Workflow to configure distributed subscriber management

Stages
 

Configure distributed subscriber management traffic policers. See To configure a distributed subscriber management traffic policer.


Configure distributed subscriber management IPv4 and IPv6 filter policies. See To configure a distributed subscriber management IP filter policy.


On an L2-aware NAT configuration, specify upstream and downstream IPv4 and IPv6 filter policies. See To configure NAT on a routing instance.


On an IES soft GRE group interface, configure a VLAN tag range with the following (see To configure a WLAN GW on an IES group interface):

  • Authenticate on DHCP parameter

  • distributed subscriber management

  • distributed subscriber management traffic policer

  • distributed subscriber management IP filter policy

  • Idle timeout action, SLAAC host lifetime, and DHCPv6 host lifetime


On a VPRN soft GRE group interface, configure a VLAN tag range with the following (see To configure a WLAN GW for a VPRN group interface):

  • Authenticate on DHCP parameter

  • distributed subscriber management

  • distributed subscriber management traffic policer

  • distributed subscriber management IP filter policy

  • Idle timeout action, SLAAC host lifetime, and DHCPv6 host lifetime


To accommodate IPv6 hosts, configure the TCP Maximum Segment Size Adjustment parameter for the WLAN GW configuration on the VPRN site. See To configure WLAN GW functionality on a VPRN site.


To accommodate IPv6 hosts, configure an IPv6 pool manager on IES or VPRN subscriber interfaces. See To configure a subscriber interface on an IES and To configure a subscriber interface on a VPRN.

If required, configure WLAN GW redundancy on sites configured with IPv6 pool managers. See To configure WLAN GW redundancy on an NE.


Configure an ISA RADIUS policy with NAS IP Address, NAS Port, and Class accounting attributes, and with NAS IP Address and NAS Port authentication attributes. See To configure an ISA RADIUS policy.

To accommodate IPv6 hosts, configure the ISA RADIUS poilcy with the IPv6 Address, Framed IPv6 Prefix, Framed Interface ID, and DHCPv6 Options accounting attributes, and the IPv6 Address and DHCPv6 Options authentication RADIUS attributes.


Configure an ISA-WLAN GW group with an ISA-AA group. See To configure a WLAN GW group.


10 

Configure an HTTP redirect policy with the Prefix Length parameter. See To configure an HTTP redirect policy.


11 

Configure a RADIUS proxy server with RADIUS proxy users, default RADIUS policies, and a WLAN GW group. See To configure a RADIUS proxy server on a routing instance.


12 

Configure an LI source WLAN distributed subscriber as a mirror source on a mirror service, if required. See To specify an LI WLAN distributed subscriber as an LI source.