SERVIDOR PPPOE ROTEADOR CISCO COM MKAUTH SEM CONTROLE DE BANDA

Comando para PPPoE Server em roteador cisco.

Não faz controle de banda automático, quem poder contribui com o comando manual.

Comando para visualizar conexões ativas.
sh vpdn

Comando para desconectar conexões ativas.
clear pppoe rmac 9c4e.1071.a46a



Using 2051 out of 196600 bytes
!
version 12.3
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname pppoe-server
!
boot-start-marker
boot-end-marker
!
!
aaa new-model
!
!
aaa authentication ppp default group radius
aaa authorization network default group radius
aaa accounting network default start-stop group radius
!
aaa session-id common
!
resource policy
!
mmi polling-interval 60
no mmi auto-configure
no mmi pvc
mmi snmp-timeout 180
ip subnet-zero
ip cef
!
!
no ip dhcp use vrf connected
!
!
no ip ips deny-action ips-interface
!
no ftp-server write-enable
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
no crypto isakmp ccm
!
!
!
bba-group pppoe bba-pppoe
virtual-template 1
!
!
interface Loopback0
ip address 10.0.0.254 255.255.255.255
!
!
interface FastEthernet0/0
ip address 10.0.0.2 255.255.255.252
ip nat outside
ip virtual-reassembly
duplex auto
speed auto
!
interface FastEthernet0/1
no ip address
ip virtual-reassembly
duplex auto
speed auto
pppoe enable group bba-pppoe
!
interface Virtual-PPP1
no ip address
!
interface Virtual-Template1
mtu 1480
ip unnumbered Loopback0
ip virtual-reassembly
peer default ip address pool pool1-pppoe
ppp authentication chap callin
ppp ipcp dns 1.1.1.1
!
interface Virtual-TokenRing1
no ip address
ring-speed 16
!
ip local pool pool1-pppoe 10.1.1.2 10.1.1.254
ip classless
ip route 0.0.0.0 0.0.0.0 10.0.0.1
!
!
no ip http server
no ip http secure-server
ip nat inside source list 101 interface FastEthernet0/0 overload
!
access-list 101 permit ip any any
!
!
!
radius-server attribute 8 include-in-access-req
radius-server attribute 55 include-in-acct-req
radius-server attribute 55 access-request include
radius-server attribute 30 original-called-number
radius-server attribute 4 172.16.31.2
radius-server attribute 31 mac format ietf
radius-server host 172.16.31.2 auth-port 1812 acct-port 1813
radius-server key 123456
!
control-plane
!
!
!
!
!
!
!
!
!
line con 0
line aux 0
line vty 0 4
!
end

Para adicionar comentários, você deve ser membro de MK-AUTH.

Join MK-AUTH

Votos 0
Enviar-me um email quando as pessoas responderem –

Respostas

  • ola amigo precisa criar os planos no banco de dados e adicionar no roteador as policy-map.


    NOVOS PLANOS
    FR0001Mega
    FR0002Mega
    FR0005Mega
    FR00060Mega
    -------------------------
    FR00100Mega
    FR00150Mega
    FR00300Mega

    MYSQL

    # Conecta no banco de dados mkradius
    mysql -u root -p mkradius


    # Consulta na tabela de planos
    select * from radgroupreply;

    MODELO NO MYSQL CADASTRADO PELO MKAUTH
    +-------+---------------------+---------------------+----+----------------------------------------+
    | 20619 | FRU0060Mega | Mikrotik-Rate-Limit | = | 6144000k/61440000k 0/0 0/0 0/0 8 0/0 |
    | 20620 | FRU0150Mega | Mikrotik-Rate-Limit | = | 15360000k/153600000k 0/0 0/0 0/0 8 0/0 |
    | 20621 | FRU0300Mega | Mikrotik-Rate-Limit | = | 30720000k/307200000k 0/0 0/0 0/0 8 0/0 |
    | 20623 | FRU0100Mega | Mikrotik-Rate-Limit | = | 10240000k/102400000k 0/0 0/0 0/0 8 0/0 |
    | 20624 | FRU0005Mega | Mikrotik-Rate-Limit | = | 1024000k/5120000k 0/0 0/0 0/0 8 0/0 |
    | 20625 | FRU0002Mega | Mikrotik-Rate-Limit | = | 512000k/2048000k 0/0 0/0 0/0 8 0/0 |
    | 20626 | FRU0001Mega | Mikrotik-Rate-Limit | = | 512000k/1024000k 0/0 0/0 0/0 8 0/0 |
    +-------+---------------------+---------------------+----+----------------------------------------+

