if)#exit

9. Enter the ONU remote management mode. Configure the ONU


Ethernet port VLAN.
ZXAN(config)#pon-onu-mng epon-onu_0/5/1:1
ZXAN(epon-onu-mng)#vlan port eth_0/1 mode tag vlan 100 priority 0
ZXAN(epon-onu-mng)#exit

Note:
F822 can provide 24 FE interfaces, ranging from eth_0/1 to
eth_0/24.
10. Save the configuration data.
ZXAN(config)#exit
ZXAN#write
Building configuration...
..[OK]

Result

The 10G EPON service is configured successfully.

EPON Protection
Configuration
This section includes the following:

Overview

Configuring EPON Protection

Overview

50

Introduction

The system implements EPON service protection by configuring


the EPON ports on the subscriber card of the ZXA10 C220. EPON
protection improves the transmission reliability.

Service
Description

With the popularity of the Internet bandwidth service, users require powerful functions and stable performance on the network
services. The ZXA10 C220 device uses the active/standby mode
to ensure stable operation. It has the PON port protection mechanism. When the service is interrupted due to the physical disconnection between the ZXA10 C220 device and the ONU, the system
switches to the standby PON port to recover the service.

Service
Specifications

The ZXA10 C220 provides the protection switchover function in the


following ways with the priorities from high to low:

Force switchover

Alarm triggering

Manual switchover

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

Configuring EPON Protection


Short Description

Prerequisites

Networking
Diagram

The ZXA10 C220 connects the remote ONU devices through two
EPON interfaces, providing users with high-speed Internet service
in PON port protection.
Before this operation, make sure that:

The network devices and lines are normal.

The interface VLAN of the upper-layer device is consistent with


the VLAN configured on the uplink port.

The EPON service card status is normal.

The EPON service is configured.

Figure 16 shows the networking diagram of the EPON protection


service.
FIGURE 16 EPON PROTECTION SERVICE NETWORKING DIAGRAM

The ONU connects two EPON ports of the ZXA10 C220 through a
splitter to achieve PON port protection.

Confidential and Proprietary Information of ZTE CORPORATION

51

ZXA10 C220 Configuration Manual (CLI)

Note: The ZXA10 C220 supports the following types of EPON


protection:

Type A
Type A is the OLT-side redundancy protection. The two PON
ports of the OLT use one PON MAC chip and are connected to
the two optical modules through the 1:2 electrical switch to
achieve protection on the two PON ports. The OLT side of the
splitter has two input ports and multiple output ports, which
are applicable for protection between the PON ports on the
same PON card. This type of protection can only recover the
OLT-side service.

Type B
Type B is the OLT-side redundancy protection. The two PON
ports of the OLT use independent PON MAC chips and optical modules to achieve protection on the two PON ports. The
OLT side of the splitter has two input ports and multiple output ports, which are applicable for protection between the PON
ports on the same PON card and among different PON cards.
This type of protection can only recover the OLT-side service.

Type C
Type C is the OLT-side and ONU-side full redundancy protection, also known as full duplex protection. The two PON ports
on the OLT, two optical modules on the ONU, backbone fiber,
splitter, and distribution fiber all use dual-route redundancy.
This type of protection is implemented in the following modes:

On the same PON MAC chip on the same PON card

On different PON MAC chips on the same PON card

Among different PON cards

The ONU uses one PON MAC chip and different optical modules,
and the standby optical module is in cold standby state. In
this configuration mode, the system can switch to the standby
device to recover the service at any time.

Type D
Type D is the OLT-side and ONU-side full redundancy protection, also known as full duplex protection. The two PON ports
on the OLT, two PON ports on the ONU, backbone fiber, splitter,
and distribution fiber all use dual-route redundancy. This type
of protection is implemented in the following modes:

On different PON MAC chips on the same PON card

Among different PON cards

The ONU uses different PON MAC chips and different optical
modules. In this configuration mode, the system can switch to
the standby device to recover the service at any time.
Data Scheme

52

Table 11 lists the data scheme for the EPON protection service.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

TABLE 11 EPON PROTECTION SERVICE DATA SCHEME


Item

Data

PON protection group

zte

Working port

1/7/7

Protection port

1/7/8

PON protection group

Configuration
Flow

Group name: zte


Protection type: Type B
Protection mode: restorable
mode
Restoring time interval: 120
seconds

Figure 17 shows the configuration flow of the EPON protection service.


FIGURE 17 EPON SERVICE PROTECTION CONFIGURATION FLOW

To configure the EPON protection, perform the following steps:


Steps

1. Enter the PON mode and configure the EPON protection group.
In PON mode, use the protection group command to create
the EPON protection group.
ZXAN(config)#pon
ZXAN(config-pon)#protection group zte workpon
epon-olt_0/5/1 protectpon epon-olt_0/5/2 typeB
[Successful]
ZXAN(config-pon)#show protection group list
zte

2. Configure the protection group properties.

Confidential and Proprietary Information of ZTE CORPORATION

53

ZXA10 C220 Configuration Manual (CLI)

Use the protection prop command to configure the protection


group properties, including the switchover mode and waiting
time interval.
ZXAN(config-pon)#protection prop group zte mode revertive wtr 120
ZXAN(config-pon)#show protection group information zte
Name :
Work channel interface :
Protect channel interface:
Protection type :
Protection mode:
Time to restore(s):
Active channel:
Alarm request:
Work channel:
Protect channel:
Externel request:

zte
epon-olt_0/5/1
epon-olt_0/5/2
typeB
revertive
120
work-channel
OLTSF CardOff
OLTSF CardOff
no-request

The parameters for the PON protection group properties are as


follows:

Switchover mode: Revertive mode and non-revertive


mode. By default, it is non-revertive mode.
Time to restore: The time to wait for restoration. When
the protection mode is non-revertive, the time interval is
0. When the mode is revertive, the time interval is greater
than 30 seconds in general.

3. (Optional) Configure the switchover mode between the working port and protection port of the protection group.
Use the protection switch-command command to configure
the switchover mode between the working port and protection
port of the protection group. This instance uses the default
mode (no switchover mode). To configure the mode, use the
following command:
ZXAN(config-pon)#protection switch-command group zte force p2w

The switchover modes include the following:

Force: Work on this port regardless the status. You can


switch over between the protection port and working port
by force.
Manual: Switch over to a port manually. You can switch
over between the protection port and working port manually.
Lockoutprotect: Disable protection.

Use the no protection switch-command command to clear


all the external switchover commands, that is, to delete the
force command, manual command, or lock command.

54

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 2 EPON Service Configuration

Note:
The priorities from high to low are as follows:

Clear all

Lock protection

Switch over the working port to protection port by force

Switch over the protection port to working port by force

Switch over the working port to protection port manually

Switch over the protection port to working port manually

If a lower priority is configured after a higher priority is configured, the lower one does not take effect. It is necessary to
clear the previous mode and then configure the lower priority.
4. Save the configuration data.
ZXAN(config-pon)#end
ZXAN#write
Building configuration...
..[OK]

Result

EPON protection is configured successfully.

Confidential and Proprietary Information of ZTE CORPORATION

55

ZXA10 C220 Configuration Manual (CLI)

This page is intentionally blank.

56

Confidential and Proprietary Information of ZTE CORPORATION

Chapter

GPON Service
Configuration
Table of Contents
Overview..........................................................................57
Configuring GPON Service...................................................57
Configuring the ONU Type Profile .........................................62
Authenticating an ONU .......................................................63
Configuring the T-CONT Profile ............................................65
Configuring the Traffic Profile ..............................................67
Configuring the Service Connection......................................68
Configuring the ONU In-Band IP Address ..............................70
Configuring the OLT Port.....................................................72
GPON Protection Configuration ............................................73

Overview
Service
Description

GPON access is a flexible access technology that provides super


bandwidth access in both broadband and narrowband service environment. It supports multiple rate modes and uses a single optical fiber to provide user with voice, data, and video services.

Service
Specifications

The ZXA10 C220 supports GPON access service through the GPFAB/GPFAC/GPFAE card:
Each GPFAB/GPFAC/GPFAE card provides four GPON interfaces,
supports the splitting ratio of 1:128 at the maximum. A single
shelf supports up to 5120 ONUs.

Configuring GPON Service


Short Description
Prerequisites

Perform this procedure to configure GPON service.


Before this operation, make sure that:

The network devices and lines are normal.

The VLAN of the upper-layer device interface corresponds to


the VLAN configured on the uplink interface.

The GPON service card status is normal.

Confidential and Proprietary Information of ZTE CORPORATION

57

ZXA10 C220 Configuration Manual (CLI)

Context

The GPON access service can be applied in the following scenarios:


FTTH, FTTB, and FTTC. The basic configuration steps are the same
for different scenarios. This instance takes the Internet service in
FTTH application as an example.

Networking
Diagram

Figure 18 shows the networking diagram of the GPON access service.


FIGURE 18 GPON ACCESS SERVICE NETWORKING DIAGRAM

In the networking, the user computer is connected to the ONU FE


port. The user data frame is added with the VLAN tag on the ONU
FE port. The user data are distributed to each service channel
according to the user-side VLAN. The ZXA10 C220 completes the
mapping from GEM port to Ethernet frame and sends data out
through the upstream port.

58

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 3 GPON Service Configuration

Configuration
Flow

Figure 19 shows the configuration flow of the GPON access service.


FIGURE 19 GPON ACCESS SERVICE CONFIGURATION FLOW

Data Scheme

Table 12 lists the GPON access service data scheme.


TABLE 12 GPON ACCESS SERVICE DATA SCHEME
Item

Data

VLAN

VLAN ID: 100

Service priority

Upstream port

0/2/1

GPON port

0/10/1

Bandwidth profileT-CONT

Profile name: T1-100M


Bandwidth type: Fixed

Confidential and Proprietary Information of ZTE CORPORATION

59

ZXA10 C220 Configuration Manual (CLI)

Item

Data
Bandwidth: 100 Mbit/s

ONU

ONU ID: 1
ONU authentication mode: SN
authentication
ONU SN: ZTEG00000002
ONU type: ZTE-F621
Port through which the ONU
connects the computer:
eth_0/1

T-CONT

T-CONT INDEX: 2
T-CONT name: Tcont100M
Bandwidth profile: T1-100M
Alloc ID: Auto-allocate

GEM Port

T-CONT INDEX: 2
GEM Port INDEX: 1
GEM Port name: Gemport1
Port ID: Auto-allocate

To configure the GPON service, perform the following steps:


Steps

1. Create the service VLAN.


ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan 100
ZXAN(config-vlan)#exit
ZXAN(config)#

Note:
To display the created VLAN information, use the show vlan
summary command.
2. Configure the VLAN of the OLT uplink port.
ZXAN(config)#interface xgei_0/2/1
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 100 tag
ZXAN(config-if)#exit

3. View the unauthenticated ONU information on the port.


ZXAN(config)#show gpon onu uncfg gpon-olt_0/10/1
OnuIndex
Sn
State
------------------------------------------------------------gpon-onu_0/10/1:1
ZTEG00000002
unknown

4. Enter the GPON-OLT interface mode and authenticate the ONU


by the SN.
ZXAN(config)#interface gpon-olt_0/10/1
ZXAN(config-if)#onu 1 type ZTE-F621 sn ZTEG00000002
ZXAN(config-if)#exit
ZXAN(config)#show gpon onu state gpon-olt_0/10/1
OnuIndex
Admin State Omcc State O7 State
Phase State
----------------------------------------------------------------gpon-onu_0/10/1:1 enable
enable
operation
working

5. Configure the T-CONT bandwidth profile.


ZXAN(config)#gpon

60

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 3 GPON Service Configuration

ZXAN(config-gpon)#profile tcont T1-100M type 1 fixed 100000


ZXAN(config-gpon)#exit

6. Create a T-CONT.
ZXAN(config)#interface gpon-onu_0/10/1:1
ZXAN(config-if)#tcont 2 name Tcont100M profile T1-100M

7. Create a GEM port.


ZXAN(config-if)#gemport 1 name Gemport1 unicast tcont 2

8. Configure the port VLAN on the user side.


ZXAN(config-if)#switchport mode trunk vport 1
ZXAN(config-if)#switchport vlan 100 tag vport 1
ZXAN(config-if)#exit
ZXAN(config)#

Note:
By default, one V-port corresponds to one GEM port.
9. Configure the ONU service channel.
i.

Create the service flow.


By default, flow1 is created and bound to switch_0/1. In
this instance, flow1 is used. The service connection type
is 8021.p+ bridge. The bridge is switch_0/1. To create
other service flows, refer to the topic Configuring the Service Connection.

ii.

Configure the mapping from the service flow to the GEM


port.
ZXAN(config)#pon-onu-mng gpon-onu_0/10/1:1
ZXAN(gpon-onu-mng)#gemport 1 flow 1 dot1p-list 0

Note:
The priority is 0. That means, the upstream data with the
priority of 0 is mapped to the GEM port.
iii. Create the connection between the UNI port and bridge.
By default, all the UNI ports are bound to switch_0/1. To
use other bridges, refer to the topic Configuring the Service
Connection.
iv. Configure the VLAN filter mode of the service flow.
ZXAN(gpon-onu-mng)#flow mode 1 tag-filter vid-filter
untag-filter discard

v.

Configure the VLAN filter entry of the service flow.


ZXAN(gpon-onu-mng)#flow 1 vid 100

vi. Configure the VLAN mode on the UNI.


ZXAN(gpon-onu-mng)#vlan port eth_0/1 mode tag vlan 100
priority 0

Confidential and Proprietary Information of ZTE CORPORATION

61

ZXA10 C220 Configuration Manual (CLI)

Note:
F621 provides 6 user ports: eth_0/1 to eth_0/6.

eth_0/1 to eth_0/4 are FE ports.

eth_0/5 to eth_0/6 are GE ports.

vii. Configure the VLAN filter mode on the UNI.


ZXAN(gpon-onu-mng)#vlan-filter-mode ethuni eth_0/1
tag-filter vid-filter
untag-filter discard

viii. Configure the VLAN filter entry on the UNI.


ZXAN(gpon-onu-mng)#vlan-filter ethuni eth_0/1
priority 0 vid 100

Note:
Because the VLAN filter mode is set to VLAN ID in the previous step, the priority 0 does not take effect here.
10. Save the configuration data.
ZXAN#write
Building configuration...
..[OK]
ZXAN#

Result

GPON access service is configured successfully.

Configuring the ONU Type


Profile
Short Description
Prerequisites

Context

Perform this procedure to configure the ONU type profile.


Before this operation, make sure that:

The network devices and lines are normal.

The in-band or out-of-band NM is configured.

When the new ONU type does not exist in the system, perform this
procedure.
Users can use the show onu-type gpon command to view the
default ONU types in the system.
To configure the ONU type profile, perform the following steps:

Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the pon command to enter the PON configuration mode.
3. Use the onu-type command to add an ONU type profile.

62

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 3 GPON Service Configuration

Note:
In the ZXA10 C220 system, the ONU type name must be unique
in EPON and GPON service.
4. Use the onu-type-if command to configure the user port of
the new ONU type.
END OF STEPS
Result
Example

The ONU type profile is configured successfully.


Add a GPON ONU with the type name of ZTE-F820, including 24
Ethernet ports.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#pon
ZXAN(config-pon)#onu-type ZTEG-F820 gpon description 24FE max-tcont 7
max-gemport 32 max-switch-perslot 1 max-flow-perswitch 32
ZXAN(config-pon)#onu-type-if ZTEG-F820 eth_0/1-24
ZXAN(config-pon)#show onu-type gpon ZTEG-F820
Onu type name :
Pon type :
Description :
Max tcont :
Max gemport :
Max switch per slot
Max flow per switch
Max iphost :
Service ability N:1
Service ability 1:M
Service ability 1:P

:
:
:
:
:

ZTEG-F820
gpon
24FE
7
32
1
32
1
support
support
support

Authenticating an ONU
Short Description
Prerequisites

Context

Perform this procedure to authenticate an ONU.


Before this operation, make sure that:

The network devices and lines are normal.

The GPON service card status is normal.

The ZXA10 C220 supports two types of ONU SN authentication


mode: learn and provision.

learn: When the system finds an ONU, the ONU is registered


to the configuration list automatically.

provision: When the system finds an ONU, if the ONU is configured, the configuration takes effect. If the ONU is not configured, it displays in the list of unregistered ONU.

When the authentication mode is learn, users do not need to configure the unauthenticated ONU manually, but the OLT cannot recognize the ONU type. So, it is recommended to use the default SN
authentication mode provison.

Confidential and Proprietary Information of ZTE CORPORATION

63

ZXA10 C220 Configuration Manual (CLI)

In OLT interface configuration mode, use the auto-learning


enable command to enable the ONU SN auto-learning authentication mode. By default, it is disabled.
To authenticate an ONU, perform the following steps:
Steps

1. Use the show gpon onu uncfg command to view the unauthenticated ONU information.
2. Use the configure terminal command to enter the global configuration mode.
3. Use the interface command to enter the OLT interface configuration mode.
4. Use the onu command to authenticate the ONU.
5. User the show gpon onu state command to view the authenticated ONU information.
Table 13 describes the ONU phase state.
TABLE 13 ONU PHASE STATE
Value

Description

offline

The OLT does not find the ONU. The ONU is offline.

logging

The OLT is ranging the ONU.

syncMib

The system is synchronizing the data.

working

The OLT and ONU are working normally.

LOS

The fiber link between the OLT and ONU is faulty.

DyingGasp

The ONU is powered off.

END OF STEPS
Result
Example

ONU authentication is complete.


View the unauthenticated ONU information on port gponolt_0/10/1 and authenticate the ONU.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#show gpon onu uncfg gpon-olt_0/10/1
OnuIndex
Sn
State
--------------------------------------------------------------------gpon-onu_0/10/1:1
ZTEG00000002
unknown
ZXAN(config)#interface gpon-olt_0/10/1
ZXAN(config-if)#onu 1 type ZTE-F621 sn ZTEG00000002
ZXAN(config-if)#exit
ZXAN(config)#show gpon onu state gpon-olt_0/10/1
OnuIndex
Admin State Omcc State O7 State
Phase State
-----------------------------------------------------------------gpon-onu_0/10/1:1
enable
enable
operation
working

64

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 3 GPON Service Configuration

Configuring the T-CONT


Profile
Short Description
Prerequisites

Context

Perform this procedure to configure the T-CONT profile.


Before this operation, make sure that:

The network devices and lines are normal.

The GPON service card status is normal.

The ONU is authenticated.

The T-CONT profile describes T-CONT traffic parameters. T-CONT


traffic is controlled by binding T-CONT with a specified T-CONT
profile. The ZXA10 C220 supports 512 T-CONT profiles.
There are five upstream bandwidth types:

Fixed: The bandwidth that the OLT assigns to the T-CONT after
the T-CONT is enabled whether it has traffic or not

Assured: The bandwidth that the OLT must assign to the


T-CONT when the T-CONT has a request for bandwidth
If the requested bandwidth is less than the assured bandwidth,
the redundant bandwidth can be used by other T-CONTs.

Non-assured: The bandwidth that the OLT does not assign to


the T-CONT when the T-CONT has a request for bandwidth
The non-assured bandwidth is not assigned until all fixed and
assured bandwidth are assigned.

Best Effort: The bandwidth of which the priority is the lowest


The best effort bandwidth is not assigned until the fixed, assured, and non-assured bandwidth are assigned and there is
still redundant bandwidth available.

Maximum: The bandwidth which is the summary of the fixed,


assured, non-assured, and best effort bandwidth
No matter what the actual upstream traffic of T-CONT is, the
assigned bandwidth cannot exceed the maximum bandwidth.

There are five T-CONT bandwidth types:

Fixed: This bandwidth type has certain bandwidth and time


slot. Fixed bandwidth is suitable for services which are sensitive to time slot, jittering, and services which have fixed traffic
rate, such as voice service.

Assured: Assured bandwidth type has certain bandwidth but


its time slot is uncertain. Assured bandwidth is suitable for
services which are not sensitive to time slots, jittering and services for which the traffic rate is limited, such as VoD service.

Assured and Non-assured: It assures the minimum bandwidth


and shares redundant bandwidth dynamically. Assured and
non-assured bandwidth is suitable for services which require
quality of service and have burst of traffic, such as signed
downloading service.

Best Effort: This is the best effort bandwidth. After the fixed
bandwidth, assured bandwidth, adn non-assured bandwidth

Confidential and Proprietary Information of ZTE CORPORATION

65

ZXA10 C220 Configuration Manual (CLI)

are assigned, the rest bandwidth is used through competition.


Best effort bandwidth is suitable for services which is not sensitive to time slot or jittering, such as web browsing service.

All: This bandwidth type is a combination of other types and is


suitable for most services.

Table 14 lists the relationship between upstream bandwidth and


T-CONT bandwidth.
TABLE 14 RELATIONSHIP BETWEEN UPSTREAM BANDWIDTH AND
T-CONT BANDWIDTH
Fixed

Assured

Assured
and Nonassured

Best
Effort

All

Fixed RF

RF

RF

Assured
RA

RA

RA

RA

Maximum
RM

RM=RF

RM=RA

RM>RA

RM

RM>=RA+
RF

RM-RF-RA

NONE

NONE

Nonassured

Best
Effort

ANY

To configure the T-CONT profile, perform the following steps:


Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the gpon command to enter the GPON configuration mode.
3. Use the profile tcont command to create a T-CONT bandwidth
profile.
4. Use the show gpon profile tcont command to view the
T-CONT bandwidth profile.
5. Use the interface command to enter the ONU interface configuration mode.
6. Use the tcont command to apply the T-CONT profile.
END OF STEPS

Result
Example

The T-CONT bandwidth profile is configured successfully.


Configure the T-CONT bandwidth profile T1100M. The fixed bandwidth is 100 Mbit/s. On the gpon-onu_0/10/1:1 ONU interface,
create T-CONT 1 and apply the bandwidth profile T1100M.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#gpon
ZXAN(config-gpon)#profile tcont T1-100M type 1 fixed 100000
ZXAN(config-gpon)#show gpon profile tcont T1-100M
Name :T1-100M
Type
FBW(kbps)
ABW(kbps)
MBW(kbps)
1
100000
0
0
ZXAN(config-gpon)#exit
ZXAN(config)#interface gpon-onu_0/10/1:1
ZXAN(config-if)#tcont 1 name Tcont100M profile T1-100M

66

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 3 GPON Service Configuration

Configuring the Traffic


Profile
Short Description
Prerequisites

Context

Perform this procedure to configure the traffic profile.


Before this operation, make sure that:

The network devices and lines are normal.

The GPON service card status is normal.

The GPON service is configured.

The ZXA10 C220 does not support the traffic limit to GEM Port
directly. By default, one GEM port corresponds to one VPORT. So
limiting the VPORT rate implements the traffic control on the GEM
port.
The ZXA10 C220 supports 512 traffic profiles.
To configure the traffic profile, perform the following steps:

Steps

1. Use the configure terminal command to enter global configuration mode.


2. Use the traffic-profile command to configure the traffic profile.
3. Use the interface command to enter the ONU interface configuration mode.
4. Use the traffic-profile command to configure the upstream
and downstream rates.
END OF STEPS

Result
Example

The traffic profile is configured successfully.


Configure the ZXA10 C220 upstream/downstream traffic profile.
The upstream name is UP-10M. The downstream name is DOWN10M. The assured and peak rates are 10 Mbit/s. On the gpononu_0/10/1:1 ONU interface, configure the upstream/downstream
limi of the VPORT 1.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#traffic-profile DOWN-10M ip cir 10000 cbs 100 pir 10000
pbs 100
ZXAN(config)#traffic-profile UP-10M ip cir 10000 cbs 100 pir 10000
pbs 100
ZXAN(config)#interface gpon-onu_0/10/1:1
ZXAN(config-if)#traffic-profile DOWN-10M vport 1 direction egress
//Configure the downstream limit of VPORT 1
ZXAN(config-if)#traffic-profile UP-10M vport 1 direction ingress
//Configure the upstream limit of VPORT 1

Confidential and Proprietary Information of ZTE CORPORATION

67

ZXA10 C220 Configuration Manual (CLI)

Configuring the Service


Connection
Short Description
Prerequisites

Context

Perform this procedure to configure the service connection between Ethernet frames and GEM port.
Before this operation, make sure that:

The network devices and lines are normal.

The GPON service card status is normal.

The ONU is authenticated.

The T-CONT and GEM Port are configured.

The ZXA10 C220 supports three types of service connection

802.1p
The upstream packets arriving on the UNI of an ONU are
mapped to a GEM port according to UNI and 802.1p priority.
Through the traffic shaping or priority queue, it is sent to the
relevant T-CONT, and then to the OLT.

Bridge
The upstream packets arriving on the UNI of an ONU are
mapped to a GEM port according to VLAN ID. Meanwhile,
the VLAN tag can be processed according VLAN filter rules.
Through the traffic shaping or priority queue, it is sent to the
relevant T-CONT, and then to the OLT.

802.1p + bridge
The upstream packets arriving on the UNI of an ONU are
mapped to a GEM port according to VLAN ID and 802.1p
priority. Meanwhile, the VLAN tag can be processed according
VLAN filter rules. Through the traffic shaping or priority queue,
it is sent to the relevant T-CONT, and then to the OLT.

To configure the service connection between Ethernet frames and


GEM port, perform the following steps:
Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the pon-onu-mng command to enter the ONU remote
management mode.
3. Configure the service connection.

Configure the 802.1p service connection.


a) Use the no flow 1 command to delete the default flow
1.

Note:
By default, flow 1 is configured and bound to
switch_0/1. That is, the default connection type is
bridge or 802.1p+ bridge.

68

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 3 GPON Service Configuration

b) Use the flow flowid ethuni eth_slot/port command to


configure the Ethernet service flow.
c) Use the gemportgemportid flow flowid dot1p-list
dot1p-list command to configure the 802.1p service
connection.

Configure the bridge service connection.


a) Use the flow flowid switch switch_slot/switch command to configure the service flow. The flow type is
switching unit.

Note:
By default,
switch_0/1.

flow 1 is configured and bound to

b) Use the gemport gemportid flow flowid command to


configure the bridge service connection.
c) Use the switchport-bind switch_slot/switch ethuni
eth_slot/port command to configure the connection
between the UNI interface and the bridge.

Note:
By default, all UNI interfaces are bound to switch_0/1.
Use the following commands to bind to other switch
ports:
ZXAN(gpon-onu-mng)#no switchport-bind ethuni eth_0/1
ZXAN(gpon-onu-mng)#switchport-bind switch_0/2 ethuni eth_0/1

Configure the 802.1p+ bridge service connection.


a) Use the flow flowid switch switch_slot/switch command to configure the service flow. The flow type is
switching unit.

Note:
By default,
switch_0/1.

flow 1 is configured and bound to

b) Use the gemport gemportid flow flowid dot1p-list


dot1p-list command to configure the 802.1p+ bridge
service connection.
c) Use the switchport-bind switch_slot/switch ethuni
eth_slot/port command to configure the connection
between the UNI interface and the bridge.

Confidential and Proprietary Information of ZTE CORPORATION

69

ZXA10 C220 Configuration Manual (CLI)

Note:
By default, all UNI interfaces are bound to switch_0/1.
Use the following commands to bind to other switch
ports:
ZXAN(gpon-onu-mng)#no switchport-bind ethuni eth_0/1
ZXAN(gpon-onu-mng)#switchport-bind switch_0/2 ethuni eth_0/1

END OF STEPS
Result
Example

The service connection is configured successfully.


On the gpon-onu_0/10/1:1 interface, configure the connection between the Ethernet frame and the GEM Port.

Service type: 802.1p+ bridge

User interface: eth_0/1

GEM Port ID: 1

Priority: 0

Bridge: switch_0/1

Service flow: flow 1

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#pon-onu-mng gpon-onu_0/10/1:1
ZXAN(gpon-onu-mng)#gemport 1 flow 1 dot1p-list 0

Configuring the ONU


In-Band IP Address
Short Description
Prerequisites

Context

Perform this procedure to configure the ONU in-band IP address


on the OLT to manage the ONU remotely.
Before this operation, make sure that:

The network devices and lines are normal.

The GPON service card status is normal.

The ONU is authenticated.

The T-CONT and GEM Port are configured.

The GPON ONU can be configured in the following ways:

In-band configuration
Create an ONU in-band NM channel, and then log in to the
ONU to implement configuration. The data are configured on
the ONU and needs to be saved on the ONU.
The ONU in-band NM IP address refers to the IP address that
can be connected to the ONU through the ZXA10 C220 uplink
port. The ONU can be configured and upgraded through this
IP address.

70

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 3 GPON Service Configuration

OMCI channel configuration


OMCI is a transmission channel defined in GPON standard.
OMCI packets are transmitted between the OLT and the ONU
through the GEM Port. OMCI channel is created after the ONU
is successfully registered. The OLT controls the ONU through
OMCI channel.
OMCI supports offline configuration on the ONU. The ONU does
not need to save configurations locally.

Note:
In an actual project, the user does not need to configure the
in-band NM IP addresses for all the ONUs. Configure the in-band
NM IP addresses for the ONUs that need voice configuration or
upgrade, such as ZTE-F820 and ZTE-F822.
It is recommended to configure the ONU in-band NM IP address in
the same management VLAN and network segment as the ZXA10
C220 device. Then, the NMS server can connect the ONU when it
connects the OLT.
To configure the ONU in-band IP address, perform the following
steps:
Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the vlan command to create the ONU in-band NM VLAN.
3. Use the pon-onu-mng command to enter the ONU remote
management mode.
4. Use the flow command to create the service flow, the type of
which is switching unit.
5. Use the gemport gemportid flow flowid command to create
the bridge service connection.
6. Use the mgmt-ip command to set the ONU in-band NM IP
address.
7. Use the interface command to enter the ONU interface configuration mode.
8. Use the switchport mode command to change the PON-ONU
port mode.
9. Use the switchport vlan command to add the PON-ONU port
to the NM VLAN in tagged mode.
10. Use the interface command to enter the OLT uplink port configuration mode.
11. Use the switchport mode command to change the OLT uplink
port mode.
12. Use the switchport vlan command to add the OLT uplink port
to the NM VLAN in tagged mode.
END OF STEPS

Result

The ONU in-band IP address is configured successfully.

Confidential and Proprietary Information of ZTE CORPORATION

71

ZXA10 C220 Configuration Manual (CLI)

Example

Set the in-band NM VLAN of No.1 ONU F822 under interface 1 of


slot 10 to 2600 and the in-band IP address to 198.2.128.5/24.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan 2600
ZXAN(config-vlan)#exit
ZXAN(config)#pon-onu-mng gpon-onu_0/10/1:1
ZXAN(gpon-onu-mng)#gemport 1 flow 1
ZXAN(gpon-onu-mng)#mgmt-ip 192.2.128.5 255.255.255.0
vlan 2600 priority 0
route 0.0.0.0 0.0.0.0 192.2.128.4
ZXAN(gpon-onu-mng)#exit
ZXAN(config)#interface gpon-onu_0/10/1:1
ZXAN(config-if)#switchport mode hybrid vport 1
ZXAN(config-if)#switchport vlan 2600 tag vport 1
ZXAN(config-if)#exit
ZXAN(config)#interface xgei_0/2/1
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 2600 tag

Postrequisite

Carry out the ping command on the OLT to check whether the
ONU in-band IP address is successfully configured.
ZXAN#ping 198.2.128.5
sending 5,100-byte ICMP echos to 10.1.1.2,timeout is 2 seconds.
!!!!!
Success rate is 100 percent(5/5),round-trip min/avg/max= 0/8/40 ms.
//The ONU in-band IP address is successfully configured.

Configuring the OLT Port


Short Description
Prerequisites

Context
Steps

Perform this procedure to configure the OLT port.


Before this operation, make sure that:

The network devices and lines are normal.

The GPON service card status is normal.

To configure the OLT port, perform the following steps:


1. Use the configure terminal command to enter the global configuration mode.
2. Use the interface command to enter the OLT interface configuration mode.
3. Use the auto-learning command to enable the ONU SN autolearning authentication mode. By default, it is disabled.
4. Use the clear command to clear the configuration data on the
OLT port.
5. Use the discover-period command to configure the ONU testing period, including the new registered ONU and the offline
ONU.
6. Use the fec command to enable/disable the PON FEC function.
7. Use the linktrap command to configure the alarm reporting
mode when there is a link break on the OLT port.
8. Use the range-mode command to configure the ONU distance
that the OLT supports. The maximum range between the ONUs
of the same PON port cannot exceed 20 km.

72

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 3 GPON Service Configuration

9. Use the reset command to reset the OLT port.


10. Use the shutdown command to shut down the OLT port.
END OF STEPS
Result
Example

The OLT port is configured successfully.


Configure the ONU distance of the gpon-olt_0/10/1 port to the
range from 20 km to 40 km.
ZXAN#configure terminal
Enter configuration commands, one per line.
ZXAN(config)#interface gpon-olt_0/10/1
ZXAN(config-if)#range-mode 200 400

End with CTRL/Z.

GPON Protection
Configuration
This section includes the following:

Overview

Configuring GPON Protection

Overview
Introduction

The system implements GPON service protection by configuring


the GPON ports on the subscriber card of the ZXA10 C220. GPON
protection improves the transmission reliability.

Service
Description

With the popularity of the Internet bandwidth service, users require powerful functions and stable performance on the network
services. The ZXA10 C220 device uses the active/standby mode
to ensure stable operation. It has the PON port protection mechanism. When the service is interrupted due to the physical disconnection between the ZXA10 C220 device and the ONU, the system
switches to the standby PON port to recover the service.

Service
Specifications

The ZXA10 C220 provides the protection switchover function in the


following ways with the priorities from high to low:

Force switchover

Alarm triggering

Manual switchover

Configuring GPON Protection


Short Description

The ZXA10 C220 connects the remote ONU devices through two
GPON interfaces, providing users with high-speed Internet service
in PON port protection.

Confidential and Proprietary Information of ZTE CORPORATION

73

ZXA10 C220 Configuration Manual (CLI)

Prerequisites

Networking
Diagram

Before this operation, make sure that:

The network devices and lines are normal.

The interface VLAN of the upper-layer device is consistent with


the VLAN configured on the uplink port.

The GPON service card status is normal.

The GPON service is configured.

Figure 20 shows the networking diagram of the GPON protection


service.
FIGURE 20 GPON PROTECTION SERVICE NETWORKING DIAGRAM

The ONU connects two GPON ports of the ZXA10 C220 through a
splitter to achieve PON port protection.

Note:
The ZXA10 C220 supports two types of GPON protection

Type B
Type B is the OLT-side redundancy protection. The two PON
ports of the OLT use independent PON MAC chips and optical modules to achieve protection on the two PON ports. The
OLT side of the splitter has two input ports and multiple output ports, which are applicable for protection between the PON
ports on the same PON card and among different PON cards.
This type of protection can only recover the OLT-side service.

74

Type C

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 3 GPON Service Configuration

Type C is the OLT-side and ONU-side full redundancy protection, also known as full duplex protection. The two PON ports
on the OLT, two optical modules on the ONU, backbone fiber,
splitter, and distribution fiber all use dual-route redundancy.
This type of protection is implemented in the following modes:
Data Scheme

Table 15 lists the data scheme for the GPON protection service.
TABLE 15 GPON PROTECTION SERVICE DATA SCHEME

Configuration
Flow

Item

Data

Working port

0/10/1

Protection port

0/10/2

ON protection group

Group name: zte


Protection type: type B
Protection mode: restorable mode
Restoring time interval: 120 seconds

Figure 21 shows the configuration flow of the GPON service protection.


