Table of Contents

About This Guide
Objectives
Audience
Documentation Conventions
Related Juniper Networks Documentation
Obtaining Documentation
Documentation Feedback
Requesting Support
SDX Overview
Product Description
Product Features and Benefits
Components
AAA RADIUS Server
Admission Control Plug-In (ACP)
Local Configuration Tool
Directory
Provisioning the Directory
LDAP Version 3
Prepackaged Integration
Distinguished Names
Directory Eventing and Failover
Third-Party Directory Servers
J2EE Application Server
Residential Portal
Enterprise Portal
Portals for PDAs
NIC
Policy Editor
SDX Admin
SDX Configuration Editor
SDX Gateway
SDX Web Admin
Admission Control Web Admin
NIC Web Admin
Policy Web Admin
Prepaid Account Web Admin
SAE Web Admin
Service Activation Engine (SAE)
SDX Accounting
Service Selection Portal (SSP)
Toolkit of APIs and Sample Portals
Plug-Ins and Public Interfaces
SAE Core API
CORBA Remote API
CORBA Plug-In SPI
SNMP Agent
SNMP Agent MIBs
Volume-Tracking Applications
Quota VTA
Threshold VTA
Workflow Application
Java
HTTP
E-Mail Send/Receive Protocols
Extensible Markup Language
LDAP
Scripts and External Programs
Where to Find More Information About SDX Components
Distribution and Deployment Scenarios
Component Distribution Scenarios
Single-Box Installation
Distributed Installation
Master Directory and Directory Shadows
Scalability
Reliability
Simplified Management and Security
Regionalized Installation
Consolidated Installation
Redundancy Schemes
EASP Deployment
Enterprise Portal Architecture
EASP Elements
Communication Protocols
EASP Deployment Scenario
SDX Gateway Architecture
Workflow Application Deployment Strategies
Basic Deployment
Centralized Deployment
High-Availability Deployment
Externalized Deployment
Distributed Deployment
Web-Based Deployment
Mixed Deployment
Enterprise Services
EASP Overview
EASP Flexibility
Enterprise Hierarchy
Managers in the Enterprise
Installation Sequence
Installing the SDX Software for the First Time
Upgrading the SDX Software
Installing the SDX-300 Software
Software CDs
System Requirements
Resource Checking
Before and After Installation
Installation Options and Configurations
Directory Server
Multiple Directory Servers and Failover
RADIUS
Installation and Configuration Sequence
Installation Prerequisites
Hardware
Software
Root Versus Nonroot Users
Upgrades
Installation Conventions
Logging the Installation Session
Installing Solaris Patches for the UNIX Host
Installing the SDX Software
Installation Modes
Graphical Mode
Silent Mode
Launching the Installer
Notes on Using the Installer
Default Installation Directory
SDX Component Installation Sets
Installing the SAE for the JUNOSe Routing Platform
User Input
Installation Defaults
SNMP Agent Installation Notes
Installing SDX Components as Solaris Packages
Installing Solaris IP Filter Software
Uninstalling the SDX Software
Transferring SDX Packages to Other Hosts
Example
Third-Party Software Sources
Configuring SDX Components
Daemon Wrapper
Operating the Directory Server
Operating Directory Servers Other Than OpenLDAP
Operating the OpenLDAP Directory Server
Loading the OpenLDAP Base and Sample Data
Configuring SAE Local Properties
Using the Local Configuration Tool
Configuring SAE Attributes in Property Files
Installing and Configuring Licenses
Types of Licenses
Obtaining a License
Pilot License
Production License
Before You Install a License
Installing a Pilot License
With the instlic Command
With SDX Admin
Installing a Server License
Verifying a License
Command Options
Configuring the SAE Local Parameters
Main Tab
Local Tab
Other Tab
Configuring the License Server
Main Tab
Other Tab
Operating the License Server
Configuring and Starting the SDX SNMP Agent
Configuring the SNMP Agent
Main Tab
Loggers Tab
SNMP Tab
Other Tab
Operating the SNMP Agent
Starting the SDX SNMP Agent
Stopping the SDX SNMP Agent
Monitoring the SDX SNMP Agent
Cleaning SNMP Agent Logs and Process Files
Locking the SDX SNMP Agent Against Solaris Control
Unlocking the SDX SNMP Agent
Commands for the Solstice Agent
Reading the SNMP Agent MIBs
