Index

Symbols  A  B  C  D  E  F  G  H  I  K  L  M  N  O  P  Q  R  S  T  U  V  W

 

Symbols

10-Gigabit Ethernet interfaces
specifying an interface
 

A

AAA (authentication, authorization, accounting)
DSL Forum VSAs    12
EAP authentication
failure, notifying RADIUS of
L2TP tunnel switch profiles, applying    12
overview    12
services
accounting
and TACACS+
authentication    12
authorization
overview
aaa commands,  See also show aaa commands    
aaa accounting acct-stop on-aaa-failure
aaa accounting acct-stop on-access-deny
aaa accounting broadcast
aaa accounting commands
aaa accounting default
aaa accounting duplication
aaa accounting exec
aaa accounting immediate-update
aaa accounting interval
aaa accounting statistics
aaa accounting suppress null-username
aaa accounting tacacs+
aaa accounting vr-group
aaa authentication default    12
aaa authentication enable default    12
aaa authentication login    12
aaa delimiter
aaa dhcpv6-delegated-prefix delegated-ipv6-prefix
aaa dns primary    12
aaa dns secondary    12
aaa domain-map    1234
aaa duplicate-address-check
aaa intf-desc-format include    12
aaa ipv6-nd-ra-prefix framed-ipv6-prefix
aaa local database
aaa local select database
aaa local username
aaa new-model    12
aaa parse-direction
aaa parse-order
aaa profile    1234
aaa route-download
aaa route-download now
aaa route-download suspend
aaa service accounting interval
aaa subscriber limit per-port
aaa subscriber limit per-vr
aaa timeout
aaa tunnel assignment-id-format
aaa tunnel calling-number-format
aaa tunnel calling-number-format fallback
aaa tunnel client-name
aaa tunnel ignore
aaa tunnel password
aaa tunnel switch-profile
aaa tunnel tx-connect-speed-method
aaa tunnel-group
aaa user accounting interval    12
aaa virtual-router
aaa wins primary
aaa wins secondary
AAA default tunnel parameters
L2TP transmit connect speed
AAA domain maps
configuring
IPv6 local address pools
IPv6 local address pools
and Prefix Delegation
overriden by pools in Access-Accept message
L2TP transmit connect speed
preference order
for determining local address pools
tunnel subscribers
AAA LLID (logical line identifier)
configuration steps
how it works
monitoring    12
preauthentication considerations
RADIUS attributes in preauthentication request    12
troubleshooting
using to track subscribers
AAA logical line identifier (LLID).,  See AAA LLID    
AAA profile commands
aaa profile    12
allow
deny
nas-port-type atm
nas-port-type ethernet
ppp aaa-profile    12
service-description
translate
AAA profiles
allowing or denying domain names
configuring
creating domain name aliases
manually setting NAS-Port-Type
setting Service-Description
AAA tunnel groups
L2TP transmit connect speed
Access-Accept messages
pool or prefix name
not available in
preference order
in allocation of IPv6 prefixes
RADIUS attribute used in
Prefix Delegation
with Framed-IPv6-Prefix attribute
for Prefix Delegation
with IPv6-NdRa-Prefix attribute
for IPv6 Neighbor Discovery
Access-Challenge messages    12
Access-Reject messages    12
Access-Request messages
ANCP (L2C)-related VSAs
DSL Forum VSAs    12
accounting
broadcast
configuring servers
configuring TACACS+
description
duplicate
server access
server request processing limit
SNMP traps
specifying methods
TACACS+
accounting statistics
tunneled PPP session
Acct-Authentic (RADIUS attribute 45)
Acct-Delay-Time (RADIUS attribute 41)
Acct-Input-Gigapackets (RADIUS attribute 26-35)
Acct-Input-Gigawords (RADIUS attribute 52)
Acct-Link-Count (RADIUS attribute 51)
Acct-Multi-Session-Id (RADIUS attribute 50)
Acct-Off messages
Acct-On messages
Acct-Output-Gigapackets (RADIUS attribute 26-36)
Acct-Session-Id (RADIUS attribute 44)    123
Acct-Start messages
ANCP (L2C)-related VSAs
DSL Forum VSAs    12
Acct-Stop messages
ANCP (L2C)-related VSAs
DSL Forum VSAs    12
Acct-Terminate-Cause (RADIUS attribute 49)
Acct-Tunnel-Connection (RADIUS attribute 68)
Activate-Service (RADIUS attribute 26-65)
address command, L2TP    12
address pool
mapping to domain name
ranges
address-pool-name command
agent circuit ID (suboption 1)
agent remote ID (suboption 2)
agent-circuit-id
including in Calling Number AVP
including in PPPoE remote circuit ID format
agent-remote-id
including in Calling Number AVP
including in PPPoE remote circuit ID format
allow command
Ascend-Num-In-Multilink (RADIUS attribute 188)
ATM (Asynchronous Transfer Mode)
E120 and E320 routers
atm atm1483 advisory-rx-speed command
and L2TP
atm commands
atm
atm pvc
ATM subinterface
configuring multiple clients
configuring single clients    12
attribute value pair.,  See AVP    
authentication
AAA overview
configuring servers
configuring TACACS+
description
EAP
preauthenticating users
redirected authentication
server access
server request processing limit
SNMP traps
specifying methods
authentication and accounting servers
configuring
authentication login, TACACS+
authentication, authorization, accounting.,  See AAA    
authorization
AAA overview
description
TACACS+
authorization change command
AVP (attribute value pair)
Bearer Type (AVP 18)
relaying in L2TP tunnel-switched network
relaying in L2TP tunnel-switchednetwork
Calling Number (AVP 22)
formatting and preventing in ICRQ packets
relaying in L2TP tunnel-switched network
relaying in L2TP tunnel-switchednetwork
Cisco NAS Port Info (AVP 100)
relaying in L2TP tunnel-switched network
relaying in L2TP tunnel-switchednetwork
Transmit (TX) Speed (AVP 24)
reporting transmit connect speed in
avp command
 

