Cabletron Systems SSIM-R8-02 Specifikace Strana 371

  • Stažení
  • Přidat do mých příruček
  • Tisk
  • Strana
    / 394
  • Tabulka s obsahem
  • ŘEŠENÍ PROBLÉMŮ
  • KNIHY
  • Hodnocené. / 5. Na základě hodnocení zákazníků
Zobrazit stránku 370
Enterasys Xpedition User Reference Manual 351
Configuring the LFAP Agent on the XP
Up to three FAS systems can be configured on an XP, although the XP can only send LFAP
messages to a single FAS at a time. The first configured FAS is the primary, so the XP
attempts to connect to it via TCP first. If the connection fails, then the next configured FAS
is tried. A FAS can be configured as the primary FAS for one group of XPs and the
secondary FAS for another group of XPs.
Note: The Traffic Accountant is not designed to reconcile duplicate data records. For
example, if an ACL that is configured for filtering traffic on one XP matches an
ACL on another XP in the network, the same flow information may be collected
on each XP. This can result in duplicate information in the Traffic Accountant
database, which can cause disproportionate accounting and billing numbers.
To configure and enable LFAP on an XP:
1. Configure the ACL rules for the accounting policy and apply the ACL to one or more
interfaces:
Note: The accounting 15-minutes” keywords in the acl permit ip command specifies
that accounting information for the flows that match the ACL are sent to the
configured FAS every 15 minutes.
2. Identify the primary (and secondary) FAS system to which the XP will send LFAP
messages (up to three FAS systems can be configured):
3. Start the LFAP protocol on the XP:
You can use the Policy Manager application on the FAS to create ACLs that are external to
the XP. If you want to configure ACLs on the XP via the Policy Manager application on
the FAS, you will need to configure the following commands on the XP:
1. Set SNMP read-write community strings:
2. Allow external ACL policy control:
ssr(config)# acl 101 permit ip any any any any accounting 15-minutes
ssr(config)# acl 101 apply interface all-ip input output logging off policy local
ssr(config)# lfap set server 134.141.170.82
ssr(config)# lfap start
ssr(config)# snmp set community private privilege read-write
ssr(config)# acl-policy enable external
Zobrazit stránku 370
1 2 ... 366 367 368 369 370 371 372 373 374 375 376 ... 393 394

Komentáře k této Příručce

Žádné komentáře