Configuring Security Aspects of the SDX Software
Secure Web Server Certificates
LDAPS Connections
Configuring LDAPS
Configuring the Directory Server
Establishing Trust
Configuring the SAE to Find the Certificate Store
Configuring LDAPS Communication
Modifying Properties for LDAPS
Installing Web Applications
Installing Web Applications
Installing Web Applications Inside JBoss
Removing Web Applications
Removing a Web Application from JBoss
Session Timeouts for Web Applications
Access Controls
Default Security Roles for Access Control
Starting and Stopping the SAE
Before You Start the SAE
Logging the SAE Start or Stop Process
Starting the SAE for JUNOSe Routers
Starting the SAE for JUNOS Routing Platforms
Migration Procedures
Overview
Migration Stages
Migration Script
Script Tasks Without Directory Server Upgrade
Script Tasks With Directory Server Upgrade
Preparing the Migration Host
Cloning the Directory Server
Cloning the OpenLDAP Directory Server
Cloning the DirX Directory Server
Cloning iPlanet/Sun ONE Directory Server
Installing the UMCmig Package
Configuring the Migration Procedure
Running the Migration Script
Completing the Migration
DirX
OpenLDAP
iPlanet/Sun ONE
Updating the Original Host
Additional Tasks in a Shadowed Environment
OpenLDAP Deployment
Updating OpenLDAP Slave Directories
DirX Deployment
Updating DirX Slave Directories
iPlanet/Sun ONE Deployment
Using SDX Admin
Overview
Understanding the SDX Admin Layout
Using the Menu Bar
Options Menu: Configure
Using the Toolbar
Using the Navigation Pane
Navigation Pane Icons
Using the Content Pane
General Procedures for Using SDX Admin
Using Pop-Up Menus
Modifying an Entry
Undo and Redo
Save and Revert
Deleting an Entry
Virtual Deletion
Searching Text
SDX Admin Limitations
Unique User IDs Only
Consistency
Interdependence
Internationalization
Locale
Localization of Data Storage
Using SDX Configuration Editor
Setting Up SDX Configuration Editor
Starting SDX Configuration Editor
Setting the Editing Level
Specifying the Directory Connection
Creating a New Project
Moving Between Versions of SDX Configuration Editor
Using SDX Configuration Editor
Importing Existing Configuration Objects
Creating a New Configuration Object
Exporting Configuration Objects
GUI Elements
Creating and Deleting Instances
Voice over IP (VoIP) Services in the SDX Network
Overview
Accounting and Tracking
VoIP Call Setup
Configuring Policies and Services for VoIP
Assigned IP Subscribers
Setting Timeouts for Assigned IP Subscriber Sessions
Managing QoS Services on JUNOSe Routers
Overview
Dynamically Managing QoS Profiles
How QoS Profile Tracking Works
Identifying QoS Services
Determining the QoS Profile
Setting Up Policy Groups
Setting Up Services
Reestablishing Default QoS Profile
Sample Case
Configuring QoS Profile-Tracking Plug-ins
Updating QoS Profile Data in the Directory
Using SDX Admin to Update QoS Profile Data
Using qosProfilePublish to Update QoS Profile Data
Searching for QoS Policy Data in the Directory
Using Policy Editor to Search for QoS Policy Information
Running Queries from Policy Editor
Examples
Using Policy Web Admin to Search for QoS Policy Information
Launching Policy Web Admin
Connecting to a Directory
Querying the Directory for QoS Information
Provisioning Services on JUNOS Routing Platforms
Installation and Configuration Tasks
SDX Services for JUNOS Routing Platforms
Configuring Firewall Policies and Services
Configuring Basic Firewall Policies
Configuring Basic Firewall Services
Configuring the fwrule Policy Group
Configuring the FirewallRule Service
Configuring NAT Policies and Services
Configuring the dynsrcnat Policy Group
Configuring the DynSrcNat Service
Configuring the staticdstnat Policy Group
Configuring the StaticDstNat Service
Configuring the staticsrcnat Policy Group
Configuring the StaticSrcNat Service
Configuring BoD Policies and Services
Configuring BoD Policies
Configuring BoD Services
Billing Subscribers Through SCU/DCU
Examples of UMC Directory Entries
Abbreviations
References
RFCs
Draft RFCs
Other Software Standards
URLs
Index