B

B-RAS applications
AAA profiles
allowing or denying domain names
client to server interaction
configuring
authentication and accounting servers
B-RAS license
DHCP external server application
DHCP features
IP addresses for remote clients
local address servers
name server addresses
SRC client
timeout
UDP checksums
creating an IP interface
creating domain name aliases
DHCP (Dynamic Host Configuration Protocol) proxy client and server
IP hinting
limiting active subscribers
local address server
manually setting NAS-Port-Type
mapping address pool to domain
mapping backup address pool to domain
mapping IPv6 local address pool to domain
mapping user domain names to a virtual router
mapping user requests
without a valid domain name
without configured domain name
monitoring
multiple clients per ATM subinterface
overview
preauthenticating users
protocol support
redirected authentication
references    12
setting Service-Description
single clients per ATM subinterface
SNMP traps
specifying a single name for a domain
SRC client.,  See SRC software    
system log messages
virtual router
B-RAS licenses
configuring
backoff algorithm    12
backup address pool
mapping to domain name
backup local address pool
and dependency on primary address pool
backup-address-pool-name command
baseline commands
baseline aaa    12
baseline aaa route-download    1234567
baseline cops
baseline dhcp relay
baseline dhcp server
baseline dhcp-local    123
baseline dhcpv6-local    123
baseline ip dhcp-external
baseline ip http
baseline local pool
baseline radius
baseline radius dynamic-request
baseline radius relay
baseline sscc
Bearer Type AVP
relaying in L2TP tunnel-switched network    12
BOOTP (bootstrap protocol)
bootstrap protocol.,  See BOOTP    
bridged Ethernet and dynamic subscriber interfaces
Broadband Remote Access Server.,  See B-RAS applications    
broadcast AAA accounting
configuring
broadcast flag, DHCP
controlling transmission of DHCP reply packets
interaction with layer 2 unicast transmission method
bundled session commands
bundled-group-id    12
bundled-group-id-overrides-mlppp-ed    12
bundled sessions
 

C

cable modem DHCP relay
cable modem networks
Called-Station-Id (RADIUS attribute 30)
Calling Number AVP
descriptive formats
fixed format
fixed format configuration
formatting in L2TP ICRQ packets
including agent-circuit-id and agent-remote-id
preventing in L2TP ICRQ packets
relaying in L2TP tunnel-switched network    12
Calling-Station-Id (RADIUS attribute 31)
including IOA number in format
captive portal.,  See guided entrance    
Change-of-Authorization-Request messages
Cisco NAS Port Info AVP
relaying in L2TP tunnel-switched network    12
Class (RADIUS attribute 25)
clear ip commands
clear ip dhcp-local binding
clear ip routes download
CLI (command-line interface)
authorization and authentication messages
commands used to modify RADIUS attributes
client-name command    12
CoA-Request messages
guided entrance    12
Service Manager
combined IPv4 and IPv6 services
example
with input traffic flow
with output traffic flow
example scenario
for rate limiting VoIP traffic
external parent groups and
example
in a dual stack
activating
backward compatibility
deactivating
example
performance impact
rate limiting and
example
service interim accounting
statistics collection and
external parent groups
command-line interface.,  See CLI    
Common Open Policy Service.,  See COPS    
compatibility with previous releases
for IPv4 and IPv6 services
in a dual stack, combined
in a dual stack, independent
configuring.,  See specific feature, product, or protocol    
Connect-Info (RADIUS attribute 77)
conventions
notice icons
text and syntax
COPS (Common Open Policy Service)    123
COPS(Common Open Policy Service)    12345
COPS-PR (COPS usage for policy provisioning)
customer support
contacting JTAC
 

