Configuring the iWAG for 3G Mobile IP Users
Command or Action
Step 6
aaa authentication login {default | list-name} { [passwd-expiry]
method1 [method2...]}
Example:
Router(config-sg-radius)# aaa authentication login
default none
Step 7
aaa authorization network authorization-name group
server-group name
Example:
Router(config)# aaa authorization network ISG_PROXY_LIST
group AAA_SERVER_CAR
Step 8
aaa authorization subscriber-service {default {cache | group |
local} | list-name} method1 [method2...]
Example:
Router(config)# aaa authorization subscriber-service
default local group AAA_SERVER_CAR
Step 9
aaa accounting{auth-proxy| system | network | exec | connection
| commands level | dot1x} { {default | list-name } [vrf vrf-name]
{start-stop | stop-only | none} [broadcast] group group-name
Example:
Router(config)# aaa accounting network PROXY_TO_CAR
Step 10
action-type {none | start-stop | stop-only}
Example:
Router(cfg-acct-mlist)# action-type start-stop
Step 11
group {tacacs+ server-group}
Example:
Router(cfg-preauth)# group AAA_SERVER_CAR
Step 12
aaa accounting {auth-proxy | system | network | exec | connection
| commands level | dot1x } {default |list-name } [vrf vrf-name ]
{start-stop | stop-only | none} [broadcast] group group-name
Example:
Router(config)# aaa accounting network ISG_PROXY_LIST
start-stop group AAA_SERVER_CAR
Configuring DHCP when the iWAG Acts as a DHCP Proxy
This section describes how to configure the Dynamic Host Configuration Protocol (DHCP) for the iWAG
solution when the iWAG acts as a DHCP proxy.
Intelligent Wireless Access Gateway Configuration Guide
10
Overview of the Intelligent Wireless Access Gateway
Purpose
Sets AAA authentication at login.
Runs authorization for all network-related service
requests.
Specifies one or more AAA authorization methods
for the Cisco ISG to provide subscriber service.
Enables AAA accounting of requested services
for billing and security purposes when either the
RADIUS server or the TACACS+ server is used.
Enables the type of actions to be performed on
accounting records.
Specifies the AAA TACACS+ server group to use
for preauthentication.
Enables AAA accounting of requested services
for billing and security purposes when you use
either the RADIUS server or the TACACS+
server.
OL-30226-03