Anda di halaman 1dari 38

Huawei AAA

V500R005
Product Description

Issue 01

Date 2017-3-16

HUAWEI TECHNOLOGIES CO., LTD.


Copyright Huawei Technologies Co., Ltd. 2012. All rights reserved.
No part of this document may be reproduced or transmitted in any form or by any means without prior
written consent of Huawei Technologies Co., Ltd.

Trademarks and Permissions

and other Huawei trademarks are trademarks of Huawei Technologies Co., Ltd.
All other trademarks and trade names mentioned in this document are the property of their respective
holders.

Notice
The purchased products, services and features are stipulated by the contract made between Huawei and
the customer. All or part of the products, services and features described in this document may not be
within the purchase scope or the usage scope. Unless otherwise specified in the contract, all statements,
information, and recommendations in this document are provided "AS IS" without warranties, guarantees or
representations of any kind, either express or implied.
The information in this document is subject to change without notice. Every effort has been made in the
preparation of this document to ensure accuracy of the contents, but all statements, information, and
recommendations in this document do not constitute the warranty of any kind, express or implied.

Huawei Technologies Co., Ltd.


Address: Huawei Industrial Base
Bantian, Longgang
Shenzhen 518129
People's Republic of China

Website: http://www.huawei.com
Email: support@huawei.com

Huawei Proprietary and Confidential


Issue 01 (2017-3-16) i
Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

About This Document

Purpose
This document describes the HUAWEI AAA product, including the positioning, structure,
networking, application scenarios, and technical specification of the product.

Notice: the product AAA is the same as the product AAA-SW to be quoted in BOQ.

Revision Records
Updates between document issues are cumulative. Therefore, the latest document issue
contains all updates made in previous issues.

Updates in Issue 01
Initial release

Issue 01 (2017-3-16) Huawei Proprietary and Confidential iii


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

Contents

About This Document ................................................................................................................... iii


1 Introduction.................................................................................................................................1-1
1.1 Positioning .................................................................................................................................................... 1-1
1.2 Benefits ......................................................................................................................................................... 1-2

2 Architecture .................................................................................................................................2-1
2.1 Overview ....................................................................................................................................................... 2-1
2.1 Logical Structure ........................................................................................................................................... 2-1
2.2 Hardware Structure ....................................................................................................................................... 2-5
2.2.1 Hardware View .................................................................................................................................... 2-5
2.2.2 Hardware Features ............................................................................................................................... 2-6
2.2.3 Physical Parameters ............................................................................................................................. 2-6

3 Product and Application Scenarios ........................................................................................3-1


3.1 Overview ....................................................................................................................................................... 3-1
3.2 Application Scenarios .................................................................................................................................... 3-1
3.2.1 Broadband&WLAN Application ........................................................... Error! Bookmark not defined.
3.2.2 WCDMA/GPRS Application ................................................................. Error! Bookmark not defined.
3.2.3 LTE Application ................................................................................................................................... 3-1
3.2.4 WiFi/3GPP Access ............................................................................................................................... 3-2
3.2.5 Proxy Application .................................................................................. Error! Bookmark not defined.
3.2.6 VPDN Application ................................................................................. Error! Bookmark not defined.

4 Operation and Maintenance ....................................................................................................4-3


4.1 Overview ....................................................................................................................................................... 4-3
4.2 Benefits ......................................................................................................................................................... 4-4
4.2.1 Unified Maintenance ............................................................................................................................ 4-4
4.2.2 OM Functions ...................................................................................................................................... 4-4
4.2.3 Rich monitoring function, Reliable control network status .................................................................. 4-5
4.2.4 Rich Online Help, Facilitate the use of Operator ................................................................................. 4-5

5 Technical Specification .............................................................................................................5-1


5.1 Protocols and Standards ................................................................................................................................ 5-1
5.2 Key Index ...................................................................................................................................................... 5-3
5.2.1 Fault Possibility ................................................................................................................................... 5-3

Issue 01 (2017-3-16) Huawei Proprietary and Confidential v


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

5.2.2 Faults Resume Time ............................................................................................................................. 5-3


5.2.3 Capacity and Performance ................................................................................................................... 5-3
5.3 Environment Requirements ........................................................................................................................... 5-6