FIGURE 21 GPON SERVICE PROTECTION CONFIGURATION FLOW

To configure the GPON protection, perform the following steps:


Steps

1. Clear the configuration data on the protection port.

Confidential and Proprietary Information of ZTE CORPORATION

75

ZXA10 C220 Configuration Manual (CLI)

ZXAN(config)#interface gpon-olt_0/10/2
ZXAN(config-if)#clear
ZXAN(config-if)#exit

2. Enter the PON mode and configure the EPON protection group.
In PON mode, use the protection group command to create
the GPON protection group.
ZXAN(config)#pon
ZXAN(config-pon)#protection group zte workpon
gpon-olt_0/10/1 protectpon
gpon-olt_0/10/2 typeB
.[Successful]
ZXAN(config-pon)#show protection group list
zte

3. Configure the protection group properties.


Use the protection prop command to configure the protection
group properties, including the switchover mode and waiting
time interval.
ZXAN(config-pon)#protection prop group zte mode revertive wtr 120
ZXAN(config-pon)#show protection group information zte
Name :
Work channel interface :
Protect channel interface:
Protection type :
Protection mode:
Time to restore(s):
Active channel:
Alarm request:
Work channel:
Protect channel:
Externel request:

zte
gpon-olt_0/10/1
gpon-olt_0/10/2
typeB
revertive
120
work-channel
No alarm request!
OLTSF
no-request

The parameters for the PON protection group properties are as


follows:

Switchover mode: Revertive mode and non-revertive


mode. By default, it is non-revertive mode.
Time to restore: The time to wait for restoration. When
the protection mode is non-revertive, the time interval is
0. When the mode is revertive, the time interval is greater
than 30 seconds in general.

4. (Optional) Configure the switchover mode between the working port and protection port of the protection group.
Use the protection switch-command command to configure
the switchover mode between the working port and protection
port of the protection group. This instance uses the default
mode (no switchover mode). To configure the mode, use the
following command:
ZXAN(config-pon)#protection switch-command group zte force p2w

The switchover modes include the following:

76

Force: Work on this port regardless the status. You can


switch over between the protection port and working port
by force.
Manual: Switch over to a port manually. You can switch
over between the protection port and working port manually.
Lockoutprotect: Disable protection.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 3 GPON Service Configuration

Use the no protection switch-command command to clear


all the external switchover commands, that is, to delete the
force command, manual command, or lock command.

Note:
The priorities from high to low are as follows:

Clear all

Lock protection

Switch over the working port to protection port by force

Switch over the protection port to working port by force

Switch over the working port to protection port manually

Switch over the protection port to working port manually

If a lower priority is configured after a higher priority is configured, the lower one does not take effect. It is necessary to
clear the previous mode and then configure the lower priority.
5. Save the configuration data.
ZXAN(config-pon)#end
ZXAN#write
Building configuration...
..[OK]

Result

GPON protection is configured successfully.

Confidential and Proprietary Information of ZTE CORPORATION

77

ZXA10 C220 Configuration Manual (CLI)

This page is intentionally blank.

78

Confidential and Proprietary Information of ZTE CORPORATION

Chapter

Multicast Service
Configuration
Table of Contents
Overview..........................................................................79
Configuring the IGMP Snooping Multicast Service (EPON) .........80
Configuring the IGMP Snooping Multicast Service (GPON) .........84
Configuring the IGMP Proxy Multicast Service ........................91
Configuring the MVLAN Parameters ......................................92
Configuring the IGMP Global Parameters...............................94
Configuring the IGMP Port Parameters ..................................98
Configuring the IPTV Package............................................ 100
Configuring CAC .............................................................. 101
Configuring CDR.............................................................. 102

Overview
Service
Description

With the appearance of the multimedia video and data warehouse


in the IP network, the multicast application is becoming a new service requirement. The multicast service is applied in the areas of
stream media, remote education, video conference, IPTV, network
game, data replication, and other point-to-multipoint data transmission applications.

Service
Specification

The ZXA10 C220 supports IGMP protocols and controllable multicast service.
The multicast service of ZXA10 C220 supports the following:

IGMP V1/V2/V3

IGMP snooping, IGMP proxy, and IGMP router

1024 multicast groups

Channel preview: configuration of preview times, duration,


and interval

Audience rating statistics

Controllable multicast: including deny, permit, and preview.

IPTV package management, 1024 packages and 1024 channels


at maximum

Confidential and Proprietary Information of ZTE CORPORATION

79

ZXA10 C220 Configuration Manual (CLI)

Configuring the IGMP


Snooping Multicast Service
(EPON)
Short Description
Prerequisites

Networking
Diagram

Perform this procedure to configure the IGMP snooping multicast


service in EPON access mode.
Before this operation, make sure that:

The network devices and lines are normal.

The multicast source exits in the network.

The EPON service card status is normal.

Figure 22 shows the networking diagram of the IGMP snooping


multicast service.
FIGURE 22 IGMP SNOOPING MULTICAST SERVICE NETWORKING DIAGRAM
(EPON)

Data Scheme

Table 16 lists the data scheme for the IGMP snooping multicast
service.
TABLE 16 IGMP SNOOPING MULTICAST SERVICE DATA SCHEME (EPON)

80

Item

Data

Multicast service VLAN


(MVLAN)

VLAN ID: 500

Upstream port

0/2/1

User port

0/5/1

Multicast group IP address

224.1.1.1 224.1.1.3

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 4 Multicast Service Configuration

Configuration
Flow

ONU

Multicast subscriber

Connected to FE port 1

Type: ZTE-F82210G EPON ONU


MAC address: 0019.c600.0011
Bandwidth: 100 Mbps upstream,
1 Gbps downstream

Figure 23 shows the configuration flow of the IGMP snooping multicast service.
FIGURE 23 IGMP SNOOPING MULTICAST SERVICE CONFIGURATION FLOW
(EPON)

To configure the IGMP snooping multicast service, perform the following steps:
Steps

1. Create a multicast VLAN.


ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan 500
ZXAN(config-vlan)#exit
ZXAN(config)#

Note:
To display the created VLAN information, use the show vlan
summary command.
2. Configure the OLT upstream port VLAN.
ZXAN(config)#interface xgei_0/2/1

Confidential and Proprietary Information of ZTE CORPORATION

81

ZXA10 C220 Configuration Manual (CLI)

ZXAN(config-if)#switchport mode trunk


ZXAN(config-if)#switchport vlan 500 tag
ZXAN(config-if)#exit

3. View the unauthenticated ONU information on the port.


ZXAN(config)#show onu unauthentication epon-olt_0/5/1
Onu interface :
epon-onu_0/5/1:1
MAC address :
0019.c600.0011
SN :
AuthState State :
deny
OnTime :
2008/01/01 22:34:29
ZXAN(config)#

4. Configure the ONU type profile.


The speed of the default ZTE-F822 ONU type profile is 1 Gbps.
The speed can be configured accordingly.
ZXAN(config)#show onu-type epon ZTE-F822
Onu type name :
Pon type :
Description :
Protect type:
Speed:

ZTE-F822
epon
24FE
none
1g

Create a new ZTE-F822 type profile ZTE-F822A, including 24 FE


ports and 24 POTS ports. The rate is 10 Gbps asymmetrically,
that is, the ONU upstream rate is 1 Gbps and downstream rate
is 10 Gbps. Disable the auto-dispatch of ZTE-F822A.
ZXAN(config)#pon
ZXAN(config-pon)#onu-type ZTE-F822A epon description 24FE,
24POTS speed 10g-asymmetric
ZXAN(config-pon)#onu-type-if ZTE-F822A eth_0/1-24
ZXAN(config-pon)#onu-type-if ZTE-F822A pots_0/1-24
ZXAN(config-pon)#exit
ZXAN(config)#epon
ZXAN(config-epon)#auto-dispatch-set ZTE-F822A disable
ZXAN(config-epon)#show onu-type epon ZTE-F822A
Onu type name : ZTE-F822A
Pon type : epon
Description : 24FE,24POTS
Protect type: none
Speed: 10g-asymmetric
ZXAN(config-epon)#exit

5. Enter the EPON-OLT interface mode. Authenticate the ONU


through the MAC address.
ZXAN(config)#interface epon-olt_0/5/1
ZXAN(config-if)#onu 1 type ZTE-F822A mac 0019.c600.0011
ZXAN(config-if)#exit

6. Enter the EPON-ONU interface mode. Enable the interface authentication protocol.
ZXAN(config)#interface epon-onu_0/5/1:1
ZXAN(config-if)#admin enable

Note:
To display the detailed information of the current ONU, use the
show onu detail-info command.
7. Set the upstream and downstream bandwidth of the ONU.
ZXAN(config-if)#sla upstream maximum 102400
ZXAN(config-if)#sla downstream maximum 1024000

8. Configure the VLAN service port.

82

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 4 Multicast Service Configuration

ZXAN(config-if)#switchport mode trunk


ZXAN(config-if)#switchport vlan 500 tag
ZXAN(config-if)#exit

9. Configure the IGMP Snooping global parameters.


Enable the IGMP protocol. The other parameters use the default values.
ZXAN(config)#igmp enable

10. (Optional) Configure the IGMP snooping port parameters.


In this instance, all IGMP port parameters use the default values.
11. Configure the multicast VLAN.
i.

Configure the MVLAN.


ZXAN(config)#igmp mvlan 500

ii.

Configure the MVLAN IGMP mode.


ZXAN(config)#igmp mvlan 500 work-mode snooping

iii. Configure the multicast groups.


ZXAN(config)#igmp mvlan 500 group 224.1.1.1
ZXAN(config)#igmp mvlan 500 group 224.1.1.2
ZXAN(config)#igmp mvlan 500 group 224.1.1.3

When the IP addresses of the multicast groups are continuous, they can be configured in batch.
ZXAN(config)#igmp mvlan 500 group 224.1.1.1 to 224.1.1.3

iv. Configure the source port.


ZXAN(config)#igmp mvlan 500 source-port xgei_0/2/1

v.

Configure the receiving port.


ZXAN(config)#igmp mvlan 500 receive-port epon-onu_0/5/1:1

12. Configure the multicast data on the ONU.


i.

Configure the multicast protocol.


ZXAN(config)#pon-onu-mng epon-onu_0/5/1:1
ZXAN(epon-onu-mng)#multicast switch igmpsnooping

Note:
If the OLT uses the IGMP snooping protocol, the ONU can
use the IGMP snooping protocol and controllable multicast
protocol. If the OLT uses the IGMP proxy protocol, the
ONU can use any protocols. This instance uses the IGMP
snooping protocol.
ii.

Configure the ONU fast leaving function.


ZXAN(epon-onu-mng)#multicast fastleave enable

iii. Configure the ONU multicast control type.


This command is used to set the forwarding mode of the
downstream multicast packets by the ONU. This instance
uses the system default value, forwarding based on the
multicast destination MAC address.
ZXAN(epon-onu-mng)#multicast control-type gda-mac

Confidential and Proprietary Information of ZTE CORPORATION

83

ZXA10 C220 Configuration Manual (CLI)

iv. Configure the multicast VLAN of the ONU user port.


ZXAN(epon-onu-mng)#vlan port eth_0/1 mode tag vlan
500 priority 0
ZXAN(epon-onu-mng)#multicast vlan port eth_0/1 add vlanlist 500
ZXAN(epon-onu-mng)#multicast vlan tag-strip port eth_0/1 enable

v.

Configure the maximum multicast groups supported by the


ONU user port.
ZXAN(epon-onu-mng)#multicast group-max-number eth_0/1 255
ZXAN(epon-onu-mng)#end

13. Save the configuration data.


ZXAN#write
Building configuration...
..[OK]

Result

The IGMP snooping multicast service is configured successfully.


The subscribers can watch the programs from 224.1.1.1 to
224.1.1.3.

Configuring the IGMP


Snooping Multicast Service
(GPON)
Short Description
Prerequisites

Context

Perform this procedure to configure the IGMP snooping multicast


service in GPON access mode.
Before this operation, make sure that:

The network devices and lines are normal.

The multicast source exits in the network.

The GPON service card status is normal.

When the ONU is powered on, the OLT automatically creates multicast channel: flow 255 and GEM Port ID 4095.
To configure the multicast service, it is necessary to create a unicast service channel first. For detailed operations, refer to the
topic Configuring GPON Service.

Networking
Diagram

84

Figure 24 shows the networking diagram of the IGMP snooping


multicast service.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 4 Multicast Service Configuration

FIGURE 24 IGMP SNOOPING MULTICAST SERVICE NETWORKING DIAGRAM


(GPON)

Data Scheme

Table 17 lists the data scheme for the IGMP snooping multicast
service.
TABLE 17 IGMP SNOOPING MULTICAST SERVICE DATA SCHEME (GPON)
Item

Data

Multicast service VLAN


(MVLAN)

VLAN ID: 500

IPTV priority

Upstream port

0/2/1

GPON port

0/10/1

Bandwidth profile (T-CONT)

Profile name: iptv-tcont


Bandwidth type: fixed bandwidth
Bandwidth: 50 Mbit/s

ONU

ONU ID: 1
ONU authentication mode: SN
authentication
ONU SN: ZTEG70002926
ONU type: ZTE-F621

T-CONT

T-CONT indexd: 3
T-CONT name: iptv-tcont
Bandwidth profile: iptv-tcont
Allocated ID: auto-allocate

GEM Port

T-CONT index: 3
GEM Port index: 1
GEM Port name: Gemport1
Port Id: auto-allocate

Confidential and Proprietary Information of ZTE CORPORATION

85

ZXA10 C220 Configuration Manual (CLI)

Configuration
Flow

Multicast subscriber

Port through which the ONU connects


the computer: eth_0/1, in VLAN 10

IP address of the multicast


group

224.1.1.1 224.1.1.3

Figure 25 shows the configuration flow of the IGMP snooping multicast service.
FIGURE 25 IGMP SNOOPING MULTICAST SERVICE CONFIGURATION FLOW
(GPON)

To configure the IGMP snooping multicast service, perform the following steps:
Steps

1. Create the service VLAN.


ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan 500
ZXAN(config-vlan)#exit
ZXAN(config)#vlan 10
ZXAN(config-vlan)#exit
ZXAN(config)#

86

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 4 Multicast Service Configuration

Note:
To display the created VLAN information, use the show vlan
summary command.
2. Configure the VLAN of the OLT uplink port.
ZXAN(config)#interface xgei_0/2/1
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 500 tag
ZXAN(config-if)#exit

3. View the unauthenticated ONU information on the port.


ZXAN(config)#show gpon onu uncfg gpon-olt_0/10/1
OnuIndex
Sn
State
---------------------------------------------------gpon-onu_0/10/1:1
ZTEG70002926
unknown

4. Enter the GPON-OLT interface mode and authenticate the ONU


by the SN.
ZXAN(config)#interface gpon-olt_0/10/1
ZXAN(config-if)#onu 1 type ZTE-F621 sn ZTEG70002926
ZXAN(config-if)#exit
ZXAN(config)#show gpon onu state gpon-olt_0/10/1
OnuIndex
Admin State Omcc State O7 State Phase State
--------------------------------------------------------------gpon-onu_0/10/1:1 enable
enable
operation
working

5. Configure the T-CONT bandwidth profile.


ZXAN(config)#gpon
ZXAN(config-gpon)#profile tcont iptv-tcont type 1 fixed 50000
ZXAN(config-gpon)#exit

6. Create a T-CONT.
ZXAN(config)#interface gpon-onu_0/10/1:1
ZXAN(config-if)#tcont 3 name iptv-tcont profile iptv-tcont

7. Create a GEM port.


ZXAN(config-if)#gemport 1 name Gemport1 unicast tcont 3 queue 2

8. Configure the port VLAN on the user side.


ZXAN(config-if)#switchport mode hybrid vport 1
ZXAN(config-if)#switchport vlan 10 tag vport 1
ZXAN(config-if)#switchport vlan 500 tag vport 1
ZXAN(config-if)#exit
ZXAN(config)#

Note:
By default, one V-port corresponds to one GEM port.
9. Configure the ONU unicast service channel.
i.

Create the service flow.


By default, flow1 is created and bound to switch_0/1. In
this instance, flow1 is used. The service connection type is
8021.p+ bridge. The bridge is switch_0/1. To create other
service flows, refer to the topic Configuring GPON Service.

Confidential and Proprietary Information of ZTE CORPORATION

87

ZXA10 C220 Configuration Manual (CLI)

ii.

Configure the mapping from the service flow to the GEM


port.
ZXAN(config)#pon-onu-mng gpon-onu_0/10/1:1
ZXAN(gpon-onu-mng)#gemport 1 flow 1 dot1p-list 5

Note:
The priority is 5. That means, the upstream data with the
priority of 5 is mapped to the GEM port.
iii. Create the connection between the UNI port and bridge.
By default, all the UNI ports are bound to switch_0/1. To
use other bridges, refer to the topic Configuring GPON Service.
iv. Configure the VLAN filter mode of the service flow.
ZXAN(gpon-onu-mng)#flow mode 1 tag-filter vid-filter
untag-filter discard

v.

Configure the VLAN filter entry of the service flow.


ZXAN(gpon-onu-mng)#flow 1 vid 10

vi. Configure the VLAN mode on UNI.


ZXAN(gpon-onu-mng)#vlan port eth_0/1 mode tag vlan 10 priority 5

Note:
F621 provides 6 user ports: eth_0/1 to eth_0/6.

eth_0/1 to eth_0/4 are FE ports.

eth_0/5 to eth_0/6 are GE ports.

vii. Configure the VLAN filter mode on UNI.


ZXAN(gpon-onu-mng)#vlan-filter-mode ethuni eth_0/1 tag-filter
vid-filter untag-filter discard

viii. Configure the VLAN filter entry on UNI.


ZXAN(gpon-onu-mng)#vlan-filter ethuni eth_0/1 priority 5 vid 10

Note:
Because the VLAN filter mode is set to VLAN ID in the previous step, the priority 0 does not take effect here.
10. Configure the multicast service on the ONU.
i.

Configure the VLAN filter mode of the multicast service


flow.
ZXAN(gpon-onu-mng)#flow mode 255 tag-filter vid-filter
untag-filter discard

ii.

88

Configure the VLAN filter entry of the multicast service flow.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 4 Multicast Service Configuration

On the OMCI channel of the F621, MVLAN 500 is created


and its UNI ports through 1 to 6 are added to the receiving
port of this MVLAN.
ZXAN(gpon-onu-mng)#flow 255 vid 500

iii. Configure the multicast addresses on the ONU.


ZXAN(gpon-onu-mng)#mac-filter flow 255 0100.5e01.0101 forward
ZXAN(gpon-onu-mng)#mac-filter flow 255 0100.5e01.0102 forward
ZXAN(gpon-onu-mng)#mac-filter flow 255 0100.5e01.0103 forward
ZXAN(gpon-onu-mng)#exit

Note:
The mapping from the IP multicast address to the MAC address is as follows:
IANA allocates MAC addresses (Range: 01:00:5E:00:00:0
0 01:00:5E:7F:FF:FF) for multicast service. This needs to
map 28bit IP multicast address space to 23bit MAC address space by putting the low 23 bits of multicast address
in the low 23 bits of MAC address, as shown in Figure 26.
FIGURE 26 MAPPING FROM IP MULTICAST ADDRESS TO
MAC ADDRESS

Because only 23 bits of the rear 28 bits of IP multicast address are mapped into thge MAC address, 32 IP addresses
are mapped to the same MAC address.
11. Configure the IGMP Snooping global parameters.
Enable the IGMP protocol and the IGMP span-VLAN function.
The other parameters use the default values.
i.

Enable the IGMP protocol.


ZXAN(config)#igmp enable

ii.

Enable the IGMP span-VLAN function.


When the unicast VLAN is different from MVLAN, the spanVLAN function must be enabled.
ZXAN(config)#igmp span-vlan enable

12. Configure the IGMP snooping port parameters.


Configure the maximum groups and enable the ONU fast leaving function. The other parameters use the default values.
i.

Configure the maximum groups that the port supports. In


this instance, it is 1024.
ZXAN(config)#interface gpon-onu_0/10/1:1
ZXAN(config-if)#igmp max-groups 1024 vport 1

ii.

Enable the ONU fast leaving function.

Confidential and Proprietary Information of ZTE CORPORATION

89

ZXA10 C220 Configuration Manual (CLI)

ZXAN(config-if)#igmp fast-leave enable vport 1


ZXAN(config-if)#exit

13. Configure the multicast VLAN.


i.

Configure the MVLAN.


ZXAN(config)#igmp mvlan 500

ii.

Configure the MVLAN IGMP mode.


ZXAN(config)#igmp mvlan 500 work-mode snooping

iii. Configure the multicast groups.


ZXAN(config)#igmp mvlan 500 group 224.1.1.1
ZXAN(config)#igmp mvlan 500 group 224.1.1.2
ZXAN(config)#igmp mvlan 500 group 224.1.1.3

When the IP addresses of the multicast groups are continuous, they can be configured in batch.
ZXAN(config)#igmp mvlan 500 group 224.1.1.1 to 224.1.1.3

iv. Configure the source port.


ZXAN(config)#igmp mvlan 500 source-port xgei_0/2/1

Note:
Only the uplink ports added to MVLAN 500 can be set to
the source port.
v.

Configure the receiving port.


ZXAN(config)#igmp mvlan 500 receive-port
gpon-onu_0/10/1:1 vport 1

14. Configure the multicast parameters on the ONU.


i.

Strip the VLAN tag of the downstream packets.


ZXAN(config)#pon-onu-mng gpon-onu_0/10/1:1
ZXAN(gpon-onu-mng)#mvlan ethuni eth_0/1 strip enable

ii.

Configure the maximum multicast groups that the ONU


user port supports.
ZXAN(gpon-onu-mng)#igmp eth_0/1 max-groups 255

iii. Configure the maximum bandwidth of the ONU user port.


ZXAN(gpon-onu-mng)#igmp eth_0/1 max-bandwidth 4096

iv. Configure the GMP bandwidth control function of the ONU


user port. By default, it is disabled.
Bandwidth control is used to reject the user join request
when the multicast group bandwidth exceeds the remaining
bandwidth of the current physical channel.
ZXAN(gpon-onu-mng)#igmp eth_0/1 bandwidth-enforce enable

v.

Configure the IGMP profile of the ONU user port.


ZXAN(gpon-onu-mng)#igmp eth_0/1 profile zte
ZXAN(gpon-onu-mng)#end

90

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 4 Multicast Service Configuration

Note:
Before applying the ONU IGMP profile, it is necessary to
create the ONU IGMP profile by the following commands:
ZXAN(config)#gpon
ZXAN(config-gpon)#onu profile igmp zte fast-leave enable
version v3
ZXAN(config-gpon)#exit

15. Save the configuration data.


ZXAN#write
Building configuration...
..[OK]

Result

The IGMP snooping multicast service is configured successfully.


The subscribers can watch the programs from 224.1.1.1 to
224.1.1.3.

Configuring the IGMP Proxy


Multicast Service
Introduction
Prerequisites

Perform this procedure to configure the IGMP proxy multicast service.


Before this operation, make sure that:

The network devices and lines are normal.

The multicast source exits in the network.

The EPON/GPON service card status is normal.

Context

To configure the IGMP proxy multicast service, perform the following steps:

Steps

Because most of the steps are the same as those of IGMP snooping, the following describes the different steps.
1. Configure the MVLAN working mode.
ZXAN(config)#igmp mvlan 500 work-mode proxy

2. Configure the IP address of the proxy host.


The IP address of the proxy host is the source IP address of
the report/leave packet sent in proxy mode. By default, the
IP address is 0.0.0.0. It can be configured according to actual
situations.
ZXAN(config)#igmp mvlan 500 host-ip 10.1.1.1

3. Configure the IGMP interface parameters, such as fast leaving


and proxy IP address.
The proxy IP address is the source IP address of the downstream query packet in proxy mode. By default, the IP address
is 192.168.2.14. It can be configured according to actual situations.

Confidential and Proprietary Information of ZTE CORPORATION

91

ZXA10 C220 Configuration Manual (CLI)

In this instance, other IGMP port parameters use the default


values and they can be configured according to actual situations.
ZXAN(config)#interface epon-onu_0/6/4:1
ZXAN(config-if)#igmp proxy-ip 192.168.2.14 vport 1

Result

The IGMP proxy multicast service is configured successfully.

Configuring the MVLAN


Parameters
Short Description
Prerequisites

Perform this procedure to configure the MVLAN parameters.


Before this operation, make sure that:

The network devices and lines are normal.

The multicast source exits in the network.

The xPON service is configured.

Context

To configure the MVLAN parameters, perform the following steps:

Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the igmp mvlan command to create a MVLAN.
3. Configure the MVLAN IGMP protocol.
Use the igmp mvlan enable command to enable IGMP protocol for the multicast packets.
Use the igmp mvlan drop command to discard the IGMP multicast packets.
4. Use the igmp mvlan work-mode command to configure the
MVLAN work mode.

Note:
In IGMP snooping mode, the host, pre-join, active report, and
static join functions are invalid.
5. Use the igmp mvlan group command to configure the MVLAN
group.
6. Use the igmp mvlan group bandwidth command to configure the multicast bandwidth.
The multicast bandwidth ranges from 100 to 65535. The default bandwidth is 2048. The unit is Kbps.
7. Use the igmp mvlan group prejoin command to configure
the multicast pre-join function.

92

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 4 Multicast Service Configuration

Note:
By default, this function is disabled. After it is enabled, the OLT
sends the report packet to the server periodically. The IGMP
report is not sent to the pre-joined multicast group.
8. Use the igmp mvlan group static-port command to configure the MVLAN static receiving port.
9. Use the igmp mvlan group source-address command to
configure the IP address of the multicast client. By default,
it is 0.0.0.0.
10. Use the igmp mvlan group-filter command to configure
MVLAN group management.

Note:

When MVLAN group management is enabled, the IGMP join


packets must check whether the group address is configured. The group configured with an address is called the
management group.
When MVLAN group management is disabled, the IGMP join
packets do not check whether the group address is configured. The learned group is called the dynamic group.
When span-VLAN is enabled, MVLAN group-filter must be
enabled. By default, it is enabled.

11. Use the igmp mvlan max-group command to configure the


MVLAN maximum group number.
12. Use the igmp mvlan source-port command to configure the
MVLAN source port.
13. Use the igmp mvlan receive-port command to configure the
MVLAN receiving port.
14. Use the igmp mvlan host-ip command to configure the IP
address of the proxy host in IGMP proxy mode.
15. Use the igmp mvlan host-version command to configure the
version number of the IGMP request packet sent by the uplink
port.
16. Use the igmp mvlan priority command to configure the IGMP
packet priority.

Note:
Only in IGMP proxy mode, the IGMP packets sent by the ZXA10
C220 to the network side are processed according to the IGMP
packet priority in the multicast VLAN. In IGMP snooping mode,
the IGMP packets sent by the ZXA10 C220 to the network side
are processed according to the priority of the IGMP service
traffic.

Confidential and Proprietary Information of ZTE CORPORATION

93

ZXA10 C220 Configuration Manual (CLI)

17. Use the show igmp mvlan group command to view the
MVLAN configuration information.
END OF STEPS
Result
Example

The MVLAN parameters are configured successfully.


Configure the MVLAN 500. Table 18 lists the configuration data.
TABLE 18 MVLAN CONFIGURATION DATA
Item

Data

IGMP protocol

Enable

IGMP work mode

IGMP Proxy

Multicast group IP addresses

224.1.1.1 to 224.1.1.10

Multicast group management

Enable

Maximum multicast group


numbers

16

Multicast source port

0/12/1

Multicast receiving port

0/6/4:2

Proxy host IP address

10.63.196.50

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#igmp mvlan 500
ZXAN(config)#igmp mvlan 500 enable
ZXAN(config)#igmp mvlan 500 work-mode proxy
ZXAN(config)#igmp mvlan 500 group 224.1.1.1 to 224.1.1.10
ZXAN(config)#igmp mvlan 500 group-filter enable
ZXAN(config)#igmp mvlan 500 max-group 16
ZXAN(config)#igmp mvlan 500 source-port gei_0/14/1
ZXAN(config)#igmp mvlan 500 receive-port epon-onu_0/6/4:2
ZXAN(config)#igmp mvlan 500 host-ip 10.63.196.50
ZXAN(config)#show igmp mvlan 500
Protocol packet's priority is 0 (in proxy/router mode).
Source Port
---------------------------gei_0/14/1
Receive Port
---------------------------epon-onu_0/6/4:2:1
Group
---------------------------224.1.1.1 - 224.1.1.10

Configuring the IGMP Global


Parameters
Short Description

94

Perform this procedure to configure the IGMP global parameters.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 4 Multicast Service Configuration

Prerequisites

Context

Before this operation, make sure that:

The network devices and lines are normal.

The ZXA10 C220 device runs properly.

Table 19 lists the IGMP global parameters.


TABLE 19 IGMP GLOBAL PARAMETERS DESCRIPTION
Parameter

Description

Value

IGMP protocol

To enable or disable the


IGMP protocol

Enable
Disable

Default: enable
IGMP
snooping
aging time

To set the aging time of


the IGMP group members,
which takes effect only in
IGMP snooping mode

Range: 30 3600
seconds

IGMP proxy general query interval

To set the global query


interval in IGMP proxy
mode

Range: 60 300
seconds

To set the maximum query


response time in IGMP
proxy mode

Range: 1 25
seconds

IGMP proxy maximum query response time

IGMP proxy last


member query interval

IGMP proxy last


member
query
counts

IGMP proxy unsolicited report interval

Default: 300 seconds

Default: 125 seconds

Default: 10 seconds

The maximum query


response time affects the
time that the multicast
user responds to the
report packet. The burst
response packet traffic can
be reduced by increasing
the maximum query
response time.
To set the global query
interval of the last member
in IGMP proxy mode

Range: 0.1 25.5


seconds

To set the query counts of


the last member in IGMP
proxy mode

Range: 2 5

Default: 1 second

Default: 2

When the configured query


counts are complete, if
there is no response packet
during the maximum
query response time, the
subscriber is considered to
leave.
To set the interval of
sending the unsolicited
report packet in IGMP
proxy mode

Range: 1 60
seconds
Default: 10 seconds

Refer to RFC2236 unsolicit


report interval. In IGMP
snooping mode, the
multicast active report
function is ineffective.

Confidential and Proprietary Information of ZTE CORPORATION

95

ZXA10 C220 Configuration Manual (CLI)

Parameter

IGMP proxy
bustness

ro-

Description

Value

To set the IGMP global


robustness factor in IGMP
proxy mode

Range: 2 5
Default: 2

The robustness factor is


used to enhance system
reliability. If a subnet is
unstable and tends to lose
data, its robustness factor
needs to be increased.
This factor affects the
member aging time and
packet sending retry
times.
To enable the log function

Log function

Enable
Disable

Default: disable
Host
tracking
function

Bandwidth control
function

Span VLAN function

To set the host tracking


function under the user
port in fast leaving mode

To enable or disable IGMP


bandwidth control

Bandwidth control is
used to reject the user join
request when the multicast
group bandwidth exceeds
the remaining bandwidth
of the current physical
channel.

Default: disable

To enable or disable the


span-VLAN function

Enable
Disable

Default: disable
Enable
Disable

Enable
Disable

Default: enable

Non-matched
group
process
mode

To forward or discard
the IGMP packets of the
unmatched multicast
group

Mcm function

To enable or disable
the multi-copy multicast
function

Forward
Drop

Default: forward
Enable
Disable

Default: disable

To configure the IGMP global parameters, perform the following


steps:
Steps

1. Use the igmp enable command to enable the global IGMP


protocol.
2. Use the igmp snooping-aging-time command to set the aging time in IGMP snooping mode.
3. Use the igmp query-interval command to set the general
query interval in IGMP proxy mode.
4. Use the igmp query-max-resp command to set the maximum query response time in IGMP proxy mode.

96

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 4 Multicast Service Configuration

5. Use the igmp last-query-interval command to set the query


interval of the last member in IGMP proxy mode.
6. Use the igmp last-query-count command to set the query
counts of the last member in IGMP proxy mode.
7. Use the igmp unsolicited-report-interval command to set
the IGMP unsolicited report interval.
8. Use the igmp robustness command to set the robustness
factor in IGMP proxy mode.
9. Use the igmp log command to enable the log function.
10. Use the igmp host-tracking command to enable the host
tracking function.
11. Use the igmp bandwidth-control command to enable the
bandwidth control function.
12. Use the igmp span-vlan command to enable the span-VLAN
function.
13. Use the igmp statistics clear command to clear the IGMP
packet statistics data.
14. Use the igmp non-match-group command to set the processing mode of the unmatched multicast group.
15. Use the igmp mcm command to enalbe the multi-copy multicast function.
16. Use the show igmp command to view the global IGMP configuration.
END OF STEPS
Result
Example

The IGMP global parameters are configured successfully.


Configure and view the global IGMP parameters.

IGMP proxy general query interval: 100 seconds

IGMP proxy maximum query response time: 20 seconds

IGMP proxy last member query interval: 2 seconds

IGMP proxy last member query times: 4

IGMP unsolicited report interval: 20 seconds

IGMP proxy robustness: 3

Other parameters: default values

ZXAN(config)#igmp enable
ZXAN(config)#igmp query-interval 100
ZXAN(config)#igmp query-max-resp 200
ZXAN(config)#igmp last-query-interval 20
ZXAN(config)#igmp last-query-count 4
ZXAN(config)#igmp unsolicited-report-interval 20
ZXAN(config)#igmp robustness 3
ZXAN(config)#show igmp
IGMP global parameters:
-------------------------------------------IGMP is globally enable.
IGMP log is disable.
Snooping aging time is 300 seconds.
Span vlan is enable.
Bandwidth control is disable.
Host tracking is disable.
Robustness variable is 3.
General query interval is 100(second).

Confidential and Proprietary Information of ZTE CORPORATION

97

ZXA10 C220 Configuration Manual (CLI)

Query max response time is 200(0.1second).


Last member query interval is 20(0.1second).
Last member query count is 4.
Unsolicited report interval is 20 seconds.
Non match group is forward.
Intermode status is disable.
Mcm status is disable.

Configuring the IGMP Port


Parameters
Short Description
Prerequisites

Context

Perform this procedure to configure the IGMP port parameters.


Before this operation, make sure that:

The network devices and lines are normal.

The xPON service is configured.

Table 20 lists the IGMP port parameters.


TABLE 20 IGMP PORT PARAMETERS
Parameter

Description

Value

IGMP protocol

To enable or disable
the IGMP protocol

Enable
Disable

Default: enable
To enable or disable
fast leaving on the
ONU interface

IGMP proxy maximum


query response interval

To set the maximum


query response time
on the ONU interface
in IGMP proxy mode

Range: 1 25
seconds

IGMP proxy last member query interval

To set the query


interval of the last
member on the ONU
interface in IGMP
proxy mode

Range: 0.1 - 25.5


seconds

IGMP proxy last member query counts

To set the query


counts of the last
member on the ONU
interface in IGMP
proxy mode

IGMP
ness

To set the system


robustness factor on
the ONU interface in
IGMP proxy mode

Default: 2

To set the maximum


multicast group
number on the ONU
interface

Default: 4094

IGMP fast-leave

proxy

robust-

IGMP maximum group


nubmer

98

Confidential and Proprietary Information of ZTE CORPORATION

Enable
Disable

Default: disable

Default: 10 seconds

Default: 1 second

Range: 2 5
Default: 2

Range: 2 5

Range: 0 4094

Chapter 4 Multicast Service Configuration

Parameter

Description

Value

IGMP version

To set the IGMP


version

V1, V2, V3

IGMP proxy router IP


address

To set the source


IP address of the
downstream query
packet in IGMP proxy
mode

Default:
192.168.2.14

General: IGMPv2

To configure the IGMP port parameters, perform the following


steps:
Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the interface command to enter the interface configuration mode.
3. Use the igmp enable command to enable the port IGMP protocol.
4. Use the igmp drop command to discard the IGMP packets.
5. Use the igmp fast-leave command to set the IGMP fast leaving function.
6. Use the igmp query-max-resp command to set the maximum query response time in IGMP proxy mode.
7. Use the igmp last-query-interval command to set the query
interval of the last member in IGMP proxy mode.
8. Use the igmp last-query-count command to set the query
counts of the last member in IGMP proxy mode.
9. Use the igmp max-groups command to set the maximum
IGMP multicast group number.
10. Use the igmp version command to set the IGMP version.
11. Use the igmp proxy-ip command to set the IP address of the
IGMP proxy router.
12. Use the igmp robustness command to set port robustness in
IGMP proxy mode.
13. Use the igmp mcm-cvlan command to enable the user VLAN
for multi-copy multicast.
14. Use the show igmp interface command to view the IGMP
port configuration.
END OF STEPS

Result
Example

The IGMP port parameters are configured successfully.


