EAP-SIM Configuration
The SIM authentication module handles EAP-SIM authentication for clients using SIM cards.
Follow these steps to configure the EAP-SIM module.
1. In EAP-SIM Configuration, verify that the Enable option is selected (default). This will enable
clients using GSM SIM cards to authenticate with AAA services.
2. In the EAP-SIM Configuration section, configure the following settings for EAP-SIM access:
• User ID Privacy Support: Click this option to add an Active Secret Key.
• Fast Reauthentication Support: Click this option to enable fast reauthentication, which
is useful when SIM authentication happens frequently.
• Reauthentication Realm: Type the reauthentication realm. The default realm is the realm
from the permanent identity of the client.
• Max Successive Reauthentication: Set the number of allowed reauthentication attempts
before requesting fresh triplets and performing a complete authentication. The default is
256. If you enter 0, reauthentication identities will not generated.
3. In the EAP-SIM Secret Key Configuration section, configure the secret keys, which are
used to encrypt the permanent identity to generate pseudonym and reauthentication identity.
a) Click the Create New option to add a key.
b) In Key, type any text string up to 32 characters.
If you do not specify a secret, pseudonyms will not be generated. If you change this value,
all pseudonyms assigned to currently authenticated clients will be invalidated and they will
require reauthentication.
c) Click Save.
4. In the EAP-SIM Cache Cleanup Configuration section, configure the cleanup time for the
cache to be cleaned. At cleanup time, all the cache entries (except the ones which were used
during the last history length) will be deleted.
a) In Cache, click the Enable option to enable cache cleanup.
This option is disabled by default.
b) In Cache Cleanup Time, set the time (hour and minute) when cache cleanup will be
triggered.
c) In Cache History Length, set the maximum size of cache entries. The default it 256.
5. Click Apply.
You have completed configuring EAP-SIM based authentication using AAA server.
SmartCell Gateway 200/Virtual SmartZone High-Scale for Release 3.4.1 Administrator Guide
242
Configuring the System Settings
Configuring Hosted AAA Services