D

Deactivate-Service (RADIUS attribute 26-66)    123
deadtime command
default domain name
default-router command
default-upper-type mlppp command
Delegated-Ipv6-Prefix (RADIUS attribute 123)
delegating routers
allocation of IPv6 prefixes
to requesting routers
as E Series routers
for allocation of prefixes
assigning prefixes
to DHCPv6 clients
deny command
descriptive formats
Calling Number AVP
destination
changing
DHCP (Dynamic Host Configuration Protocol)
access model
configuring BOOTP Relay
configuring DHCP relay
configuring DHCP relay proxy    12
configuring proxy client and server
features
giaddr    123
option 82    123456789101112
overview    123
per-interface logging
source IP address
trust-all
DHCP access model
configuring
DHCP broadcast flag
interaction with layer 2 unicast transmission method
DHCP client bindings
deleting
managing
viewing
DHCP commands,  See also show dhcp commands    
dhcp-external duplicate-mac-address    12
ip auto-detect ip-subscriber
ip dhcp-capture
ip dhcp-external re-authenticate-subscriber-interface
ip dhcp-external recreate-subscriber-interface    12
ip inactivity-timer
set ip interface-profile
set ip source-prefix    12
show dhcp-external
dhcp delete-binding command
DHCP external server
and DHCP relay proxy
configuring    123
dynamic subscriber interfaces
interoperating with DHCP relay and DHCP relay proxy
identifying clients with duplicate MAC addresses    12
monitoring
preserving dynamic subscriber interfaces    12
re-authenticating auto-detected dynamic subscriber interfaces
DHCP local address pools
configuring
grace periods
linking
DHCP local server
configuring    12
configuring authentication
duplicate clients
equal-access mode
address allocation
configuring
connection process
local pool selection
overview
SRC (Session and Resource Control software)
local address pool group    12
local pool selection, equal-access
using domain name
using framed IP address
using giaddr
using pool name
local pool selection, standalone
using giaddr
using received interface IP address
logging information
modes
monitoring    12
overview
RADIUS accounting support for
RADIUS accounting support for standalone mode
standalone mode
address allocation    12
authentication
configuring
local pool selection
overview
unique client IDs
DHCP local server traps
logging    12
DHCP local server:local pool selection, equal-access
using received interface IP address
DHCP local server:local pool selection, standalone with AAA
using domain name
using framed IP address
using giaddr
using pool name
using received IP address
DHCP local server:local pool selection, standalone without AAA
using giaddr
using received interface IP address
DHCP logging
DHCP option 60 cable modem DHCP relay
DHCP option 60 strings
DHCP Option 82 (RADIUS attribute 26-159)
DHCP options and RADIUS
configuring
DHCP packets
logging
DHCP per-interface information
logging
DHCP pool commands
default-router    12
dns-server
domain-name
grace-period
ip dhcp-local pool
lease
link
netbios-name-server
netbios-node-type
network
reserve
server-address
snmpTrap
use-release-grace-period
warning
DHCP proxy client
configuring
DHCP relay
configuring
creating
in same VR as dynamic subscriber interfaces
interoperating with DHCP external server
logging information
preventing host route installation
removing
spoofed giaddr
spoofed relay agent option
DHCP relay agent information option
agent circuit ID (suboption 1)
agent remote ID (suboption 2)
vendor-specific (suboption 9)
DHCP relay and BOOTP relay
configuring
DHCP relay proxy
best offer
configuring
first offer
interoperating with DHCP external server
DHCP server
dynamic subscriber interfaces
DHCP vendor class identifier option
dhcp-external commands
dhcp-external duplicate-mac-address    12
show dhcp-external
DHCP-GI-Address (RADIUS attribute 26-57)
dhcp-local-server-configuration-overview
DHCP-MAC-Address (RADIUS attribute 26-56)
DHCP-Options (RADIUS attribute 26-55)
DHCPv6 client bindings
deleting
DHCPv6 clients
assigning prefixes to
using local address pools
dhcpv6 delete-binding command
DHCPv6 local address pools,  See IPv6 local address pools    
DHCPv6 local server
IPv6
DHCPv6 Prefix Delegation
and IPv6 Neighbor Discovery
without configuring Delegated-IPv6-Prefix
assigned prefix length of /128
in local address pools
enabling
IPv6 local address pool feature
example for non-PPP client requests
example scenario
for client requests
over non-PPP links
over PPP links
for IPv6 clients
overview
Framed-IPv6-Prefix
in Access-Accept messages
guidelines for configuring
IPv6 local address pools
interface level configuration
versus router level configuration
IPv6 local address pool
mapping to a domain name
limitation on
prefixes assigned to clients
standard RADIUS attributes
configuring
verifying
using IPv6 local address pools
monitoring a single pool
monitoring all configured pools
monitoring statistics for a pool
dialed number identification service.,  See DNIS    
digital subscriber line access multiplexers.,  See DSLAMs    
digital subscriber lines.,  See DSLs    
disable proxy lcp command
Disconnect-Cause (RADIUS attribute 26-51)
Disconnect-Request messages
DNIS (dialed number identification service)    12
DNS (Domain Name System)
assigning IP addresses    12
overview
DNS addresses
order of preference
in allocation to clients
DNS domain names
list of
configured in IPv6 local address pools
order of preference
in responses to clients
DNS domains
configuring more than one
using the CLI interface
in IPv6 local address pools
processing client requests for resolution
in responses to clients
Domain Search List option and
maximum number
in IPv6 local address pools
DNS Recursive Name Search option
DHCPv6 server responses
and DNS servers in local pools
DNS servers
addresses in responses to clients
DNS Recursive Name Search option and
configuring in
IPv6 local address pools
list of
configured in IPv6 address pools
order of preference
in responses to clients
order of use
for delegating prefixes
primary and secondary
for domain resolution requests from clients
responding with IPv6 addresses
for client requests
documentation set
comments on
domain command
Domain Name System.,  See DNS    
domain names
allowing or denying
configuring
default
mapping to virtual routers    123456
mapping user requests without domain name    12
none
specifying single name for users
stripping domain name
using aliases
using delimiters other than @
using either domain or realm asdomain name
using realm name as domain name
Downstream-Calculated-QoS-Rate (RADIUS attribute 26-141)
DSL Forum VSAs
controlling inclusion of
descriptions
in AAA access and accounting messages
DSLAMs (digital subscriber line access multiplexers)
DSLs (digital subscriber lines)
dual stack
combined IPv4 and IPv6 services
example of
IPv4 and IPv6 services
combined, activating and deactivating
combined, overview
independent, activating and deactivating
independent, overview
service interim accounting, overview
Service manager support, activating and deactivating
Service manager support, overview
statistics collection
external parent groups
duplicate AAA accounting
configuring
duplicate clients
duplicate MAC addresses
identifying DHCP clients with    12
monitoring
Dynamic Host Configuration Protocol.,  See DHCP    
dynamic IP interfaces
dynamic subscriber interfaces
commands
configuring    12
configuring DHCP external server to interoperate with DHCP relay and DHCP relay proxy
configuring DHCP external server to preserve    12
configuring DHCP external server to re-authenticate
DHCP server
framed routes
GRE tunnel configuration
in same VR as DHCP relay
inheriting MAC validation state
IP over bridged Ethernet configuration
IP over Ethernet configuration
IP over VLAN over Ethernet configuration
monitoring
overview
packet detection
 

E

E120 and E320 routers
ATM interfaces
EAP (Extensible Authentication Protocol)
external RADIUS server
local authentication server
RADIUS attributes
RADIUS authentication
TACACS+ server
EAP-Message (RADIUS attribute 79)
Egress-Policy-Name (RADIUS attribute 26-11)
enable proxy authenticate command
encapsulation commands
encapsulation bridge1483
encapsulation vlan
endpoint discriminator
equal-access DHCP local server
Ethernet
configuring dynamic subscriber interfaces
Ethernet interfaces
commands
interface tenGigabitEthernet
Ethernet links
between CPE and PE routers
pool section for Prefix Delegation
Event-Timestamp (RADIUS attribute 55)
exclusion ranges
configuring
for delegation of prefixes
example for non-PPP client requests
for DHCPv6 prefixes
delegated to clients
Extensible Authentication Protocol.,  See EAP    
external parent groups
combined IPv4 and IPv6 services with
example
statistics collection for
setting up
 

F

fixed format
Calling Number AVP
fragmentation
and reassembly
packet
framed routes dynamic subscriber interfaces
Framed-Compression (RADIUS attribute 13)
Framed-Interface-Id (RADIUS attribute 96)
Framed-Ip-Address (RADIUS attribute 8)
Framed-Ip-Netmask (RADIUS attribute 9)
Framed-Ipv6-Pool (RADIUS attribute 100)
Framed-Ipv6-Prefix (RADIUS attribute 97)
Framed-IPv6-Prefix attribute
used for DHCPv6 Prefix Delegation
from Access-Accept messages
Framed-Ipv6-Route (RADIUS attribute 99)
Framed-MTU (RADIUS attribute 12)
Framed-Route (RADIUS attribute 22)
 

G

giaddr    12
GRE (Generic Routing Encapsulation) tunnels dynamic subscriber interfaces    12
guided entrance
CoA-Request messages
 