Configure and view the IGMP port parameters.
ZXAN(config)#interfac epon-onu_0/6/4:2
ZXAN(config-if)#igmp enable
ZXAN(config-if)#igmp fast-leave enable
ZXAN(config-if)#igmp max-groups 32
ZXAN(config-if)#igmp query-max-resp 150
ZXAN(config-if)#igmp last-query-interval 30
ZXAN(config-if)#igmp last-query-count 3
ZXAN(config-if)#igmp proxy-ip 10.63.196.50

Confidential and Proprietary Information of ZTE CORPORATION

99

ZXA10 C220 Configuration Manual (CLI)

ZXAN(config-if)#show igmp interface epon-onu_0/6/4:2


IGMP interface epon-onu_0/6/4:2 vport 1 parameters:
---------------------------------------------------IGMP status is enable.
IGMP version is v2.
Fast leave is enable.
Max concurrent group num is 32.
Proxy ip is 10.63.196.50.
Robustness variable is 2.
Query max response time is 150(0.1second).
Last membership query interval is 30(0.1second).
Last membership query count is 3.
Mcm cvlan is 0.

Configuring the IPTV


Package
Short Description
Prerequisites

Context
Steps

Perform this procedure to configure the IPTV package.


Before this operation, make sure that:

The network devices and lines are normal.

The multicast source exits in the network.

The MVLAN is configured.

To configure the IPTV package, perform the following steps:


1. Use the iptv channel mvlan group command to configure
the multicast channels.
2. Use the iptv view-profile command to configure the multicast
preview profile.
Table 21 lists the parameters for multicast preview profile configuration.
TABLE 21 MULTICAST PREVIEW PROFILE CONFIGURATION PARAMETERS
Parameter

Value

Maximum preview count

Range: 1 100
Default: 3

Preview duration

Range: 1 6000 seconds


Default: 120 seconds

Blackout

Range: 1 7200 seconds


Default: 60 seconds

3. Use the iptv channel view-profile command to apply the


preview profile to the channels.
4. Use the iptv packgae name command to create the multicast
package.

100

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 4 Multicast Service Configuration

5. Use the iptv packgae channel command to configure the


multicast package channels.
END OF STEPS
Result
Example

The IPTV package is configured successfully.


Configure an IPTV package.

Name: stv

Channel: stv1 stv10, IP address 224.1.1.1 224.1.1.10

Preview profile

Name: abc

Maximum preview count: 3

Maximum preview duration: 120 seconds

Preview interval: 60 seconds

Channel rights

Preview: stv1 stv5

Watch: stv6 stv9

Deny: stv10

ZXAN(config)#iptv channel mvlan 10 group 224.1.1.1


to 224.1.1.10 prename stv
ZXAN(config)#iptv view-profile abc count 3 duration 120 blackout 60
ZXAN(config)#iptv channel stv1 view-profile abc
ZXAN(config)#iptv channel stv2 view-profile abc
ZXAN(config)#iptv channel stv3 view-profile abc
ZXAN(config)#iptv channel stv4 view-profile abc
ZXAN(config)#iptv channel stv5 view-profile abc
ZXAN(config)#iptv package name stv
ZXAN(config)#iptv package stv channel stv1 preview
ZXAN(config)#iptv package stv channel stv2 preview
ZXAN(config)#iptv package stv channel stv3 preview
ZXAN(config)#iptv package stv channel stv4 preview
ZXAN(config)#iptv package stv channel stv5 preview
ZXAN(config)#iptv package stv channel stv6 watch
ZXAN(config)#iptv package stv channel stv7 watch
ZXAN(config)#iptv package stv channel stv8 watch
ZXAN(config)#iptv package stv channel stv9 watch
ZXAN(config)#iptv package stv channel stv10 deny

Configuring CAC
Short Description
Prerequisites

Context

Perform this procedure to configure CAC.


Before this operation, make sure that:

The network devices and lines are normal.

The multicast source exits in the network.

The MVLAN is configured.

The IPTV package is configured.

Multicast is two-level control.

Confidential and Proprietary Information of ZTE CORPORATION

101

ZXA10 C220 Configuration Manual (CLI)

When global CAC is enabled, user port rights take effect. Only
the users who order package can watch the channels in the
package.

When global CAC disabled, user port rights do not take effect.
Users can watch the channels created in the MVLAN (The users
must be on the receiving port of the MVLAN).

By default, global CAC is disabled.


To configure CAC, perform the following steps:
Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the iptv cac command to enable global CAC.
3. Use the interface command to enter the interface configuration mode.
4. Use the iptv right-mode command to set the port right mode
to channel access mode or package control mode.
5. Set the port right.
Use the iptv channel command to set the port channel right.
Use iptv package command to set the port package.
END OF STEPS

Result
Example

CAC is configured successfully.


Enable global CAC and set port right mode to package control mode
and apply this package to the port.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#iptv cac enable
ZXAN(config)#interface epon-onu_0/6/4:1
ZXAN(config-if)#iptv right-mode package
ZXAN(config-if)#iptv package stv

Configuring CDR
Short Description
Prerequisites

Context

102

Perform this procedure to configure CDR.


Before this operation, make sure that:

The network devices and lines are normal.

The multicast source exits in the network and the IP address


of the multicast source is configured.

The xPON service card status is normal.

The IPTV package is configured.

Table 22 lists the CDR configuration parameters.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 4 Multicast Service Configuration

TABLE 22 CDR CONFIGURATION PARAMETERS


Parameter

Description

Value

CDR

To enable or disable
CDR

Enable
Disable

Default: disable

CDR deny-right

CDR prw-right

Max-records

CDR prw-over-count

To enable or disable
CDR when the right is
deny

To enable or disable
CDR when the right is
preview

Maximum CDRs

Range: 500 65535

Enable
Disable

Default: disable
Enable
Disable

Default: disable

Default: 1000
To enable or disable
CDR when the preview
times exceed the
threshold

CDR generation
interval

Range: 0 1440
minutes

CDR create-period

Enable
Disable

Default: disable

0: no CDR generated
Default: 60
CDR reporting interval

Report-interval

Range: 1 30
minutes
Default: 5

Report-threshold

CDR automatic
reporting threshold,
which cannot exceed
the maximum CDRs

Range: 300 - 65535


Default: 300

To configure CDR, perform the following steps:


Steps

1. Use the iptv sms-server command to set the IP address of


SMS (the CDR server).
2. Use the iptv cdr enable command to enable the global CDR
function.
3. Use the iptv cdr max-records command to set the maximum
CDRs.
4. Use the iptv cdr report command to set CDR manual report.
5. Use the iptv cdr report-interval command to set the CDR
automatic report interval.
6. Use the iptv cdr report-threshold command to set the CDR
automatic report threshold.
7. Use the iptv cdr create-period command to set the CDR generation period when the user right is permit.
8. Use the iptv cdr deny-right command to enable or disable
the CDR function when the user right is deny.

Confidential and Proprietary Information of ZTE CORPORATION

103

ZXA10 C220 Configuration Manual (CLI)

9. Use the iptv cdr prw-right command to enable or disable the


CDR function when the user right is preview.
10. Use the iptv cdr prw-overcount command to enable or disable the CDR function when the user preview times exceed the
threshold.
11. Use the iptv cdr clear command to clear the CDRs.
12. Use the show iptv cdr command to view the CDR configuration information.
END OF STEPS
Result
Example

CDR is configured successfully.


Enable CDR and set the maximum CDRs to 6000, automatic reporting threshold to 300.
ZXAN(config)#iptv sms-server 10.61.97.156
ZXAN(config)#iptv cdr enable
ZXAN(config)#iptv cdr max-records 1000
ZXAN(config)# iptv cdr report-threshold 300
ZXAN(config)#show iptv cdr
CDR
: enable
CDR current-state
: idle
CDR socket-status
: close
CDR deny-right
: disable
CDR prw-right
: enable
CDR prw-over-count : disable
CDR create-period
: 60(minute)
Max-records
: 1000
Report-interval
: 5(minute)
Report-threshold
: 300
Records in cache
: 0

104

Confidential and Proprietary Information of ZTE CORPORATION

Chapter

VoIP Service
Configuration
Table of Contents
Overview........................................................................ 105
Configuring the VoIP Service (EPON) .................................. 105
Configuring the VoIP Service through the SIP Protocol
(GPON) .......................................................................... 112
Configuring the VoIP Service through the H.248 protocol
(GPON) .......................................................................... 117

Overview
Service
Description

In the VoIP service, voice signals are compressed and packed, and
then transmitted on the IP packet switching network.

Service
Specifications

The ZXA10 C220 provides the VoIP service access to the IP network through the xPON service card. The VoIP service is implemented on the ONU.

Configuring the VoIP Service


(EPON)
Short Description

Prerequisites

The ZXA10 C220 uses the EPON interface to access the remote
ONU and provide the VoIP services. Perform the following procedure to configure the VoIP service. In this mode, all the configuration is implemented on the OLT and it is unnecessary to log in
to the ONU.
Before this operation, make sure that:

The network devices and lines are normal.

The EPON service card status is normal.

The connection between the MG and the MGC is normal.

The VoIP user data are configured on the MGC side, corresponding to the MG.

Confidential and Proprietary Information of ZTE CORPORATION

105

ZXA10 C220 Configuration Manual (CLI)

Networking
Diagram

Figure 27 shows the networking diagram of the VoIP service.


FIGURE 27 VOIP SERVICE NETWORKING DIAGRAM

Data Scheme

Table 23 lists the VoIP service data scheme.


TABLE 23 VOIP SERVICE DATA SCHEME

106

Item

Data

VoIP service VLAN

VLAN ID: 200

Uplink port

0/6/1

OLT port

0/5/1

ONU

Type: D422
MAC address:
0015.eb71.2d5a
ONU ID: 5

ONU bandwidth

Upstream: 5 Mbps
Downstream: 10 Mbps

VoIP-IP profile name

TestProfile

VoIP-VLAN profile name

VLAN_200

MG IP address

10.63.172.190

Gateway

10.63.172.254

Primary SS address

10.63.172.55

Secondary SS address

10.63.172.61

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 5 VoIP Service Configuration

Configuration
Flow

Figure 28 shows the configuration flow of the VoIP service.


FIGURE 28 VOIP SERVICE CONFIGURATION FLOW

To configure the VoIP service, perform the following steps:


Steps

1. Create the VoIP service VLAN.


ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan 200
ZXAN(config-vlan)#exit
ZXAN(config)#

2. Configure the OLT uplink port.


ZXAN(config)#interface gei_0/6/1
ZXAN(config-if)#switchport vlan 200 tag
ZXAN(config-if)#exit

3. Enter the EPON-OLT interface mode and authenticate the ONU.


ZXAN(config)#interface epon-olt_0/5/1
ZXAN(config-if)#onu 5 type ZTE-D422 mac 0015.eb71.2d5a
ZXAN(config-if)#exit

4. Enter the EPON-ONU interface mode. Enable the authentication protocol and set the ONU bandwidth.
ZXAN(config)#interface epon-onu_0/5/1:5
ZXAN(config-if)#admin enable
ZXAN(config-if)#sla upstream maximum 5120
ZXAN(config-if)#sla downstream maximum 10240

Confidential and Proprietary Information of ZTE CORPORATION

107

ZXA10 C220 Configuration Manual (CLI)

5. Configure the VLAN service port.


ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 200 tag
ZXAN(config-if)#exit

6. Enter the EPON global management mode and configure the


VoIP-IP profile.
ZXAN(config)#epon
ZXAN(config-epon)#voip-ip profile TestProfile relation independent
mode static gateway 10.63.172.254

Note:

Profile name: The valid byte length is from 1 to 31.


Relationship: The relation between the voice IP and Management IP. There are two types of relations:

Independent: The ONU management IP address is different from the ONU VoIP IP address.

Shared: The ONU management IP address and the ONU


VoIP IP address are the same.

Mode: The IP address mode, including static allocation,


DHCP, and PPPoE. In the static allocation mode, it is necessary to specify the default gateway and the preferred DNS
server (optional).

7. In EPON global management mode, configure the VoIP-VLAN


profile.
ZXAN(config-epon)#voip-vlan profile vlan_200 tag-mode tag
cvlan 200 priority 7

Note:

Profile name: It is recommended to use vlan_vid. The


VID corresponds to CVLAN and is easy to recognize.
Tag-mode: There are three modes, including tag, transparent, and VLAN stacking.
CVLAN: VoIP VLAN ID.
Priority: VoIP service priority. It is recommended to use
the highest priority 7.

8. In the EPON global management mode, configure the VoIP protocol profile. There are three VoIP protocols: H.248, MGCP,
and SIP.

H.248 protocol profile configuration:


ZXAN(config-epon)#h248-profile
ip 10.63.172.55 port 2944
ZXAN(config-epon)#h248-profile
ip 10.63.172.61 port 2944
ZXAN(config-epon)#h248-profile
domainname port 2944
ZXAN(config-epon)#h248-profile
h248ctc rtp-link-test disable
cycle 30 count 3
ZXAN(config-epon)#exit

108

Confidential and Proprietary Information of ZTE CORPORATION

H.248 register-server
H.248 backup-register-server
H.248 mg register-mode
H.248 heartbeat-mode

Chapter 5 VoIP Service Configuration

Note:

Profile name: It is recommended to use H.248, which


is easy to recognize.

IP address of the primary register server: Primary SS


IP address.

Port number of the primary register server: It is recommended to use the default port number 2944.

IP address of the secondary register server: Secondary


SS IP address.

Port number of the secondary register server: It is recommended to use the default port number 2944.

ONU heartbeat mode: The modes include None,


H.248ServiceChange, and H.248Ctc.
It is recommended to use H.248Ctc when the heartbeat function
is enabled.

ONU heartbeat period: It is recommended to use the


default period 30 seconds.

ONU heartbeat count: It is recommended to use the


default count 3.

RTP link test status: It is recommended to disable it.

Media gateway registration mode: The modes include


domain name, IP address, and device name. It is recommended to use the domain name or IP address.

Media gateway port number: It is recommended to use


the default port number 2944.

MGCP protocol profile configuration:


ZXAN(config-epon)#mgcp-profile
ip 10.63.172.55 port 2727
ZXAN(config-epon)#mgcp-profile
ip 10.63.172.61 port 2727
ZXAN(config-epon)#mgcp-profile
domainname port 2427
ZXAN(config-epon)#mgcp-profile
mgcp cycle 30 count 3

MGCP register-server
MGCP backup-register-server
MGCP mg register-mode
MGCP heartbeat mode

Confidential and Proprietary Information of ZTE CORPORATION

109

ZXA10 C220 Configuration Manual (CLI)

Note:

Profile name: It is recommended to use MGCP, which is


easy to recognize.

IP address of the primary register server: Primary SS


IP address.

Port number of the primary register server: It is recommended to use the default port number 2727.

IP address of the secondary register server: Secondary


SS IP address.

Port number of the secondary register server: It is recommended to use the default port number 2727.

ONU heartbeat mode: There are two options available,


None and MGCP.

ONU heartbeat period: It is recommended to use the


default period 30 seconds.

ONU heartbeat count: It is recommended to use the


default count 3.

Media gateway registration mode: The modes include


domain name, IP address, and device name. It is recommended to use the domain name or IP address.

Media gateway port number: It is recommended to use


the default port number 2427.

SIP protocol profile configuration:


ZXAN(config-epon)#sip-profile
ip 10.63.172.55 port 5060
ZXAN(config-epon)#sip-profile
ip 10.63.172.61 port 5060
ZXAN(config-epon)#sip-profile
ip 10.63.172.55 port 5060
ZXAN(config-epon)#sip-profile
ip 10.63.172.61 port 5060
ZXAN(config-epon)#sip-profile
ip 10.63.172.55 port 5060
ZXAN(config-epon)#sip-profile
cycle 20 count 3
ZXAN(config-epon)#sip-profile
ZXAN(config-epon)#sip-profile
ZXAN(config-epon)#exit

110

Confidential and Proprietary Information of ZTE CORPORATION

SIP register-server
SIP backup-register-server
SIP proxy-server
SIP backup-proxy-server
SIP outbound-server
SIP heartbeat enable
SIP register-interval 3600
SIP mg port 5060

Chapter 5 VoIP Service Configuration

Note:

Profile name: It is recommended to use SIP, which is


easy to recognize.

IP address of the primary register server: IP address of


the primary client registration server. It is the same as
the proxy server IP if it is not configured.

Port number of the primary register server: It is recommended to use the default port number 5060.

IP address of the secondary register server: IP address


of the secondary client registration server. It is the
same as the proxy server IP if it is not configured.

Port number of the secondary register server: It is recommended to use the default port number 5060.

IP address of the primary proxy server: IP address of


the primary proxy SS.

Port number of the primary proxy server: It is recommended to use the default port number 5060.

IP address of the secondary proxy server: IP address


of the secondary SS.

Port number of the secondary register server: It is recommended to use the default port number 5060.

ONU heartbeat mode: There are two options available,


ON and OFF.

ONU heartbeat period: It is recommended to use the


default period 20 seconds.

ONU heartbeat count: It is recommended to use the


default count 3.

Media gateway port number: It is recommended to use


the default port number 5060.

Registration interval: It is recommended to use the default time 3600 seconds.

9. Enter the PON-ONU management mode and apply the profile


to the ONU.
ZXAN(config)#pon-onu-mng epon-onu_0/5/1:5
ZXAN(epon-onu-mng)#voip-module global-profile apply
ip TestProfile vlan vlan_200
ZXAN(epon-onu-mng)#voip-module protocol-profile apply h248 H.248

10. Set the IP address of the media gateway.


If the IP profile in the profile configuration is static or PPPoE,
configure the link. Configure the IP address and mask for the
static mode, and configure the user name and password for
the PPPoE mode. This instance uses the static mode.
ZXAN(epon-onu-mng)#voip ip-address 10.63.172.190
mask 255.255.255.0 slot 1

11. Set the domain name of the media gateway.

Confidential and Proprietary Information of ZTE CORPORATION

111

ZXA10 C220 Configuration Manual (CLI)

If the protocol profile in the profile application configuration is


H.248 protocol, and the domain name is selected as the media
gateway registration mode when the VoIP protocol profile is
created, it is necessary to configure the domain name.
ZXAN(epon-onu-mng)#voip mg-domainname iad.zte.com.cn slot 1

12. Add the termination ID of the narrowband user circuit.


If the protocol profile in the profile application configuration is
the H.248 protocol, it is necessary to configure the TID (USER).
ZXAN(epon-onu-mng)#voip user-tid 1 beginid 1 tid-num 2 prefix USER
begin-digit 0 align enable digit-length 2 slot 1

13. Add the termination ID of the VoIP resource.


ZXAN(epon-onu-mng)#voip rtp-tid prefix RTP begin-digit 1
align enable digit-length
2 slot 1

14. Set the SIP users.


If the protocol profile in the profile application configuration is
the SIP protocol, it is necessary to configure the SIP users.
ZXAN(epon-onu-mng)#voip sip-user account 33330051
name 33330051 password 111111
interface pots_1/1
ZXAN(epon-onu-mng)#end

15. Save the configuration data.


ZXAN#write
Building configuration...
..[OK]

Result

The VoIP service is configured successfully. Users can implement


the voice service.

Configuring the VoIP Service


through the SIP Protocol
(GPON)
Short Description

Prerequisites

Networking
Diagram

112

The ZXA10 C220 uses the GPON interface to access the remote
ONU and provide the VoIP services, using the SIP protocol. Perform the following procedure to configure the VoIP service.
Before this operation, make sure that:

The network devices and lines are normal.

The GPON service card status is normal.

The connection between the MG and the MGC is normal.

The VoIP user data are configured on the MGC side, corresponding to the MG.

Figure 29 shows the networking diagram of the VoIP service


through the SIP Protocol.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 5 VoIP Service Configuration

FIGURE 29 VOIP SERVICE NETWORKING DIAGRAM (SIP)

Data Scheme

Table 24 lists the VoIP service data scheme through the SIP Protocol.
TABLE 24 VOIP SERVICE DATA SCHEME (SIP)
Item

Data

VoIP service VLAN

VLAN ID: 200

Service priority

Uplink port

0/2/1

OLT port

0/10/1

Bandwidth profile (T-CONT)

Profile name: voip-tcont


Bandwidth type: Fixed
Bandwidth: 1 Mbit/s

ONU

T-CONT

GEM Port

ONU ID: 1
ONU authentication mode: SN
authentication
ONU SN: ZTEG00000002
ONU type: ZTE-F622
Port through which the ONU
connects the IP phone:
pots_0/1

T-CONT index: 3
T-CONT name: voip-tcont
Applied bandwidth profile:
voip-tcont
Alloc Id: auto-allocate

T-CONT index: 3
GEM Port index: 1

Confidential and Proprietary Information of ZTE CORPORATION

113

ZXA10 C220 Configuration Manual (CLI)

Item

Data

GEM Port name: Gemport1


Port Id: Auto-allocate

ONU IP address

IP address: 111.1.67.250
Mask: 255.255.255.248
Gateway: 111.1.67.249

Voice resource

Protocol: SIP
SIP server address:
120.193.1.76

POTS 1 parameters

AOR+8657588400011
Username+8657588400011@
ims.zj.chinamobile
Password123456

Configuration
Flow

Figure 30 shows the configuration flow of the VoIP service through


the SIP protocol.
FIGURE 30 CONFIGURATION FLOW

OF THE

VOIP SERVICE (SIP)

To configure the VoIP service through the SIP protocol, perform


the following steps:

114

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 5 VoIP Service Configuration

Steps

1. Create the service VLAN.


ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan 200
ZXAN(config-vlan)#exit
ZXAN(config)#

Note:
To display the created VLAN information, use the show vlan
summary command.
2. Configure the VLAN of the OLT uplink port.
ZXAN(config)#interface xgei_0/2/1
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 200 tag
ZXAN(config-if)#exit

3. View the unauthenticated ONU information on the port.


ZXAN(config)#show gpon onu uncfg gpon-olt_0/10/1
OnuIndex
Sn
State
----------------------------------------------------gpon-onu_0/10/1:1
ZTEG00000002
unknown

4. Enter the GPON-OLT interface mode and authenticate the ONU


by the SN.
ZXAN(config)#interface gpon-olt_0/10/1
ZXAN(config-if)#onu 1 type ZTE-F622 sn ZTEG00000002
ZXAN(config-if)#exit
ZXAN(config)#show gpon onu state gpon-olt_0/10/1
OnuIndex
Admin State Omcc State O7 State Phase State
---------------------------------------------------------------gpon-onu_0/10/1:1 enable
enable
operation
working

5. Configure the T-CONT bandwidth profile.


ZXAN(config)#gpon
ZXAN(config-gpon)#profile tcont voip-tcont type 1 fixed 1000
ZXAN(config-gpon)#exit

6. Create a T-CONT.
ZXAN(config)#interface gpon-onu_0/10/1:1
ZXAN(config-if)#tcont 3 name voip-tcont profile voip-tcont

7. Create a GEM port.


ZXAN(config-if)#gemport 1 name Gemport1 unicast tcont 3

8. Configure the port VLAN on the user side.


ZXAN(config-if)#switchport mode trunk vport 1
ZXAN(config-if)#switchport vlan 200 tag vport 1
ZXAN(config-if)#exit
ZXAN(config)#

Note:
By default, one V-port corresponds to one GEM port.
9. Configure the GEM Port service mapping.
i.

Create the service flow.


ZXAN(config)#pon-onu-mng gpon-onu_0/10/1:1

Confidential and Proprietary Information of ZTE CORPORATION

115

ZXA10 C220 Configuration Manual (CLI)

ZXAN(gpon-onu-mng)#flow 3 switch switch_0/1

ii.

Configure the mapping from the service flow to the GEM


port.
ZXAN(gpon-onu-mng)#gemport 1 flow 3 dot1p-list 7

Note:
The priority is 7. That means, the upstream data with the
priority of 7 are mapped to the GEM port.
iii. Configure the VLAN filter mode of the service flow.
ZXAN(gpon-onu-mng)#flow mode 3 tag-filter vid-filter
untag-filter discard

iv. Configure the VLAN filter entry of the service flow.


ZXAN(gpon-onu-mng)#flow 3 vid 200

v.

Configure the binding between the ip-host and the bridge.


ZXAN(gpon-onu-mng)#switchport-bind switch_0/1 iphost 1

vi. Configure the VLAN filter mode of the ip-host.


ZXAN(gpon-onu-mng)#vlan-filter-mode iphost 1 tag-filter
vid-filter untag-filter discard

vii. Configure the VLAN filter entry of the ip-host.


ZXAN(gpon-onu-mng)#vlan-filter iphost 1 priority 7 vid 200

10. Configure the ip-host address and the gateway of the ONU.
The F622 supports only one ip-host. Only one IP address can
be configured on the ONU.
ZXAN(gpon-onu-mng)#ip-host 1 ip 111.1.67.250 mask 255.255.255.248
gateway 111.1.67.249

11. Configure the ONU VoIP protocol type.


ZXAN(gpon-onu-mng)#voip protocol sip

12. Configure the SS server IP address.


ZXAN(gpon-onu-mng)#sip-agent 1 proxy-server 120.193.1.76
primary-dns 0.0.0.0 tcpudp-port 5060 host 1

13. Configure the SIP users.


ZXAN(gpon-onu-mng)#sip-user pots_0/1 sip-agent 1 user-aor
+8657588400011 username +8657588400011@ims.zj.chinamobile.com
password 123456
ZXAN(gpon-onu-mng)#end

Note:
This configuration must be consistent with that on the SS.
14. Save the configuration data.
ZXAN#write
Building configuration...
..[OK]
ZXAN#

116

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 5 VoIP Service Configuration

Result

The VoIP service is configured successfully. Users can implement


the voice service.

Configuring the VoIP Service


through the H.248 protocol
(GPON)
Short Description

Prerequisites

Networking
Diagram

The ZXA10 C220 uses the GPON interface to access the remote
ONU and provide the VoIP services, using the H.248 protocol. Perform the following procedure to configure the VoIP service.
Before this operation, make sure that:

The network devices and lines are normal.

The GPON service card status is normal.

The connection between the MG and the MGC is normal.

The VoIP user data are configured on the MGC side, corresponding to the MG.

Figure 31 shows the networking diagram of the VoIP service.


FIGURE 31 VOIP SERVICE NETWORKING DIAGRAM (H.248)

Data Scheme

Table 25 lists the VoIP service data scheme.

Confidential and Proprietary Information of ZTE CORPORATION

117

ZXA10 C220 Configuration Manual (CLI)

TABLE 25 VOIP SERVICE DATA SCHEME (H.248)


Item

Data

VoIP service VLAN

VLAN ID: 200

Service priority

Uplink port

0/2/1

OLT port

0/10/1

Bandwidth profile (T-CONT)

Profile name: voip-tcont


Bandwidth type: Fixed
Bandwidth: 1 Mbit/s

ONU

T-CONT

Configuration
Flow

118

ONU ID: 1
ONU authentication mode: SN
authentication
ONU SN: ZTEG00000002
ONU type: ZTE-F660
Port through which the ONU
connects the IP phone:
pots_0/1

T-CONT index: 3
T-CONT name: voip-tcont
Applied bandwidth profile:
voip-tcont
Alloc Id: auto-allocate

GEM Port

T-CONT index: 3
GEM Port index: 1
GEM Port name: Gemport1
Port Id: auto-allocate

ONU IP address

IP address: 10.40.110.149
Mask: 255.255.255.0
Gateway: 10.40.110.254

Voice resource

Protocol: H.248
SS address: 10.40.123.25

POTS 1 parameters

SLC TERMIDAG58900
RTP TERMIDRTP/00000

Figure 32 shows the configuration flow of the VoIP service through


the H.248 protocol.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 5 VoIP Service Configuration

FIGURE 32 CONFIGURATION FLOW

OF THE

VOIP SERVICE (H.248)

To configure the VoIP service through the H.248 protocol, perform


the following steps:
Steps

1. Create the service VLAN.


ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan 200
ZXAN(config-vlan)#exit
ZXAN(config)#

Note:
To display the created VLAN information, use the show vlan
summary command.
2. Configure the VLAN of the OLT uplink port.
ZXAN(config)#interface xgei_0/2/1

Confidential and Proprietary Information of ZTE CORPORATION

119

ZXA10 C220 Configuration Manual (CLI)

ZXAN(config-if)#switchport mode trunk


ZXAN(config-if)#switchport vlan 200 tag
ZXAN(config-if)#exit

3. Configure the ONU type profile.


Because the ZTE-F660 does not exist in the ZXA10 C220 system, it need to be added manually. In the ZXA10 C220 system,
the ONU type name must be unique in EPON and GPON service.
XAN(config)#pon
ZXAN(config-pon)#onu-type ZTEG-F660 gpon description 4ETH,
2POTS max-tcont 7 max-gemport 32 max-switch-perslot 1
max-flow-perswitch 32
ZXAN(config-pon)#onu-type-if ZTEG-F660 eth_0/1-4
ZXAN(config-pon)#onu-type-if ZTEG-F660 pots_0/1-2
ZXAN(config-pon)#exit
ZXAN(config)#show onu-type gpon ZTEG-F660
Onu type name :
Pon type :
Description :
Max tcont :
Max gemport :
Max switch per slot
Max flow per switch
Max iphost :
Service ability N:1
Service ability 1:M
Service ability 1:P

:
:
:
:
:

ZTEG-F660
gpon
4ETH,2POTS
7
32
1
32
1
support
support
support

4. View the unauthenticated ONU information on the port.


ZXAN(config)#show gpon onu uncfg gpon-olt_0/10/1
OnuIndex
Sn
State
-------------------------------------------------------gpon-onu_0/10/1:1
ZTEG00000002
unknown

5. Enter the GPON-OLT interface mode. Authenticate the ONU by


the SN.
ZXAN(config)#interface gpon-olt_0/10/1
ZXAN(config-if)#onu 1 type ZTEG-F660 sn ZTEG00000002
ZXAN(config-if)#exit
ZXAN(config)#show gpon onu state gpon-olt_0/10/1
OnuIndex
Admin State Omcc State O7 State Phase State
---------------------------------------------------------------gpon-onu_0/10/1:1 enable
enable
operation
working

6. Configure the T-CONT bandwidth profile.


ZXAN(config)#gpon
ZXAN(config-gpon)#profile tcont voip-tcont type 1 fixed 1000
ZXAN(config-gpon)#exit

7. Create a T-CONT.
ZXAN(config)#interface gpon-onu_0/10/1:1
ZXAN(config-if)#tcont 3 name voip-tcont profile voip-tcont

8. Create a GEM port.


ZXAN(config-if)#gemport 1 name Gemport1 unicast tcont 3

9. Configure the port VLAN on the user side.


ZXAN(config-if)#switchport mode trunk vport 1
ZXAN(config-if)#switchport vlan 200 tag vport 1
ZXAN(config-if)#exit
ZXAN(config)#

120

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 5 VoIP Service Configuration

Note:
By default, one V-port corresponds to one GEM port.
10. Configure the GEM Port service mapping.
i.

Create the service flow.


ZXAN(config)#pon-onu-mng gpon-onu_0/10/1:1
ZXAN(gpon-onu-mng)#flow 3 switch switch_0/1

ii.

Configure the mapping from the service flow to the GEM


port.
ZXAN(gpon-onu-mng)#gemport 1 flow 3 dot1p-list 7

Note:
The priority is 7. That means, the upstream data with the
priority of 7 are mapped to the GEM port.
iii. Configure the VLAN filter mode of the service flow.
ZXAN(gpon-onu-mng)#flow mode 3 tag-filter vid-filter
untag-filter discard

iv. Configure the VLAN filter entry of the service flow.


ZXAN(gpon-onu-mng)#flow 3 vid 200

v.

Configure the binding between the ip-host and the bridge.


ZXAN(gpon-onu-mng)#switchport-bind switch_0/1 iphost 1

vi. Configure the VLAN filter mode of the ip-host.


ZXAN(gpon-onu-mng)#vlan-filter-mode iphost 1 tag-filter
vid-filter untag-filter discard

vii. Configure the VLAN filter entry of the ip-host.


ZXAN(gpon-onu-mng)#vlan-filter iphost 1 priority 7 vid 200

11. Configure the ip-host address and the gateway of the ONU.
ZXAN(gpon-onu-mng)#ip-host 1 ip 10.40.110.149 mask 255.255.255.0
gateway 10.40.110.254

12. Configure the ONU VoIP protocol type.


ZXAN(gpon-onu-mng)#voip protocol h248

13. Configure the MGC server IP address (SS address).


ZXAN(gpon-onu-mng)#mgc 1 server1 10.40.123.25

14. Configure the MGC server port number.


ZXAN(gpon-onu-mng)#mgc 1 port 2944

15. Configure the TID of the user port.


The ZXA10 C220 does not support configuring the user circuit
TID and VoIP resource TID through the OMCI channel. If the
default settings on the ONU is different from the SS server
data, the settings need to be changed.
On the F660 Web configuration page, choose Application
> VoIP > H248 Termination. On the H248 Termination

Confidential and Proprietary Information of ZTE CORPORATION

121

ZXA10 C220 Configuration Manual (CLI)

Configuration page, configure the user port TID, as shown


in Figure 33.
FIGURE 33 F660 LOCAL CONFIGURATION

16. Save the configuration data on the ONU and OLT.


Result

122

The VoIP service is configured successfully. Users can implement


the voice service.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter

CES Service
Configuration
Table of Contents
Overview........................................................................ 123
Configuring E1/T1 Uplink CES MEF8 Service (EPON) ............. 124
Configuring E1/T1 Uplink CES PWE3 Service (EPON) ............ 130
Configuring CL1A Uplink CES Service (EPON) ...................... 137
Configuring E1/T1 Uplink CES MEF8 Service (GPON)............. 144
Configuring CL1A Uplink CES Service (GPON) ...................... 151
Configuring CES TDM Profile ............................................. 158
Configuring CES TDM Interface.......................................... 160
Clock Configuration.......................................................... 161

Overview
Service
Description

CES implements circuit-switched access and forwarding data


through packet-switched network or IP network.
At present, two implementation agreements support CES service:

Service
Specification

PWE3 of IETF: Implement circuit emulation over IP network,


namely, which is based on IP address.

MEF8 of MEF: Implement circuit emulation over Ethernet,


namely, which is based on MAC address.

The ZXA10 C220 implements CES service on the circuit emulation card (CE1B/CE1BB/CT1BB/CL1A). The TDM interface on circuit emulation card is connected to the upper-layer device. The
xPON interface connects to the remote ONU. E1/T1 frames, which
are transmitted through Ethernet, implement circuit emulation.
Frames are resumed once they reach the ONU. Data are sent to
users through the E1/T1 port of the ONU.

Confidential and Proprietary Information of ZTE CORPORATION

123

ZXA10 C220 Configuration Manual (CLI)

Configuring E1/T1 Uplink


CES MEF8 Service (EPON)
Short Description

Prerequisites

Networking
Diagram

This section illustrates the configuration of E1/T1 uplink CES service based on Ethernet (CES MEF8). The ZXA10 C220 is connected
to the upper-layer equipment through the CE1B/CE1BB/CT1BB
card. It is connected to the ONU through the EPON port. This
instance takes CE1B as an example.
Before this operation, make sure that:

The network devices and lines are normal.

The in-band NM of the OLT is configured.

The CES uplink card status is nomal.

The EPON service card status is normal.

Figure 34 shows the CES MEF8 service networking diagram


(EPON).
FIGURE 34 CES MEF8 SERVICE NETWORKING DIAGRAM (EPON)

The E1 user connects to the ONU E1 port. The ZXA10 C220 uplinks
to theTDM network through the E1 port on CE1B card.
Data Scheme

124

Table 26 describes the CES MEF8 service data scheme (EPON).