6 Acronyms and Abbreviations ..................................................................................................6-1

vi Huawei Proprietary and Confidential Issue 01 (2017-3-16)


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

Figures

Figure 1-1 The position of the AAA in network ................................................................................................. 1-2


Figure 2-1 AAA logical structure ....................................................................................................................... 2-1

Figure 2-2 AAA Physical Architecture and External Interface ........................................................................... 2-2
Figure 2-3 Front view of the ATAE .................................................................................................................... 2-5

Figure 2-4 Rear view of the ATAE ..................................................................................................................... 2-5

Figure 2-5 View of ATAE Blade ......................................................................................................................... 2-6

Figure 3-1 Broadband application Network Diagram .......................................... Error! Bookmark not defined.

Figure 3-2 WCDMA/GPRS Network Diagram .................................................... Error! Bookmark not defined.

Figure 3-3 WiFi/3GPP Network Diagram .......................................................................................................... 3-2

Figure 3-4 Proxy application Network Diagram .................................................. Error! Bookmark not defined.

Figure 3-5 VPDN Application Network Diagram ................................................ Error! Bookmark not defined.

Figure 4-1 Operation management mode ........................................................................................................... 4-3

Issue 01 (2017-3-16) Huawei Proprietary and Confidential vii


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

Tables

Table 2-1 Application, production function, external NE and protocol relationship .......................................... 2-3
Table 2-2 Main physical parameters of the ATAE shelf ..................................................................................... 2-6

Table 2-3 Main physical parameters of an ATAE blade ...................................................................................... 2-7

Issue 01 (2017-3-16) Huawei Proprietary and Confidential ix


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

1 Introduction

1.1 Positioning
The description based on HUAWEI AAA V500R005 Version.
With the 3G network operators around the world large-scale construction, intelligent terminals,
such as iPhone, Android rapid adoption, a variety of mobile broadband applications like the
outbreak mushroomed, mobile applications from the original simple voice communication
into the era of multi-service convergence, VoIP, Online Game, Streaming Media, MTV, GPS
navigation and community networks, etc., marking the mobile network into the mobile
broadband era. According to the industrys leading research institutions, the authority Informa
Telecoms & Media predicted that the next 5 years, mobile broadband data volume will be
about 100 times than 2009 years.
With the growth of data services, there are different users and business existing in the mobile
broadband networks. How to better operate pipeline, reduce CAPEX and OPEX costs of
operators, bring more benefits and better user experience, which is the biggest challenge faced
by all the full-services operators.
Mobile broadband networks exist on the face of different users and different business
situations, how to better operate a good pipeline, reduce CAPEX and OPEX costs of operators,
for operators to bring greater benefits and better user experience, is full-service operators face
the biggest challenge.
As the core component of the Huawei data and voice next-generation billing and business
supporting solution, AAA supports all business, the entire users pipeline policy control. As
the charging gateway with OCS system, the AAA supports controlling and charging for the
E2E pipeline resources. The AAA will help operators well managed and operated network
pipeline, ensure traditional voice channel ongoing operations, better support data pipeline
continuing operations.
Huawei AAA can work as traditional INs SCP, named OCG, Online Control and Charging
Gateway, PCRF, Policy and Charging Rules Function, Service Broker and Routing. AAA,
Authentication Authorization and Accounting.
This document describes the AAA function
Figure 1-1 shows the position of the AAA in the network:

Issue 01 (2017-3-16) Huawei Proprietary and Confidential 1-1


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

Figure 1-1 The position of the AAA in network

1.2 Benefits
The AAA will bring the following benefits for the operators:

Open Service Platform


Support for multiple types of networks
The AAA supports all networks. Such as Fixed Broadband, WiFi, 3GPP, LTE, Femtocell,
3GPP2, WiMAX.
Support for multiple services
The AAA provides individual service, enterprise service, VPDN service etc.
Support interwork with Subscriber Data Center.
The AAA supports interwork with Subscriber Data Center using LDAP interface.
Component-based
The AAA design is based on components that can be independently and dynamically
upgraded. The component design model significantly enhances AAA maintainability and
expandability.

