HP-UX Mobile IPv4 A.03.01 Administrator's Guide

#UUKIPKPI*QOG#IGPVUCPF(QTGKIP#IGPVU
4GSWKTGOGPVUCPF4GUVTKEVKQPU
Chapter 3
28
An Agent with AAA Mobile Node clients can be a Home Agent or a Foreign Agent,
but not both. For example, if the local node has AAA Mobile Node clients, you cannot
configure one interface for Home Agent services and another interface for Foreign
Agent services. In addition, you cannot configure an interface for combined Home
and Foreign Agent services.
The Mobile Nodes must be configured on a Mobile AAA server. This server is the
AAA Home Agent server (AAAH). The Home Agent for the Mobile Nodes must be
able to establish a TCP connection with the AAAH. On the AAAH, you must
configure information about the Home Agent. You must also configure information
about the AAAH on the Home Agent.
A node can serve as both Home Agent and AAAH.
Each Foreign Agent that hosts visiting AAA Mobile Nodes must be able to establish
a TCP connection with a Mobile AAA server. This AAA server is the AAA Foreign
Agent Server (AAAF). On the AAAF, you must configure information about the
Foreign Agent. You must also configure information about the AAAF on the Foreign
Agent.
A node can serve as both Foreign Agent and AAAF.
The Home Agent must be able to resolve the Foreign Agent’s AAA FQDN to an IP
address using gethostbyname(). If the Foreign Agent has multiple IP addresses, all
addresses must resolve to the same hostname. (Most networks use DNS to resolve
gethostbyname() queries.)
The Home Agent must be able to resolve the Foreign Agent’s IP address from
incoming packets to the Foreign Agent’s AAA FQDN using gethostbyaddr(). (Most
networks use DNS to resolve gethostbyaddr() queries.)
The Foreign Agent must be able to resolve the Home Agent’s IP address from
incoming packets using gethostbyaddr(). If the Home Agent has multiple IP
addresses, all addresses must resolve to the same host name.
The maximum number of concurrent AAA sessions on a Home or Foreign Agent is
1024
The maximum number of AAA Node keys (Home Agent - Mobile Node keys or
Foreign Agent - Mobile Node keys) is 1024
The maximum number of AAA Host keys (Home Agent - Foreign Agent keys) is 1024
Route Optimization Requirements
To use Route Optimization, the topology must meet the following requirements:
The Home Agent must be an HP-UX system running the Mobile IPv4 daemon
(mipd).
The Correspondent Node must be an HP-UX system running the Mobile IPv4 Route
Optimization daemon (miprod). The Correspondent Node cannot be a Home or
Foreign Agent.
Mobile IPv4 messages between the Home Agent and Correspondent Node must be
authenticated. This requires a shared secret (you must configure the same security
key on the Home Agent and Correspondent Node).