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

TABLE 26 CES MEF8 SERVICE DATA SCHEME (EPON)


Item

Data

OLT in-band NM

CES VLAN

VLAN ID: 1000

Priority

E1 uplink port

0/13/1

OLT port

0/5/1

ONU

ONU ID: 1
Type: F429
MAC address:
00d0.d09a.3a8e

ONU in-band NM

NM VLAN: 2600
IP address: 192.2.128.5/24

ONU bandwidth

Upstream: 5 Mbps
Downstream: 10 Mbps

OLT CES profile

Default

ONU CES profile

Default

Source MAC address (CES MAC


address of the CE1B card)

0015.eb72.001a

Destination MAC address (ONU


CES MAC address)

0015.eb72.000c

PW link

Clock resumption

Auto negotiation

NM VLAN: 2600
IP address: 192.2.128.4/24

Type: e1Satop
Sending ECID: 0x1102
Receiving ECID: 0x1102

Confidential and Proprietary Information of ZTE CORPORATION

125

ZXA10 C220 Configuration Manual (CLI)

Configuration
Flow

Figure 35 shows the CES MEF8 service configuration flow (EPON).


FIGURE 35 CES MEF8 SERVICE CONFIGURATION FLOW (EPON)

To configure the CES MEF8 service (EPON), perform the following


steps:
Steps:

1. Create the service VLAN.


ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan 1000
ZXAN(config-vlan)#exit
ZXAN(config)#

126

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

Note:
To display the created VLAN information, use the show vlan
summary command.
2. Configure the VLAN of the OLT uplink port.
ZXAN(config)#interface tdm-gei_0/13/1
ZXAN(config-if)#switchport mode hybrid
ZXAN(config-if)#switchport vlan 1000 tag
ZXAN(config-if)#exit

3. View the unauthenticated ONU information on the port.


ZXAN(config)#show onu unauthentication epon-olt_0/5/1
Onu interface :
MAC address :
SN :
AuthState State :
OnTime :

epon-onu_0/5/1:1
00d0.d09a.3a8e
deny
2009/08/19 11:12:29

ZXAN(config)#

4. Authenticate the ONU.


ZXAN(config)#interface epon-olt_0/5/1
ZXAN(config-if)#onu 1 type ZTE-F429 mac 00d0.d09a.3a8e
ZXAN(config-if)#exit

5. Enter the EPON-ONU interface mode. Enable the interface authentication protocol.
ZXAN(config)#interface epon-onu_0/5/1:1
ZXAN(config-if)#admin enable

Note:
To display the detailed information of the current ONU, use the
show onu detail-info command.
6. Set the upstream and downstream bandwidth of the ONU.
ZXAN(config-if)#sla upstream maximum 5120
ZXAN(config-if)#sla downstream maximum 10240

7. Configure the PON-ONU port VLAN.


ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 1000 tag
ZXAN(config-if)#exit

8. Configure the OLT CES service.


i.

View CES global property information of the OLT.


ZXAN(config)#show ces global-prop
Slot/Port
SourceMAC
Source IP
--------------------------------------------------------13/1
0015.EB72.001A
192.192.192.26

To modify the CES MAC address, use the following commands.


ZXAN(config)#ces
ZXAN(config-ces)#mac-address 0015.eb72.0017 13/1
ZXAN(config-ces)#exit

ii.

(Optional) Configure the OLT TDM interface.

Confidential and Proprietary Information of ZTE CORPORATION

127

ZXA10 C220 Configuration Manual (CLI)

This instance uses the default values. To configure the OLT


TDM interface, refer to the topic Configuring CES TDM Interface.

Note:
In practical networking, it is recommended to use the default values for the OLT TDM interface configuration.
iii. Configure the CES property profile of the OLT.
This instance uses the default CES profile. To configure
the CES property profile of the OLT, refer to the topic
Configuring CES TDM Profile.

Note:
There is a default profile in the ZXA10 C220 system. It is
recommended to use the default profile.
iv. Create the PW link and configure the TDM property of the
PW link.
ZXAN(config)#ces
ZXAN(config-ces)#pw pw_0/13/1
ZXAN(config-ces-pw)#tdm-service type e1Satop rate 32
tdm_0/13/1 tdm-profile-name default

Note:

v.

TDM service type of CE1BB card is e1Satop.

TDM service type of CT1BB card is t1Satop.

Configure the PSN properties of the PW link.


ZXAN(config-ces-pw)#psn ethernet 0x1102 0x1102 dst-mac
0015.eb72.000c vlan 1000 priority 7
ZXAN(config-ces-pw)#exit
ZXAN(config-ces)#exit

Note:
When PSN network type is Ethernet, the in-ecid/out-ecid configured on OLT must correspond to those on ONU. In this
instance, the in-ecid/out-ecid value is 0x1102.
The in-ecid and out-ecid of each PW must be different.
The in-ecid and out-ecid of the same PW can be different. For
convenience, they are generally configured same.
vi. View the PW link configuration information.
ZXAN(config)#show ces pw prop detail pw_0/13/1
pw pw_0/13/1
PwType :
e1Satop
PsnType :
ethernet
Admin-status : enable
InboundLable :0x1102

128

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

OutboundLable :0x1102
Service prop:
Using tdm interface: tdm_0/13/1
TDM-prop profile:
default
You can see detail profile info. by using
corresponding 'show' command.
Psn prop:
Destination Mac Address:
0015.EB72.000C
Vlan ID:
1000
priority: 7
Card prop:
Card interface :
13/1
Source Mac Address: 0015.EB72.001A
Source IP Address : 192.192.192.26

9. Configure the in-band IP address of the F429.


The ONU CES can only be configured on the ONU. So the remote management IP address of the ONU needs to be configured.
ZXAN(config)#interface epon-onu_0/5/1:1
ZXAN(config-if)#switchport vlan 2600 tag
ZXAN(config-if)#exit
ZXAN(config)#pon-onu-mng epon-onu_0/5/1:1
ZXAN(epon-onu-mng)#mgmt-ip 192.2.128.5 255.255.255.0
vlan 2600 priority 7 route 192.2.128.0 255.255.255.0
192.2.128.1 status enable
ZXAN(epon-onu-mng)#exit

10. Lon in to the F429 and configure the CES service.


i.

Create the CES service VLAN.


F429(config)# add-vlan 1000

ii.

Configure the VLAN service port and the uplink port.


F429(config)# vlan 1000 1/7-8 tag

iii. View the CES global property information.


F429(config)# show ces ethIfprop 1
EthPort :
: 1
MacAddress
: 00:15:EB:72:00:0C
IPAddress
: 192.192.192.1
AdminStatus
: up
OperStatus
: up

To modify the CES MAC address, use the following command.


F429(config)# ces ethIfprop 1 macAddr 00:15:eb:72:00:0c
adminSts up

iv. (Optional) Configure the ONU TDM interface.


This instance uses the default values. To configure the OLT
TDM interface, use the following command.
F429(config)# ces tdmIfprop 1 lineType e1 lineCoding HDB3
TransClkSrc adaptive adminSts up loopType noLoop

Note:
In practical networking, it is recommended to use the default ONU TDM interface configuration.
v.

Configure the CES property profile of the ONU.


F429(config)# pw tdmProp 1 payloadSize 32 reorder enable
rtpHdr enable 0 jtrBfr 2000 payloadSuppression disable
inSyncPkts 2 outSynch 10 replacePolicy ais almThreshold

Confidential and Proprietary Information of ZTE CORPORATION

129

ZXA10 C220 Configuration Manual (CLI)

2500 clrAlmThreshold 1000 timeStampMode differential


queueSizePower 5 name default create

Note:
The CES property profile parameters of two ends of the
same PW must be consistent.
vi. Configure PW link service parameters.
F429(config)#pw genProp 1 pwType e1Satop psnType ethernet
outboundLable 0x1102 inboundLable 0x1102 pwName PW1
adminSts up creat

vii. Configure the PW link Ethernet parameters.


F429(config)#pw ethProp 1 dstMac 00:15:EB:72:00:1a
vlan 1000 priority 7 create

viii. Configure the binding between the PW link and the TDM
interface.
F429(config)#pw relation 1 rate 32 1 1 creat

11. Save the configuration data on the OLT and the ONU.
Result

The EPON CES MEF8 service is configured successfully.

Configuring E1/T1 Uplink


CES PWE3 Service (EPON)
Short Description

Prerequisites

130

The ZXA10 C220 is connected to the upper-layer equipment


through the CE1B/CE1BB/CT1BB card. It is connected to the ONU
through the EPON port, implementing the PWE3 (IP network) CES
service.
Before this operation, make sure that:

The network devices and lines are normal.

The in-band NM of the OLT is configured.

The CES uplink card status is nomal.

The EPON service card status is normal.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

Networking
Diagram

Figure 36 shows the CES PWE3 service networking diagram.


FIGURE 36 CES PWE3

SERVICE NETWORKING DIAGRAM

The E1 user connects to the ONU E1 port. The ZXA10 C220 uplinks
to theTDM network through the E1 port on CE1B card.
Data Scheme

Table 27 describes the CES PWE3 service data scheme.


TABLE 27 CES PWE3 SERVICE DATA SCHEME
Item

Data

OLT in-band NM

CES SVLAN

VLAN ID: 1000

Priority

E1 uplink port

0/13/1

OLT port

0/5/1

ONU

NM VLAN: 2600
IP address: 192.2.128.4/24

ONU ID: 1
Type: F429
MAC address: 00d0.d09a.3a8e

Confidential and Proprietary Information of ZTE CORPORATION

131

ZXA10 C220 Configuration Manual (CLI)

132

Item

Data

ONU in-band NM

NM VLAN: 2600
IP address: 192.2.128.5/24

ONU bandwidth

Upstream: 5 Mbps
Downstream: 10 Mbps

OLT CES profile

Default

ONU CES profile

Default

Source IP address (IP


address of the CE1B
card)

192.192.192.26

Source MAC address


(CES MAC address of
the CE1B card)

0015.eb72.001a

Destination IP address
(ONU IP address)

192.192.192.1

Destination MAC
address (ONU CES
MAC address)

0015.eb72.000c

PW link

Clock resumption

Auto negotiation

Type: e1Satop
Source UDP port: 1101
Destination UDP port: 1101

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

Configuration
Flow

Figure 37 shows the CES PWE3 service configuration flow.


FIGURE 37 CES PWE3

Steps

SERVICE CONFIGURATION FLOW

To configure the CES PWE3 service, perform the following steps:


1. Create the service VLAN.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan 1000
ZXAN(config-vlan)#exit
ZXAN(config)#

Note:
To display the created VLAN information, use the show vlan
summary command.

Confidential and Proprietary Information of ZTE CORPORATION

133

ZXA10 C220 Configuration Manual (CLI)

2. Configure the VLAN of the OLT uplink port.


ZXAN(config)#interface tdm-gei_0/13/1
ZXAN(config-if)#switchport mode hybrid
ZXAN(config-if)#switchport vlan 1000 tag
ZXAN(config-if)#exit

3. View the unauthenticated ONU information on the port.


ZXAN(config)#show onu unauthentication epon-olt_0/5/1
Onu interface :
MAC address :
SN :
AuthState State :
OnTime :

epon-onu_0/5/1:1
00d0.d09a.3a8e
deny
2009/08/19 11:12:29

ZXAN(config)#

4. Authenticate the ONU.


ZXAN(config)#interface epon-olt_0/5/1
ZXAN(config-if)#onu 1 type ZTE-F429 mac 00d0.d09a.3a8e
ZXAN(config-if)#exit

5. Enter the EPON-ONU interface mode. Enable the interface authentication protocol.
ZXAN(config)#interface epon-onu_0/5/1:1
ZXAN(config-if)#admin enable

Note:
To display the detailed information of the current ONU, use the
show onu detail-info command.
6. Set the upstream and downstream bandwidth of the ONU.
ZXAN(config-if)#sla upstream maximum 5120
ZXAN(config-if)#sla downstream maximum 10240

7. Configure the PON-ONU port VLAN.


ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 1000 tag
ZXAN(config-if)#exit

8. Configure the OLT CES service.


i.

View CES global property information of the OLT.


ZXAN(config)#show ces global-prop
Slot/Port
SourceMAC
Source IP
---------------------------------------------------------------13/1
0015.EB72.001A
192.192.192.26

To modify the CES MAC address, use the following commands.


ZXAN(config)#ces
ZXAN(config-ces)#ip-address ipv4 192.192.192.25 13/1
ZXAN(config-ces)#mac-address 0015.eb72.0017 13/1
ZXAN(config-ces)#exit

ii.

(Optional) Configure the OLT TDM interface.


This instance uses the default values. To configure the OLT
TDM interface, refer to the topic Configuring CES TDM Interface.

134

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

Note:
In practical networking, it is recommended to use the default values for the OLT TDM interface configuration.
iii. Configure the CES property profile of the OLT.
This instance uses the default CES profile. To configure
the CES property profile of the OLT, refer to the topic
Configuring CES TDM Profile.

Note:
There is a default profile in the ZXA10 C220 system. It is
recommended to use the default profile.
iv. Create the PW link and configure the TDM properties of the
PW link.
ZXAN(config)#ces
ZXAN(config-ces)#pw pw_0/13/1
ZXAN(config-ces-pw)#tdm-service type e1Satop rate 32
tdm_0/13/1 tdm-profile-name default

Note:

v.

TDM service type of CE1BB card is e1Satop.

TDM service type of CT1BB card is t1Satop.

Configure the PSN properties of the PW link.


ZXAN(config-ces-pw)#psn ip 1101 1101 ipv4 192.192.192.1
dst-mac 0015.eb72.000c vlan 1000 priority 7
ZXAN(config-ces-pw)#exit
ZXAN(config-ces)#exit

Note:
The OLT source/destination UDP port number must be consistent with the ONU source/destination UDP port number.
For convenience, they are generally configured same.
The source/destination UDP ports of different PW link must
be different.
vi. View the PW link configuration information.
ZXAN(config)#show ces pw prop detail pw_0/13/1
pw pw_0/13/1
PwType :
e1Satop
Admin-status : enable
OutboundLable :0x44D

PsnType :
ip
InboundLable :0x44D
Destination IP Address 192.192.192.1.

Service prop:
Using tdm interface: tdm_0/13/1
TDM-prop profile:
default

Confidential and Proprietary Information of ZTE CORPORATION

135

ZXA10 C220 Configuration Manual (CLI)

You can see detail profile info. by using


corresponding 'show' command.
Psn prop:
Destination Mac Address:
0015.EB72.000C
Vlan ID:
1000
priority: 7
Card prop:
Card interface :
13/1
Source Mac Address: 0015.EB72.001A
Source IP Address : 192.192.192.26

9. Configure the in-band IP address of the F429.


The ONU CES can only be configured on the ONU. So the remote management IP address of the ONU needs to be configured.
ZXAN(config)#interface epon-onu_0/5/1:1
ZXAN(config-if)#switchport vlan 2600 tag
ZXAN(config-if)#exit
ZXAN(config)#pon-onu-mng epon-onu_0/5/1:1
ZXAN(epon-onu-mng)#mgmt-ip 192.2.128.5 255.255.255.0
vlan 2600 priority 7 route 192.2.128.0 255.255.255.0
192.2.128.1 status enable
ZXAN(epon-onu-mng)#exit

10. Lon in to the F429 and configure the CES service.


i.

Create the CES service VLAN.


F429(config)# add-vlan 1000

ii.

Configure the VLAN service port and the uplink port.


F429(config)# vlan 1000 1/7-8 tag

iii. View the CES global property information.


F429(config)# show ces ethIfprop 1
EthPort :
: 1
MacAddress
: 00:15:EB:72:00:0C
IPAddress
: 192.192.192.1
AdminStatus
: up
OperStatus
: up

To modify the CES MAC address, use the following command.


F429(config)# ces ethIfprop 1 macAddr 00:15:eb:72:00:0c
ipAddr ipv4 10.61.92.57 adminSts up

iv. (Optional) Configure the ONU TDM interface.


This instance uses the default values. To configure the OLT
TDM interface, use the following command.
F429(config)# ces tdmIfprop 1 lineType e1 lineCoding
HDB3 TransClkSrc adaptive adminSts up loopType noLoop

Note:
In practical networking, it is recommended to use the default ONU TDM interface configuration.
v.

Configure the CES property profile of the ONU.


F429(config)# pw tdmProp 1 payloadSize 32 reorder enable
rtpHdr enable 0 jtrBfr 2000 payloadSuppression disable
inSyncPkts 2 outSynch 10 replacePolicy ais almThreshold 2500
clrAlmThreshold 1000 timeStampMode differential
queueSizePower 5 name default create

136

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

Note:
The CES property profile parameters of two ends of the
same PW must be consistent.
vi. Configure PW link service parameters.
F429(config)# pw genProp 1 pwType e1Satop
psnType ip srcUdpPort 1101 dstUdpPort 1101
pwName PW1 adminSts up creat

vii. Configure the PW link Ethernet parameters.


F429(config)# pw ethProp 1 dstIp 192.192.192.26
dstMac 00:15:EB:72:00:1a vlan 1000 priority 7 create

viii. Configure the binding between the PW link and the TDM
interface.
F429(config)#pw relation 1 rate 32 1 1 creat

11. Save the configuration data on the OLT and the ONU.
Result

The CES PWE3 service is configured successfully.

Configuring CL1A Uplink


CES Service (EPON)
Short Description

The ZXA10 C220 is connected to the upper-layer equipment


through the CL1A card. It is connected to the ONU through the
EPON port, implementing the STM-1/OC3 CES dedicated line
service.
Before this operation, make sure that:

The network devices and lines are normal.

The in-band NM of the OLT is configured.

The CL1A card status is normal.

The EPON service card status is normal.

Context

The CL1A card provides a STM-1/OC3 interface for uplink. The


CL1A card recovers E1 frames and maps E1 frames to STM-1
frames. Then, the CL1A card sends STM-1 frames to SDH/SONET
network through the STM-1 optical interface.
The add/drop
multiplexer of SDH network extracts E1 frames.

Networking
Diagram

Figure 38 shows the CES dedicated line service networking diagram (EPON).

Confidential and Proprietary Information of ZTE CORPORATION

137

ZXA10 C220 Configuration Manual (CLI)

FIGURE 38 CES DEDICATED LINE SERVICE NETWORKING DIAGRAM (EPON)

The E1 user connects to the E1 interface of the ONU. The ZXA10


C220 accesses to SDH/SONET network through STM-1 interface
on CL1A card.
Data Scheme

Table 28 describes the CES dedicated line data scheme (EPON).


TABLE 28 CES DEDICATED LINE DATA SCHEME (EPON)

138

Item

Data

OLT in-band NM

CES VLAN

VLAN ID: 1000

Priority

Uplink port

0/14/1

OLT port

0/5/1

ONU

Confidential and Proprietary Information of ZTE CORPORATION

NM VLAN: 2600
IP address: 192.2.128.4/24

ONU ID: 1
Type: F429
MAC address:
00d0.d09a.3a8e

Chapter 6 CES Service Configuration

Configuration
Flow

Item

Data

ONU in-band NM

NM VLAN: 2600
IP address: 192.2.128.5/24

ONU bandwidth

Upstream: 5 Mbps
Downstream: 10 Mbps

OLT CES profile

Default

ONU CES profile

Default

Source MAC address (CES MAC


address of the CL1A card)

0015.eb72.001c

Destination MAC address (ONU


CES MAC address)

0015.eb72.000c

PW link

Clock resumption

Auto negotiation

Type: e1Satop
Sending ECID: 0x1102
Receiving ECID: 0x1102

Figure 39 shows the CES dedicated line service configuration flow


(EPON).

Confidential and Proprietary Information of ZTE CORPORATION

139

ZXA10 C220 Configuration Manual (CLI)

FIGURE 39 CES DEDICATED LINE SERVICE CONFIGURATION FLOW (EPON)

To configure the CL1A CES uplink service, perform the following


steps:
Steps:

1. Create the service VLAN.


ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan 1000
ZXAN(config-vlan)#exit
ZXAN(config)#

Note:
To display the created VLAN information, use the show vlan
summary command.

140

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

2. Configure the VLAN of the OLT uplink port.


ZXAN(config)#interface tdm-gei_0/14/1-2
ZXAN(config-if-range)#switchport mode hybrid
ZXAN(config-if-range)#switchport vlan 1000 tag
ZXAN(config-if-range)#exit

3. View the unauthenticated ONU information on the port.


ZXAN(config)#show onu unauthentication epon-olt_0/5/1
Onu interface :
MAC address :
SN :
AuthState State :
OnTime :

epon-onu_0/5/1:1
00d0.d09a.3a8e
deny
2009/08/19 11:12:29

ZXAN(config)#

4. Authenticate the ONU.


ZXAN(config)#interface epon-olt_0/5/1
ZXAN(config-if)#onu 1 type ZTE-F429 mac 00d0.d09a.3a8e
ZXAN(config-if)#exit

5. Enter the EPON-ONU interface mode. Enable the interface authentication protocol.
ZXAN(config)#interface epon-onu_0/5/1:1
ZXAN(config-if)#admin enable

Note:
To display the detailed information of the current ONU, use the
show onu detail-info command.
6. Set the upstream and downstream bandwidth of the ONU.
ZXAN(config-if)#sla upstream maximum 5120
ZXAN(config-if)#sla downstream maximum 10240

7. Configure the PON-ONU port VLAN.


ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 1000 tag
ZXAN(config-if)#exit

8. Configure the OLT CES service.


i.

View CES global property information of the OLT.


A CL1A card supports 63 E1 channels. The first MAC address is for the first 32 channels, while the second MAC
address for the other 31 channels.
ZXAN(config)#show ces global-prop 14/1
Slot/Port
SourceMAC
Source IP
---------------------------------------------------------------14/1
0015.EB72.001C
192.192.192.28
ZXAN(config)#show ces global-prop 14/2
Slot/Port
SourceMAC
Source IP
---------------------------------------------------------------14/2
0015.EB72.001D
192.192.192.29

To modify the CES MAC address, use the following commands.


ZXAN(config)#ces
ZXAN(config-ces)#mac-address 0015.eb72.0017 14/1
ZXAN(config-ces)#mac-address 0015.eb72.0018 14/2

Confidential and Proprietary Information of ZTE CORPORATION

141

ZXA10 C220 Configuration Manual (CLI)

ZXAN(config-ces)#exit

ii.

(Optional) Configure the OLT SONET interface.


This instance uses the default values. To configure the OLT
TDM interface, refer to the topic Configuring CES TDM Interface.

Note:
In practical networking, it is recommended to use the default values for the OLT SONET interface configuration.
iii. Configure the CES property profile of the OLT.
This instance uses the default CES profile. To configure
the CES property profile of the OLT, refer to the topic
Configuring CES TDM Profile.

Note:
There is a default profile in the ZXA10 C220 system. It is
recommended to use the default profile.
iv. Create the PW link and configure the TDM property of the
PW link.
ZXAN(config)#ces
ZXAN(config-ces)#pw pw_0/14/1
ZXAN(config-ces-pw)#tdm-service type e1Satop rate 32
tdm_0/14/1.1/1/1/1/1 tdm-profile-name default

Note:
The CL1A TDM interface format is: tdm_shelf/slot/port.augno/1/
tug3/tug2/e1.

v.

The value of port and augno can only be set to 1.

The value range of tug-3, tug-2, and e1 is: [1.1.1, 3.7.3].

There are totally 63 service channels. The parameter


of each channel must be different.

Configure the PSN properties of the PW link.


ZXAN(config-ces-pw)#psn ethernet 0x1102 0x1102
dst-mac 0015.eb72.000c vlan 1000 priority 7
ZXAN(config-ces-pw)#exit
ZXAN(config-ces)#exit

142

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

Note:
When the PSN network type is Ethernet, the in-ecid/out-ecid
configured on the OLT must correspond to those on the
ONU. In this instance, the in-ecid/out-ecid value is 0x1102.
The in-ecid and out-ecid of each PW must be different.
The in-ecid and out-ecid of the same PW can be different. For
convenience, they are generally configured same.
vi. View the PW link configuration information.
ZXAN(config)#show ces pw prop detail pw_0/14/1
pw pw_0/14/1
PwType :
e1Satop
Admin-status : enable
OutboundLable :0x1102

PsnType :
ethernet
InboundLable :0x1102

Service prop:
Using tdm interface: tdm_0/14/1.1/1/1/1/1
TDM-prop profile:
default
You can see detail profile info. by using
corresponding 'show' command.
Psn prop:
Destination Mac Address:
0015.EB72.000C
Vlan ID:
1000
priority: 7
Card prop:
Card interface :
14/1
Source Mac Address: 0015.EB72.001C
Source IP Address : 192.192.192.28

9. Configure the in-band IP address of the F429.


The ONU CES can only be configured on the ONU. So the remote management IP address of the ONU needs to be configured.
ZXAN(config)#interface epon-onu_0/5/1:1
ZXAN(config-if)#switchport vlan 2600 tag
ZXAN(config-if)#exit
ZXAN(config)#pon-onu-mng epon-onu_0/5/1:1
ZXAN(epon-onu-mng)#mgmt-ip 192.2.128.5 255.255.255.0
vlan 2600 priority 7 route 192.2.128.0 255.255.255.0
192.2.128.1 status enable
ZXAN(epon-onu-mng)#exit

10. Lon in to the F429 and configure the CES service.


i.

Create the CES service VLAN.


F429(config)# add-vlan 1000

ii.

Configure the VLAN service port and the uplink port.


F429(config)# vlan 1000 1/7-8 tag

iii. View the CES global property information.


F429(config)# show ces ethIfprop 1
EthPort :
: 1
MacAddress
: 00:15:EB:72:00:0C
IPAddress
: 192.192.192.1
AdminStatus
: up
OperStatus
: up

To modify the CES MAC address, use the following command.

Confidential and Proprietary Information of ZTE CORPORATION

143

ZXA10 C220 Configuration Manual (CLI)

F429(config)# ces ethIfprop 1 macAddr


00:15:eb:72:00:0c adminSts up

iv. (Optional) Configure the ONU TDM interface.


This instance uses the default values. To configure the OLT
TDM interface, use the following command.
F429(config)# ces tdmIfprop 1 lineType e1 lineCoding
HDB3 TransClkSrc adaptive adminSts up loopType noLoop

Note:
In practical networking, it is recommended to use the default ONU TDM interface configuration.
v.

Configure the CES property profile of the ONU.


F429(config)# pw tdmProp 1 payloadSize 32 reorder enable
rtpHdr enable 0 jtrBfr 2000 payloadSuppression disable
inSyncPkts 2 outSynch 10 replacePolicy ais almThreshold
2500 clrAlmThreshold 1000 timeStampMode differential
queueSizePower 5 name default create

Note:
The CES property profile parameters of two ends of the
same PW must be consistent.
vi. Configure PW link service parameters.
F429(config)#pw genProp 1 pwType e1Satop psnType ethernet
outboundLable 0x1102 inboundLable 0x1102 pwName PW1
adminSts up creat

vii. Configure the PW link Ethernet parameters.


F429(config)#pw ethProp 1 dstMac 00:15:EB:72:00:1c
vlan 1000 priority 7 create

viii. Configure the binding between the PW link and the TDM
interface.
F429(config)#pw relation 1 rate 32 1 1 creat

11. Save the configuration data on the OLT and the ONU.
Result

The EPON CES dedicated line service is configured successfully.

Configuring E1/T1 Uplink


CES MEF8 Service (GPON)
Short Description

Prerequisites

The ZXA10 C220 is connected to the upper-layer equipment


through the CE1B/CE1BB/CT1BB card. It is connected to the ONU
through the GPON port. This instance takes CE1B as an example.
Before this operation, make sure that:

144

The network devices and lines are normal.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

Networking
Diagram

The CES uplink card status is nomal.

The GPON service card status is normal.

Figure 40 shows the CES MEF8 service networking diagram


(GPON).
FIGURE 40 CES MEF8 SERVICE NETWORKING DIAGRAM (GPON)

The E1 user connects to the ONU E1 port. The ZXA10 C220 uplinks
to theTDM network through the E1 port on CE1B card.
Data Scheme

Table 29 describes the CES MEF8 service data scheme (GPON).


TABLE 29 CES MEF8 SERVICE DATA SCHEME (GPON)
Item

Data

CES VLAN

VLAN ID: 1000

Priority

E1 uplink port

0/13/1

GPON port

0/10/1

Bandwidth profile (T-CONT)

Profile name: ces-tcont


Bandwidth type: fixed

Confidential and Proprietary Information of ZTE CORPORATION

145

ZXA10 C220 Configuration Manual (CLI)

Item

Data
Bandwidth: 10 Mbit/s

ONU

T-CONT

146

ONU ID: 1
ONU authentication mode: SN
authentication
ONU SN: ZTEG00000002
ONUtype: ZTE-F621
User port: ces_0/1

T-CONT INDEX: 2
T-CONT name: ces-tcont
Applied bandwidth profile:
ces-tcont
Alloc Id: auto-allocate

GEM Port

T-CONT index: 2
GEM Port index: 1
GEM Port name: Gemport1
Port Id: auto-allocate

OLT CES profile

Default

ONU CES profile

Default

Source MAC address (CES MAC


address of the CE1B card)

0015.eb72.001a

Destination MAC address (ONU


CES MAC address)

0015.eb72.000c

PW link

Clock resumption

Auto negotiation

Confidential and Proprietary Information of ZTE CORPORATION

Type: e1Satop
Sending ECID: 0x1102
Receiving ECID: 0x1102

Chapter 6 CES Service Configuration

Configuration
Flow

Figure 41 shows the CES MEF8 service configuration flow (GPON).


FIGURE 41 CES MEF8 SERVICE CONFIGURATION FLOW (GPON)

To configure the CES MEF8 service (GPON), perform the following


steps:
Steps:

1. Create the service VLAN.


ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan 1000
ZXAN(config-vlan)#exit
ZXAN(config)#

Confidential and Proprietary Information of ZTE CORPORATION

147

ZXA10 C220 Configuration Manual (CLI)

Note:
To display the created VLAN information, use the show vlan
summary command.
2. Configure the VLAN of the OLT uplink port.
ZXAN(config)#interface tdm-gei_0/13/1
ZXAN(config-if)#switchport mode hybrid
ZXAN(config-if)#switchport vlan 1000 tag
ZXAN(config-if)#exit

3. View the unauthenticated ONU information on the port.


ZXAN(config)#show gpon onu uncfg gpon-olt_0/10/1
OnuIndex
Sn
State
-------------------------------------------------------gpon-onu_0/10/1:1
ZTEG00000002
unknown

4. Enter the GPON-OLT interface mode and authenticate the ONU


by the SN.
ZXAN(config)#interface gpon-olt_0/10/1
ZXAN(config-if)#onu 1 type ZTE-F621 sn ZTEG00000002
ZXAN(config-if)#exit
ZXAN(config)#show gpon onu state gpon-olt_0/10/1
OnuIndex
Admin State Omcc State O7 State
Phase State
-----------------------------------------------------------------gpon-onu_0/10/1:1
enable
enable
operation
working

5. Configure the T-CONT bandwidth profile.


ZXAN(config)#gpon
ZXAN(config-gpon)#profile tcont ces-tcont type 1 fixed 10000
ZXAN(config-gpon)#exit

6. Create a T-CONT.
ZXAN(config)#interface gpon-onu_0/10/1:1
ZXAN(config-if)#tcont 2 name ces-tcont profile ces-tcont

7. Create a GEM port.


ZXAN(config-if)#gemport 1 name Gemport1 unicast tcont 2

8. Configure the port VLAN on the user side.


ZXAN(config-if)#switchport mode hybrid vport 1
ZXAN(config-if)#switchport vlan 1000 tag vport 1
ZXAN(config-if)#exit
ZXAN(config)#

Note:
By default, one V-port corresponds to one GEM port.
9. Configure the OLT CES service.
i.

View CES global property information of the OLT.


ZXAN(config)#show ces global-prop
Slot/Port
SourceMAC
Source IP
--------------------------------------------------------13/1
0015.EB72.001A
192.192.192.26

To modify the CES MAC address, use the following commands.


ZXAN(config)#ces

148

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

ZXAN(config-ces)#mac-address 0015.eb72.0017 13/1


ZXAN(config-ces)#exit

ii.

(Optional) Configure the OLT TDM interface.


This instance uses the default values. To configure the OLT
TDM interface, refer to the topic Configuring CES TDM Interface.

Note:
In the practical networking, it is recommended to use the
default values for the OLT TDM interface configuration.
iii. Configure the CES property profile of the OLT.
This instance uses the default CES profile. To configure
the CES property profile of the OLT, refer to the topic
Configuring CES TDM Profile.

Note:
There is a default profile in the ZXA10 C220 system. It is
recommended to use the default profile.
iv. Create the PW link and configure the TDM property of the
PW link.
ZXAN(config)#ces
ZXAN(config-ces)#pw pw_0/13/1
ZXAN(config-ces-pw)#tdm-service type e1Satop rate 32
tdm_0/13/1 tdm-profile-name default

Note:

v.

TDM service type of CE1B card is e1Satop.

TDM service type of CT1BB card is t1Satop.

Configure the PSN properties of the PW link.


ZXAN(config-ces-pw)#psn ethernet 0x1102 0x1102
dst-mac 0015.eb72.000c vlan 1000 priority 7
ZXAN(config-ces-pw)#exit
ZXAN(config-ces)#exit

Note:
When PSN network type is Ethernet, the in-ecid/out-ecid configured on OLT must correspond to those on ONU. In this
instance, the in-ecid/out-ecid value is 0x1102.
The in-ecid and out-ecid of each PW must be different.
The in-ecid and out-ecid of the same PW can be different. For
convenience, they are generally configured same.
vi. View the PW link configuration information.

Confidential and Proprietary Information of ZTE CORPORATION

149

ZXA10 C220 Configuration Manual (CLI)

ZXAN(config)#show ces pw prop detail pw_0/13/1


pw pw_0/13/1
PwType :
e1Satop
Admin-status : enable
OutboundLable :0x1102

PsnType :
ethernet
InboundLable :0x1102

Service prop:
Using tdm interface: tdm_0/13/1
TDM-prop profile:
default
You can see detail profile info. by using
corresponding 'show' command.
Psn prop:
Destination Mac Address:
0015.EB72.000C
Vlan ID:
1000
priority: 7
Card prop:
Card interface :
13/1
Source Mac Address: 0015.EB72.001A
Source IP Address : 192.192.192.26

10. Configure the ONU CES service channel.


i.

Create the service flow.


By default, flow1 is created and bound to switch_0/1. In
this instance, flow1 is used. The service connection type is
8021.p+ bridge. The bridge is switch_0/1. To create other
service flows, refer to the topic Configuring GPON Service.

ii.

Configure the mapping from the service flow to the GEM


port.
ZXAN(config)#pon-onu-mng gpon-onu_0/10/1:1
ZXAN(gpon-onu-mng)#gemport 1 flow 1 dot1p-list 7

Note:
The priority is 7. That means, the upstream data with the
priority of 7 are mapped to the GEM port.
iii. Configure the VLAN filter mode of the service flow.
ZXAN(gpon-onu-mng)#flow mode 1 tag-filter
vid-filter untag-filter discard

iv. Configure the VLAN filter entry of the service flow.


ZXAN(gpon-onu-mng)#flow 1 vid 1000

11. Configure the ONU CES service.


i.

(Optional) Configure the ONU TDM interface.


This instance uses the default values. To configure the OLT
TDM interface, use the following command.
ZXAN(gpon-onu-mng)#interface ces ces_0/1 state disable

Note:
In practical networking, it is recommended to use the default ONU TDM interface configuration.
ii.

150

Configure the CES property profile of the ONU.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

This instance uses the default CES profile. To configure the


CES profile, use the following commands.
ZXAN(config)#gpon
ZXAN(config-gpon)#onu profile tdm zte jtrbfr-desire 24
ZXAN(config-gpon)#exit

Note:
There is a default profile in the ZXA10 C220 system. It is
recommended to use the default profile.
iii. Configure the PSN properties of the PW link.
ZXAN(gpon-onu-mng)#pw psn ethernet ces_0/1 bridge bridge_0/1
dst-mac 0015.eb72.001a loop disable tx-payload-ecid 0x1102
tx-signalling-ecid 0x0 expected-payload-ecid 0x1102
expected-signalling-ecid 0x0 tag-policy tag
vid 1000 prio 7

iv. Configure the TDM properties of the PW link.