Flexible Business Rules


Flexible Authentication Policy
The AAA supports configure the authentication policy based on the rule engine.
Flexible Authorization Policy
The AAA supports configure the authorized attribute based on the subscriber identity,
domain, NAS client etc.
Flexible Accounting Policy
The AAA supports postpaid charging mode and supports interwork with OCS to provide
prepaid charging mode, in this case, AAA as diameter credit control charging gateway.
Flexible Proxy Policy
The AAA supports configure the proxy policy based on the subscriber identity, domain,
NAS client etc.
Flexible accounting message forwarding Policy

1-2 Huawei Proprietary and Confidential Issue 01 (2017-3-16)


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

The AAA supports configure the accounting message forwarding policy based on the
subscriber identity, domain, NAS client etc. And can forward to the multiple targets for
one accounting message.

Rapid Third-Party Customization


Various service capability sets
Service capability sets separate services from protocols and implement loose coupling
between the service layer and the underlying network, allowing the AAA to provide
services quickly.
SOAP interface provided for external applications
Internal services provide an open SOAP interface for external applications, and external
applications can access the internal services through the SOAP protocol.

High Reliability
The two-node cluster redundancy mechanism prevents single-point failures.
The N+1 cluster mode provides the load balancing function.

High Performance
A high-performance underlying communication platform is used to shield the differences
between operating systems and to provide a componentized, distributed, and
high-performance service running and development environment.

Issue 01 (2017-3-16) Huawei Proprietary and Confidential 1-3


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

2 Architecture

2.1 Overview
The AAA adopts modularized design. The module can be deployed based on demands.

2.1 Logical Structure


Figure 2-1 shows the AAA logical structure.

Figure 2-1 AAA logical structure

SEE Core
HUAWEI AAA adopts HUAWEI SEE (Service Execution Environment) platform.
The SEE Core is a basic platform and it encapsulates the operating system and the hardware.
Engineers do not need to consider the features of the operating system and the hardware when
they are developing services on the platform.
The SEE Core provides various basic services, including component containers, message
buses, distributed objects management, network management, log management, and
component integration.

Issue 01 (2017-3-16) Huawei Proprietary and Confidential 2-1


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

The SEE Core also provides a unified interface definition language (IDL) for internal
components by using message buses. The IDL simplifies the communication between internal
components.

Resource Adapter
The resource adapters in the access layer enable the system to communicate with external
network entities by converting external messages and internal IDL messages. These adapters
are included Radius adapter, diameter adapter, MAP adapter and so on.

SCS
The Service Capability Set (SCS) provides call control based on RADIUS/diameter and
service schedule functions. It also provides some commonly used components.

Reusable Unit
The layer provides the reusable unit, for example, policy rule, for the up layer application

Application
The application is the functions which can be provided by AAA.
Physical Structure
Huawei AAA physical entity and its external interface:

Figure 2-2 AAA Physical Architecture and External Interface

2-2 Huawei Proprietary and Confidential Issue 01 (2017-3-16)


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

Table 2-1 Application, production function, external NE and protocol relationship

External Protocol Description Reference


Network
Element

NAS RADIUS This protocol RFC 2865


performs RFC 2866
authentication and
charging between RFC 2867
Network Access RFC 2868
Server (NAS) and RFC 3576
AAA.
RFC 3588
3GPP TS 29.061 (R7)
OCS DCC This protocol enables RFC 4006
AAA to work with
OCS to implement
online charging.
CRM SOAP and These protocols N/A
Provision SFTP enable third-party
systems to manage
Billing subscriber data and
services and send
CDRs.
O&M SNMP and These protocols SNMP V3
SFTP report alarms and
key performance
indicators (KPIs).

BMP: Business Management Point


The BMP is the core component for service management. The BMP provides a Web Service
interface. Third-party systems such as the provisioning can access the AAA through the Web
Service interface to perform operations such as service handling.

FEP: Front End Processor


Adapt and translate all protocols, which make it can be done by SEE platform. The protocols
are included Radius, diameter, MAP and so on.

SDU: Service Data Unit


The SDU stores subscriber data, policy rules, session information, network nodes
configuration, etc.

SEE: Service Execution Environment


The SEE is the core component for the service process. It is the Radius Server to process
radius messages including authentication and accounting messages. The SEE deal with
variant logic and protocol to implement AAA functions.

