HP-UX Mobile IPv4 A.03.01 Administrator's Guide

%QPHKIWTKPI'ZVGTPCN###%QORQPGPVU
%QPHKIWTKPI*QOG#IGPV+PHQTOCVKQPQP###*QOG#IGPV###*5GTXGTU
Chapter 5
39
Configuring Home Agent Information on AAA Home
Agent (AAAH) Servers
The Mobile AAA server on which a Mobile Node is configured is known as its AAA
Home Agent server (AAAH). You must configure information about a Mobile Node’s
Home Agent on the Mobile Node’s AAAH.
Configure information about HP-UX Home Agents according to the following
requirements and restrictions:
Port Number: The AAAH must listen on the same TCP port number that mipd uses
as the destination port for the AAA server connection. By default, mipd uses
destination port number 1812 (the IANA registered port number for RADIUS). You
can configure an alternate port number for mipd using the -ap aaa_port parameter
of the mipconfig configure global command.
TLS: HP-UX Home Agents do not support TLS (Transport Level Security). Do not
configure TLS for HP-UX Home Agents. If you want to protect messages between the
Home Agent and AAAH, use another security mechanism, such as HP-UX IPSec.
FQDN: The Fully-Qualified Domain Name (FQDN) you configure on the AAAH for
the Home Agent must match the FQDN configured on the Home Agent using the
ma-fqdn parameter of the mipconfig configure global command.
Dynamic Home Agent Allocation with Static Home Addresses: If you want to
use this feature, you must configure IP address information about the Home Agent
that includes the Home Agent’s subnet broadcast address for the interface providing
this feature.
This enables the AAAH to allocate the correct Home Agent based on the Home
Agent’s subnet address, which the Mobile Node includes in the Registration Request.
(The Home Agent Address field in the Registration Request will contain the Mobile
Node’s home network subnet broadcast address).
Configuring Home Agent Information on HP-UX Mobile AAA
Servers
This section contains information about configuring Home Agent information that is
specific to HP-UX Mobile AAA servers.
Configuring the Mobile AAA Server Listen Port
You do not have to configure the Mobile AAA server listen port number if you use the
default HP-UX Mobile AAA Server and HP-UX Mobile IPv4 parameters. By default, the
HP-UX Mobile AAA Server listens on the TCP port number 1812, and the mipd daemon
connects to destination port number 1812 on the AAA server. If you changed the mipd
destination port number, you must change the AAA server listen port when you start the
Mobile AAA server. To do this, use the -dtcp option in the iaaaDiameter command or
set the Diameter Port in the Start Options screen of the HP-UX Mobile AAA Server
Manager.