ZXAN(gpon-onu-mng)#pw tdm ces_0/1 payloadsize 32
payload-delay 1 timing-mode adaptive-timing

v.

Configure the RTP property of the PW link.


ZXAN(gpon-onu-mng)#pw rtp ces_0/1 payload-ssrc 3
signalling-ssrc 0 payload-ptype 97 signalling-ptype 0
expected-payload-ssrc 3 expected-signalling-ssrc 0
ZXAN(gpon-onu-mng)#end

12. Save the configuration data.


ZXAN#write
Building configuration...
..[OK]

Result

The GPON CES MEF8 service is configured successfully.

Configuring CL1A Uplink


CES Service (GPON)
Short Description

The ZXA10 C220 is connected to the upper-layer equipment


through the CL1A card. It is connected to the ONU through the
GPON port, implementing the STM-1/OC3 CES dedicated line
service.
Before this operation, make sure that:

Context

The network devices and lines are normal.

The CL1A card status is normal.

The GPON service card status is normal.

The CL1A card provides a STM-1/OC3 interface for uplink. The


CL1A card recovers E1 frames and maps E1 frames to STM-1
frames. Then, the CL1A card sends STM-1 frames to SDH/SONET
network through the STM-1 optical interface.
The add/drop
multiplexer of SDH network extracts E1 frames.

Confidential and Proprietary Information of ZTE CORPORATION

151

ZXA10 C220 Configuration Manual (CLI)

Networking
Diagram

Figure 42 shows the CES dedicated line service networking diagram (GPON).
FIGURE 42 CES DEDICATED LINE SERVICE NETWORKING DIAGRAM (GPON)

The E1 user connects to the E1 interface of the ONU. The ZXA10


C220 accesses to SDH/SONET network through STM-1 interface
on CL1A card.
Data Scheme

Table 30 describes the CES dedicated line data scheme (GPON).


TABLE 30 CES DEDICATED LINE DATA SCHEME (GPON)
Item

Data

CES VLAN

VLAN ID: 1000

Priority

E1 Uplink port

0/13/1

GPON port

0/10/1

Bandwidth profile (T-CONT)

Profile name: ces-tcont


Bandwidth type: fixed
Bandwidth: 10 Mbit/s

152

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

Item

Data

ONU

T-CONT

Configuration
Flow

ONU ID: 1
ONU authentication mode: SN
authentication
ONU SN: ZTEG00000002
ONUtype: ZTE-F621
User port: ces_0/1

T-CONT INDEX: 2
T-CONT name: ces-tcont
Applied bandwidth profile:
ces-tcont
Alloc Id: auto-allocate

GEM Port

T-CONT index: 2
GEM Port index: 1
GEM Port name: Gemport1
Port Id: auto-allocate

OLT CES profile

Default

ONU CES profile

Default

Source MAC address (CES MAC


address of the CL1A card)

0015.eb72.001c

Destination MAC address (ONU


CES MAC address)

0015.eb72.000c

PW link

Clock resumption

Auto negotiation

Type: e1Satop
Sending ECID: 0x1102
Receiving ECID: 0x1102

Figure 43 shows the CES dedicated line service configuration flow


(GPON).

Confidential and Proprietary Information of ZTE CORPORATION

153

ZXA10 C220 Configuration Manual (CLI)

FIGURE 43 CES DEDICATED LINE SERVICE CONFIGURATION FLOW (GPON)

To configure the CL1A CES uplink service, perform the following


steps:
Steps:

1. Create the service VLAN.


ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan 1000
ZXAN(config-vlan)#exit
ZXAN(config)#

154

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

Note:
To display the created VLAN information, use the show vlan
summary command.
2. Configure the VLAN of the OLT uplink port.
ZXAN(config)#interface tdm-gei_0/14/1-2
ZXAN(config-if)#switchport mode hybrid
ZXAN(config-if)#switchport vlan 1000 tag
ZXAN(config-if)#exit

3. View the unauthenticated ONU information on the port.


ZXAN(config)#show gpon onu uncfg gpon-olt_0/10/1
OnuIndex
Sn
State
-------------------------------------------------------gpon-onu_0/10/1:1
ZTEG00000002
unknown

4. Enter the GPON-OLT interface mode and authenticate the ONU


by the SN.
ZXAN(config)#interface gpon-olt_0/10/1
ZXAN(config-if)#onu 1 type ZTE-F621 sn ZTEG00000002
ZXAN(config-if)#exit
ZXAN(config)#show gpon onu state gpon-olt_0/10/1
OnuIndex
Admin State Omcc State
O7 State
Phase State
-----------------------------------------------------------------gpon-onu_0/10/1:1 enable
enable
operation
working

5. Configure the T-CONT bandwidth profile.


ZXAN(config)#gpon
ZXAN(config-gpon)#profile tcont ces-tcont type 1 fixed 10000
ZXAN(config-gpon)#exit

6. Create a T-CONT.
ZXAN(config)#interface gpon-onu_0/10/1:1
ZXAN(config-if)#tcont 2 name ces-tcont profile ces-tcont

7. Create a GEM port.


ZXAN(config-if)#gemport 1 name Gemport1 unicast tcont 2

8. Configure the port VLAN on the user side.


ZXAN(config-if)#switchport mode hybrid vport 1
ZXAN(config-if)#switchport vlan 1000 tag vport 1
ZXAN(config-if)#exit
ZXAN(config)#

Note:
By default, one V-port corresponds to one GEM port.
9. Configure the OLT CES service.
i.

View CES global property information of the OLT.


A CL1A card supports 63 E1 channels. The first MAC address is for the first 32 channels, while the second MAC
address for the other 31 channels.
ZXAN(config)#show ces global-prop 14/1
Slot/Port
SourceMAC
Source IP
----------------------------------------------------14/1
0015.EB72.001C
192.192.192.28

Confidential and Proprietary Information of ZTE CORPORATION

155

ZXA10 C220 Configuration Manual (CLI)

ZXAN(config)#show ces global-prop 14/2


Slot/Port
SourceMAC
Source IP
----------------------------------------------------14/2
0015.EB72.001D
192.192.192.29

To modify the CES MAC address, use the following commands.


ZXAN(config)#ces
ZXAN(config-ces)#mac-address 0015.eb72.0017 14/1
ZXAN(config-ces)#mac-address 0015.eb72.0018 14/2
ZXAN(config-ces)#exit

ii.

(Optional) Configure the OLT SONET interface.


This instance uses the default values. To configure the OLT
TDM interface, refer to the topic Configuring CES TDM Interface.

Note:
In practical networking, it is recommended to use the default values for the OLT SONET interface configuration.
iii. Configure the CES property profile of the OLT.
This instance uses the default CES profile. To configure
the CES property profile of the OLT, refer to the topic
Configuring CES TDM Profile.

Note:
There is a default profile in the ZXA10 C220 system. It is
recommended to use the default profile.
iv. Create the PW link and configure the TDM property of the
PW link.
ZXAN(config)#ces
ZXAN(config-ces)#pw pw_0/14/1
ZXAN(config-ces-pw)#tdm-service type e1Satop rate 32
tdm_0/14/1.1/1/1/1/1 tdm-profile-name default

Note:
The CL1A TDM interface format is: tdm_shelf/slot/port.augno/1/
tug3/tug2/e1.

v.

The value of port and augno can only be set to 1.

The value range of tug-3, tug-2, and e1 is: [1.1.1, 3.7.3].

Configure the PSN properties of the PW link.


ZXAN(config-ces-pw)#psn ethernet 0x1102 0x1102
dst-mac 0015.eb72.000c vlan 1000 priority 7
ZXAN(config-ces-pw)#exit
ZXAN(config-ces)#exit

156

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

Note:
When the PSN network type is Ethernet, the in-ecid/out-ecid
configured on the OLT must correspond to those on the
ONU. In this instance, the in-ecid/out-ecid value is 0x1102.
The in-ecid and out-ecid of each PW must be different.
The in-ecid and out-ecid of the same PW can be different. For
convenience, they are generally configured same.
vi. View the PW link configuration information.
ZXAN(config)#show ces pw prop detail pw_0/14/1
pw pw_0/14/1
PwType :
e1Satop
Admin-status : enable
OutboundLable :0x1102

PsnType :
ethernet
InboundLable :0x1102

Service prop:
Using tdm interface: tdm_0/14/1.1/1/1/1/1
TDM-prop profile:
default
You can see detail profile info. by using
corresponding 'show' command.
Psn prop:
Destination Mac Address:
0015.EB72.000C
Vlan ID:
1000
priority: 7
Card prop:
Card interface :
14/1
Source Mac Address: 0015.EB72.001C
Source IP Address : 192.192.192.28

10. Configure the ONU CES service channel.


i.

Create the service flow.


By default, flow1 is created and bound to switch_0/1. In
this instance, flow1 is used. The service connection type is
8021.p+ bridge. The bridge is switch_0/1. To create other
service flows, refer to the topic Configuring GPON Service.

ii.

Configure the mapping from the service flow to the GEM


port.
ZXAN(config)#pon-onu-mng gpon-onu_0/10/1:1
ZXAN(gpon-onu-mng)#gemport 1 flow 1 dot1p-list 7

Note:
The priority is 7. That means, the upstream data with the
priority of 7 are mapped to the GEM port.
iii. Configure the VLAN filter mode of the service flow.
ZXAN(gpon-onu-mng)#flow mode 1 tag-filter
vid-filter untag-filter discard

iv. Configure the VLAN filter entry of the service flow.


ZXAN(gpon-onu-mng)#flow 1 vid 1000

11. Configure the ONU CES service.


i.

(Optional) Configure the ONU TDM interface.

Confidential and Proprietary Information of ZTE CORPORATION

157

ZXA10 C220 Configuration Manual (CLI)

This instance uses the default values. To configure the OLT


TDM interface, use the following command.
ZXAN(gpon-onu-mng)#interface ces ces_0/1 state disable

Note:
In practical networking, it is recommended to use the default ONU TDM interface configuration.
ii.

Configure the CES property profile of the ONU.


This instance uses the default CES profile. To configure the
CES profile, use the following commands.
ZXAN(config)#gpon
ZXAN(config-gpon)#onu profile tdm zte jtrbfr-desire 24
ZXAN(config-gpon)#exit

Note:
There is a default profile in the ZXA10 C220 system. It is
recommended to use the default profile.
iii. Configure the PSN properties of the PW link.
ZXAN(gpon-onu-mng)#pw psn ethernet ces_0/1 bridge bridge_0/1
dst-mac 0015.eb72.001c loop disable tx-payload-ecid 0x1102
tx-signalling-ecid 0x0 expected-payload-ecid 0x1102
expected-signalling-ecid 0x0 tag-policy tag vid 1000 prio 7

iv. Configure the TDM properties of the PW link.


ZXAN(gpon-onu-mng)#pw tdm ces_0/1 payloadsize 32
payload-delay 1 timing-mode adaptive-timing

v.

Configure the RTP properties of the PW link.


ZXAN(gpon-onu-mng)#pw rtp ces_0/1 payload-ssrc 3
signalling-ssrc 0 payload-ptype 97 signalling-ptype 0
expected-payload-ssrc 3 expected-signalling-ssrc 0
ZXAN(gpon-onu-mng)#end

12. Save the configuration data.


ZXAN#write
Building configuration...
..[OK]

Result

The GPON CES dedicated line service is configured successfully.

Configuring CES TDM


Profile
Short Description
Prerequisites

Perform this procedure to configure the CES TDM profile.


Before this operation, make sure that:

158

The network devices and lines are normal.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

Context

The CES service card status is normal.

Table 31 describes the TDM profile parameters.


TABLE 31 TDM PROFILE PARAMETERS
Parameter

Description

Value

profilename

Profile name

Range: 1 63 characters

payloadsize

Payload size of each


packet

To enable or disable
the recorder function

reorder

To enable or disable
the RTP header

rtpHdr

32
64

Default: 32

Enable
Disable

Default: enable

Enable
Disable

Default: disable

ssrcval

Synchronization
source identifier

jtrBfr

Jitter buffer depth

payloadSuppression

Payload suppression

inSyncPkts

Continuously received
frames to enter LOP

outSyncPkts

Continuously missed
frames to exit LOP

10

pktReplacePolicy

Packet replace policy

almThreshold

Alarm report threshold time

2500 ms

clrAlmThreshold

Alarm clear threshold


time

10000 ms

timestampmode

0
2000
Unit: s

Enable
Disable

Default: disable

Ais
MplementationSpecific

Default: ais

Time stamp mode

Differential
Absolute
Unknown
Not applicable

Default: differential

queuesizePower

Queue Size, exponent


value basing 2

Range: 1 7, when
the recorder function
is enabled
Range: 1 10, other
situation

Default: 5

Confidential and Proprietary Information of ZTE CORPORATION

159

ZXA10 C220 Configuration Manual (CLI)

To configure the CES TDM profile, perform the following steps:


Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the ces command to enter CES configuration mode.
3. Use the tdm-profile command to configure the TDM profile.

Note:

Configure this profile before relating it to PW link.


If a profile is related with a PW link, it is not allowed to
modify or delete this profile.
The RTP value of each profile related to the same slot must
be the same.

4. Use the show ces tdm-profile command to view TDM profile


configuration information.
END OF STEPS
Result
Example

The CES TDM profile is configured successfully.


Configure the TDM profile and view configuration information.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#ces
ZXAN(config-ces)#tdm-profile zte 64 reorder enable rtpHdr
enable 32 jtrBfr 3000 payloadSuppression disable inSyncPkts 2
outSyncPkts 10 pktReplacePolicy ais almThreshold 2500
clrAlmThreshold 10000 timestamp-mode differential 3
ZXAN(config-ces)#show ces tdm-profile zte
Profile name :
zte
Payload size(bytes) :
64
RtpHdr :
used
JtrBfr :
3000
ConsecPktsInSynch :
2
PacketReplacePolicy :
AIS
ClearAlarmThreshold(ms):10000
QueueSize(bytes):
3

Reorder:
Ssrcval:
Payload suppression:
PktsOutSync :
AlarmThreshold(ms):
TimeStampMode:

enable
32
disable
10
2500
differential

Configuring CES TDM


Interface
Short Description
Prerequisites

Context

Perform this procedure to configure the CES TDM interface.


Before this operation, make sure that:

The network devices and lines are normal.

The CES service card status is normal.

In practical networking, it is recommended to us the default values


for CES TDM interface configuration.
To configure the CES TDM interface, perform the following steps:

160

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the interface command to enter the TDM interface configuration mode.
3. Use the admin-status command to configure the TDM interface management status.
4. Use the clock-source command to configure the transmission
clock source of the TDM interface.
5. Use the framing command to configure the SONET/SDH interface frame format. Only SDH is supported now.
6. Use the line-coding command to configure the TDM interface
coding type. The default type is HDB3.
7. Use the line-type command to configure the TDM interface
line type (whether it is framed and the framing type). The
default type is e1.
8. Use the loopback command to configure the TDM interface
loopback mode.
9. Configure the T1/E1 line properties of the SDH interface.
i.

ii.

Enter the line configuration mode.

Use the au-3 command to enter the au-3 configuration


mode.

Use the au-4 tug-3 command to enter the au-4 tug-3


configuration mode.

Use the tug-2 command to configure the T1/E1 line properties.

END OF STEPS
Result
Example

The CES TDM interface is configured successfully.


Configure the transmission clock source mode of the TDM interface
on port 1 slot 13 to differential.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#interface tdm_0/13/1
ZXAN(config-if)#clock-source differential

Clock Configuration
This section includes the following:

Overview

Configuring System Clock

Configuring External Input Clock

Configuring External Output Clock

Confidential and Proprietary Information of ZTE CORPORATION

161

ZXA10 C220 Configuration Manual (CLI)

Clock
Overview

This topic introduces the principles and configuration of the ZXA10


C220 clock synchronization system.

Description

The ZXA10 C220 provides the solution to bear TDM service on PSN.
The clock system is very important in the TDM network. All the devices in the TDM network must synchronize with the unified clock
to ensure the data are transmitted correctly.
There are two solutions for data synchronization in the digital network: pseudo-synchronization and master/slave synchronization.
Table 32 describes the clock synchronization methods.
TABLE 32 CLOCK SYNCHRONIZATION METHODS

Service
Specifications

Method

Description

Pseudo-synchronization

The digital exchanges in the


digital service network are
independent. The clock in
each digital exchange is of high
accuracy and stability. Cesium
atomic clock is used in most
cases. Because of the accuracy,
although the clocks in the digital
exchanges of the network are
not exactly the same (frequency
and phrase), their errors are
so small that it is close to the
synchronization. Therefore it is
called pseudo-synchronization.
Pseudo-synchronization is mainly
used among the international
digital networks, that is, the digital
networks in different countries
use pseudo-synchronization.

Master/slave synchronization

There is one clock master office


in the network, and this master
office is equipped with the clock of
high accuracy. The other offices
in this network are subject to the
clock master office (That is, they
follow the master office clock, and
use the master office clock as the
timing reference.) and control the
devices of lower levels until the
NEs in the terminal exchanges.

The ZXA10 C220 master/slave synchronization is used to synchronize the devices in the network. There are three clocks: internal
clock (The system can provide the clock of three levels), external
clock, and line clock (The line clock extracts the clock signals from
the line. These signals are processed by the related cards and sent
to the main control card through the backplane.).
The procedures for the system clock synchronization are as follows:

162

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

1. The system selects the best one based on the priority and clock
quality of the clock sources. The clock chip of the main control card locates that clock source and synchronizes the output
clock with this clock source.
2. The clock signal processed by the main control card is sent to
the related service cards and the output port of the external
clock.

Configuring System Clock


Short Description
Networking
Diagram

Perform this procedure to configure the system clock.


Figure 44 shows the networking diagram of configuring the system
clock.
The ZXA10 C220 is connected to the TDM network through the E1
uplink port of the CE1B card. The CE1B card obtains the clock signals with higher priority from the TDM device of the upper level
network. The CE1B card processes the clock signals and sends
them to the main control card through the backplane. The main
control card sends the clock signals to each service card, from
which the TDM terminal device of the ONU obtains the clock signals.
FIGURE 44 SYSTEM CLOCK CONFIGURATION NETWORKING DIAGRAM

Confidential and Proprietary Information of ZTE CORPORATION

163

ZXA10 C220 Configuration Manual (CLI)

Data Scheme

Table 33 describes the system clock data scheme.


TABLE 33 SYSTEM CLOCK CONFIGURATION DATA SCHEME
Item

Data

Reference clock source port

0/13/1

Clock type

E1

Priority

To configure the system clock, perform the following steps:


Steps

1. Use the clock command to enter the global clock configuration


mode.
ZXAN(config)#clock
ZXAN(config-clock)#

2. Use the show source active command to view the active clock
source.
ZXAN(config-clock)#show source active
Interface
Type
InS1
OutS1
Status
..........................................................
0/8/0
internal 11
11
FREE_RUN

nitially, the clock status is internal clock free oscillation and


the priority is 251.
3. Use the source command to create the E1 clock source.
ZXAN(config-clock)#source 0/13/1 type e1 priority 1

Note:
If various clock sources are configured, the system selects the
best one based on the priority and actual quality of each clock
source. The selection criteria is as follows: the one with normal clock status, the highest priority, and the best quality. If
these options are the same, select the clock which is configured earlier.
Priority ranges from 1 to 255. Priority 1 is the highest priority.
4. (Optional) Use the no source priority command to delete the
configured clock source.
ZXAN(config-clock)#no source id 0/13/1

Note:
The default internal clock with the priority 251 cannot be
deleted.
5. Use the show clock config command to view the system reference clock source configuration.
ZXAN(config-clock)#show clock config
Shelf/card/slot Type Priority CfgSSM
Mode
Species
..........................................................

164

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 6 CES Service Configuration

0/13/1
e1
clock source count: 1

Source

6. (Optional) Use the show source alarm command to view the


configured clock source alarms.
ZXAN(config-clock)#show source alarm
Interface
Type
Priority Alarm
..........................................................
0/13/1
e1
1
LOS/LOF

Result

The system clock is configured successfully.

Configuring External Input Clock


Prerequisites

Context

Before this operation, make sure that:

The network devices and lines are normal.

All cards work normally.

The reference external clock source is normal.

Table 34 describes the external input clock parameters.


TABLE 34 EXTERNAL INPUT CLOCK PARAMETERS
Parameter

Description

external-input mode

external-input quality

Configure the external input clock


quality and display the clock frequency
and phrase accuracy. The clock ranges
are Level_2, Level_4, Level_8, and
Level_11.

bits bits mode


hz: hz mode

primary: Level_2, primary clock


(G.811)
enhanced2: Level_4, enhanced 2
clock (G.812)
enhanced3: Level_8, enhanced 3
clock (G.812)
sec: Level_11, SEC clock (G.813)

To configure the external input clock, perform the following steps:


Steps

1. Use the clock command to enter the global clock configuration


mode.
2. Use the external-input command to configure the external
input clock quality and mode.
END OF STEPS

Result
Example

The external input clock is configured successfully.


Set the ZXA10 C220 external input clock to bits mode, and the
clock quality to Level_11.
ZXAN(config)#clock
ZXAN(config-clock)#external-input 0/20/1 quality sec mode bits

Confidential and Proprietary Information of ZTE CORPORATION

165

ZXA10 C220 Configuration Manual (CLI)

Configuring External Output Clock


Short Description
Prerequisites

Context

Perform this procedure to configure the external output clock.


Before this operation, make sure that:

The network devices and lines are normal.

All cards work normally.

The reference external clock source is normal.

Table 35 describes the external output clock parameters.


TABLE 35 EXTERNAL OUTPUT CLOCK PARAMETERS
Parameter

Description

external-output mode

external-output ssmThreshold

The synchronization status message


is used to transmit the quality level of
the timing signals in the timing link.

bits bits mode


hz hz mode

enhanced2: enhanced 2 clock


(G.812)
enhanced3: enhanced 3 clock
(G.812)
primary primary clock (G.811)
secSEC clock (G.813)

To configure the external output clock, perform the following steps:


Steps

1. Use the clock command to enter the global clock configuration


mode.
2. Use the external-output mode command to configure the
external output clock mode.
3. Use the external-output ssmThreshold command to configure the external output clock SSM threshold.
END OF STEPS

Result
Example

The external output clock is configured successfully.


Set the ZXA10 C220 external output clock to bits mode and SSM
threshold to SEC clock.
ZXAN(config)#clock
ZXAN(config-clock)#external-output mode bits ssmThreshold sec

166

Confidential and Proprietary Information of ZTE CORPORATION

Chapter

VLAN Configuration
Table of Contents
Overview........................................................................ 167
Configuring the TLS VLAN ................................................. 168
Configuring VLAN Smart QinQ ........................................... 169
Configuring the 1:1 VLAN ................................................. 172
Configuring the Service Port VLAN ..................................... 174

Overview
Service
Description

Service
Specifications

A VLAN is a group of hosts that communicate as if they were in


the same broadcast domain, regardless of their physical location.
A VLAN has the same attributes as a physical LAN, but it allows for
end stations to be grouped together even if they are not located on
the same network switch. IEEE issued the IEEE 802.1q standard
draft in 1999 to standardize the VLAN implementation plan.
The ZXA10 C220 supports up to 4094 VLANs.
Table 36 describes VLAN specifications.
TABLE 36 VLAN SPECIFICATIONS
VLAN Type

Description

TLS VLAN

Add an outer-layer SVLAN whatever the user access


mode is, or whether the uplink packet has a VLAN tag,
or whatever the VLAN tag is.

VLAN Smart
QinQ

Used to extend VLAN.


Add different outer-layer SVLAN for different data
streams.

1:1 VLAN

Set the special channel for the user port and uplink
port. The packets are exchanged in 1:1 mode
according to the VLAN ID.

Service port
VLAN

Implement VLAN translation at the ONU level.

Confidential and Proprietary Information of ZTE CORPORATION

167

ZXA10 C220 Configuration Manual (CLI)

Configuring the TLS VLAN


Short Description
Prerequisites

Context

Perform this procedure to configure the TLS VLAN.


Before this operation, make sure that:

The network devices and lines are normal.

The uplink port and service port are normal.

When user port TLS is enabled, the upstream tagged packets on


the user port are added with the corresponding TLS VLAN ID at
the front of the four 802.1q bytes before transmitted. This configuration is used for VLAN transparent transmission between enterprises.
To configure the TLS VLAN, perform the following steps:

Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the vlan command to add a VLAN.
3. Use the interface command to enter the interface configuration mode.
4. Use the switchport mode command to configure the port
VLAN mode.

Note:
When the user port mode is access or transparent, the TLS
properties cannot be configured.
5. Use the switchport tls enable command to enable port VLAN
TLS.

Note:
In trunk or hybrid mode, when the TLS function is disabled,
TLS VLAN ID is automatically changed to 0.
6. Use the switchport tls vlan command to configure the port
TLS VLAN.
7. Use the show vlan port command to view the port VLAN configuration.
END OF STEPS
Result
Example

The TLS VLAN is configured successfully.


The user packet has VLAN tag 100. The system adds VLAN 101 to
the packet.
ZXAN#configure terminal
Enter configuration commands, one per line.
ZXAN(config)#vlan 101
ZXAN(config-vlan)#exit
ZXAN(config)#interface gei_0/14/1
ZXAN(config-if)#switchport mode trunk

168

Confidential and Proprietary Information of ZTE CORPORATION

End with CTRL/Z.

Chapter 7 VLAN Configuration

ZXAN(config-if)#switchport vlan 101 tag


ZXAN(config-if)#exit
ZXAN(config)#interface epon-onu_0/6/4:1
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport tls enable
ZXAN(config-if)#switchport tls vlan 101
ZXAN(config-if)#show vlan port epon-onu_0/6/4:1
Mode Pvid CPvid Tpid ProtEn PrioEn TLSEn TLSVlan UntagVlan TagVlan
--------------------------------------------------------------------trunk 1
0
0x8100 disable disable enable 101
1

Configuring VLAN Smart


QinQ
Short Description
Prerequisites

Context

Perform this procedure to configure VLAN smart QinQ.


Before this operation, make sure that:

The network devices and lines are normal.

The VLAN of the upper-layer device interface corresponds to


the VLAN configured on the uplink interface.

The xPON service card status is normal.

The xPON basic service is configured.

There are two types of VLAN smart QinQ for the ZXA10 C220.

PON-level VLAN smart QinQ, implemented through the servic


e-port command

ONU-level VLAN smart QinQ, implemented through the vlansmart-qinq command

This topic takes PON-level VLAN smart QinQ as an example.


The xPON OLT is connected by multiple EPON ONUs (can replace
the layer-2 switches) in the downlink direction. The xPON OLT
connects the DSLAM through the ONU to achieve the function of
MAN convergence switches. The packets are added with different
external VLAN tags according to different data streams to achieve
service identification.
The ZXA10 C220 supports the following smart QinQ modes:

Based on a single CVLAN

Based on a CVLAN segment

Based on CoS

Based on the Ethernet type

Based on single CVLAN + CoS

Based on single CVLAN + Ethernet type

When the items on the same port conflict, the item configured
earliest takes effect.
Data Scheme

Table 37 lists the smart QinQ data scheme.

Confidential and Proprietary Information of ZTE CORPORATION

169

ZXA10 C220 Configuration Manual (CLI)

TABLE 37 SMART QINQ DATA SCHEME

170

Item

Data

IPTV service transparent


transmission VLAN

VLAN ID: 200 500

NM service transparent VLAN

VLAN ID: 60

PPPoE service external SVLAN

VLAN ID: 1024

PPPoE service internal CVLAN

VLAN ID: 1024 2047

External SVLAN of the dedicated


line service

VLAN ID: 2048

Internal CVLAN of the dedicated


line service

VLAN ID: 2048 3071

Old CoS priority of the dedicated


line service

New CoS priority of the dedicated


line service

OLT port

0/6/4

ONU ID

Uplink port

0/14/1

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 7 VLAN Configuration

Configuration
Flow

Figure 45 shows the configuration flow of smart QinQ.


FIGURE 45 SMART QINQ CONFIGURATION FLOW

To configure VLAN smart QinQ, perform the following steps:


Steps

1. Configure the transparent transmission service VLAN and external SVLAN.


ZXAN#config terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan database
ZXAN(vlan)#vlan 60,200-500,1024,2048
ZXAN(vlan)#exit

2. Enable global VLAN smart QinQ.


ZXAN(config)#vlan-smart-qinq enable

3. Enable port VLAN smart QinQ.


ZXAN(config)#interface epon-olt_0/6/4
ZXAN(config-if)#vlan-smart-qinq enable
ZXAN(config-if)#exit

Note:
Port VLAN Smart QinQ can be enabled only after global VLAN
Smart QinQ is enabled.

Confidential and Proprietary Information of ZTE CORPORATION

171

ZXA10 C220 Configuration Manual (CLI)

4. Configure the VLAN Smart QinQ rules.


ZXAN(config)#vlan-smart-qinq ingress-port epon-olt_0/6/4
cvlan 1024 to 2047 svlan 1024
ZXAN(config)#vlan-smart-qinq ingress-port epon-olt_0/6/4
cvlan 2048 to 3071 cos 3 svlan 2048 newcos 7

5. Add the service port to the transparent transmission VLAN.


ZXAN(config)#interface epon-onu_0/6/4:1
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 200-500 tag
ZXAN(config-if)#switchport vlan 60 tag
ZXAN(config-if)#exit

6. Add the uplink port to the transparent transmission VLAN and


the external SVLAN.
ZXAN(config)#interface gei_0/14/1
ZXAN(config-if)#switchport mode hybrid
ZXAN(config-if)#switchport vlan 200-500 tag
ZXAN(config-if)#switchport vlan 60 tag
ZXAN(config-if)#switchport vlan 1024 tag
ZXAN(config-if)#switchport vlan 2048 tag
ZXAN(config-if)#end

7. Save the configuration data.


ZXAN#write
Building configuration...
..[OK]

Result

VLAN smart QinQ is configured successfully.

Configuring the 1:1 VLAN


Short Description
Prerequisites

Context

Perform this procedure to configure the 1:1 VLAN exchange.


Before this operation, make sure that:

The network devices and lines are normal.

The VLAN of the upper-layer device interface corresponds to


the VLAN configured on the uplink interface.

The xPON service card status is normal.

The xPON basic service is configured.

1:1 VLAN is a special channel for a user port and uplink port. After 1:1 VLAN is configured, packets are exchanged in 1:1 mode
according to the VLAN ID rather than the MAC + VLAN forwarding
mechanism.
1:1 VLAN exchange is implemented according to the following:

SVLAN

CVLAN + SVLAN dual tags

To configure the 1:1 VLAN, perform the following steps:


Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the vlan command to enter the VLAN configuration mode.
3. Use the xconnect command to set the VLAN to 1:1 VLAN.

172

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 7 VLAN Configuration

Note:
When a VLAN is set to 1:1 VLAN, if no user port or uplink port
is specified according to the 1:1 VLAN configuration rule, the
general configuration on the VLAN is not allowed. For example, add the VLAN to a port in untagged or tagged mode, or
configure the translation or QinQ rules.
If the specific user port and uplink port are specified according
to the 1:1 VLAN configuration rule, the general configuration
on the 1:1 VLAN based on the user port and uplink port is
allowed, while that based on other ports is denied.
When the 1:1 VLAN is applied to a 1:1 VLAN configuration rule,
the 1:1 VLAN cannot be disabled.
4. Use the vlan-xconnect command to add 1:1 VLAN connection
configuration items.
5. Use the interface command to enter the PON-ONU interface
configuration mode.
6. Use the switchport vlan command to configure the VLAN
properties of the PON-ONU interface.

Note:
The user port has multiple configuration modes, for example,
setting the default VLAN, adding to the 1:1 VLAN, VLAN translation, or VLAN QinQ in tagged or untagged mode. In any
mode, as long as the packets on the user port match the SVLAN
or CVLAN + SVLAN, the 1:1 VLAN exchange is implemented.
7. Use the interface command to enter the uplink port configuration mode.
8. Use the switchport vlan command to configure the VLAN
properties of the uplink port.

Note:
The uplink port needs to be added to the SVLAN in tagged
mode.
9. Use the show vlan-xconnect summary command to view
the configured 1:1 VLAN.
10. Use the show vlan-xconnect detail command to view the
detailed configuration rules of the 1:1 VLAN.
END OF STEPS
Result
Example

The 1:1 VLAN is configured successfully.


Configure the special channel for user port epon-onu_0/5/2:1 and
uplink port gei_0/6/1. When the user port packets match SVLAN
600, the 1:1 VLAN exchange is implemented.

Confidential and Proprietary Information of ZTE CORPORATION

173

ZXA10 C220 Configuration Manual (CLI)

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#vlan 600
ZXAN(config-vlan)#xconnect enable
ZXAN(config-vlan)#exit
ZXAN(config)#vlan-xconnect user-port epon-onu_0/5/1:1 vport 1
uplink-port gei_0/6/1 svlan 600
ZXAN(config)#interface epon-onu_0/5/1:1
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 600 tag
ZXAN(config-if)#exit
ZXAN(config)#interface gei_0/6/1
ZXAN(config-if)#switchportvlan 600 tag
ZXAN(config-if)#exit
ZXAN(config)#show vlan-xconnect summary
All xconnect-vlan num: 1
Details are following:
600
ZXAN(config)#show vlan-xconnect detail
xconnect vlan rule num: 1
User-Port
Vport
Uplink-Port Svlan
Cvlan
------------------------------------------------------epon-onu_0/5/1:1 vport 1
gei_0/6/1
600
0
vport 1

Configuring the Service Port


VLAN
Short Description
Prerequisites

Context

Perform this procedure to configure the service port VLAN under


the xPON ONU port to implement the ONU-level VLAN translation.
Before this operation, make sure that:

The network devices and lines are normal.

The VLAN of the upper-layer device interface corresponds to


the VLAN configured on the uplink interface.

The xPON service card status is normal.

The xPON basic service is configured.

The ONU-level VLAN translation and smart QinQ can be implemented by configuring the service port VLAN under the xPON ONU
port.
At present, the ZXA10 C220 service port configuration supports
the following application scenarios:

174

Changing the untag VLAN to single-tag VLAN

Changing the untag VLAN to dual-tag VLAN

Changing the untag + Ethernet protocol VLAN to single-tag


VLAN

Changing the untag + Ethernet protocol VLAN to dual-tag VLAN

Changing the tag VLAN to single-tag VLAN

Changing the tag VLAN to dual-tag VLAN

Changing the tag + Ethernet protocol VLAN to single-tag VLAN

Changing the tag + Ethernet protocol VLAN to dual-tag VLAN

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 7 VLAN Configuration

VLAN translation mode: 1:1 VLAN

To configure the service port VLAN, perform the following steps:


Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the interface command to enter the EPON-ONU interface
configuration mode.
3. Use the service-port command to create a service port under
the EPON ONU port.

Note:
After the ONU is configured with the service port rules, the
PON-level VLAN configuration (such as smart QinQ) on the PON
port is ineffective for the ONU and the configured service port
rules take effect.
4. Use the show service-port command to view the configured
service port items.
END OF STEPS
Result
Example

The service port VLAN is configured successfully.


Configure the service port under the EPON-ONU port epononu_0/5/1:1.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#interface epon-onu_0/5/1:1
ZXAN(config-if)#service-port 1 user-vlan 10 user-etype PPPOE vlan 20
svlan 100 1:1
ZXAN(config-if)#service-port 2 user-vlan untagged vlan 21 svlan 31

Confidential and Proprietary Information of ZTE CORPORATION

175

ZXA10 C220 Configuration Manual (CLI)

This page is intentionally blank.

176

Confidential and Proprietary Information of ZTE CORPORATION

Chapter

STP Configuration
Table of Contents
Overview........................................................................ 177
Configuring MSTP ............................................................ 178

Overview
STP can be used on loopback networks. It prevents redundant
paths by using specific algorithms, to prune the network loops by
viewing the network logically as a tree structure. This prevents
packet circulation in the network loops.
STP exchanges BPDUs between all the switches of STP in an expanded LAN. BPDU exchange can implement the following functions:

Selecting a root bridge from a stable spanning tree topology

Selecting a specified switch from each switch network segment

Preventing loop from the topology network by setting the redundant switch port to Discard

The ZXA10 C220 STP module supports three modes: SSTP,


RSTP, and MSTP, which follow the IEEE802.1d, IEEE802.1w, and
IEEE802.1s standards respectively.