H

HTTP local server
guided entrance service
Service Manager
 

I

I/O adapters.,  See IOAs    
ICR partition accounting
viewing the status, enabled or disabled
identification command    12
idle timeout for B-RAS
configuring
idle timeout, range for
include commands
include circuit-id
include dhcp-option 82
include hostname
include ip-address
include mac-address
include virtual-router-name
independent IPv4 and IPv6 services
in a dual stack
activating
backward compatibility
deactivating
performance impact
service interim accounting
statistics collection and
external parent groups
Ingress-Policy-Name (RADIUS attribute 26-10)
inheriting MAC address validation state
interface commands
interface atm
interface fastEthernet
interface gigabitEthernet
interface ip
interface loopback
interface tenGigabitEthernet
Interface-Desc (RADIUS attribute 26-63)
interfaces
configuring for DHCP local server
moving
Interim-Acct messages
ANCP (L2C)-related VSAs
DSL Forum VSAs    12
Internet Protocol.,  See IP    
IOAs
including in RADIUS Calling-Station-Id format
IP
hinting
IP addresses
assigning to name servers    123
configuring for remote client
ip commands
clear ip demux
ip address
ip address-pool dhcp
ip auto-configure ip-subscriber    123
ip auto-detect ip-subscriber
ip demux-type
ip destination-prefix    123
ip dhcp-local pool
ip inactivity-timer
ip local alias
ip local pool
ip local pool snmpTrap
ip local pool warning
ip local shared-pool
ip route-map ip-subscriber
ip service-profile
ip share-interface
ip share-nexthop
ip source-prefix    123
ip unnumbered
ip use-framed-routes ip-subscriber    12
ip-hint
ip dhcp-external commands,  See also show ip dhcp-external commands    
ip dhcp-external auto-configure
ip dhcp-external disregard-giaddr-next-hop
ip dhcp-external recreate-subscriber-interface    12
ip dhcp-external server-address
ip dhcp-external server-sync
ip re-authenticate-auto-detect ip-subscriber
ip dhcp-local auth domain command    12
ip dhcp-local auth include command
ip dhcp-local auth password
ip dhcp-local auth user-prefix command
ip dhcp-local commands
ip dhcp-local auto-configure agent-circuit-identifier
ip dhcp-local excluded-address
ip dhcp-local limit
ip dhcp-local pool
ip dhcp-local unique-client-ids
ip dhcp-server commands
ip dhcp-server
ip http commands
ip http
ip http access-class
ip http max-connection-time
ip http port
ip http redirecturl
ip http same-host-limit
ip http server
IP interfaces
creating
IP interfaces that support PPP clients
configuring
IP spoofing
preventing
IPv4 and IPv6 services,  See also combined IPv4 and IPv6 services     See also independent IPv4 and IPv6 services    
combined services in a dual stack
example
in a dual stack
and Service Manager support
IPv4 services
in a dual stack
activating
combined and independent configuration
deactivating
with IPv6 services
ipv6 commands
ipv6 virtual-router
ipv6-local-interface
ipv6–prefix-pool-name
IPv6 DHCP local server
monitoring    12
ipv6 dhcpv6-local commands
ipv6 dhcpv6-local delegated-prefix
ipv6 dhcpv6-local dns-domain-search
ipv6 dhcpv6-local dns-server
ipv6 dhcpv6-local prefix-lifetime
IPv6 local address pools
and overriding using the RADIUS attribute from AAA server
assigned prefix length of /128
Prefix Delegation and
configuring
for Prefix Delegation
DNS servers in
to return to clients
enabling
example for non-PPP client requests
for delegation of prefixes
overview
for DHCPv6 Prefix Delegation
single pool details, viewing
statistics for a single pool, viewing
summary of all configured pools, viewing
guidelines for configuration
limitation on
number of allocated prefixes
mapping to a domain name
for Prefix Delegation
multiple configuration
on virtual router, preference order
name length
not configured in domain map
method for determining prefix to be delegated
order of preference
in selection for delegation of prefixes
Prefix Delegation
example scenario
prerequisite for configuring
procedure
for configuring on a virtual router
removing from
domain map
specifying
domain name for DNS resolution
exclusion range for prefixes
IPv6 address of DNS server
preferred lifetime
prefix range    12
starting and ending prefixes of a range
valid lifetime
used for Prefix Delegation from
AAA domain map
interface address
RADIUS server
IPv6 Neighbor Discovery
and DHCPv6 Prefix Delegation
without configuring Delegated-IPv6-Prefix
IPv6-NdRa-Prefix
in Access-Accept messages
standard RADIUS attributes
configuring
verifying
IPv6 prefix ranges
configuring
with the starting and ending prefixes
with the starting prefix and length
IPv6 services
in a dual stack
activating
combined and independent configuration
deactivating
with IPv4 services
IPv6-Acct-Input-Gigawords [26-155]
IPv6-Acct-Input-Octets [26-151]
IPv6-Acct-Input-Packets [26-153]
IPv6-Acct-Output-Gigawords [26-156]
IPv6-Acct-Output-Octets [26-152]
IPv6-Acct-Output-Packets [26-154]
Ipv6-Local-Interface (RADIUS attribute 26-46)
Ipv6-NdRa-Prefix (RADIUS attribute 26-46)
IPv6-NdRa-Prefix attribute
used for IPv6 Neighbor Discovery
from Access-Accept messages
IPv6-Primary-DNS (RADIUS attribute 26-47)
Ipv6-Secondary-DNS (RADIUS attribute 26-46)
IPv6-Virtual-Router (RADIUS attribute 26-45)
 