Issue 01 (2017-3-16) Huawei Proprietary and Confidential 2-3


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

RBI: Record Bill Interface


The RBI processes CDR file and can act as ftp server. The billing system gets CDR files from
RBI.

USAU: Universal Signaling Access Unit


The USAU converts the signaling transmitted from the SS7 signaling network to the SEE.
The SEE connects to the HLR through the USAU.

2.1.2 Cloud Architecture


Figure 2-3 shows the cloud architecture.

Figure 2-3 Cloud architecture

The cloud architecture contains the following layers:


AAA application: allows each component to run on VMs deployed on the Linux
operating system, provides open, scalable, AAA services , reports service KPIs to the
network management system through UOA, receives instructions from IT PaaS, updates
local configurations and routing information about nodes, and implements elastic scaling
of applications.
Cloud Service Management: provides the following capabilities:
Application resource orchestration: applies for or releases resources based on the
service resource consumption. Open OpenStack interfaces can be used to manage
the vCenter or KVM virtual resource pool.
Application life cycle management: completes the process of resource plan,
application deployment, commercial use, and reclamation and embeds the
UniAgent component of IT PaaS into application components during deployment.

2-4 Huawei Proprietary and Confidential Issue 01 (2017-3-16)


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

Cloud O&M: supports factory installation, monitors application status, performs


troubleshooting, and automatically collects resource KPIs and service KPIs of
application VMs at an interval of 1 (configurable) minute.
Elastic scaling engine: supports rule-based automatic and manual scaling and
configures KPI reference and time combination in scaling rules.
Infrastructure as a service (IaaS): uses hardware and virtualization software to provide
VM resources and physical device resources. Virtualization software supported includes
FusionSphere KVM and VMware vSphere. Hardware includes the host, storage, and
network devices.
Host device: Huawei E9000 blade servers are supported in the cloudization delivery
scenario and Huawei ATAE servers are supported in the non-cloudization delivery
scenario.
Storage device: Huawei 5500 and 5800 and IT-certified third-party storage devices
are supported.
Network device: Huawei S6300 and S9300 series are supported.

2.2 Hardware Structure


This topic describes the hardware structure of the AAA.
The ATAE is a carrier-class processing platform with high performance. It is designed to meet
the service application requirements for high specialization and high integration.

2.2.1 Hardware View


Figure 2-4 Front view of the ATAE

Figure 2-5 Rear view of the ATAE

Issue 01 (2017-3-16) Huawei Proprietary and Confidential 2-5


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

Figure 2-6 View of ATAE Blade

2.2.2 Hardware Features


High expandability
The performance of the ATAE can be improved through the method of adding service
blades or cascaded frames. The ATAE also supports smooth upgrade and expansion.
High reliability
The ATAE ensures high reliability of the AAA software and hardware through functions
such as fault tolerance, error correction, and redundancy of core components.
High security
The management of control data security and operation and maintenance (O&M)
security ensures the high security of the ATAE.

2.2.3 Physical Parameters


Table 2-2 describes the main physical parameters of the ATAE shelf.

Table 2-2 Main physical parameters of the ATAE shelf

No. Physical Description


Parameter
1 Dimensions W * D * H = 436 mm (main body) or 482.66 mm (including
mount angles) * 420 mm (excluding cabling troughs) * 619.5
mm
2 Weight Installation weight: 34 kg (excluding blank filler panels, service
blades, switch blades, and interface blades)
Operating weight: 90 kg (full configuration)
3 Power Working voltage range: -40 V DC to -72 V DC
performance Maximum equipment power consumption: 4000 W
indexes
4 Slot 14 blade slots and 2 SMM slots
5 Fan A fan tray can meet the heat dissipation requirements of a 300 W
blade in a single slot, and all fan trays can meet the heat
dissipation requirements of a shelf of up to 4800 W.
6 Bus Hybrid dual-star IPMB bus

2-6 Huawei Proprietary and Confidential Issue 01 (2017-3-16)


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

Table 2-2 describes the main physical parameters of an ATAE blade.