SSTP Mode
With the development of WAN, MSTP is widely used. However,
MST domain for MSTP must be configured manually. The network cannot be expanded properly. SSTP makes up the drawback.
By improving MSTP packet format and reducing the frequency of
sending Config/TCN BPDU packets between bridges, SSTP supports faster convergence capability and provides more redundant
paths for data transmission.
SSTP strictly follows the IEEE 802.1d standard. The bridge in SSTP
mode can interwork with the bridge in RSTP and MSTP modes.

Confidential and Proprietary Information of ZTE CORPORATION

177

ZXA10 C220 Configuration Manual (CLI)

RSTP Mode
With more LAN voice and media applications developed, the
potential reliability and performance become very crucial. The
availability of each network component is important. The redundancy needs to be set in the WAN connection, and ISP and
routing network. The redundancy bridge path is also needed. The
bridge/switch must locate the default, and reset it immediately.
RSTP meets this requirement
RSTP provides faster convergence than SSTP. When the network
topology changes, the port state of the redundant switch port can
be quickly changed from Discard to Forward in a point-to-point
connection condition.
RSTP complies with the IEEE 802.1w standard.

MSTP Mode
MSTP is added with the concepts of instance and VLAN mapping.
SSTP and RSTP modes can be considered as a special MSTP instance, in which case, the instance is 0. The MSTP mode provides
fast convergence and load balancing for VLAN.
In SSTP and RSTP modes, each port has only one state, that is,
the port has the same forwarding state in different VLANs. In
MSTP mode, multiple spanning-tree instances can exist, and a port
has different forwarding states in different VLANs. Multiple subtree instances can be generated in the MST area to realize load
balancing.
MSTP complies with the IEEE802.1s standard.

Configuring MSTP
Short Description
Prerequisites

Context

Perform this procedure to configure MSTP.


Before this operation, make sure that:

The network devices and lines are normal.

The xPON service is configured.

The user has logged in to the ZXA10 C220 through HyperTerminal or Telnet.

MSTP is applied in the redundancy network. It provides fast convergence, and enables different VLAN traffics to be dispatched in
the corresponding paths, and thus provides load sharing mechanism for the redundancy links.
MSTP trims the loopback network to a tree network that has no
loops, which prevents packets from increasing and loop in the network. It also provides multiple redundancy paths for data forwarding, in which process realizing VLAN data load balance.

178

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 8 STP Configuration

The ZXA10 C220 supports MSTP and is compatible with STP and
RSTP. It also supports MSTP ring network.
To configure MSTP, perform the following steps:
Steps

1. Enable the STP protocol.


ZXAN#configure terminal
Enter configuration commands, one per line.
ZXAN(config)#spanning-tree enable

End with CTRL/Z.

2. Set the STP type to MSTP.


The ZXA10 C220 supports SSTP, RSTP, and MSTP. After MSTP is
enabled, the MSTP device maintains the spanning tree status
of the corresponding VLAN according to the received configuration information (BPDU message). After MSTP is disabled,
the MSTP device becomes a transparent bridge and does not
maintain the spanning tree status.
By default, the ZXA10 C220 uses the MSTP mode. Any one of
the modes is compatible with the other modes.
ZXAN(config)#spanning-tree mode mstp

3. Set the maximum valid time for the packet of the local bridge.
By default, the maximum valid time for the STP BPDU packet
of the specific bridge is 20 seconds.
The device determines whether it times out for the port to receive the configuration information according to the maximum
valid time. If it times out, the snapping tree instance needs to
be recalculated.
If the current device is the root bridge device, it determines
the timeout according to the maximum valid time of the root
bridge device. If the current device is a non-root bridge device,
it determines the timeout also according to the maximum valid
time of the root bridge device.
ZXAN(config)#spanning-tree max-age 21

4. Set the time interval for the current bridge to send packets.
By default, the time interval for the specific bridge to send the
STP BPDU packets is 2 seconds.
This time interval ensures that the configuration information is
sent periodically and keeps the spanning tree stable. If the device does not receive any configuration information, it regards
the information timing out and recalculates the spanning tree.
If the current device is the root bridge device, it sends packets
according to the time interval of the root bridge device. If the
current device is a non-root bridge device, it sends packets
also according to the time interval of the root bridge device.
ZXAN(config)#spanning-tree hello-time 3

5. Set the STP forwarding delay time interval of the current


bridge.
To prevent temporary loop, when the port state switches from
Discarding to Forwarding and the requirements on port status fast switching are not met, the intermediate state Learning is set and the status switching process needs certain time
to keep synchronization with the status switching of the remote
switch.

Confidential and Proprietary Information of ZTE CORPORATION

179

ZXA10 C220 Configuration Manual (CLI)

If the current device is the root bridge device, it uses the forwarding delay time interval of the root bridge device. If the
current device is a non-root bridge device, it also uses the forwarding delay time interval of the root bridge device.
ZXAN(config)#spanning-tree forward-delay 16

Note:
To ensure MSTP to work normally in the network, the maximum
valid time for the packet of the local bridge, the time interval
for the current bridge to send packets, and the STP forwarding delay time interval of the current bridge should meet the
following formula:
2 (forwarding delay time 1.0 second) maximum valid
time 2 (sending time interval + 1.0 second)
6. Set the transparent transmission mark.
Before enabling or disabling STP transparent transmission, disable the STP switch. After transparent transmission is enabled,
the chip broadcasts the received BPDU packets in the VLAN
rather than sending them to the CPU.
ZXAN(config)#spanning-tree disable
ZXAN(config)#spanning-tree transparent enable

7. Set the version number.


To set the version number in mst_config_id, the STP protocol
must be enabled. If the switches need to be configured in one
domain, this parameters is mandatory. Keep the configuration
of all switches consistent. The default value is 0.
ZXAN(config)#spanning-tree mst configuration
ZXAN(config-mstp)#revision 10

8. Set the configuration name in mst_config_id.


By default, it is the management MAC address of the device.
ZXAN(config)#spanning-tree mst configuration
ZXAN(config-mstp)#name zte

9. Set the MST key.


By default, the value of MD5-KEY used to generate mst_config_id is 0x13ac06a62e47fd51f95d2ba243cd0346.
MD5-KEY of the encryption algorithm is configured to ensure
device security. The two devices in the same MST domain fail
to communicate with each other if their MD5-KEY values are
different.
When MSTP is implemented by different device providers, the
MSTP packet formats may not follow the IEEE standard strictly.
When the ZTE switch interworks with those of other providers
in the same domain, the MD5-KEY value and the DIGEST
value are mandatory.
ZXAN(config)#spanning-tree mst hmd5-key
cisco 0x12345678901234567890123456789012

10. Set MST digest.


The default MST digest value in mst_config_id
0x00000000000000000000000000000000.

180

Confidential and Proprietary Information of ZTE CORPORATION

is

Chapter 8 STP Configuration

When MSTP is implemented by different device providers, the


MSTP packet formats may not follow the IEEE standard strictly.
When the ZTE switch interworks with those of other providers
in the same domain, the KEY value and the DIGEST value are
mandatory.
ZXAN(config)#spanning-tree mst hmd5-digest
cisco 0x12345678901234567890123456789012

11. Set the MSTP instance.


Set the following parameters:

Instance number: The value range is 0 31. Instance 0


exists by default and cannot be deleted.
VLAN mapping: Map the specified VLANs to the specified
MSTP instances.
By default, all the VLANs are mapped to instance 0, that is,
CIST.
One VLAN cannot be mapped to different instances. When a
mapped VLAN is remapped to another instance, the original
mapping relationship is cancelled.

ZXAN(config)#spanning-tree mst configuration


ZXAN(config-mstp)#instance 1 vlan 10-20

Note:
In SSTP and RSTP modes, the ZXA10 C220 only has instance
0, that is CIST. In MSTP mode, instance 0 exists by default and
cannot be deleted.
The devices in one domain should meet all the following requirements:

The MST configuration names are the same.

The MST configuration version numbers are the same.

The INS-VLAN mapping tables are the same.

The devices are connected physically.

12. Set the priority of the local bridge.


The MSTP devices can have different priorities in different STP
instances. The priorities range from 0 to 61440, with the step
length of 4096. The default priority is 32768.
The priority determines whether the device can be selected as
the root bridge of the spanning tree. The device with the lowest
priority can be the root bridge of the spanning tree.
If the priorities of the devices are the same, the device with
the smallest MAC address is the root bridge.
ZXAN(config)#spanning-tree mst instance 1 priority 4096

13. Set the maximum hops of the local bridge BPDU packets.
The maximum hops of the BPDU packets in the MST domain
ranges from 1 to 40, and the default value is 20.
In the MST domain, when a BPDU packet is forwarded from
the root device of the spanning tree to other devices, the hop

Confidential and Proprietary Information of ZTE CORPORATION

181

ZXA10 C220 Configuration Manual (CLI)

number decreases by one when the packet passes a device.


The device discards the configuration information with the hop
number of 0 to limit the network scale in the domain.
ZXAN(config)#spanning-tree mst max-hops 40

END OF STEPS
Result

182

MSTP is configured successfully.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter

DHCP Configuration
Table of Contents
Overview........................................................................ 183
Configuring DHCP Snooping .............................................. 184
Configuring the DHCP Server ............................................ 185
Configuring DHCP Relay ................................................... 186

Overview
DHCP enables a host on the network to obtain an IP address that
ensures its normal communication and the relevant configuration
information from a DHCP server.
DHCP uses UDP as the transmission protocol. The host sends
a message to port 67 of the DHCP server and the DHCP server
returns the message to port 68 of the host. The DHCP working
process is as follows:
1. The host sends a broadcast packet DHCPDiscover including the
request of the IP address and other configuration parameters.
2. The DHCP server returns a unicast packet DHCPOffer including
the valid IP address and configuration.
3. The host selects the server which returns the first DHCPOffer
and sends a broadcast packet DHCPRequest to the server, indicating to accept relevant configuration.
4. The selected DHCP server returns a unicast packet DHCPAck
for acknowledgement.
At this point, the host can use the IP address and relevant configuration obtained from the DHCP server for communication.
The ZXA10 C220 supports the following DHCP applications:

DHCP snooping
On the ZXA10 C220, monitor the DHCP communication process
of the specified ONU in the specified VLAN to record the user
IP/MAC relationship of the specified ONU.
Through DHCP snooping, the administrator can locate the access users by the IP addresses to implement IP address antisnooping.

DHCP server
The ZXA10 C220 works as the DHCP server to allocate IP addresses for users.

Confidential and Proprietary Information of ZTE CORPORATION

183

ZXA10 C220 Configuration Manual (CLI)

DHCP relay
The ZXA10 C220 works in layer-3 switching state as the DHCP
relay. It forwards the user DHCP request to the specified DHCP
server.

The ZXA10 C220 can either work as the DHCP server or DHCP
relay. Both of the applications, however, cannot be used simultaneously on the same VLAN interface.
The ZXA10 C220 uses DHCP snooping to prevent unauthorized
DHCP server from accessing the network. A trusted port needs to
be configured for the proper DHCP server.

Configuring DHCP Snooping


Short Description
Prerequisites

Context
Steps

Perform this procedure to configure DHCP snooping.


Before this operation, make sure that:

The network devices and lines are normal.

The xPON service card status is normal.

The xPON service is configured.

To configure DHCP snooping, perform the following steps:


1. Use the ip dhcp snooping enable command to enable global
DHCP snooping.
2. Use the ip dhcp snooping vlan command to enable DHCP
snooping in the VLAN.
3. Use the ip dhcp snooping trust command to set the DHCP
server port to the trusted interface.
4. Use the dhcp-option82 enable command to enable the DHCP
Option 82 process globally.
5. Use the interface command to enter the EPON-ONU interface
configuration mode.
6. Use the ip dhcp snooping enable command to enable DHCP
snooping in ONU interface mode.
7. Use the ip dhcp snooping quota command to set the DHCP
session count under the user port.
END OF STEPS

Result
Example

184

DHCP snooping is configured successfully.


Configure DHCP snooping:

The legal DHCP server 1 is connected to uplink port gei_0/14/1.

The illegal DHCP server 2 is connected to uplink port


gei_0/14/2.

The user connects to ONU 1 of OLT 1 in slot 1.

The VPORT is 1.

Both uplink ports 1/21/1 and 1/21/2 are in VLAN 100.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 9 DHCP Configuration

DHCP Snooping is enabled on the ZXA10 C220, to prevent the


illegal DHCP server.

ZXAN(config)#ip dhcp snooping enable


ZXAN(config)#ip dhcp snooping vlan 100
ZXAN(config)#ip dhcp snooping trust gei_0/14/1
ZXAN(config)#dhcp-option82 enable
ZXAN(config)#interface gei_0/14/1
ZXAN(config-if)#switchport vlan 100 tag
ZXAN(config-if)#exit
ZXAN(config)#interface gei_0/14/2
ZXAN(config-if)#switchport vlan 100 tag
ZXAN(config-if)#exit
ZXAN(config)#interface epon-onu_0/4/1:1
ZXAN(config-if)#switchport vlan 100 tag vport 1
ZXAN(config-if)#ip dhcp snooping enable vport 1
ZXAN(config-if)#ip dhcp snooping quota 200 vport 1
ZXAN(config-if)#exit

Configuring the DHCP


Server
Short Description
Prerequisites

Context
Steps

Perform this procedure to configure the DHCP server.


Before this operation, make sure that:

The network devices and lines are normal.

The xPON service card status is normal.

The xPON service is configured.

To configure the DHCP server, perform the following steps:


1. Use the ip dhcp enable command to enable the global DHCP
function.
2. Use the ip local pool command to configure the IP address
pool of the DHCP server.
3. Use the ip dhcp server leasetime command to configure the
lease time of the DHCP server IP address.
4. Use the ip dhcp server dns command to configure the DNS
address that the DHCP server returns to the user.
5. Use the vlan command to add the layer-3 VLAN.
6. Use the interface vlan command to enter the layer-3 VLAN
interface mode.
7. Use the ip address command to configure the IP address on
the interface that connects to the client subnet.
8. Use the ip dhcp mode command to configure the layer-3 interface working mode.
9. Use the ip dhcp server gateway command to configure the
default gateway IP address of the DHCP server.

Confidential and Proprietary Information of ZTE CORPORATION

185

ZXA10 C220 Configuration Manual (CLI)

Note:
When the DHCP server is directly connected with the client
subnet, the default gateway address should be set to the IP
address that the interface VLAN corresponds to.
10. Use the peer default ip pool command to configure the IP
address pool of the layer-3 interface.
11. Use the show ip dhcp server user vlan command to view
the user information on the DHCP server.
END OF STEPS
Result
Example

The DHCP server is configured successfully.


The ZXA10 C220 works as the DHCP server and the default gateway. The host obtains the IP address dynamically through the
ZXA10 C220.

Server interface IP address: 10.10.1.1

VLAN ID: 10

IP address pool: 10.10.1.3 10.10.1.254

DNS IP address: 10.10.1.2

IP address lease period: 90 seconds

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#ip dhcp enable
ZXAN(config)#ip local pool zte 10.10.1.3 10.10.1.254 255.255.255.0
ZXAN(config)#ip dhcp server dns 10.10.1.2
ZXAN(config)#ip dhcp server leasetime 90
ZXAN(config)#vlan 10
ZXAN(config-vlan)#exit
ZXAN(config)#interface vlan 10
ZXAN(config-if)#ip address 10.10.1.1 255.255.255.0
ZXAN(config-if)#ip dhcp mode server
ZXAN(config-if)#ip dhcp server gateway 10.10.1.1
ZXAN(config-if)#peer default ip pool zte
ZXAN(config-if)#show ip dhcp server user vlan 10
Current online users are 0.
Index MAC addr
IP addr
State
Expiration

Configuring DHCP Relay


Short Description
Prerequisites

Context
Steps

186

Perform this procedure to configure DHCP relay.


Before this operation, make sure that:

The network devices and lines are normal.

The xPON service card status is normal.

The xPON service is configured.

To configure DHCP relay, perform the following steps:


1. Use the ip dhcp enable command to enable the global DHCP
function.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 9 DHCP Configuration

2. Use the interface vlan command to enter the layer-3 VLAN


interface mode.
3. Use the ip address command to configure the IP address of
the layer-3 interface.
4. Use the ip dhcp mode command to enable DHCP relay or
DHCP proxy on the VLAN interface.
The DHCP proxy mode is the extension of the DHCP relay
mode. The DHCP proxy mode is used to detect subscriber
offline quickly by maintaining different lease periods:

T1: short-term lease period between the DHCP client and


the DHCP relay
T2: long-term lease period between the DHCP relay and
DHCP server

When the subscriber is offline, the DHCP relay detects it during


the T1 period, and then sends a Release packet to the DHCP
server to release the server resource.
5. Use the ip dhcp relay agent command to configure the DHCP
relay agent address of the VLAN interface.

Note:
The DHCP relay agent address should be consistent with the IP
address configured on the layer-3 interface.
6. Configure the DHCP relay server.
The DHCP relay server can be configured in the following ways:

Configure the IP address of the DHCP relay server on the


VLAN interface.
a) Use the interface vlan command to enter the layer-3
VLAN interface mode.
b) Use the ip dhcp relay server command to configure
the IP address of the DHCP relay server on the VLAN
interface.

Enable DHCP Option 60. The IP address of the DHCP relay


server does not need to be configured on the VLAN interface. The NE determines which DHCP server to be used
according to the Option field in the user request packet.
a) In global configuration mode, use the ip dhcp relay
server vclass-id command to configure the mapping
relations between the DHCP Option 60 character strings
and the DHCP server IP address.
b) Use the interface vlan command to enter the layer-3
VLAN interface mode.
c) Use the ip dhcp helper-address policy vclass-id
command to set the DHCP packets to be forwarded
according to the DHCP Option 60 character strings in
DHCP relay and DHCP proxy modes.

Confidential and Proprietary Information of ZTE CORPORATION

187

ZXA10 C220 Configuration Manual (CLI)

7. Use the show ip dhcp relay user vlan command to view the
user information on the DHCP relay.
END OF STEPS
Result
Example

DHCP relay is configured successfully.


The ZXA10 C220 enables the DHCP relay function. The networking
is as shown in Figure 46.
FIGURE 46 DHCP RELAY NETWORKING

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#ip dhcp enable
ZXAN(config)#interface vlan 200
ZXAN(config-if)#ip address 136.136.136.1 255.255.255.0
ZXAN(config-if)#exit
ZXAN(config)#interface vlan 300
ZXAN(config-if)#ip address 135.135.135.1 255.255.255.0
ZXAN(config-if)#exit
ZXAN(config)#interface vlan 200
ZXAN(config-if)#ip dhcp mode relay
ZXAN(config-if)#ip dhcp relay agent 136.136.136.1
ZXAN(config-if)#exit
ZXAN(config)#ip dhcp relay server vclass-id zte 135.135.135.118 standard
ZXAN(config)#interface vlan 200
ZXAN(config-if)#ip dhcp helper-address policy vclass-id
ZXAN(config-if)#exit

188

Confidential and Proprietary Information of ZTE CORPORATION

Chapter

10

ACL Configuration
Table of Contents
Configuring the Standard ACL ........................................... 189
Configuring the Extended ACL ........................................... 190
Configuring the Layer-2 ACL ............................................. 191
Configuring the Hybrid ACL ............................................... 193

Configuring the Standard


ACL
Short Description
Prerequisites

Context
Steps

Perform this procedure to configure the standard ACL and apply it


to the port.
Before this operation, make sure that:

The network devices and lines are normal.

The Ethernet port status is normal.

To configure the standard ACL, perform the following steps:


1. Use the configure terminal command to enter the global configuration mode.
2. Use the time-range command to configure the ACL time
range.
3. Use the acl standard command to enter the standard ACL
configuration mode.

Note:
The standard ACL number ranges from 1 to 99. It is applied to
the Ethernet port only.
4. Use the rule command to configure the ACL rules.

Confidential and Proprietary Information of ZTE CORPORATION

189

ZXA10 C220 Configuration Manual (CLI)

Note:

Each standard ACL supports up to 127 rules.


The time range must be configured before it is applied to a
rule. If the time range is not configured, the rule is always
effective.

5. Use the interface command to enter the interface configuration mode.


6. Use the ip access-group command to apply the ACL to the
port.
7. Use the show acl to view the ACL rule configuration.
8. Use the show access-list bound command to view the ports
bound with the ACL.
END OF STEPS
Result
Example

The standard ACL is configured successfully.


Configure a standard ACL on port gei_0/14/1 to deny the packets
from the source IP address 168.1.1.1/24 to access the port during
9:00 17:00 on week days.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#time-range worktime 09:00:00 to 17:00:00 working-day
ZXAN(config)#acl standard number 3
ZXAN(config-std-acl)#rule 1 deny 168.1.1.1 0.0.0.255 time-range worktime
ZXAN(config-std-acl)#rule 2 permit any
ZXAN(config-std-acl)#show acl 3
standard acl 3
rule 1 deny 168.1.1.0 0.0.0.255 time-range worktime
rule 2 permit any
ZXAN(config-std-acl)#exit
ZXAN(config)#interface gei_0/14/1
ZXAN(config-if)#ip access-group 3 in

Configuring the Extended


ACL
Short Description
Prerequisites

Context
Steps

190

Perform this procedure to configure the extended ACL and apply


it to the port.
Before this operation, make sure that:

The network devices and lines are normal.

The uplink port status is normal.

The xPON service card status is normal.

To configure the extended ACL, perform the following steps:


1. Use the configure terminal command to enter the global configuration mode.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 10 ACL Configuration

2. Use the time-range command to configure the ACL time


range.
3. Use the acl extend command to enter the extended ACL configuration mode.

Note:
The extended ACL number ranges from 100 to 199. It can be
applied to the Ethernet port and EPON OLT port.
4. Use the rule command to configure the ACL rules.

Note:

Each extended ACL supports up to 127 rules.


The time range must be configured before it is applied to a
rule. If the time range is not configured, the rule is always
effective.

5. Use the interface command to enter the interface configuration mode.


6. Use the ip access-group command to apply the ACL to the
port.
7. Use the show acl command to view the ACL rule configuration.
8. Use the show access-list bound command to view the ports
bound with the ACL.
END OF STEPS
Result
Example

The extended ACL is configured successfully.


Configure an extended ACL on port gei_0/14/1 to deny the TCP
packets from the source IP address 192.168.1.0/24 and source
port 23 (Telnet).
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#acl extend number 101
ZXAN(config-ext-acl)#rule 1 deny tcp 192.168.1.0 0.0.0.255 eq telnet any
ZXAN(config-ext-acl)#rule 2 permit tcp any eq telnet any
ZXAN(config-ext-acl)#show acl 101
extended acl 101
rule 1 deny tcp 192.168.1.0 0.0.0.255 eq telnet any
rule 2 permit tcp any eq telnet any
ZXAN(config-ext-acl)#exit
XAN(config)#interface gei_0/14/1
ZXAN(config-if)#ip access-group 101 in

Configuring the Layer-2 ACL


Short Description

Perform this procedure to configure the layer-2 ACL and apply it


to the port.

Confidential and Proprietary Information of ZTE CORPORATION

191

ZXA10 C220 Configuration Manual (CLI)

Prerequisites

Context
Steps

Before this operation, make sure that:

The network devices and lines are normal.

The Ethernet port status is normal.

The xPON service card status is normal.

To configure the layer-2 ACL, perform the following steps:


1. Use the configure terminal command to enter the global configuration mode.
2. Use the time-range command to configure the ACL time
range.
3. Use the acl link command to enter the layer-2 ACL configuration mode.

Note:
The layer-2 ACL number ranges from 200 to 299. It can be
applied to the Ethernet port and EPON OLT port.
4. Use the rule command to configure the ACL rules.

Note:

Each layer-2 ACL supports up to 127 rules.


The time range must be configured before it is applied to a
rule. If the time range is not configured, the rule is always
effective.

5. Use the interface command to enter the interface configuration mode.


6. Use the ip access-group command to apply the ACL to the
port.
7. Use the show acl command to view the ACL rule configuration.
8. Use the show access-list bound command to view the ports
bound with the ACL.
END OF STEPS
Result
Example

The layer-2 ACL is configured successfully.


Configure a layer-2 ACL on port gei_0/14/1 to deny the packets
from the source MAC address 0000.0000.0001.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#acl link number 200
ZXAN(config-link-acl)#rule 1 deny any ingress
0000.0000.0001 0000.0000.0000 egress any
ZXAN(config-link-acl)#rule 2 permit any
ZXAN(config-link-acl)#show acl 200
link acl 200
rule 1 deny any ingress 0000.0000.0001 0000.0000.0000 egress any
rule 2 permit any ingress any egress any
ZXAN(config-link-acl)#exit
ZXAN(config)#interface gei_0/14/1
ZXAN(config-if)#ip access-group 200 in

192

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 10 ACL Configuration

Configuring the Hybrid ACL


Short Description
Prerequisites

Context
Steps

Perform this procedure to configure the hybrid ACL and apply it to


the port.
Before this operation, make sure that:

The network devices and lines are normal.

The Ethernet port status is normal.

The xPON service card status is normal.

To configure the hybrid ACL, perform the following steps:


1. Use the configure terminal command to enter the global configuration mode.
2. Use the time-range command to configure the ACL time
range.
3. Use the acl hybrid command to enter the hybrid ACL configuration mode.

Note:
The hybrid ACL number ranges from 300 to 399. It can be
applied to the Ethernet port, EPON OLT port, EPON ONU port,
and GPON ONU port.
4. Use the rule command to configure the ACL rules.

Note:

Each hybrid ACL supports up to 127 rules.


The time range must be configured before it is applied to a
rule. If the time range is not configured, the rule is always
effective.

5. Use the interface command to enter the interface configuration mode.


6. Use the ip access-group command to apply the ACL to the
port.
7. Use the show acl command to view the ACL rule configuration.
8. Use the show access-list bound command to view the ports
bound with the ACL.
END OF STEPS
Result
Example

The hybrid ACL is configured successfully.


Configure a hybrid ACL on port gei_0/14/1:

Deny ARP packets.

Deny IP packets of the destination IP address 192.168.1.0/24


and source MAC address 0000.0000.0001.

Confidential and Proprietary Information of ZTE CORPORATION

193

ZXA10 C220 Configuration Manual (CLI)

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#acl hybrid number 300
ZXAN(config-hybd-acl)#rule 1 deny any any any arp
ZXAN(config-hybd-acl)#rule 2 deny any any 192.168.1.0 0.0.0.255
ip ingress 0000.0000.0001 0000.0000.0000 egress any
ZXAN(config-hybd-acl)#rule 3 permit any any any any
ZXAN(config-hybd-acl)#show acl 300
acl hybrid number 300
rule 1 deny any any any arp ingress any egress any
rule 2 deny any any 192.168.1.0 0.0.0.255 ip ingress
0000.0000.0001 0000.0000. 0000 egress any
rule 3 permit any any any any ingress any egress any
ZXAN(config-hybd-acl)#exit
ZXAN(config)#interface gei_0/14/1
ZXAN(config-if)#ip access-group 300 in

194

Confidential and Proprietary Information of ZTE CORPORATION

Chapter

11

Uplink Protection
Configuration
Table of Contents
Overview........................................................................ 195
Configuring UAPS ............................................................ 195
Configuring CL1A 1+1 Protection ....................................... 198
Configuring Link Aggregation ............................................ 200

Overview
The ZXA10 C220 provides uplink port service protection to enhance the service transmission stability.
The ZXA10 C220 supports the following uplink protection methods:

Link aggregation

CTLA 1+1

UAPS

Configuring UAPS
Short Description
Prerequisites

Context

Perform this procedure to configure UAPS.


Before this operation, make sure that:

The network devices and lines are normal.

The uplink port status is normal.

The user has logged in to the ZXA10 C220 through HyperTerminal or Telnet.

ZXA10 C220 supports UAPS. The system periodically checks the


working status of the uplink port. When the system detects that
the working port state is LINK DOWN or the link is disconnected,
it switches the services to the standby port automatically and
without interrupting the services. Then, the original working port
is switched to the standby port and the original standby port is
switched to the working port.

Confidential and Proprietary Information of ZTE CORPORATION

195

ZXA10 C220 Configuration Manual (CLI)

The working port transmits data while the standby port does not.
To configure UAPS, perform the following steps:
Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the uaps-group command to configure the UAPS group.
3. Use the revertive command to enable active/standby autoswitch for the UAPS group.
When this function is enabled and the active uplink port is recovered, the system automatically switches back to the active
port.
4. Use the port master-port portlist slave-port portlist command to configure the active and standby ports for the UAPS
group.
5. Use the protect-time command to configure the UAPS group
protection time.
If the UAPS group implements switchover once, it does not
implement it again during the protection time to avoid frequent
switchover and ensuring the link quality.
6. Use the switch-type command to configure the UAPS group
properties.

common-port: common port switchover

trunking-port: link aggregation mode


In this mode, the active and standby ports of the UAPS
group are in the aggregation mode. Only when all the
active ports are down, the services are switched over to
the standby port. This mode is used when the active and
standby ports are added to two trunk groups and the trunk
groups have only the UAPS group ports.

7. Use the next-hop command to configure the next-hop IP address for link detection.
To modify the next-hop IP address, carry out this command
again. To delete the next-hop IP address, use the no command
or set the next-hop parameter to 0.
8. Use the retry-link-detect command to configure the UAPS
retry times for link detection.
9. Use the interval-link-detect command to configure the interval for link detection.
The detection period takes effect only when the next-hop IP
address is configured.
10. Use the port-optical-tx-control command to enable/disable
the optical function on the standby port by force.

196

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 11 Uplink Protection Configuration

Note:
If this function is enabled, the UAPS optical port of the local NE
and the peer device should disable the auto-negotiation mode
and enable force mode.
ZXAN(config)#interface xgei_0/2/1
ZXAN(config-if)#no negotiation auto

11. Use the swap command to switch the UAPS group ports by
force.
The active and standby ports in the UAPS group can be
switched only when the standby port is up.
12. Use the show uaps groupid command to view the UAPS
group status.
END OF STEPS
Result
Example

UAPS is configured successfully.


Configure a UAPS group:

Group ID: 1

Active port: gei_0/6/1

Standby port: gei_0/6/2

Protection time: 400 s

Switch-type: common port

Revertive control: enabled

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#uaps-group 1
ZXAN(cfg-uaps-1)#port master-portlist gei_0/6/1
slave-portlist gei_0/6/2
ZXAN(cfg-uaps-1)#protect-time 400
ZXAN(cfg-uaps-1)#switch-type common-port
ZXAN(cfg-uaps-1)#revertive enable
ZXAN(cfg-uaps-1)#show uaps groupid 1
Revertive control
:
enable
PortLight control
:
disable
Protect-time
:
400s
Next-hop
:
0.0.0.0
Bfd next_hop
:
0.0.0.0
Link-type
:
normal
Link-detect-retry
:
5
Link-detect-interval
:
3
Link status
:
connected or NA
Bfd Link status
:
connected or NA
Switch-type
:
common port
Master ports status
:
forwarding
gei_0/6/1 : down
Slave ports status

block
gei_0/6/2 : down

Confidential and Proprietary Information of ZTE CORPORATION

197

ZXA10 C220 Configuration Manual (CLI)

Configuring CL1A 1+1


Protection
Short Description
Prerequisites

Context

Perform this procedure to configure CL1A 1+1 protection.


Before this operation, make sure that:

The network devices and lines are normal.

The CES service card status is normal.

The user service is configured.

The user has logged in to the ZXA10 C220 through HyperTerminal or Telnet.

CL1A 1+1 protection needs two CL1A cards to protect each other.
One CL1A card is the working card, connecting to the SDH of the
opposite end, as the working channel. The other CL1A card is the
protection card, connection to the SDH of the opposite end, as the
protection channel.
1+1 protection works in concurrently transmitting and preferably
receiving mode.

On the CL1A->SDH transmitting direction, the working CL1A


and protection CL1A transmit the data simultaneously. And the
SDH of the opposite end receives the data from one channel.

On the SDH->CL1A direction, the working channel and protection channel receive the data simultaneously. The main control
card receives data from one channel, discarding data from the
other channel.

To create the protection group, the CES source MAC address of


the working card must keep consistent with that of the protection
card. No service is allowed when the address is configured.
If both CL1A cards use STM-1 interface for the uplink service, two
MAC addresses must be configured:

Source Mac address of the working card: 1: 0015.eb72.0008,


2: 0015.eb72.0009

Source Mac address of the protection


0015.eb72.0008, 2: 0015.eb72.0009

card:

1:

Note:
If the IP mode is used, the IP addresses also need to be the
same.
When the protection group is created, the inner ports of the working card and protection card need to be added to the corresponding
service VLAN at the same time.
ZXAN(config)#interface tdm-gei_0/14/1-2
ZXAN(config-if-range)#switchport vlan 4000 tag
ZXAN(config-if-range)#exit
ZXAN(config)#interface tdm-gei_0/13/1-2
ZXAN(config-if-range)#switchport vlan 4000 tag

To configure the CL1A 1+1 protection, perform the following steps:

198

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 11 Uplink Protection Configuration

Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the ces command to enter the CES configuration mode.
3. Use the sdhprot group command to configure the protection
group.
4. Use the sdhprot prop command to configure the properties
of the protection group.
Mode: revertive mode and non-revertive mode. By default, it
is non-revertive mode.
Wtr : the time to wait for restoration. The unit is s. Only 0 is
supported.
5. Use the sdhprot switch-command group command to configure the protection switch command.

force: switch over by force


If forced switch-over is selected, the working card can not
receive any other switch-over command nor responds to
any switch-over alarm, unless this command is deleted.

manual: switch over manually


If manual switch-over is selected, the working card can
receive other switch-over commands. When there is a
switch-over alarm , the working card is switched over to
the protection card. When the alarm disappears, the protection card is automatically switched back to the working
card.

lockoutprotect: lock the protection channel


w2p: switch over from the working port to the protection
port
p2w: Switch over from the protection port to the working
port

After the protection group is created, the system can switch


over automatically according to the optical port alarm (LOS,
LOF, and MS-AIS), or by the configuration commands. Delete
the current protection switchover command before switching
over by the configuration commands.
6. Use the show ces sdhprot group count command to view
the quantity of protection groups.
7. Use the show ces sdhprot group prop command to view the
detailed properties of the protection groups.
8. Use the show ces sdhprot switch-command command to
view the external switchover commands used by the specified
protection group.
9. Use the show ces sdhprot request command to view all the
requested messages of the specified protection group, including the alarm request and external switchover request.
10. Use the show ces sdhprot sync-data progress-bar command to view the data synchronization process between the
working card and the protection card.
After the protection group is created, the service configuration
is disabled on the protection card while the service is config-

Confidential and Proprietary Information of ZTE CORPORATION

199

ZXA10 C220 Configuration Manual (CLI)

ured on the working card. The service on the working card is


synchronized to the protection card automatically.
The protection group can also be created after the service is
configured on the working card to implement the 1+1 protection.
END OF STEPS
Result
Example

CL1A 1+1 protection is configured successfully.


Configure CL1A 1+1 protection.

Protection group name: aaa

Working optical port: tdm_0/14/1

Protection optical port: tdm_0/13/1

Mode: non-revertive

Switchover by force: from the working port to the protection


port

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#ces
ZXAN(config-ces)#sdhprot group aaa worksdhport tdm_0/14/1
protectsdhport tdm_0/13/1 1plus1
ZXAN(config-ces)#sdhprot switch-command group aaa force w2p
ZXAN(config-ces)#show ces sdhprot group prop aaa
Name :
Protect interface:
Work interface :
Active interface:
Type :
Mode:
Holdoff:
Wtr:

aaa
tdm_0/13/1
tdm_0/14/1
protect-channel
1+1
non-revertive
0
0

Configuring Link
Aggregation
Short Description
Prerequisites

Context

Perform this procedure to configure link aggregation.