K

key command    1234
 

L

L2C-Down-Stream-Data (RADIUS attribute 26-93)
L2C-Information (RADIUS attribute 26-81)
L2C-Up-Stream-Data (RADIUS attribute 26-92)
L2TP (Layer 2 Tunneling Protocol)
defining
high availability considerations
implementation
license
modifying LAC default settings    12
monitoring
peer resynchronization
rx speed
sessions supported
silent failover
tunnel selection
tunnel switch profiles
L2TP access concentrator.,  See LAC    
l2tp commands,  See also show l2tp commands    
disconnect-cause
failover-resync
l2tp checksum
l2tp destination lockout-test
l2tp destination lockout-timeout
l2tp destination profile    12
l2tp destruct-timeout
l2tp disable calling-number avp
l2tp disable challenge
l2tp disconnect-cause
l2tp drain
l2tp drain destination
l2tp drain tunnel
l2tp fail-over-within-preference
l2tp failover-resync    12
l2tp ignore-receive-data-sequencing
l2tp ignore-transmit-address-change
l2tp reject-transmit-address-change
l2tp retransmission
l2tp short-drain-timeout
l2tp shutdown
l2tp shutdown destination
l2tp shutdown session
l2tp shutdown tunnel
l2tp switch-profile
l2tp tunnel default-receive-window
l2tp tunnel idle-timeout
l2tp tunnel test
l2tp tunnel-switching    12
l2tp unlock destination
l2tp unlock-test destination
l2tp weighted-load-balancing command
max-sessions command    12
L2TP dial-out
before configuring
configuring
dial-out process
network model
operational states
outgoing call setup details
Access-Accept message
Access-Request message
mutual authentication
outgoing call successful
route installation
overview
references
route
session
target
trigger
l2tp dial-out commands,  See also show l2tp dial-out commands    
l2tp dial-out connecting-timer-value
l2tp dial-out dormant-timer-value
l2tp dial-out max-buffered-triggers
l2tp dial-out session delete
l2tp dial-out session reset
l2tp dial-out target
L2TP network server.,  See LNS    
L2TP RWS (receive window size)
configuring global default
configuring on LAC
configuring on LNS
l2tp tunnel default-receive-window command
overview
receive-window command (for LAC)
receive-window command (for LNS)
show l2tp command    1234
show l2tp destination profile command    12
l2tp rx-connect-speed-when-equal command
L2TP transmit connect speed
and Transmit (TX) Speed AVP 24
calculation methods
how to configure
monitoring    12
L2TP transmit connect speed and Transmit (TX) Speed AVP 24
calculation methods
actual
dynamic layer 2
examples
QoS
static layer 2
configuring
AAA default tunnel parameters
AAA domain maps
AAA tunnel groups
RADIUS
reporting considerations
L2TP tunnel switch profiles
applying default profile
applying through AAA domain maps
applying through AAA tunnel groups
applying through RADIUS
AVP relay, configuring    12
configuration guidelines
configuring
how to apply
monitoring
LAC (L2TP access concentrator)
before configuring    12
configuring receive window size (RWS)
function    12
sequence of events
Layer 2 Tunneling Protocol.,  See L2TP    
license commands,  See also show license commands    
license b-ras
license l2tp-session
license service-manager
licenses
B-RAS
L2TP
Service Manager
lifetime
guideline
for preferred lifetime
preferred
configuring for Prefix Delegation
restriction
in configuration for delegated prefixes
specifying
as infinite
valid
configuring for Prefix Delegation
limitation
on number of IPv6 prefixes
delegated to clients
line command
LLID (logical line identifier)
configuration steps
how it works
monitoring    12
preauthentication considerations
RADIUS attributes in preauthentication request
troubleshooting
using to track subscribers
LNS (L2TP network server)
before configuring    12
configuring
configuring receive window size (RWS)
installing multiple service modules
modules supported
out-of-resource result codes
overriding out-of-resource result codes
sequence of events
local address pool
alias names
mapping to domain name
ranges
local address server
alias names
configuring
pool ranges
shared local address pools
SNMP thresholds
local authentication commands
aaa authentication default
aaa local database
aaa local select database
aaa local username
ip-address
ip-address-pool
operational-virtual-router
password
secret
username
local host command
local ip address command
local-interface command
logging.,  See specific feature, product, or protocol    
logical line identifier, AAA.,  See LLID    
login authentication command    12
logout subscribers command    12
 

M

MAC (media access control) addresses
duplicate    12
inheriting validation state    12
preventing IP spoofing
macros
service definitions
Service Manager statistics
manuals
comments on
max-sessions command    123
MBS (RADIUS attribute 26-17)
media access control addresses.,  See MAC addresses    
medium ipv4 command    12
merging policies
naming conventions
Message-Authenticator (RADIUS attribute 80)
MLPPP Bundle Name (RADIUS attribute 26-62)
monitoring.,  See specific feature, product, or protocol    
mutex service    12
 

N

name server addresses
configuring    123
naming conventions
merged policies
NAS (network access server)    12
NAS-Identifier (RADIUS attribute 32)
NAS-IP-Address (RADIUS attribute 4)
NAS-Port (RADIUS attribute 5)
NAS-Port-Id (RADIUS attribute 87)
NAS-Port-Type (RADIUS attribute 61)
nas-port-type atm command
NAS-Port-Type attribute, manually setting
nas-port-type ethernet command
network access server.,  See NAS    
network commands
network
no radius client command
non-PPP clients
pool section for Prefix Delegation    12
non-PPP equal access
configuration example
requirements
none domain name
notice icons
 

O

operational states, L2TP
chassis
sessions
targets
virtual router
option 82    12345678910
out-of-resource result codes, LNS
Output-Gigawords (RADIUS attribute 53)
override-user command    12
 

P

packet detection dynamic subscriber interfaces
packet fragmentation
packet mirroring
packets
demultiplexing
transmitting
Partition-Accounting-Off messages
Partition-Accounting-On messages
password command    123
PCR (RADIUS attribute 26-15)
peer
peer resynchronization
performance impact
IPv4 and IPv6 services
in a dual stack, combined
in a dual stack, independent
persistent tunnels, creating
PIB (Policy Information Base)
platform considerations
PPP
Point-to-Point Protocol.,  See PPP    
Policy Information Base.,  See PIB    
policy management on subscriber interfaces
PPP (Point-to-Point Protocol)
accounting statistics for tunneled sessions
B-RAS service support
platform considerations
ppp commands
ppp aaa-profile    12
PPPoE remote circuit ID
Pppoe-Description (RADIUS attribute 26-24)
pre-authenticate command
preauthentication
AAA LLID
B-RAS users
preference
preference command    12
preference order
in allocation of prefixes
to IPv6 clients
in assignment of DNS addresses
to IPv6 clients
in determining local address pool
for allocation of IPv6 prefixes
preferred lifetime
for delegated prefixes
configuring
default
setting
without expiration
Prefix Delegation,  See DHCPv6 Prefix Delegation    
prefixes
allocated to clients from
interface configuration
IPv6 local address pools
RADIUS Access-Accept message
assigned length of /128
in IPv6 local address pools
assigning to
DHCPv6 clients
configuring ranges
for delegation to clients
delegating by
DHCPv6 local server
delegating to clients
over non-PPP links
over PPP links
excluded from
delegation to clients
excluding
range and individual ones
in Access-Accept messages
applicable RADIUS attributes
for DHCPv6 Prefix Delegation
priority over prefix in local address pool
limitation on
number assigned to clients
order of preference
in allocation to clients
preferred and valid lifetimes
configuring for delegated ones
prerequisite
for configuring IPv6 local address pools
for Prefix Delegation
primary authentication/accounting RADIUS server    12
primary IP interface
privilege authentication, TACACS+
profile commands
profile
 

