HP-UX Mobile IPv4 A.03.01 Administrator's Guide

%QPHKIWTKPI'ZVGTPCN###%QORQPGPVU
%QPHKIWTG/QDKNG0QFGUQP###*5GTXGTU
Chapter 5
46
Configure Mobile Nodes on AAAH Servers
Mobile Nodes are configured as “users” on AAA servers. Configure information about
Mobile Node users according to the following restrictions:
The authorization lifetime and the key lifetime must match.
The replay protection mode must be timestamps.
Configuring Mobile Nodes on HP-UX Mobile AAA Servers
Mobile Node users are configured under realms on HP-UX Mobile AAA servers. You can
use the HP-UX Mobile AAA Server Manager to configure the Mobile Node users, as
described below. The Server manager and its related components must be running and
you must have a Server Connection configured for the AAAH server.
1. Go to the Navigation Tree located in the left frame of the HTML page. Select Realms
under the Configuration branch.
2. Go to the main frame of the HTML page. Select the AAAH below the prompt Which
HP-UX Mobile AAA Server do you wish to pull the configuration from.
3. Select New realm in the Define Realms screen.
4. Complete the fields in the Define Realm screen according to the Mobile AAA Server
product documentation. Select the Create button.
5. Go to the Define Realms screen. Select the graphical users icon (under the Auth.
type column) for your realm.
6. Select the name of the AAAH below the prompt Which HP-UX Mobile AAA Server
do you wish to pull the configuration from,.
7. Complete the User Attributes fields as follows:
User Name Enter the user name portion of the NAI for the Mobile Node.
Session Timeout
Configure this according to the Mobile AAA Server product
documentation and the Mobile Node configuration.
Authorization Lifetime
Configure this according to the Mobile AAA Server product
documentation and the Mobile Node configuration. In addition, the
Authorization Lifetime must match the MIP Key Lifetime.
MIP Key Lifetime
Configure this according to the Mobile AAA Server product
documentation and the Mobile Node configuration. In addition, the
MIP Key Lifetime must match the Authorization Lifetime.
Authorization Grace Period
Configure this according to the Mobile AAA Server product
documentation and the Mobile Node configuration.
MIP Replay Mode