Before this operation, make sure that:

The network devices and lines are normal.

The uplink port status is normal.

The user has logged in to the ZXA10 C220 through HyperTerminal or Telnet.

LACP follows the IEEE 802.3ad standard. Link aggregation binds


multiple physical ports into a logic port. Link aggregation is used
to balance load of outgoing/incoming traffic among these ports.
The switch decides the port to send packets to, depending on the
load balancing policy of the port. When the link is detected broken,
the switch stops sending packets until the link is recovered. Link
aggregation increases the bandwidth, transmission elasticity and
redundancy.

200

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 11 Uplink Protection Configuration

The ZXA10 C220 supports two link aggregation modes:

Static trunk
Static trunk directly adds multiple physical ports to a trunk
group, thus forming a logical port. This mode is not suitable
for observing the status of the link aggregation port.

LACP
This method converges multiple physical ports into a trunk
group to form a logical port and automatically generates aggregation to obtain the maximum bandwidth.

Consider the following rules to configure the link aggregation function in the ZXA10 C220 system:

Configuration is done for at most eight trunk groups, with at


most eight ports in each trunk group.

Member ports must operate in full duplex mode.

Mode of the member port must be consistent, such as access,


trunk, or hybrid.

The logical port formed by link aggregation on the ZXA10 C220


is called smartgroup. smartgroup can be used as a common port,
and has the same default VLAN attributes as the common Ethernet
ports.
To configure link aggregation, perform the following steps:
Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the interface smartgroup command to create an aggregation port group.
3. Use the smartgroup load-balance command to configure the
load-balance mode.

Note:
The ZXA10 C220 supports six types of load-balance:

Based on the source IP address

Based on the destination IP address

Based on the source and destination IP addresses

Based on the source MAC address

Based on the destination MAC address

Based on the source and destination MAC addresses

The default mode is based on the source and destination MAC


addresses.
4. Use the interface command to enter the interface configuration mode.
5. Use the smartgroup mode command to configure the physical port of the aggregation port group and set the port aggregation mode.

Confidential and Proprietary Information of ZTE CORPORATION

201

ZXA10 C220 Configuration Manual (CLI)

Note:
The aggregation modes include the following:

On: The port runs static trunk. Both end of the aggregated
link should be set to the on mode.
Passive: The port runs LACP in passive negotiation mode.
Active: The port runs LACP in active negotiation mode.
It is recommended to set one end to active mode and the
other end to passive, or set both ends to active.

The VLAN attribues of a member port should be consistent with


that of the smartgroup. Otherwise, the port cannot be added
to the trunk group.
END OF STEPS
Result
Example

Link aggregation is configured successfully.


The ZXA10 C220 connects to switch B through the smartgroup
port, which is aggregated by four physical ports: gei_0/14/1
gei_0/14/4. The port mode of smartgroup is trunk. The port bears
VLAN 10 and VLAN 20. It uses the load-balance mode based on
the source IP address.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#interface smartgroup1
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#switchport vlan 10 tag
ZXAN(config-if)#switchport vlan 20 tag
ZXAN(config-if)#smartgroup load-balance src-ip
ZXAN(config-if)#exit
ZXAN(config)#interface gei_0/14/1
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#smartgroup 1 mode active
ZXAN(config-if)#exit
ZXAN(config)#interface gei_0/14/2
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#smartgroup 1 mode active
ZXAN(config-if)#exit
ZXAN(config)#interface gei_0/14/3
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#smartgroup 1 mode active
ZXAN(config-if)#exit
ZXAN(config)#interface gei_0/14/4
ZXAN(config-if)#switchport mode trunk
ZXAN(config-if)#smartgroup 1 mode active
ZXAN(config-if)#exit

202

Confidential and Proprietary Information of ZTE CORPORATION

Chapter

12

QoS Configuration
Table of Contents
Overview........................................................................ 203
Traffic Management Based On ACL Rules............................. 203
Configuring Traffic Shaping ............................................... 209
Queue Scheduling Configuration ........................................ 209
Configuring DSCP Mapping................................................ 214
Configuring Bridge Port QoS.............................................. 217

Overview
Service
Description

QoS indicates the performance of data flows when they pass the
network. QoS provides the peer-to-peer quality assurance through
a series of metrics such as the service availability, throughput,
delay/jitter, and packet loss ratio.

Service
Specification

The ZXA10 C220 support various QoS operations, including packet


classification and mark, congestion management, traffic monitoring and shaping.

It uses ACL to classify packets according to the physical interface, MAC address, IP address, protocol type, or application port number. Meanwhile, it marks the 802.1q priority or
ToS/DSCP priority of the packets.

It supports traffic shaping based on the port, queue, or policy,


and is applicable for multiple service models.

It supports priority marking based on the packet classification


result or physical port.

Both the user side and network side support eight CoS queues.
The network side supports FQ, SP, and WRR scheduling. The
user side supports SP, WRR, and SP+WRR scheduling.

Traffic Management Based


On ACL Rules
According to the ACL rules, filter the traffic of the uplink port, OLT
port, and ONU port, and manage the qualified traffic.

Confidential and Proprietary Information of ZTE CORPORATION

203

ZXA10 C220 Configuration Manual (CLI)

This topic includes the following:

Configuring Traffic Limit

Configuring Priority Mark

Configuring Traffic Mirroring

Configuring Redirection

Configuring Traffic Statistics

Configuring Traffic Limit


Short Description
Prerequisites

Context

Perform this procedure to configure traffic limit.


Before this operation, make sure that:

The network devices and lines are normal.

The port for traffic limit works normally.

Traffic limit restrains the bandwidth of certain service traffic. When


the service bandwidth exceeds the limit, the optional actions are
as follows:

Discard or forward the packets.

Modify DSCP.

Modify the drop precedence.

To configure traffic limit, perform the following steps:


Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the acl command to configure the ACL.
3. Use the rule command to configure the ACL rules.
4. Use the traffic-limit in command to configure the traffic limit.
5. In Ethernet interface mode, use the ip access-group acl in
command to apply the ACL to the uplink port.
6. In EPON-OLT interface mode, use the ip access-group acl in
command to apply the ACL to the EPON-OLT port.
7. In EPON-ONU interface mode, use the ip access-group acl
{in |out} [vport vport] command to apply the ACL to the
EPON-ONU port.
END OF STEPS

Result
Example

Traffic limit is configured successfully.


Limit the traffic of the packets whose source IP address is
168.2.5.5 on ports gei_0/14/1 and epon-onu_0/6/4:1.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#acl hybrid number 300
ZXAN(config-hybd-acl)#rule 1 permit any 168.2.5.5 0.0.0.0 any any
ZXAN(config-hybd-acl)#rule 2 permit any any any any
ZXAN(config-hybd-acl)#exit
ZXAN(config)#show acl 300
acl hybrid number 300
rule 1 permit any 168.2.5.5 0.0.0.0 any any ingress any egress any

204

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 12 QoS Configuration

rule 2 permit any any any any ingress any egress any
ZXAN(config)#traffic-limit in 300 rule-id 1 cir 5000 cbs 2000
pir 10000 pbs 2000 mode blind
ZXAN(config)#interface gei_0/14/1
ZXAN(config-if)#ip access-group 300 in
ZXAN(config-if)#exit
ZXAN(config)#interface epon-onu_0/6/4:1
ZXAN(config-if)#ip access-group 300 in
ZXAN(config-if)#exit

Configuring Priority Mark


Short Description
Prerequisites

Context

Perform this procedure to configure priority mark.


Before this operation, make sure that:

The network devices and lines are normal.

The port for priority mark works normally.

Priority mark is used to assign priorities to certain packets according to ACL rules. It supports the following operations:

Modify the CoS queue and the 802.1p value.

Modify the CoS queue but not the 802.1p value.

Modify the DSCP value.

Modify the drop precedence.

Modify the packet ToS priority.

Note:
The ToS priority and DSCP priority are mutually exclusive and cannot be configured at the same time.
The ZXA10 C220 supports ACL configuration on the uplink port,
OLT port, and ONU bridge port.
To configure priority mark, perform the following steps:
Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the acl command to configure the ACL.
3. Use the rule command to configure the ACL rules.
4. Use the priority-mark in command to configure the priority
mark.
5. In Ethernet interface mode, use the ip access-group acl in
command to apply the ACL to the uplink port.
6. In EPON-OLT interface mode, use the ip access-group acl in
command to apply the ACL to the EPON-OLT port.
7. In xPON-ONU interface mode, use the ip access-group acl
in [vport vport] command to apply the ACL to the xPON-ONU
interface.
END OF STEPS

Confidential and Proprietary Information of ZTE CORPORATION

205

ZXA10 C220 Configuration Manual (CLI)

Result
Example

Priority mark is configured successfully.


Configure the priority mark on the traffic that matches ACL rules
and is received on ports gei_0/14/1 and epon-onu_0/6/4:1. The
DSCP priority is 10, the local priority is 0, and the drop precedence
is low.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#acl hybrid number 300
ZXAN(config-hybd-acl)#rule 1 permit any 168.2.5.5 0.0.0.0 any any
ZXAN(config-hybd-acl)#rule 2 permit any any any any
ZXAN(config-std-acl)#exit
ZXAN(config)#priority-mark in 300 rule-id 1 dscp 10 local-precedence 0
drop-precedence low
ZXAN(config)#interface gei_0/14/1
ZXAN(config-if)#ip access-group 300 in
ZXAN(config-if)#exit
ZXAN(config)#interface epon-onu_0/6/4:1
ZXAN(config-if)#ip access-group 300 in

Configuring Traffic Mirroring


Short Description
Prerequisites

Context

Perform this procedure to configure traffic mirroring.


Before this operation, make sure that:

The network devices and lines are normal.

The source port and destination port for traffic mirroring work
normally.

The system supports only one mirroring destination port.

Users can mirror multiple ports to one destination port.

The mirroring destination port cannot be the aggregation port.

The ZXA10 C220 supports ACL configuration on the uplink port,


OLT port, and ONU bridge port.
To configure traffic mirroring, perform the following steps:
Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the acl command to configure the ACL.
3. Use the rule command to configure the ACL rules.
4. Use the traffic-mirror in command to configure traffic mirroring.
5. In Ethernet interface mode, use the ip access-group acl in
command to apply the ACL to the uplink port.
6. In EPON-OLT interface mode, use the ip access-group acl in
command to apply the ACL to the EPON-OLT port.
7. In xPON-ONU interface mode, use the ip access-group acl
in [vport vport] command to apply the ACL to the xPON-ONU
interface.
END OF STEPS

Result

206

Traffic mirroring is configured successfully.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 12 QoS Configuration

Example

Mirror the traffic that matches ACL rule 10 received from port
gei_0/14/1 to port gei_0/14/2.
ZXAN(config)#acl standard number 10
ZXAN(config-std-acl)#rule 1 permit 168.2.5.5
ZXAN(config-std-acl)#rule 2 permit any
ZXAN(config-std-acl)#exit
ZXAN(config)#traffic-mirror in 10 rule-id 1 interface gei_0/14/2
ZXAN(config)#interface gei_0/14/1
ZXAN(config-if)#ip access-group 10 in

Configuring Redirection
Short Description
Prerequisites

Context

Perform this procedure to configure redirection.


Before this operation, make sure that:

The network devices and lines are normal.

The port for redirection works normally.

Redirection modifies the egress direction of packets according to


traffic classification. The direction may be modified to a specified
port, CPU, or next-hop IP address.
To configure redirection, perform the following steps:

Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the acl command to configure the ACL.
3. Use the rule command to configure the ACL rules.
4. Use the redirect in command to redirect the traffic that
matches the ACL rules.
5. In Ethernet interface mode, use the ip access-group acl in
command to apply the ACL to the uplink port.
6. In EPON-OLT interface mode, use the ip access-group acl in
command to apply the ACL to the EPON-OLT port.
7. In xPON-ONU interface mode, use the ip access-group acl
in [vport vport] command to apply the ACL to the xPON-ONU
interface.
END OF STEPS

Result
Example

Redirection is configured successfully.


Redirect the packets whose source IP address is 168.2.5.5 from
port gei_0/14/4 to port gei_0/14/3. Configure policy routing on
the packets whose destination IP address is 166.100.5.6. Specify
the next-hop IP address 166.88.96.56.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#acl extend number 100
ZXAN(config-ext-acl)#rule 1 permit ip 168.2.5.5 0.0.0.0 any
ZXAN(config-ext-acl)#rule 2 permit ip any 66.100.5.6 0.0.0.0
ZXAN(config-ext-acl)#rule 3 permit ip any any
ZXAN(config-ext-acl)#exit
ZXAN(config)#redirect in 100 rule-id 1 interface gei_0/14/3
ZXAN(config)#redirect in 100 rule-id 2 next-hop 166.88.96.56
ZXAN(config)#interface gei_0/14/4
ZXAN(config-if)#ip access-group 100 in

Confidential and Proprietary Information of ZTE CORPORATION

207

ZXA10 C220 Configuration Manual (CLI)

Configuring Traffic Statistics


Short Description
Prerequisites

Context

Perform this procedure to configure traffic statistics.


Before this operation, make sure that:

The network devices and lines are normal.

The port for traffic statistics works normally.

Traffic statistics is used to collect statistics on the packets of specific service flows. It counts quality and bytes of the packets arrived at the ingress port.
To configure traffic statistics, perform the following steps:

Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the acl command to configure the ACL.
3. Use the rule command to configure the ACL rules.
4. Use the traffic-statistics in command to collect statistics on
the traffic that matches the ACL rules.
5. In Ethernet interface mode, use the ip access-group acl in
command to apply the ACL to the uplink port.
6. In EPON-OLT interface mode, use the ip access-group acl in
command to apply the ACL to the EPON-OLT port.
7. In xPON-ONU interface mode, use the ip access-group acl
in [vport vport] command to apply the ACL to the xPON-ONU
interface.
8. Use the show traffic-statistics command to view the traffic
statistics information.
9. In privilege mode, use the clear traffic-statistics command
to clear traffic statistics.
END OF STEPS

Result
Example

Traffic statistics is configured successfully.


Collect statistics on the traffic that matches ACL rule 300 received
on ports gei_0/14/2 and epon-onu_0/6/4:1.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#acl hybrid number 300
ZXAN(config-hybd-acl)#rule 1 permit any 168.2.5.5 0.0.0.0 any any
ZXAN(config-hybd-acl)#rule 2 permit any 67.100.88.0 0.0.0.255 any any
ZXAN(config-hybd-acl)#rule 3 permit any any any any
ZXAN(config-ext-acl)#exit
ZXAN(config)#traffic-statistics in 300 rule-id 1 pkt-type
all statistics-type byte
ZXAN(config)#traffic-statistics in 300 rule-id 2 pkt-type
all statistics-type packet
ZXAN(config)#interface gei_0/14/2
ZXAN(config-if)#ip access-group 300 in
ZXAN(config-if)#exit
ZXAN(config)#interface epon-onu_0/6/4:1
ZXAN(config-if)#ip access-group 300 in

208

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 12 QoS Configuration

Configuring Traffic Shaping


Short Description
Prerequisites

Context

Perform this procedure to configure traffic shaping.


Before this operation, make sure that:

The network devices and lines are normal.

The uplink port works normally.

The OLT port works normally.

Traffic shaping controls the speed rate of the output packets so


that the packets are sent at a constant speed. Traffic shaping is
used to set the packet speed rate to match that of the receiving
device, to avoid congestion or packet discarding.
By default, the output traffic shaping function is disabled.
To configure traffic shaping, perform the following steps:

Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the qos traffic-shape command to configure traffic shaping on the uplink port.
3. In EPON-OLT interface mode, use the qos traffic-shape command to configure traffic shaping on the PON port.
END OF STEPS

Result
Example

Traffic shaping is configured successfully.


Configure traffic shaping on uplink port gei_0/14/1.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#interface gei_0/14/1
ZXAN(config-if)#qos traffic-shape rate-limit 1024 bucket-size 2048

Queue Scheduling
Configuration
Queue is the unit for packet scheduling on a physical port. Queue
scheduling ensures that the packets for key services are processed
in time when network congestion occurs.
Queue scheduling of the ZXA10 C220 has the following features:

The ZXA10 C220 supports eight queues and schedules the


queues according to the queue priorities. The queue with larger
queue ID has higher priority.

The mapping relations between the queues and the packet


802.1p priorities can be configured.

The queue depth can be configured.

The ZXA10 C220 supports three queue scheduling modes:

Confidential and Proprietary Information of ZTE CORPORATION

209

ZXA10 C220 Configuration Manual (CLI)

SP (default)

WRR

SP + WRR

Configuring Queue Scheduling


Short Description
Prerequisites

Context

Perform this procedure to configure queue scheduling.


Before this operation, make sure that:

The network devices and lines are normal.

The user has logged in to the ZXA10 C220 through HyperTerminal or Telnet.

Each physical port of the ZXA10 C220 supports eight (0 7) output queues, which are called CoS queues. The device performs
operations on the output queues on the entry port according to
the CoS queues corresponding to the packet 802.1p. When congestion occurs on the network, multiple packets may compete for
one resource. Queue scheduling can solve this problem.
The ZXA10 C220 supports three queue scheduling modes:

SP
Queue scheduling follows the priorities strictly. The packets of
the queue with higher priority are sent first. By default, this
mode is used.

WRR
The eight queues have weights from high to low (w7, w6, w5,
w4, w3, w2, w1, w0). The weight indicates the proportion of
obtaining resources. WRR implements round scheduling between queues to ensure that each queue has certain service
time.

SP+WRR
This mode is the combination of the previous modes. Some
queues use SP scheduling and some use WRR scheduling.
When the WRR value is specified to 0, the queue uses the SP
scheduling.

On the network side, the ZXA10 C220 supports three queue scheduling modes:

Fair-queue

SP

WRR

Note:
In fair-queue mode, each priority is scheduled fairly.
The ZXA10 C220 PON port supports three types of queue scheduling modes:

210

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 12 QoS Configuration

SP

WRR

SP+WRR

To configure queue scheduling, perform the following steps:


Steps

1. Use the configure terminal command to enter the global configuration mode.
2. In Ethernet mode, use the qos queue-mode command to configure the queue scheduling mode on the network-side port.

Note:
When the queue weight is 0, the queue scheduling mode is SP.
3. Use the qos-user-side queue-block-profile command to
create PON interface queue scheduling profiles.

Note:
The system supports five profiles. The default QoS queue block
profile is _DFT_QUEUE_BLOCK_PRF, which cannot be modified
or deleted. The user can create and configure the other four
profiles as required.
4. Use the queue-block command to configure the queue scheduling profile parameters of the PON port.

Note:
When the queue weight is 0, the queue scheduling mode is SP.
The queue depth of each default PON port is 48, which cannot
be configured arbitrarily.
5. In xPON-OLT interface mode, use the qos queue-block-pr
ofile command to apply the queue scheduling profile to the
specified OLT port.
END OF STEPS
Result
Example

Queue scheduling is configured successfully.


Configure SP queue scheduling on port gei_0/14/1.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#interface gei_0/14/1
ZXAN(config-if)#qos queue-mode strict-priority

Configure WRR queue scheduling on port epon-olt_0/5/1, with the


weights of 10, 10, 20, 20, 10, 10, 10, and 10 and the queue depth
of 48.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#qos-user-side queue-block-profile test

Confidential and Proprietary Information of ZTE CORPORATION

211

ZXA10 C220 Configuration Manual (CLI)

ZXAN(cfg-queue-prf)#queue-block queue0 10 48 queue1 10 48


queue2 20 48 queue3 20 48 queue4 10 48 queue5 10 48
queue6 10 48 queue7 10 48
ZXAN(cfg-queue-prf)#exit
ZXAN(config)#show qos-user-side queue-block-profile test
--------------------------------------------------------profile name
: TEST
profile detail :
queue-block ---- queue_number : 0
1
2
3
4
5
---- queue_weight : 10 10 20 20 10 10
---- queue_depth : 48 48 48 48 48 48
profile used by :
ZXAN(config)#interface epon-olt_0/5/1
ZXAN(config-if)#qos queue-block-profile test

6
10
48

7
10
48

Configuring Mapping Relations


Between Queues and 802.1p
Priorities
Short Description
Prerequisites

Context

Perform this procedure to configure the mapping relations between


queues and 802.1p priorities.
Before this operation, make sure that:

The network devices and lines are normal.

The user has logged in to the ZXA10 C220 through HyperTerminal or Telnet.

Table 38 lists the default mapping relations between queues and


802.1p priorities.
TABLE 38 MAPPING RELATIONS BETWEEN QUEUES

AND

802.1P PRIORITIES

Queue No.

802.1p
Priority

Drop
Precedence at
Network Side

Drop
Precedence
at User Side

To configure the mapping relations between queues and 802.1p


priorities, perform the following steps:
Steps

212

1. Use the configure terminal command to enter the global configuration mode.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 12 QoS Configuration

2. Use the qos-network-side cos-local-map command to configure the mapping table between the network-side 802.1p
user priorities and the local queues.
3. Use the qos-network-side cos-drop-map command to configure the mapping table between network-side 802.1p user
priorities and the local drop precedences.
4. Use the qos-network-side trust-cos enable command to
enable mapping between network-side 802.1p priorities and
queues.

Note:
If mapping is enabled, the incoming data are mapped from CoS
to queues according to the cos-local-map table.
5. Use the qos-user-side cos-queue-map-profile command to
create a mapping profile from 802.1p user priorities on the
user-side port to the local queues.

Note:
The system supports five mapping profiles. The default profile
name is _DFT_COS_QUEUE_MAP_PRF, which cannot be modified
or deleted. The user can create and configure the other four
mapping profiles as required.
6. Use the cos-queue-map command to configure the mapping
relations between the 802.1p user priorities to the local
queues.
7. In OLT interface mode, use the qos cos-queue-map-profile
command to apply the mapping profile on the OLT interface.
8. Use the show qos-network-side cos-local-map command
to view the mapping relations between the network-side port
802.1p priorities and queues.
9. Use the show qos-network-side cos-drop-map command
to view the mapping relations between the network-side port
802.1p user priorities to the local drop precedence.
10. Use the show qos-network-side trust-cos command to
view the mapping function on the network-side port
11. Use the show qos-user-side cos-queue-map-profile command to view the information on the mapping profile from the
user-side port 802.1p priorities to queues.
END OF STEPS
Result
Example

The mapping relations between queues and 802.1p priorities is


configured successfully.
Configure mapping relations on the network-side port.

802.1p priority 0 to queue 0

802.1p priority 1 to queue 2

Confidential and Proprietary Information of ZTE CORPORATION

213

ZXA10 C220 Configuration Manual (CLI)

Other priorities to queue 6

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#qos-network-side cos-local-map cos0 0 cos1 2 cos2 6 cos3 6
cos4 6 cos5 6 cos6 6 cos7 6
ZXAN(config)#qos-network-side trust-cos enable

Configure mapping relations on the user-side port epon-olt_0/5/1.

802.1p priority 0 to queue 0

802.1p priority 1 to queue 2

Other priorities to queue 6

Drop precedences: 0

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#qos-user-side cos-queue-map-profile test
ZXAN(cfg-cos2q-prf)#cos-queue-map cos0 0 0 cos1 2 0 cos2 6 0 cos3 6
0 cos4 6 0 cos5 6 0 cos6 6 0 cos7 6 0
ZXAN(cfg-cos2q-prf)#exit
ZXAN(config)#show qos-user-side cos-queue-map-profile test
--------------------------------------------------------profile name
: TEST
profile detail :
cos-queue-map ---- cos
: 0 1 2 3 4 5 6 7
---- queue : 0 2 6 6 6 6 6 6
---- drop : 0 0 0 0 0 0 0 0
profile used by :
ZXAN(config)#interface epon-olt_0/5/1
ZXAN(config-if)#qos cos-queue-map-profile test

Configuring DSCP Mapping


Short Description
Prerequisites

Context

Perform this procedure to configure the mapping relations between


the CoS (802.1p) priorities and DSCP priorities.
Before this operation, make sure that:

The network devices and lines are normal.

The user has logged in to the ZXA10 C220 through HyperTerminal or Telnet.

By default, the mapping relations between the CoS (802.1p) priorities and DSCP priorities are as follows:

214

The default values of the 64 DSCP (0 63) lists in qos-networkside conform-dscp are 0 63 respectively.

DSCP 0 7 correspond to CoS 0

DSCP 8 15 correspond to CoS 1

DSCP 16 23 correspond to CoS 2

DSCP 24 31 correspond to CoS 3

DSCP 32 39 correspond to CoS 4

DSCP 40 47 correspond to CoS 5

DSCP 48 55 correspond to CoS 6

DSCP 56 63 correspond to CoS 7

Default drop precedence: 0

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 12 QoS Configuration

By default, the value of qos-network-side trust-dscp is disable.

By default, the value of qos-user-side cos-dscp-map is:


CoS 0 7 correspond to DSCP 0, 8, 16, 24, 32, 40, 48, 56.

By default, the values of qos-user-side dscp-cos-map are as


follows:

DSCP 0 7 correspond to CoS 0.

DSCP 8 15 correspond to CoS 1.

DSCP 16 23 correspond to CoS 2.

DSCP 24 31 correspond to CoS 3.

DSCP 32 39 correspond to CoS 4.

DSCP 40 47 correspond to CoS 5.

DSCP 48 55 correspond to CoS 6.

DSCP 56 63 correspond to CoS 7.

To configure the mapping relations between the CoS (802.1p) priorities and DSCP priorities, perform the following steps:
Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the qos-network-side conform-dscp command to configure the service parameter table used by the network-side
port to allocate packets for indexes according to the DSCP
value.

Note:
This mapping table is used when trust-dscp is enabled on the
port.
3. Use the qos-network-side trust-dscp enable command to
enable DSCP mapping on the network-side port.
4. Use the qos-user-side cos-dscp-map command to configure
the mapping relations between the user-side port CoS (802.1p)
values and the DSCP values and modify the DSCP priority characters according to the 802.1p priority.

Note:
This mapping table is used when the DSCP mode is trust-cosmap on the port or virtual port.
5. Use the qos-user-side dscp-cos-map command to configure
the mapping relations between the user-side port DSCP values
and the CoS (802.1p) values and modify 802.1p priority characters according to the DSCP priority.

Confidential and Proprietary Information of ZTE CORPORATION

215

ZXA10 C220 Configuration Manual (CLI)

Note:
This mapping is used when the mode of CoS or CTAG-CoS is
trust-dscp-map on the port or virtual port.
6. Use the show qos-network-side conform-dscp command
to view the mapping relations between the network-side port
CoS (802.1p) priorities and DSCP priorities.
7. Use the show qos-network-side trust-dscp command to
view the DSCP mapping status on the network-side port.
8. Use the show qos-user-side cos-dscp-map command to
view the mapping relations between the user-side port CoS
(802.1p) values and DSCP values.
9. Use the show qos-user-side dscp-cos-map command to
view the mapping relation between the user-side port DSCP
values and CoS (802.1p) values.
END OF STEPS
Result
Example

DSCP Mapping is configured successfully.


Configure the priority mapping table on the network-side port:

DSCP of the received packet: 0

Modify the DSCP value to 61

CoS: 0

Drop precedence: 2

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#qos-network-side conform-dscp 0 61 0 2
ZXAN(config)#qos-network-side trust-dscp enable
ZXAN(config)#show qos-network-side conform-dscp
-------------------------------------------------------------------dscp list
0 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15
dscp value
61 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15
cos value
0 0 0 0 0 0 0 0 0 0 0
0
0
0
0
0
drop priority 2 0 0 0 0 0 0 0 0 0 0
0
0
0
0
0
-----------------------------------------------------------------dscp list
16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31
dscp value
16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31
cos value
0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
drop priority 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
--------------------------------------------------------------dscp list
32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47
dscp value
32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47
cos value
0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
drop priority 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
-------------------------------------------------------------dscp list
48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63
dscp value
48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63
cos value
0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
drop priority 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
ZXAN(config)#show qos-network-side trust-dscp
----------------------------------trust-dscp: Enable

216

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 12 QoS Configuration

Configuring Bridge Port QoS


Short Description
Prerequisites

Context

Perform this procedure to configure bridge port QoS.


Before this operation, make sure that:

The network devices and lines are normal.

The xPON service is configured.

The user has logged in to the ZXA10 C220 through HyperTerminal or Telnet.

By default, the system uses the default QoS profile _DFT_VIRTUAL_PORT_PRF on all the bridge ports. The detailed parameters
are as follows:
ZXAN(config)#show qos-user-side virtual-port-profile
_DFT_VIRTUAL_PORT_PRF
------------------------------------------------------profile name
: _DFT_VIRTUAL_PORT_PRF
profile detail :
cos-filter
---- : disable
def-scos
---- : 0
cos-remark-profile
---- : _DFT_COS_REMARK_PRF
ingress-cos-set-mode ---- : trust
egress-cos-set-mode
---- : trust
ingress-dscp-set-mode ---- : trust
profile used by :

To configure bridge port QoS, perform the following steps:


Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the qos-user-side virtual-port-profile command to create a bridge port QoS profile.

Note:
The system supports five profiles. The system default profile is _DFT_VIRTUAL_PORT_PRF, which cannot be modified or
deleted. The user can create and configure the other four mapping profiles as required.
3. Use the def-scos command to configure the default CoS value.
4. Use the cos-filter command to configure CoS priority filtering.
When this function is enabled and the CoS value in the ingress
packet is inconsistent with the default CoS value of the virtual
port, this packet is discarded.
5. Use the ingress-cos-set-mode command to configure the
upstream CoS priority setting mode on the PON port.

Confidential and Proprietary Information of ZTE CORPORATION

217

ZXA10 C220 Configuration Manual (CLI)

Note:
The CoS priority setting modes include the following:

trust: Keep the CoS value of the upstream data stream the
same.
scos-override: Change the CoS field of the external tag
according to the def-scos value.
scos-remark: Change the CoS field of the external tag according to the CoS remark profile.
ccos-scos-remark: Change the CoS field of both the external and internal tags according to the CoS remark profile.

6. Use the egress-cos-set-mode command to configure the


downstream CoS priority setting mode on the PON port.

Note:

trust: Set the CoS field according to the CoS value of the
ingress packet.
trust-dscp-map: Implement mapping according to the
mapping table from the DSCP values to the CoS (802.1p)
values.
remark: Change the CoS field according to the CoS remark
profile.

7. Use the ingress-dscp-set-mode command to configure the


upstream DSCP value setting mode on the PON port.

Note:
The DSCP value setting modes include the following:

trust: Keep the DSCP value of the upstream data stream


the same.
trust-cos-map: Implement mapping according to the mapping table from the CoS (802.1p) values to the DSCP values.

8. Use the cos-remark-profile command to configure the CoS


remark profile correlated to the virtual port.
Before carrying out this command, use the qos-user-side
cos-remark-profile command in global configuration mode
to create the CoS remark profile.
ZXAN(config)#qos-user-side cos-remark-profile test
ZXAN(cfg-cos-remark-prf)#cos-remark cos0 2
cos1 6 cos2 7 cos3 3 cos4 4 cos5 5
cos6 0 cos7 1
ZXAN(cfg-cos-remark-prf)#exit

By default, all the virtual ports is correlated to CoS profile


_DFT_COS_REMA RK_PRF.

218

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 12 QoS Configuration

9. Use the interface command to enter the xPON-ONU interface


mode.
10. Use the qos virtual-port-profile command to use the bridge
port QoS profile.
11. Use the show qos-user-side virtual-port-profile command
to view the QoS profile configuration on the bridge port.
END OF STEPS
Result
Example

Bridge port QoS is configured.


Create bridge port QoS profile: test.

Default bridge port CoS value: 2

Upstream CoS value mode: override

Apply the profile to VPORT1 of port epon-onu_0/5/1:1

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#qos-user-side virtual-port-profile test
ZXAN(cfg-qos-vport-prf)#def-scos 2
ZXAN(cfg-qos-vport-prf)#ingress-cos-set-mode override
ZXAN(cfg-qos-vport-prf)#exit
ZXAN(config)#show qos-user-side virtual-port-profile test
--------------------------------------------------------profile name
: TEST
profile detail :
cos-filter
---- : disable
def-scos
---- : 2
cos-remark-profile
---- : _DFT_COS_REMARK_PRF
ingress-cos-set-mode ---- : scos-override
egress-cos-set-mode
---- : trust
ingress-dscp-set-mode ---- : trust
profile used by :
ZXAN(config)#interface epon-onu_0/5/1:1
ZXAN(config-if)#qos virtual-port-profile test vport 1
ZXAN(config-if)#exit

Confidential and Proprietary Information of ZTE CORPORATION

219

ZXA10 C220 Configuration Manual (CLI)

This page is intentionally blank.

220

Confidential and Proprietary Information of ZTE CORPORATION

Chapter

13

Security Management
Configuration
Table of Contents
User Port Location Configuration ........................................ 221
Configuring Control Panel Security ..................................... 225

User Port Location


Configuration
This section includes the following:

Overview

Configuring DHCP option 82

Configuring PPPoE+

Overview
The ZXA10 C220 provides the port location mechanism to improve
network security and prevent user accounts from being stolen.
Port location can be implemented by the following methods:

DHCP Option 82

PPPoE+

Configuring DHCP Option 82


Short Description
Prerequisites

Perform this procedure to configure DHCP Option 82.


Before this operation, make sure that:

The network devices and lines are normal.

All the cards work normally.

The xPON service and VLAN are configured.

Confidential and Proprietary Information of ZTE CORPORATION

221

ZXA10 C220 Configuration Manual (CLI)

Context

The user has logged in to the ZXA10 C220 through HyperTerminal or Telnet.

The Option 82 field includes CID (Circuit ID), RID (Remote


ID), and sub-option90 (optional), and provides the information, such as the shelf number, slot number, port number, VPI,
and VCI.

Only when DHCP Option 82 is enabled, the Option 82 field can


be added/stripped to/from the DHCP packets.

When DHCP Option 82 is disabled, the system transparently


transmits or directly forwards the DHCP packets without any
processing.

To configure DHCP Option 82, perform the following steps:


Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the dhcp-option82 enable command to enable global
DHCP Option 82.
3. Use the port-location access-node-identifier command to
configure access node ID in the user ID.
4. Use the port-location hostname command to configure the
host name for port location.
This command is mandatory when port-location access-no
de-identifier is set to the host name.
5. Use the interface command to enter the xPON-ONU interface
mode.
6. Use the port-location format command to configure the
Agent Circuit ID format.
7. Use the port-location sub-option remote-id command to
enable or disable the DHCP Option 82 Remote ID field.
8. Use the port-location sub-option remote-id name command to configure the remote ID of port DHCP Option 82.
9. Use the dhcp-option82 enable command to enable the port
DHCP Option 82 function.
10. Use the dhcp-option82 trust command to configure the port
to trust/untrust port and configure the processing policy.

Note:
If it is a Trust port, the user can select the Keep or Replace
policy. If it is a Untrust port, the user can select the Discard
or Add policy.

keep Keep Option 82 of the DHCP request packet.

replace Replace Option 82 of the DHCP request packet.

discard Discard the DHCP request packet with Option 82.

add Add an option to the DHCP request packet with Option


82.

11. Use the show port-location global command to view the


global configuration of port location.

222

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 13 Security Management Configuration

12. Use the show port-location port command to view the portlevel configuration of port location.
13. Use the show dhcp-option82 global command to view the
global configuration of DHCP Option 82.
14. Use the show dhcp-option82 port command to view the
port-level configuration of DHCP Option 82.
END OF STEPS
Result
Example

DHCP Option 82 is configured successfully.