Q

QoS (quality of service)
calculation method for L2TP transmit connect speed
on subscriber interfaces
QoS commands
qos-parameter
qos-profile
 

R

RADIUS
LAG subscribers information
RADIUS (Remote Authentication Dial-In User Service)
AAA failure
accounting methods
attribute descriptions    123
attributes supported
authentication and accounting servers
authentication methods    12
Calling-Station-Id formats supported
change of authority messages
CLI AAA messages
client to server interaction
configuring servers
description    12
direct server access
disconnect messages
EAP authentication
IETF attributes supported
Juniper Networks VSAs supported
L2TP transmit connect speed
L2TP tunnel switch profiles, applying
message types supported
RADIUS dynamic-request server
round-robin server access
server access
server request processing limit
Service Manager attributes    12
Service Manager tags
services
SNMP traps
system log messages
traffic shaping for PPP over ATM interfaces
VSAs (vendor-specific attributes)
for dynamic IP interfaces
formats
RADIUS attributes
preference order and
allocation of prefixes to IPv6 clients
radius commands,  See also show radius commands    
radius acct-session-id-format    123
radius algorithm    123
radius calling-station-delimiter    12
radius calling-station-format    12345
radius client
radius connect-info-format
radius connect-info-format command    12
radius disconnect client
radius dsl-port-type    123
radius dynamic-request server
radius ethernet-port-type    123
radius ignore atm-mbs
radius ignore atm-pcr
radius ignore atm-scr
radius ignore atm-service-category
radius ignore egress-policy-name
radius ignore framed-ip-netmask    12
radius ignore ingress-policy-name
radius ignore virtual-router
radius include
ANCP (L2C)-related Juniper Networks VSAs
radius include access-loop-parameters
radius include acct-authentic
radius include acct-delay-time
radius include acct-link-count
radius include acct-multi-session-id
radius include acct-session-id
radius include acct-session-id access-request
radius include acct-terminate-cause    12
radius include acct-tunnel-connection
radius include ascend-num-in-multilink
radius include called-station-id
radius include calling-station-id
radius include class
radius include connect-info
radius include delegated-ipv6-prefix
radius include dhcp-gi-address
radius include dhcp-mac-address
radius include dhcp-options
radius include downstream-calculated-qos-rate
radius include dsl-forum-attributes
radius include egress-policy-name
radius include event-timestamp
radius include framed-compression
radius include framed-interface-id
radius include framed-ip-add acct-start
radius include framed-ip-addr
radius include framed-ip-netmask    1234
radius include framed-ipv6-pool
radius include framed-ipv6-prefix
radius include framed-ipv6-route
radius include framed-route
radius include icr-partition-id
radius include ingress-policy-name
radius include input-gigapkts
radius include input-gigawords
radius include interface-description
radius include ipv6-local-interface
radius include ipv6-nd-ra-prefix
radius include ipv6-primary-dns
radius include ipv6-secondary-dns
radius include ipv6-virtual-router
radius include l2c-downstream-data
radius include l2c-upstream-data
radius include l2tp-ppp-disconnect-cause
radius include mlppp-bundle-name
radius include nas-identifier
radius include nas-port    12
radius include nas-port-id
radius include nas-port-type
radius include output-gigapkts
radius include output-gigawords
radius include pppoe-description
radius include profile-service-description
radius include tunnel-assignment-id
radius include tunnel-client-auth-id
radius include tunnel-client-endpoint
radius include tunnel-interface-id
radius include tunnel-medium-type
radius include tunnel-preference
radius include tunnel-server-attributes
radius include tunnel-server-auth-id
radius include tunnel-server-endpoint
radius include tunnel-type
radius include upstream-calculated-qos-rate    12
radius includeframed-ip-netmask    12
radius nas-identifier
radius nas-port-format    12
radius nas-port-format extended atm
radius nas-port-format extended ethernet
radius override calling-station-id remote-circuit-id
radius override nas-info    123
radius override nas-ip-addr tunnel-client-endpoint
radius override nas-port-id remote-circuit-id    123
radius pppoe nas-port-format unique    12
radius pre-authentication server
radius relay server
radius relay udp-checksum
radius remote-circuit-id-delimiter
radius remote-circuit-id-format
radius rollover-on-reject
radius route-download server
radius server
radius trap acct-server-not-responding
radius trap acct-server-responding
radius trap auth-server-not-responding
radius trap auth-server-responding
radius trap no-acct-server-responding
radius trap no-auth-server-responding
radius tunnel-accounting
radius udp-checksum
radius update-source-addr    123
radius vlan nas-port-format stacked
RADIUS dynamic-request server
change of authorization messages
disconnect messages
how it works
message exchange    12
monitoring
overview
qualifications for disconnect
security and authentication
Service Manager
RADIUS IPv6 attributes
configuring
for DHCPv6 Prefix Delegation
for IPv6 Neighbor Discovery
verifying
for DHCPv6 Prefix Delegation
for IPv6 Neighbor Discovery
RADIUS relay server
configuring
monitoring
radius remote-circuit-id-format command
RADIUS route-download server
configuring
format of routes
how it works    12
per chassis
supported attributes
RADIUS servers
attributes in Access-Accept
overriding configured local pool
attributes used for
DHCPv6 Prefix Delegation
Prefix Delegation and
pool name not returned in Access-Accept
pool name returned in Access-Accept
radius-attributes-override-monitoring
RADIUS-initiated change of authorization
qualifications for change of authorization
RADIUS-initiated disconnect
configuring    12
L2TP LAC users
references
sample network
security and authentication
realm names
configuring
usage
Receive speed AVP
receive window size (RWS).,  See L2TP RWS    
receive-window command    12
redirected authentication    12
remote access (B-RAS).,  See B-RAS applications    
Remote Authentication Dial-In User Service.,  See RADIUS    
remote clients, IP addresses for
remote host command    12
remote system
requesting routers
as customer edge device
in obtaining IPv6 prefixes
assigning prefixes to
using IPv6 local address pools
receipt of IPv6 prefixes
from delegating routers
retransmit command
router-name command    123
RX speed AVP
 

