EasyManua.ls Logo

Juniper JUNOS OS 10.4 - RELEASE NOTES - Page 28

Juniper JUNOS OS 10.4 - RELEASE NOTES
197 pages
Print Icon
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
ValueDescriptionAttribute Name
Attribute
Number
string:
tunnel-password
Tunnel password in clear text.Tunnel-Password26-9
integer: 4-octetMaximum number of sessions
allowed in a tunnel.
Tunnel-Max-Sessions26-33
string:
tunnel-group-name
Name of the tunnel group
(profile) assigned to a domain
map.
Tunnel-Group26-64
[Subscriber Access]
Dynamic reconfiguration of extended DHCPv6 local server clients (MX Series
routers)You can enable dynamic reconfiguration of DHCPv6 clients to enable the
extended DHCPv6 local server to initiate a client update without waiting for the client
to initiate a request. In subscriber management scenarios, a client may need to be
quickly updated with its network address and configuration in the event of server
changes, such as a restructuring of the service providers addressing scheme or a change
in the local server IP addresses that were provided to the clients. Include the reconfigure
statement to enable dynamic reconfiguration with default values for all DHCPv6 clients
at the [edit system services dhcp-local-server dhcpv6] hierarchy level, and for DHCPv6
clients serviced by a specified group of interfaces at the [edit system services
dhcp-local-server dhcpv6 group group-name] hierarchy level.
Optional statements enable you to modify default reconfiguration values: The number
of reconfiguration attempts, the interval between the first and second attempts, what
happens to the client if all reconfiguration attempts fail, what happens to the client in
the event of a RADIUS-initiated disconnect, whether to bind clients that do not support
reconfiguration, and whether to send an authentication token. Issue the request dhcpv6
server reconfigure command to initiate reconfiguration. Use the show dhcpv6 server
binding and show dhcpv6 server statistics commands to monitor client-server
interactions.
[Subscriber Access]
Support for ascend data filters (RADIUS attribute 242) in subscriber firewall filters
(MX Series routers)You can now configure subscriber management to use ascend
data filters (ADFs) to create and apply firewall filters to subscriber traffic. The ADF
creates a rule that specifies match conditions on the source and destination IP address,
the protocol, and the source and destination port, and also specifies the action to
perform (such as accept or discard). The ADF rule also specifies the filter direction,
and can optionally provide traffic class and policer information. The router supports
ADF rules for family types inet and inet6.
Subscriber management uses dynamic profiles to obtain the ADF rules from the RADIUS
server. You can use the new Junos OS predefined variables ($junos-adf-rule-v4 for
family inet and $junos-adf-rule-v6 for inet6) to map ADF rules to Junos OS functionality,
or you can statically create ADF rules.
Copyright © 2010, Juniper Networks, Inc.28
JUNOS OS 10.4 Release Notes

Table of Contents

Related product manuals