Enable the DHCP Option 82 function.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#dhcp-option82 enable
ZXAN(config)#port-location access-node-identifier inband-mac
ZXAN(config)#interface epon-onu_0/5/1:1
ZXAN(config-if)#port-location format china-telecom vport 1
ZXAN(config-if)#port-location sub-option remote-id enable vport 1
ZXAN(config-if)#port-location sub-option remote-id name ZTE123 vport 1
ZXAN(config-if)#dhcp-option82 enable vport 1
ZXAN(config-if)#dhcp-option82 trust true keep vport 1
ZXAN(config-if)#exit
ZXAN(config)#show port-location global
identifier : inband-mac
rackno
: 0
frameno
: 0
hostname : ZXAN
ZZXAN(config)#show port-location port epon-onu_0/5/1:1 vport 1
Onu
Vport CircuitId Format RemoteId status RemoteId name
epon-onu_0/5/1:1
1 china-telecom
enable
ZTE123
ZXAN(config)#show dhcp-option82 global
option82 status : enable
ZXAN(config)#show dhcp-option82 port epon-onu_0/5/1:1 vport 1
Onu
Vport Option82 status
Trust
Policy
epon-onu_0/5/1:1
1
enable
true
keep

Configuring PPPoE+
Short Description
Prerequisites

Context

Perform this procedure to configure PPPoE+.


Before this operation, make sure that:

The network devices and lines are normal.

All the cards work normally.

The xPON service and VLAN are configured.

The user has logged in to the ZXA10 C220 through HyperTerminal or Telnet.

When users access the Internet in PPPoE+ mode, the system uses
PPPoE+ Intermediate Agent to locate port. The system carries the
user information in the PPPoE+ discovery packets to report to the
BRAS for user authentication, and thus binding the user account
and circuit.
To configure PPPoE+, perform the following steps:

Steps

1. Use the configure terminal command to enter the global configuration mode.

Confidential and Proprietary Information of ZTE CORPORATION

223

ZXA10 C220 Configuration Manual (CLI)

2. Use the pppoe-plus enable command to enable the global


PPPoE+ functions
3. Use the port-location access-node-identifier command to
configure access node ID in the user ID.
4. Use the port-location hostname command to configure the
host name for port location.
This command is mandatory when port-location access-no
de-identifier is set to the host name.
5. Use the interface command to enter the xPON-ONU interface
mode.
6. Use the port-location format command to configure the
Agent Circuit ID format.
7. Use the port-location sub-option remote-id command to
enable or disable the DHCP Option 82 Remote ID field.
8. Use the port-location sub-option remote-id name command to configure the port remote ID name.
9. Use the pppoe-plus enable command to enable the port PPPoE+ function.
10. Use the pppoe-plus trust command to configure the port to
trust/untrust port and configure the processing policy.

Note:
If it is a Trust port, the user can select the Keep or Replace
policy. If it is a Untrust port, the user can select the Discard
or Add policy.

keep Keep Option 105 of the PPPoE upstream packet.

replace Replace Option 105 of the PPPoE upstream packet.

discard Discard the PPPoE upstream packet with Option


105.
add Add an Option 105 to the PPPoE upstream packet after
the original Option 105.

By default, the port is a Untrust port and the processing policy


is Add.
11. Use the show port-location global command to view the
global configuration of port location.
12. Use the show port-location port command to view the portlevel configuration of port location.
13. Use the show pppoe-plus global command to view the global
configuration of PPPoE+.
14. Use the show pppoe-plus port command to view the portlevel configuration of PPPoE+.
END OF STEPS
Result

224

PPPoE+ is configured successfully.

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 13 Security Management Configuration

Example

Enable the PPPoE+ function.


ZXAN(config)#pppoe-plus enable
ZXAN(config)#port-location access-node-identifier inband-mac
ZXAN(config)#interface epon-onu_0/5/1:1
ZXAN(config-if)#port-location format china-telecom vport 1
ZXAN(config-if)#port-location sub-option remote-id enable vport 1
ZXAN(config-if)#port-location sub-option remote-id name ZTE123 vport 1
ZXAN(config-if)#pppoe-plus enable vport 1
ZXAN(config-if)#exit
ZZXAN(config)#show port-location global
identifier : inband-mac
rackno
: 0
frameno
: 0
hostname : ZXAN
ZXAN(config)#show port-location port epon-onu_0/5/1:1 vport 1
Onu
Vport CircuitId Format RemoteId status RemoteId name
epon-onu_0/5/1:1 1
china-telecom
enable
ZTE123
ZXAN(config)#show pppoe-plus global
pppoe-plus status : enable
ZXAN(config)#show pppoe-plus port epon-onu_0/5/1:1 vport 1
Onu
Vport
Pppoe-plus status
Trust
Policy
epon-onu_0/5/1:1
1
enable
false
add

Configuring Control Panel


Security
Short Description
Overview

Perform this procedure to configure control panel security.


The control panel security module is used to protect the NE services when the NE is attacked by DOS. DOS attack refers to that
the network sends big traffic of packets, which makes the NE too
busy to respond.
There are two types of traffic:

Out-of-band traffic
For out-of-band traffic, the system limits the speed, controlling the total CPU packet ratio and some protocol packet ratio
coming from the external band.

In-band traffic
For in-band traffic, besides limiting the speed, the system uses
the Anti-DOS module to record the packet MAC address and
directly drop the packets whose ratio exceeds the threshold.

Context
Steps

To configure control panel security, perform the following steps:


1. Use the configure terminal command to enter the global configuration mode.
2. Use the control-panel command to enter the security control
configuration mode.
3. Use the anti-dos command to enable or disable anti-DOS attack.
4. Use the anti-dos limit-num command to set the limit of the
anti-DOS black list.
When the system detects that the user packets (identified by
MAC addresses) sent to the main control card exceed five times

Confidential and Proprietary Information of ZTE CORPORATION

225

ZXA10 C220 Configuration Manual (CLI)

of the threshold, the system considers itself to be attacked


and adds the MAC address to the black list. By default, the
threshold is 100 pps.
5. Use the anti-dos drop command to enable or disable anti-DOS
packet drop.
When this function is enabled and a MAC address is added to
a black list, the system discards the packet from this MAC address.
6. Use the anti-dos drv-limit command to configure drive limit.
7. Use the anti-dos blocking-time command to configure the
anti-DOS polling time.
8. Use the packet-limit command to set speed limit of the specific type of packets.
The
ZXA10
C220
supports
speed
limit
of
the
ARP/BPDU/DHCP/ICMP/IGMP/PPPoE/SNMP/VBAS
packets.
The unit is pps. When the parameter is all, the total drive
speed on the CPU entrance is limited.
9. Use the cpu queue command to configure the CPU entry list
limit.
10. Use the show control-panel anti-dos black-table command
to view the black list information.
11. Use the show control-panel packet-limit statistics command to view statistics information of the specified packets.
Result
Example

Control panel security is configured successfully.


Configure control panel security.

Anti-DOS polling time: 300 seconds

Anti-DOS black list limit: 20 pps

ARP packet limit: 10 pps

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#control-panel
ZXAN(control-panel)#anti-dos enable
ZXAN(control-panel)#anti-dos limit-num 20
ZXAN(control-panel)#anti-dos drop enable
ZXAN(control-panel)#anti-dos drv-limit enable
ZXAN(control-panel)#anti-dos blocking-time 300
ZXAN(control-panel)#packet-limit arp 10

226

Confidential and Proprietary Information of ZTE CORPORATION

Chapter

14

IP User Access
Management
Table of Contents
Configuring MFF .............................................................. 227
Configuring ARP Anti-Spoofing .......................................... 229

Configuring MFF
Short Description
Overview

Perform this procedure to configure MFF.


In traditional Ethernet network topology, VLAN is used on switch
to separate the hosts on layer-2 and enable the communication
between layer-3 hosts. However, when the number of hosts increases, the number of VLANs used also increases. Also, it is
required to assign different IP segments to each VLAN for communication on layer-3, so the IP address distribution efficiency
decreases.
To increase the efficiency, MFF provides the solution to realize
layer-2 and layer-3 communication between the hosts within a
broadcast domain.
MFF captures ARP request message from Host, through ARP proxy
and the ARP response message is sent back with gateway MAC address. Using this, all streams (with a subnet) are routed through
gateway, so that the gateway can supervise the stream. As a result, a more secured network is ensured.

MFF Principle

Figure 47 shows the MFF principle.

Confidential and Proprietary Information of ZTE CORPORATION

227

ZXA10 C220 Configuration Manual (CLI)

FIGURE 47 MFF PRINCIPLE

Switch A and Switch B, as Ethernet access nodes, provide the connection between the client host and convergence node Switch C.
The MFF function is configured at the Ethernet access node to enable the data packets on the client to interwork and to be forwarded through the gateway, which realizes the layer-3 interworking between clients and guarantees the isolation between layer-2
data.
Host A finds that the MAC address of Host B is also the gateway
MAC address. This ensures that even though Host A and Host
B are in the same network segment and the same VLAN, their
exchange must be implemented through the gateway and thus
layer-2 isolation is achieved.
To configure MFF, perform the following steps.
Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the ip-service mac-forced-forwarding command to enable the MFF function.
3. Use the ip-service mac-forced-forwarding vlan command
to enable the IP/MAC address of the MFF gateway in a VLAN.

Note:
At present, the system supports the MEF gateway data configuration of up to eight VLANs.
4. Use the show ip-service mac-forced-forwarding command
to view the global MFF status.
5. Use the show ip-service gateway command to display the
gateway information on each VLAN of MFF.
Result
Example

MFF is configured successfully.


Configure and view MFF.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#ip-service mac-forced-forwarding enable
ZXAN(config)#ip-service mac-forced-forwarding vlan 217
gateway 217.1.1.254
ZXAN(config)#show ip-service mac-forced-forwarding

228

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 14 IP User Access Management

Mac-Forced Forwarding status:Enabled.


ZXAN(config)#show ip-service gateway
Vlan Gateway IP
Gateway MAC
Type
-------------------------------------------------------217
217.1.1.254
0000.0000.0000
invalid

Configuring ARP
Anti-Spoofing
Short Description
Overview

Perform this procedure to configure ARP anti-spoofing.


The ARP anti-spoofing function at the user side is based on the ARP
entries inserted by the DHCP module and the ARP entries of the
fixed user configured by the IP access user management module.
Its principle is as follows:
Compare with the known ARP entries. If the source IP address of
the received ARP packet and the VLAN exist in the ARP table, the
system checks whether the MAC addresses are the same. If they
are different, the system considers the packet as an ARP spoofing
behavior and discards it.
The ARP anti-spoofing function at the network side is based on
the gateway MAC address of the VLAN configured statically by the
operation personnel.

Context

The ARP anti-spoofing function can be configured with up to eight


VLANs. The VLANs use the same VLAN data structure as those
used by the MFF function.
To configure ARP anti-spoofing, perform the following steps:

Steps

1. Use the ip-service arp-anti-spoofing command to enable or


disable ARP anti-spoofing.
2. Use the ip-service arp-anti-spoofing vlan command to configure ARP anti-spoofing in the specified VLAN.
3. Use the show ip-service arp command to show the ARP mapping table information.
4. Use the show ip-service arp-anti-spoofing command to
show the related configuration on ARP anti-spoofing.

Result
Example

ARP anti-spoofing is configured successfully.


Configure and show the ARP anti-spoofing information.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#ip-service arp-anti-spoofing enable
ZXAN(config)#ip-service arp-anti-spoofing vlan 217
direction uplink-port
ZXAN(config)#show ip-service arp-anti-spoofing
Arp Anti-Spoofing status:Enabled.
vlan
direction
---------------------217
uplink-port

Confidential and Proprietary Information of ZTE CORPORATION

229

ZXA10 C220 Configuration Manual (CLI)

This page is intentionally blank.

230

Confidential and Proprietary Information of ZTE CORPORATION

Chapter

15

System Security
Configuration
Table of Contents
Overview........................................................................ 231
Configuring SSH .............................................................. 231
Configuring TACACS+ ...................................................... 233
Configuring RADIUS......................................................... 234
Configuring Management ACL............................................ 235

Overview
Service
Description

The system security configuration protects the system from illegal


packet attacking from either network side or user side.

Service
Specifications

The ZXA10 C220 supports the following system security features:

SSH

TACACS+

RADIUS authentication

Management ACL

Configuring SSH
Short Description
Prerequisites

Context

Perform this procedure to configure SSH.


Before this operation, make sure that:

The network devices and lines are normal.

The ZXA10 C220 device runs normally.

SSH can replace Telnet to implement secure remote login. The


user can use SSH to encrypt data during transmission to prevent
attack. In addition, the data transmitted through SSH are compressed, which enhances the transmission speed. When the SSH
client communicates with the server, the user name and password
are encrypted for security purposes.
The ZXA10 C220 works as the SSH server.

Confidential and Proprietary Information of ZTE CORPORATION

231

ZXA10 C220 Configuration Manual (CLI)

To configure SSH, perform the following steps:


Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the ssh server enable command to enable the SSH function.
3. Use the ssh server version command to configure the SSH
version.
4. Use the ssh server generate-key command to generate the
RSA key.

Note:
If the protocol version is v2, the client and the server interworks with each other to generate the key automatically and
the user can skip this command.
5. Use the ssh server authentication mode command to configure the SSH authentication mode.
6. Use the ssh server authentication type command to configure the SSH authentication type.

Note:
If the authentication mode is local, the user can skip this command.
7. Use the ssh server authentication ispgroup command to
configure the SSH authentication RADIUS group.

Note:
If the authentication mode is local, the user can skip this command.
8. Use the radius authentication-group command to create a
RADIUS server group.
9. Use the server command to configure the IP address and parameters of the RADIUS server.
10. Use the ssh server only command to permit the SSH only.
11. Use the show ssh command to view the SSH configuration.
END OF STEPS
Result
Example

232

SSH is configured.
Configure SSH:

SSH version: 2

Authentication mode: RADIUS

Authentication type: PAP

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 15 System Security Configuration

SSH only: Enable

RADIUS server: 192.168.1.1

RADIUS key: zte

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#ssh server enable
ZXAN(config)#ssh server only
ZXAN(config)#ssh server authentication mode radius
ZXAN(config)#ssh server authentication type pap
ZXAN(config)#ssh server version 2
ZXAN(config)#ssh server authentication ispgroup 2
ZXAN(config)#radius authentication-group 2
ZXAN(config-authgrp-2)#server 1 192.168.1.1 key zte
ZXAN(config-authgrp-2)#exit
ZXAN(config)#show ssh
SSH configuration:
SSH enable-flag configuration : enable
SSH version
: ver2.0
SSH only configuration
: enable
SSH init server key
: disable
SSH auth radius isp-groupid
: 2
SSH auth mode
: radius
SSH auth type
: pap

Configuring TACACS+
Short Description
Prerequisites

Context

Perform this procedure to configure TACACS+.


Before this operation, make sure that:

The network devices and lines are normal.

The ZXA10 C220 device runs normally.

TACACS+ provides the access control service for routers, network


access servers, and other network processing devices through one
or multiple central servers. TACACS+ supports independent AAA
functions, allowing different TACACS+ security servers to work as
the authentication, authorization, and accounting servers.
TACACS+ and RADIUS are widely used at present. TACACS+ uses
TCP while RADIUS uses UDP. TACACS has three versions. The third
version TACACS+ is incompatible with the previous two versions.
TACACS allows the client to have its own user name and password and send the query request to the TACACS authentication
server (also known as TACACS Daemon or TACACSD). Generally,
this server runs on the host. The host returns a permit/deny
packet to respond to the request, and then determines whether
TIP is permitted. This process is Opened Up, and the related algorithm and data are determined by the TACACS server. In addition,
the TACACS extended protocol supports more authentication requests and response codes.
To configure TACACS+, perform the following steps:

Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the login-authorization-type command to configure the
login authentication mode.

Confidential and Proprietary Information of ZTE CORPORATION

233

ZXA10 C220 Configuration Manual (CLI)

3. Use the login-authentication-type configure the login authentication type.


4. Use the ssh server authentication mode command to configure the SSH server authentication mode.
5. Use the tacacs-server host command to configure the
TACACS+.
6. Use the aaa group-server tacacs+ command to create an
AAA server group.
7. Use the server command to configure the IP address of the
server group.
8. Use the aaa authorization exec default command to configure the authorization information.
9. Use the aaa authentication login default command to configure the authentication information.
10. Use the aaa accounting commands command to configure
the accounting information.
END OF STEPS
Result
Example

TACACS+ is configured successfully.


Configure the TACACS+ function on the ZXA10 C220. Set the IP
address of the TACACS+ server to 10.63.79.79.
ZXAN(config)#login-authorization-type tacacs+
ZXAN(config)#login-authentication-type tacacs+
ZXAN(config)#ssh server authentication mode tacacs+
ZXAN(config)#tacacs-server host 10.63.79.79
ZXAN(config)#aaa group-server tacacs+ zte
ZXAN(config-sg)#server 10.63.79.79
ZXAN(config-sg)#exit
ZXAN(config)#aaa authorization exec default group zte
ZXAN(config)#aaa authentication login default group zte
ZXAN(config)#aaa accounting commands 10 default stop-only group zte
ZXAN(config)#exit
ZXAN#write

Configuring RADIUS
Short Description
Prerequisites

Context

Perform this procedure to configure RADIUS.


Before this operation, make sure that:

The network devices and lines are normal.

The ZXA10 C220 device runs normally.

RADIUS is a standard AAA protocol. AAA can authenticate the


users who access the route switch, preventing illegal users, and
thus improving the device security.
To configure RADIUS, perform the following steps:

Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the radius authentication-group command to configure
the RADIUS authentication group.

234

Confidential and Proprietary Information of ZTE CORPORATION

Chapter 15 System Security Configuration

3. Use the server command to configure the RADIUS server.


4. Use the algorithm command to configure the RADIUS algorithm.
5. Use the timeout command to configure the RADIUS timeout
time.
6. Use the deadtime command to configure the RADIUS invalid
time.
7. Use the max-retries command to configure the RADIUS maximum retry times.
END OF STEPS
Result
Example

RADIUS is configured successfully.


Configure RADIUS:

Authentication group: 1

Server IP address: 10.61.225.14

Key: zte

ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#radius authentication-group 1
ZXAN(config-authgrp-1)#server 1 10.61.225.14 key zte
ZXAN(config-authgrp-1)#timeout 120
ZXAN(config-authgrp-1)#algorithm round-robin
ZXAN(config-authgrp-1)#deadtime 60
ZXAN(config-authgrp-1)#max-retries 3

Configuring Management
ACL
Short Description
Prerequisites

Context

Perform this procedure to configure management ACL.


Before this operation, make sure that:

The network devices and lines are normal.

The uplink port status is normal.

In the actual networking, the device is generally configured with


an in-band NM IP address and is connected to the public network
or maintenance dedicated network through the uplink port. All the
users in the network can access the device. For security purposes,
only a few users have the right to configure the device. In this
case, the ACL function is used.
Management ACL is used to control the external devices to access
the device, that is, control the source IP addresses of the received
IP packets.
When ACL is enabled on the device, the IP packets whose resource
IP addresses cannot be found in the ACL table are discarded. In
addition, the device does not respond to the ARP request packet
and ICMP packet from these source IP addresses. This enhances
system security.

Confidential and Proprietary Information of ZTE CORPORATION

235

ZXA10 C220 Configuration Manual (CLI)

To configure the management ACL, perform the following steps:


Steps

1. Use the configure terminal command to enter the global configuration mode.
2. Use the acl standard command to configure the standard ACL.
3. Use the rule command to configure the ACL rules.
4. Use the line telnet access-class command to apply the ACL
to the Telnet access.
5. Use the snmp-server access-list command to apply the ACL
to SNMP access.
6. Use the show acl command to view the ACL rule configuration
information.
END OF STEPS

Result
Example

Management ACL is configured successfully.


Configure the management ACL, permitting the devices whose
IP addresses are in the network segment 192.168.1.0/24 to
access the device, but deny the device whose IP address is
192.168.1.100.
ZXAN#configure terminal
Enter configuration commands, one per line. End with CTRL/Z.
ZXAN(config)#acl standard number 10
ZXAN(config-std-acl)#rule 1 deny 192.168.1.100 0.0.0.0
ZXAN(config-std-acl)#rule 2 permit 192.168.1.0 0.0.0.255
ZXAN(config-std-acl)#exit
ZXAN(config)#line telnet access-class 10

236

Confidential and Proprietary Information of ZTE CORPORATION

Figures

Figure 1 CONNECTION DESCRIPTION Dialog Box .................... 2


Figure 2 Connect To Dialog box ............................................ 2
Figure 3 COM1 PROPERTIES Dialog Box ................................. 3
Figure 4 HYPERTERMINAL Window ........................................ 3
Figure 5 Run Dialog Box ...................................................... 4
Figure 6 Telnet Window ....................................................... 4
Figure 7 NetNumenN31 Unified Management System Window... 5
Figure 8 In-Band NM Networking Diagram ............................. 6
Figure 9 In-Band NM Configuration Flow ................................ 7
Figure 10 Out-Of-Band NM Networking Diagram ..................... 9
Figure 11 Out-of-Band NM Configuration Flow .......................10
Figure 12 EPON Access Service Networking Diagram ..............20
Figure 13 EPON Access Service Configuration Flow .................22
Figure 14 10G EPON Access Service Networking Diagram........46
Figure 15 10G EPON Access Service Configuration Flow ..........48
Figure 16 EPON Protection Service Networking Diagram..........51
Figure 17 EPON Service Protection Configuration Flow ............53
Figure 18 GPON Access Service Networking Diagram ..............58
Figure 19 GPON Access Service Configuration Flow ................59
Figure 20 GPON Protection Service Networking Diagram .........74
Figure 21 GPON Service Protection Configuration Flow ............75
Figure 22 IGMP Snooping Multicast Service Networking
Diagram (EPON) ................................................80
Figure 23 IGMP Snooping Multicast Service Configuration
Flow (EPON) .....................................................81
Figure 24 IGMP Snooping Multicast Service Networking
Diagram (GPON) ...............................................85
Figure 25 IGMP Snooping Multicast Service Configuration
Flow (GPON) .....................................................86
Figure 26 MAPPING FROM IP MULTICAST ADDRESS TO MAC
ADDRESS .........................................................89
Figure 27 VoIP Service Networking Diagram ........................ 106
Figure 28 VoIP Service Configuration Flow .......................... 107
Figure 29 VoIP Service Networking Diagram (SIP)................ 113

Confidential and Proprietary Information of ZTE CORPORATION

237

ZXA10 C220 Configuration Manual (CLI)

Figure 30 Configuration Flow of the VoIP Service (SIP) ......... 114


Figure 31 VoIP Service Networking Diagram (H.248) ............ 117
Figure 32 Configuration Flow of the VoIP Service (H.248)...... 119
Figure 33 F660 Local Configuration .................................... 122
Figure 34 CES MEF8 Service Networking Diagram (EPON) ..... 124
Figure 35 CES MEF8 Service Configuration Flow (EPON)........ 126
Figure 36 CES PWE3 service networking diagram ................. 131
Figure 37 CES PWE3 service configuration flow .................... 133
Figure 38 CES Dedicated Line Service Networking Diagram
(EPON)........................................................... 138
Figure 39 CES Dedicated Line Service Configuration Flow
(EPON)........................................................... 140
Figure 40 CES MEF8 Service Networking Diagram (GPON)..... 145
Figure 41 CES MEF8 Service Configuration Flow (GPON) ....... 147
Figure 42 CES Dedicated Line Service Networking Diagram
(GPON) .......................................................... 152
Figure 43 CES Dedicated Line Service Configuration Flow
(GPON) .......................................................... 154
Figure 44 System Clock Configuration Networking Diagram ... 163
Figure 45 Smart QinQ Configuration Flow............................ 171
Figure 46 DHCP Relay Networking...................................... 188
Figure 47 MFF Principle .................................................... 228

238

Confidential and Proprietary Information of ZTE CORPORATION

Tables

Table 1 In-Band NM Data Scheme ......................................... 6


Table 2 Out-Of-Band NM Data Scheme .................................10
Table 3 EPON Access Service Data Scheme ...........................21
Table 4 Parameters for Configuring the ONU Bandwidth ..........26
Table 5 ONU Bandwidth Configuration Data ...........................27
Table 6 Default Bandwidth Profile Parameters ........................28
Table 7 ONU Bandwidth Profile Configuration Data .................29
Table 8 VLAN Modes...........................................................32
Table 9 9806H ADSL Access Service Configuration Data ..........37
Table 10 10G EPON Access Service Data Scheme ...................46
Table 11 EPON Protection Service Data Scheme .....................53
Table 12 GPON Access Service Data Scheme .........................59
Table 13 ONU Phase State ..................................................64
Table 14 RELATIONSHIP BETWEEN UPSTREAM BANDWIDTH
AND T-CONT BANDWIDTH ..................................66
Table 15 GPON Protection Service Data Scheme.....................75
Table 16 IGMP Snooping Multicast Service Data Scheme
(EPON).............................................................80
Table 17 IGMP Snooping Multicast Service Data Scheme
(GPON) ............................................................85
Table 18 MVLAN Configuration Data .....................................94
Table 19 IGMP Global Parameters Description ........................95
Table 20 IGMP Port Parameters............................................98
Table 21 Multicast Preview Profile Configuration Parameters .. 100
Table 22 CDR Configuration Parameters .............................. 103
Table 23 VoIP Service Data Scheme ................................... 106
Table 24 VoIP Service Data Scheme (SIP) ........................... 113
Table 25 VoIP Service Data Scheme (H.248) ....................... 118
Table 26 CES MEF8 Service Data Scheme (EPON) ................ 125
Table 27 CES PWE3 Service Data Scheme ........................... 131
Table 28 CES Dedicated Line Data Scheme (EPON)............... 138
Table 29 CES MEF8 Service Data Scheme (GPON) ................ 145
Table 30 CES Dedicated Line Data Scheme (GPON) .............. 152
Table 31 TDM Profile Parameters........................................ 159

Confidential and Proprietary Information of ZTE CORPORATION

239

ZXA10 C220 Configuration Manual (CLI)

Table 32 Clock Synchronization Methods ............................. 162


Table 33 System Clock Configuration Data Scheme .............. 164
Table 34 External Input Clock Parameters ........................... 165
Table 35 External Output Clock Parameters ......................... 166
Table 36 VLAN Specifications............................................. 167
Table 37 Smart QinQ Data Scheme .................................... 170
Table 38 Mapping Relations Between Queues and 802.1p
Priorities......................................................... 212

240

Confidential and Proprietary Information of ZTE CORPORATION

Index
10G EPON Service ............. 45

A
Adding a Card ................... 14
Adding a Rack ................... 12
Adding a Shelf .................. 13
ARP Anti-Spoofing ........... 229
Authenticating an ONU
(EPON) ........................... 25
Authenticating an ONU
(GPON)........................... 63

C
Clock ............................. 162
Configuring ARP AntiSpoofing ....................... 229
Configuring CAC .............. 101
Configuring CDR.............. 102
Configuring CES TDM
Interface....................... 160
Configuring CES TDM
Profile........................... 158
Configuring CL1A 1+1
Protection ..................... 198
Configuring CL1A Uplink
CES Service (EPON) ....... 137
Configuring CL1A Uplink
CES Service (GPON) ....... 151
Configuring Control Panel
Security ........................ 225
Configuring DHCP Option
82................................ 221
Configuring DHCP
Relay............................ 186
Configuring DHCP
Server .......................... 185
Configuring DHCP
Snooping ...................... 184
Configuring DSCP
Mapping........................ 214
Configuring E1/T1 Uplink
CES MEF8 Service
(EPON) ......................... 124
Configuring E1/T1 Uplink
CES MEF8 Service
(GPON)......................... 144
Configuring E1/T1 Uplink
CES PWE3 Service
(EPON) ......................... 130
Configuring EPON
Protection ....................... 51

Configuring EPON
Service ........................... 20
Configuring External Input
Clock..................... 165166
Configuring GPON
Protection ....................... 74
Configuring GPON
Service ........................... 57
Configuring Link
Aggregation .................. 200
Configuring Management
ACL .............................. 235
Configuring Mapping
Relations between
Queues and 802.1p
Priorities ....................... 212
Configuring MFF .............. 228
Configuring MSTP ............ 178
Configuring PPPoE+ ......... 223
Configuring Priority
Mark ............................ 205
Configuring Queue
Scheduling .................... 210
Configuring RADIUS......... 234
Configuring Redirection .... 207
Configuring SSH .............. 231
Configuring System
Clock............................ 163
Configuring TACACS+ ...... 233
Configuring the 1:1
VLAN ............................ 172
Configuring the 10G EPON
Service ........................... 45
Configuring the 9806H
ADSL Access Service ........ 36
Configuring the Bandwidth
Profile............................. 28
Configuring the
D-Series/F-Series ONU
Access Service ................. 32
Configuring the Extended
ACL .............................. 190
Configuring the Hybrid
ACL .............................. 193
Configuring the IGMP
Global Parameters ............ 95
Configuring the IGMP Port
Parameters ..................... 98
Configuring the IGMP
Proxy Multicast Service ..... 91
Configuring the IGMP
Snooping Multicast
Service (EPON) ................ 80

Confidential and Proprietary Information of ZTE CORPORATION

241

ZXA10 C220 Configuration Manual (CLI)

Configuring the IGMP


Snooping Multicast
Service (GPON)................ 84
Configuring the IPTV
Package ........................ 100
Configuring the Layer-2
ACL .............................. 192
Configuring the MVLAN
Parameters ..................... 92
Configuring the OLT Port
(EPON) ........................... 42
Configuring the OLT Port
(GPON)........................... 72
Configuring the ONU
Bandwidth....................... 26
Configuring the ONU
In-Band IP Address
(EPON) ........................... 30
Configuring the ONU
In-Band IP Address
(GPON)........................... 70
Configuring the ONU Type
Profile (EPON) ................. 24
Configuring the ONU Type
Profile (GPON) ................. 62
Configuring the Service
Connection...................... 68
Configuring the Service
Port VLAN ..................... 174
Configuring the Standard
ACL .............................. 189
Configuring the T-CONT
Profile....................... 65, 67
Configuring the TLS
VLAN ............................ 168
Configuring the VoIP
Service (EPON) .............. 105
Configuring the VoIP
Service through
the H.248 protocol
(GPON)......................... 117
Configuring the VoIP
Service through the SIP
protocol (GPON)............. 112
Configuring Traffic
Limit ............................ 204
Configuring Traffic
Mirroring....................... 206
Configuring Traffic
Shaping ........................ 209
Configuring Traffic
Statistics....................... 208
Configuring UAPS ............ 195
Configuring Virtual Port
QoS ............................. 217
Configuring VLAN Smart
QinQ ............................ 169
Control Panel Security ...... 225

242

D
Deleting a Card ................. 15
DHCP............................. 183

E
EPON Protection ................ 50
EPON Service .................... 19

G
GPON Protection................ 73
GPON Service ................... 57

I
In-Band NM ........................6

L
Login Through
HyperTerminal ...................1
Login Through NetNumen
N31 Unified Management
System .............................5
Login Through Telnet ...........3

M
Managing the ONU
Remotely ........................ 39
MSTP ............................. 178
Multicast Service ............... 79

O
ONU Configuration ............. 32
Out-Of-Band NM..................9

P
Port Location .................. 221

Q
QoS ............................... 203
Queue Scheduling............ 209

R
Resetting a Card................ 16
RSTP ............................. 178

S
Showing Card
Information ..................... 15
SSTP ............................. 177
STP ............................... 177

Confidential and Proprietary Information of ZTE CORPORATION

Index

Swapping the Control and


Switching Cards ............... 16
System Security .............. 231

T
Traffic Management Based
On ACL Rules................. 204

U
Uplink Port Protection....... 195

V
VoIP .............................. 105

Confidential and Proprietary Information of ZTE CORPORATION

243

ZXA10 C220 Configuration Manual (CLI)

This page is intentionally blank.

244

Confidential and Proprietary Information of ZTE CORPORATION

Glossary
AAA
- Authentication, Authorization and Accounting
ACL
- Access Control List
ADSL
- Asymmetric Digital Subscriber Line
AES
- Advanced Encryption Standard
ARP
- Address Resolution Protocol
BGP
- Border Gateway Protocol
BPDU
- Bridge Protocol Data Unit
BRAS
- Broadband Remote Access Server
CAC
- Channel Access Control
CBS
- Committed Burst Size
CDR
- Call Detail Record
CES
- Circuit Emulation Services
CIR
- Committed Information Rate
CIST
- Common and Internal Spanning Tree
CLI
- Command Line Interface
CPU
- Central Processing Unit
CVLAN
- Customer Virtual Local Area Network
CoS
- Class of Service
DBA
- Dynamic Bandwidth Allocation
DHCP
- Dynamic Host Configuration Protocol
DNS
- Domain Name Service

Confidential and Proprietary Information of ZTE CORPORATION

245

ZXA10 C220 Configuration Manual (CLI)

DNS
- Domain Name Server
DOS
- Disk Operating System
DSCP
- Differentiated Services Code Point
DSLAM
- Digital Subscriber Line Access Multiplexer
EBS
- Excess Burst Size
EPON
- Ethernet Passive Optical Network
FE
- Fast Ethernet
FEC
- Forward Error Correction
FQ
- Fair Queuing
FTTB
- Fiber to the Building
FTTC
- Fiber to the Curb
FTTH
- Fiber to the Home
GEM
- GPON Encapsulation Method
GPON
- Gigabit Passive Optical Network
ICMP
- Internet Control Message Protocol
ID
- Identification/Identity/Identifier
IEEE
- Institute of Electrical and Electronics Engineers
IETF
- Internet Engineering Task Force
IGMP
- Internet Group Management Protocol
IP
- Internet Protocol
IPTV
- Internet Protocol Television
LACP
- Link Aggregation Control Protocol
LAN
- Local Area Network

246

Confidential and Proprietary Information of ZTE CORPORATION

Glossary

LLID
- Logical Link Identifier
MAC
- Medium Access Control
MAN
- Metropolitan Area Network
MEF
- Metro Ethernet Forum
MFF
- MAC-Forced Forwarding
MG
- Media Gateway
MGC
- Media Gateway Controller
MGCP
- Media Gateway Control Protocol
MST
- Multiplex Section Termination
MSTP
- Multiple Spanning Tree Protocol
MVLAN
- Multicast Virtual Local Area Network
NE
- Network Element
NM
- Network Management
NMS
- Network Management System
OAM
- Operation, Administration and Maintenance
OLT
- Optical Line Terminal
ONU
- Optical Network Unit
OSPF
- Open Shortest Path First
PAP
- Password Authentication Protocol
PON
- Passive Optical Network
PPPoE
- Point to Point Protocol over Ethernet
PSN
- Packet Switched Network
PVC
- Permanent Virtual Channel

Confidential and Proprietary Information of ZTE CORPORATION

247

ZXA10 C220 Configuration Manual (CLI)

PVID
- Port VLAN ID
PW
- Pseudo Wire
QoS
- Quality of Service
RADIUS
- Remote Authentication Dial In User Service
RMON
- Remote Monitoring
RSTP
- Rapid Spanning Tree Protocol
RTP
- Real-time Transport Protocol
SDH
- Synchronous Digital Hierarchy
SEC
- SDH Equipment Clock
SFU
- Single Family Unit
SIP
- Session Initiation Protocol
SMS
- Service Management System
SN
- Serial Number
SNMP
- Simple Network Management Protocol
SONET
- Synchronous Optical NETwork
SP
- Strict Priority
SS
- Soft Switch
SSH
- Secure Shell
SSM
- Synchronization Status Message
SSTP
- Single Spanning Tree Protocol
STP
- Spanning Tree Protocol
SVLAN
- Selective VLAN
SVLAN
- Service Virtual Local Area Network

248

Confidential and Proprietary Information of ZTE CORPORATION

Glossary

TACACS+
- Terminal Access Controller Access-Control System Plus
TCP
- Transfer Control Protocol
TDM
- Time Division Multiplexing
TLS
- Transport Layer Security
ToS
- Type Of Service
UAPS
- Uplink Auto Protection Switching
UDP
- User Datagram Protocol
UNI
- User Network Interface
VBAS
- Virtual Broadband Access Server
VCI
- Virtual Channel Identifier
VID
- VLAN Identifier
VLAN
- Virtual Local Area Network
VPI
- Virtual Path Identifier
VPN
- Virtual Private Network
VoIP
- Voice over Internet Protocol
WAN
- Wide Area Network
WRR
- Weighted Round Robin

Confidential and Proprietary Information of ZTE CORPORATION

249

Das könnte Ihnen auch gefallen