S

S-VLAN links
between CPE and PE routers
pool section for Prefix Delegation
SCR (RADIUS attribute 26-16)
SDX (Service Deployment System) software    12,  See also SRC software    
server-name command    12
service commands
service dhcp-external
service dhcp-local    12
service dhcp-local authenticate
service dhcpv6-local
service-description
service definitions
copying
creating    12
installing    12
modifying
modifying QoS configurations
specifying parameter instances
specifying QoS profiles
uninstalling
service dhcp-local command
service instance
service interim accounting
in a dual stack
of IPv4 and IPv6 services
IPv4 and IPv6 services
overview
Service Manager
CLI support
CoA-Request messages    12
combined IP4 and IPv6 service
example
configuring
Service Manager license
deactivating
setting thresholds
guided entrance    123
IPv4 and IPv6 services
combined, activating
combined, deactivating
combined, overview
in a dual stack, activating
in a dual stack, overview
independent, activating
independent, deactivating
independent, overview
overview    12
license sessions
macros
multiple services
mutex service    12
overview
parameter values
preprovisioning services    12
QoS
considerations
modifying configurations of
referencing configurations of
removing references of
RADIUS dynamic-request server
RADIUS support
RADIUS tags
service definition
parameters
service instance
service session
forcing deactivation
profiles
service session profiles
session thresholds
statistics
macro command
using RADIUS
using the CLI
statistics collection
for external parent groups, setting up
subscriber session ID
subscriber sessions    12
supported platforms
tasks
testing services
Service Manager commands
no service-management owner-session force
no service-management subscriber-session force    12
service-management install
service-management owner-session
service-management service-session-profile
service-management subscriber-session service-session
statistics
time
volume
Service Manager license
configuring
service modules
installing multiple for LNS sessions
service session
Service-Category (RADIUS attribute 26-14)
Service-Description (RADIUS attribute 26-53)
setting
Service-Interim-Acct-Interval (RADIUS attribute 26-140)    12
Service-Session (RADIUS attribute 26-83)    12
Service-Statistics (RADIUS attribute 26-69)
Service-Stats (RADIUS attribute 26-69)
Service-Timeout (RADIUS attribute 26-68)    12
Service-Volume (RADIUS attribute 26-67)    12
session    12
Session and Resource Control.,  See SRC software    
session timeout
configuring
interpreting default value
range for
session-out-of-resource-result-code-override command
Session-Timeout (RADIUS attribute 27)
sessions, L2TP
set dhcp commands
set dhcp vendor-option
set dhcp relay commands
set dhcp relay
set dhcp relay agent sub-option
set dhcp relay assign-giaddr-source-ip
set dhcp relay broadcast-flag-replies    12
set dhcp relay giaddr-selects-interface
set dhcp relay layer2-unicast-replies    12
set dhcp relay options
set dhcp relay override
set dhcp relay preserve-trusted-client-option
set dhcp relay proxy
set dhcp relay trust-all
set dhcp relay proxy commands
set dhcp relay proxy
set dhcp relay proxy send-first-offer
set dhcp relay proxy timeout
set dhcp vendor-option command
shared IP interfaces
shared local address pools
shared tunnel-server ports
using with L2TP    12
show aaa commands
show aaa accounting    12
show aaa accounting default    12
show aaa accounting interval
show aaa accounting vr-group    12
show aaa authentication default    12
show aaa dhcpv6-delegated-prefix
show aaa domain-map    1234
show aaa duplicate-address-check
show aaa intf-desc-format
show aaa ipv6-nd-ra-prefix
show aaa model
show aaa name-servers    12
show aaa profile
show aaa route-download routes    123
show aaa route-download routes global    12
show aaa service accounting interval
show aaa statistics    12
show aaa subscriber per-port-limit    12
show aaa subscriber per-vr-limit    12
show aaa timeout    12
show aaa tunnel-group    12
show aaa tunnel-parameters    123
show aaa user accounting interval    12
show radius route-download    12
show configuration commands
show configuration category aaa global-attributes
show configuration category aaa local-authentication
show configuration category aaa server-attributes include-defaults
show configuration category aaaglobal-attributes
show configuration category aaalocal-authentication
show configuration category aaaserver-attributes include-defaults
show cops info command    12
show cops statistics command    12
show dhcp commands
show dhcp binding
show dhcp count
show dhcp host
show dhcp relay
show dhcp relay proxy statistics
show dhcp relay statistics
show dhcp server
show dhcp server statistics
show dhcp summary command
show dhcp vendor-option command
show dhcp-external command
show ip commands
show ip demux interface
show ip local alias
show ip local pool
show ip local-pool statistics command
show ip service-profile
show ip-subscriber    12
show ip dhcp-capture command
show ip dhcp-external commands
show ip dhcp-external binding
show ip dhcp-external client-id
show ip dhcp-external configuration
show ip dhcp-external statistics
show ip dhcp-local commands
show ip dhcp-local
show ip dhcp-local auth
show ip dhcp-local binding
show ip dhcp-local duplicate-clients
show ip dhcp-local excluded
show ip dhcp-local limits
show ip dhcp-local pool
show ip dhcp-local reserved
show ip dhcp-local statistics    12
show ip dhcpv6-local commands
show ip dhcpv6-local binding
show ip dhcpv6-local dns-domain-searchlist
show ip dhcpv6-local dns-servers
show ip dhcpv6-local prefix-lifetime
show ip dhcpv6-local statistics
show ip http commands
show ip http scalar
show ip http server
show ip http statistics
show ip interface commands
show ip interface
show ip local shared-local command
show ipv6 interface commands
show ipv6 interface
show ipv6 local pool commands
for a single pool
for all configured pools
statistics for a single pool
show l2tp commands
show l2tp    12
show l2tp destination    12
show l2tp destination lockout    12
show l2tp destination summary    12
show l2tp session    12
show l2tp session summary    12
show l2tp tunnel    123
show l2tp tunnel summary    12
show l2tp dial-out commands
show l2tp dial-out
show l2tp dial-out target
show license commands
show license b-ras
show license service-management
show profile commands
show profile
show profile name
show radius commands
show radius accounting servers
show radius accounting statistics
show radius acct-session-id-format
show radius algorithm
show radius attributes-included
show radius authentication servers
show radius authentication statistics
show radius calling-station-delimiter    12
show radius calling-station-format    12
show radius connect-info-format
show radius dsl-port-type    12
show radius dynamic-request servers
show radius dynamic-request statistics
show radius ethernet-port-type
show radius icr-partition-accounting
show radius nas-identifier
show radius nas-port-format
show radius override
show radius pppoe nas-port-format
show radius remote-circuit-id-delimiter
show radius remote-circuit-id-format    12
show radius rollover-on-reject
show radius route-download statistics
show radius servers    12
show radius statistics    1234
show radius trap
show radius tunnel-accounting    12
show radius update-source-address
show radius vlan nas-port-format
show radius override    12
show radius relay commands
show radius relay servers
show radius relay statistics
show radius relay udp-checksum
show service-management commands
show service-management owner-session
show service-management service-definition
show service-management service-session-profile
show service-management subscriber-session
show service-management summary
show sscc commands
show sscc info
show sscc statistics
show sscc version
show subscribers command
show terminate-code command
SNMP traps
configuring for DHCP local servers
configuring for RADIUS servers
overview
source-address command    12
spoofing, IP
preventing
SRC (Session and Resource Control) software
configuring the client
monitoring the client    12
SRC (Session and Resource Control)software
sscc commands,  See also show sscc commands    
sscc address    12
sscc enable
sscc protocol ipv6
sscc protocol lac
sscc retryTimer    12
sscc sourceAddress
sscc transportRouter    12
standalone DHCP local server
standard RADIUS attributes
configuring
for DHCPv6 Prefix Delegation
for IPv6 Neighbor Discovery
IPv6 Neighbor Discovery and
configuring logging severity
warning message
using the same values
for Neighbor Discovery and Prefix Delegation
verifying
for DHCPv6 Prefix Delegation
for IPv6 Neighbor Discovery
State (RADIUS attribute 24)
statistics
for DHCPv6 Prefix Delegation
viewing
statistics collection
for external parent groups
setting up
strip-domain command
subscriber disconnect command
subscriber interface commands
set dhcp relay giaddr-selects-interface
subscriber interfaces
applications
commands
configuring dynamic
configuring static
configuring
multicast routing protocols
policies and Qo
routing protocols
dynamic
inheriting MAC validation state
GRE tunnel configuration
IP over bridged Ethernet configuration
IP over Ethernet configuration
IP over VLAN over Ethernet configuration
monitoring
overview
dynamic
static
static
subscribers
accounting messages
authorization and authentication messages
E Series Broadband Services Routers
limiting active subscribers
preauthentication and AAA LLID
support, technical,  See technical support    
system log messages
 