    MODELO DE PLANOS CISCO AVPAIR PARA CADASTRAR MANUALMENTE NO MYSQL


    INSERT INTO `radgroupreply` VALUES
    (21619,'FRU0060Mega','Cisco-Avpair','=','ip:sub-qos-policy-out=FRU0060DW'),
    (22619,'FRU0060Mega','Cisco-Avpair','+=','ip:sub-qos-policy-in=FRU0060UP'),
    --
    INSERT INTO `radgroupreply` VALUES
    (21620,'FRU0150Mega','Cisco-Avpair','=','ip:sub-qos-policy-out=FRU0150DW'),
    (22620,'FRU0150Mega','Cisco-Avpair','+=','ip:sub-qos-policy-in=FRU0150UP'),
    --
    (21621,'FRU0300Mega','Cisco-Avpair','=','ip:sub-qos-policy-out=FRU0300DW'),
    (22621,'FRU0300Mega','Cisco-Avpair','+=','ip:sub-qos-policy-in=FRU0300UP'),
    --
    (21623,'FRU0100Mega','Cisco-Avpair','=','ip:sub-qos-policy-out=FRU0100DW'),
    (22623,'FRU0100Mega','Cisco-Avpair','+=','ip:sub-qos-policy-in=FRU0100UP'),
    --
    (21624,'FRU0005Mega','Cisco-Avpair','=','ip:sub-qos-policy-out=FRU0005DW'),
    (22624,'FRU0005Mega','Cisco-Avpair','+=','ip:sub-qos-policy-in=FRU0005UP'),
    --
    (21625,'FRU0002Mega','Cisco-Avpair','=','ip:sub-qos-policy-out=FRU0002DW'),
    (22625,'FRU0002Mega','Cisco-Avpair','+=','ip:sub-qos-policy-in=FRU0002UP'),
    --
    (21626,'FRU0001Mega','Cisco-Avpair','=','ip:sub-qos-policy-out=FRU0001DW'),
    (22626,'FRU0001Mega','Cisco-Avpair','+=','ip:sub-qos-policy-in=FRU0001UP');


    PLANOS BLOQUEADO E PLANOS15 NO MYSQL

    INSERT INTO `radgroupreply` VALUES
    (22628,'PLANO15','Cisco-Avpair','=','ip:sub-qos-policy-out=PLANO15DW'),
    (22629,'PLANO15','Cisco-Avpair','+=','ip:sub-qos-policy-in=PLANO15UP'),
    (22630,'BLOQUEADO','Cisco-Avpair','=','ip:sub-qos-policy-out=BLOQUEADODW'),
    (22631,'BLOQUEADO','Cisco-Avpair','+=','ip:sub-qos-policy-in=BLOQUEADOUP');


    PLANOS BLOQUEADO E PLANO15 NOS ROTEADOR CISCO

    !1- BLOQUEADO
    policy-map BLOQUEADODW
    class class-default
    police cir 1048576 bc 196608 be 393216
    conform-action transmit
    exceed-action drop

    policy-map BLOQUEADOUP
    class class-default
    police cir 524288 bc 98304 be 196608
    conform-action transmit
    exceed-action drop
    violate-action drop


    !1- PLANO15
    policy-map PLANO15DW
    class class-default
    police cir 1048576 bc 196608 be 393216
    conform-action transmit
    exceed-action drop

    policy-map PLANO15UP
    class class-default
    police cir 524288 bc 98304 be 196608
    conform-action transmit
    exceed-action drop
    violate-action drop


    VISUALIZAR TABELA

    select * from radgroupreply;


    CONFIGURACAO ROTEADOR CISCO

    !1- 1MEGA
    policy-map FRU0001DW
    class class-default
    police cir 1048576 bc 196608 be 393216
    conform-action transmit
    exceed-action drop

    policy-map FRU0001UP
    class class-default
    police cir 524288 bc 98304 be 196608
    conform-action transmit
    exceed-action drop
    violate-action drop

    !2- 2MEGA
    policy-map FRU0002DW
    class class-default
    police cir 2097152 bc 393216 be 786432
    conform-action transmit
    exceed-action drop

    policy-map FRU0002UP
    class class-default
    police cir 774144 bc 145152 be 290304
    conform-action transmit
    exceed-action drop
    violate-action drop
    exit
    exit
    exit
    !3- 5MEGA
    policy-map FRU0005DW
    class class-default
    police cir 5242880 bc 983040 be 1966080
    conform-action transmit
    exceed-action drop
    !
    policy-map FRU0005UP
    class class-default
    police cir 1048576 bc 196608 be 393216
    conform-action transmit
    exceed-action drop
    violate-action drop
    exit
    exit
    exit

    !4- 60MEGA
    policy-map FRU0060DW
    class class-default
    police cir 62914560 bc 11796480 be 23592960
    conform-action transmit
    exceed-action drop
    !
    policy-map FRU0060UP
    class class-default
    police cir 6291456 bc 1179648 be 2359296
    conform-action transmit
    exceed-action drop
    violate-action drop
    exit
    exit
    exit
    !

    !5- 100MEGA
    policy-map FRU0100DW
    class class-default
    police cir 104857600 bc 19660800 be 39321600
    conform-action transmit
    exceed-action drop
    !
    policy-map FRU0100UP
    class class-default
    police cir 10485760 bc 1966080 be 3932160
    conform-action transmit
    exceed-action drop
    violate-action drop
    exit
    exit
    exit
    !

    !6- 150MEGA
    policy-map FRU0150DW
    class class-default
    police cir 157286400 bc 29491200 be 58982400
    conform-action transmit
    exceed-action drop
    !
    policy-map FRU0150UP
    class class-default
    police cir 15728640 bc 2949120 be 5898240
    conform-action transmit
    exceed-action drop
    violate-action drop
    exit
    exit
    exit
    !

    !7- 300MEGA
    policy-map FRU0300DW
    class class-default
    police cir 314572800 bc 58982400 be 117964800
    conform-action transmit
    exceed-action drop
    !
    policy-map FRU0300UP
    class class-default
    police cir 31457280 bc 5898240 be 11796480
    conform-action transmit
    exceed-action drop
    violate-action drop
    exit
    exit
    exit
    !

  • Pessoal, quem ainda tiver dúvidas de como fazer essa integração, é só entrar em contato pelo painel desse site: beesolutions.com.br

    Valew!

This reply was deleted.