PDN Gateway Overview
▀ Features and Functionality - Base Software
▄ Cisco ASR 5x00 Packet Data Network Gateway Administration Guide
40
Accumulated volume reporting can be measured by total volume, the uplink volume, or the downlink volume as
requested by the PCRF. When receiving the reported usage from the PCEF, the PCRF deducts the value of the usage
report from the total allowed usage for that IP-CAN session, usage monitoring key, or both as applicable.
AAA Server Groups
Value-added feature to enable VPN service provisioning for enterprise or MVNO customers. Enables each corporate
customer to maintain its own AAA servers with its own unique configurable parameters and custom dictionaries.
This feature provides support for up to 800 AAA server groups and 800 NAS IP addresses that can be provisioned
within a single context or across the entire chassis. A total of 128 servers can be assigned to an individual server group.
Up to 1,600 accounting, authentication and/or mediation servers are supported per chassis.
ANSI T1.276 Compliance
ANSI T1.276 specifies security measures for Network Elements (NE). In particular it specifies guidelines for password
strength, storage, and maintenance security measures.
ANSI T1.276 specifies several measures for password security. These measures include:
Password strength guidelines
Password storage guidelines for network elements
Password maintenance, e.g. periodic forced password changes
These measures are applicable to the ASR 5x00 and the Web Element Manager since both require password
authentication. A subset of these guidelines where applicable to each platform will be implemented. A known subset of
guidelines, such as certificate authentication, are not applicable to either product. Furthermore, the platforms support a
variety of authentication methods such as RADIUS and SSH which are dependent on external elements. ANSI T1.276
compliance in such cases will be the domain of the external element. ANSI T1.276 guidelines will only be implemented
for locally configured operators.
APN Support
The P-GW's Access Point Name (APN) support offers several benefits:
Extensive parameter configuration flexibility for the APN.
Creation of subscriber tiers for individual subscribers or sets of subscribers within the APN.
Virtual APNs to allow differentiated services within a single APN.
In StarOS v12.x and earlier, up to 1024 APNs can be configured in the P-GW. In StarOS v14.0 and later, up to 2048
APNs can be configured in the P-GW. An APN may be configured for any type of PDP context, i.e., PPP, IPv4, IPv6 or
both IPv4 and IPv6. Many dozens of parameters may be configured independently for each APN.
Here are a few highlights of what may be configured:
Accounting
: RADIUS, GTPP or none. Server group to use. Charging characteristics. Interface with mediation
servers.
Authentication
: Protocol, such as, CHAP or PAP or none. Default username/password. Server group to use.
Limit for number of PDP contexts.