T

TACACS+
AAA services
accounting
authentication login process
authorization
configuring
daemon    12
host
NAS (network access server)    12
privilege authentication
TACACS+ commands
aaa accounting commands
aaa accounting exec
aaa accounting suppress null-username
aaa accounting tacacs+
aaa authentication enable default    12
aaa authentication login
aaa new-model    12
tacas-server key
tacas-server source-address
tacas-server timeout
tacas-sever host
TCP and TACACS+
technical support
contacting JTAC
Terminal Access Controller Access Control System +.,  See TACACS+    
terminate-code command
test aaa command
text and syntax conventions
timeout command
timeout, configuring for B-RAS applications
traffic shaping for PPP over ATM
translate command
transmit connect speed, L2TP.,  See L2TP transmit connect speed    
tunnel
defined    12
selection, L2TP
switching
tunnel commands, L2TP
tunnel    12
tunnel group
tunnel password
tunnel group mode, mapping to L2TP tunnel
tunnel selection, L2TP
failover between preference levels
failover within preference levels
maximum sessions per tunnel
weighted load balancing
tunnel subscribers, enabling authentication for
tunnel switch profiles, L2TP
applying default profile
applying through AAA domain maps
applying through AAA tunnel groups
applying through RADIUS
AVP relay, configuring    12
configuration guidelines
configuring
how to apply
monitoring
Tunnel-Assignment-Id (RADIUS attribute 82)
Tunnel-Client-Auth-Id (RADIUS attribute 90)
Tunnel-Client-Endpoint (RADIUS attribute 66)
Tunnel-Interface-Id (RADIUS attribute 26-44)
Tunnel-Medium-Type (RADIUS attribute 65)
Tunnel-Preference (RADIUS attribute 83)
tunnel-server command
tunnel-server ports
shared
Tunnel-Server-Auth-Id (RADIUS attribute 91)
Tunnel-Server-Endpoint (RADIUS attribute 67)
tunnel-subscriber authentication command
Tunnel-Type (RADIUS attribute 64)
tunneled PPP session accounting statistics
tunnels, IP
shared tunnel-server ports    12
tx-connect-speed-method command
type command, L2TP    12
 

U

UDP (User Datagram Protocol)
checksums    1234
udp-port command    123
Upstream-Calculated-QoS-Rate (RADIUS attribute 26-142)
user domain, mapping to L2TP tunnel
User-Name (RADIUS attribute 1)
user-name command
user-prefix command
usernames and passwords from a domain
configuring
using shared tunnel-server ports
 

V

valid lifetime
for delegated prefixes
configuring
default
setting
without expiration
validation state, inheriting for MAC addresses
vendor class identifier option
vendor-specific (suboption 9)
vendor-specific attributes.,  See VSAs    
virtual routers
mapping user domain names    123456
redirected authentication
Virtual-Router (RADIUS attribute 26-1)
vlan commands
vlan id
VLAN links
between CPE and PE routers
pool section for Prefix Delegation
VLANs (virtual local area networks)
configuring dynamic subscriber interfaces
VPNs (virtual private networks)
connecting subscribers
VSAs (vendor-specific attributes)
DSL Forum
controlling inclusion of
descriptions
in AAA access and accounting messages
for dynamic IP interfaces
formats
 

W

walled garden.,  See guided entrance    
Web access to E Series router
Windows Internet Name Service.,  See WINS    
WINS, assigning IP addresses    1234