Table 2-3 Main physical parameters of an ATAE blade

No. Physical Description


Parameter

1 CPU Two Intel Xeon 5138 dual-core processors with low power
consumption
2 Memory 32 GB
3 Interface Six Gigabit Ethernet interfaces and one FC loopback daughter
card
4 Operating SuSE Linux 10
system
5 Power Two -48V DC power inputs for redundant backup (provided by
the backplane of the shelf)
6 Maximum 214.2 W
power
7 Maximum 4.76 kg
weight
8 Hard disk 2 * 73 GB
9 Dimensions W * D * H = 322.3 mm * 280 mm * 29 mm

The physical parameters provided here are only for reference. The actual parameters may vary in actual
situation.

Issue 01 (2017-3-16) Huawei Proprietary and Confidential 2-7


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

3 Product and Application Scenarios

3.1 Overview
As an access server, AAA AAA authenticates, authorizes, and charges subscribers who access
the network from Network Access Server (BRAS/AC/GGSN). AAA interacts with the
operation support system (OSS) to manage subscriber data, service data, and AAA.

3.2 Application Scenarios

3.2.1 LTE Application


Figure 3-1 LTE Network Diagram

The main points are:

Issue 01 (2017-3-16) Huawei Proprietary and Confidential 3-1


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

Through BSS system, user request for using LTE networks and get account from BSS.
The BSS system synchronizes the user access profile to AAA system through SOAP
interface.
A user powers on the mobile phone and requests to access the Internet. The GGSN
interacts with the HUAWEI AAA to authenticate the user.
The HUAWEI AAA generates CDR for subscribers.
The PDN GW allows the user to access the Internet. When the user is online, the GGSN
collects the information about the duration and volume that the user uses and reports the
information to the HUAWEI AAA.
HUAWEI AAA supports forward messages to 3rd application such as DPI, and supports
session information query via HTTP protocol.

3.2.2 WiFi/3GPP Access


Figure 3-2 WiFi/3GPP Network Diagram

The main points are:


The WLAN AAA should authenticate the 3G terminal which can support WLAN access
when the terminal access WLAN network.
After accessed WLAN network, 3G terminal shall be authenticated by 3GPP AAA.
HUAWEI AAA can support WLAN and 3GPP convergent platform.
The HUAWEI AAA generates CDR for subscribers.
The GGSN allows the user to access the Internet. When the user is online, the GGSN
collects the information about the duration and volume that the user uses and reports the
information to the HUAWEI AAA.

3-2 Huawei Proprietary and Confidential Issue 01 (2017-3-16)


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

4 Operation and Maintenance

4.1 Overview
The HUAWEI AAA operation management mode is described as follows:
Network maintenance personnel of a carrier configure the devices and manage the NEs
on the I2000.
Maintenance personnel of the central telecommunications room configure service data
on the Web Client, i.e. SMAP.
Customer service personnel handle services on the SMAP or in a third-party system such
as the CRM or Provisioning system.

Figure 4-1 Operation management mode

Issue 01 (2017-3-16) Huawei Proprietary and Confidential 4-3


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

4.2 Benefits
4.2.1 Unified Maintenance
The benefits refer to that the I2000 provides unified maintenance and management functions
for the HUAWEI AAA system during installation, upgrade, routine maintenance,
troubleshooting, statistics analysis and Management.
I2000 Server is the convergent manage point of the whole OM system, it communicates with
UOA (Uniform Operation and maintenance Agent, also known as UOAgent), AMOS (Alarm
Monitor of Outsourcing System) running on the CBP, BMP and other servers, to realize
network entity monitor and management. Usually, each equipment room will be equipped
with one set of I2000 server.
As the client of I2000, iTrace, iConfig and I2000 client provides friendly GUI for to operator
to carry out diagnoses, configuration and other management operations.
AAA OM system provide alarm, statistics, diagnose and other functions, it can connect to
Huawei iManager I2000 or other NMS via SNMP.

4.2.2 OM Functions
OM provides abundant statistics and measurement items, include:
Traffic items, such as numbers of Radius messages received/sent in the unit period
Key service performance items
Resource related items and etc.
Statistics items will be collected by I2000 periodically from AAA components, the result can
be stored in OM system, and retrieved by external system such as data warehouse.
OM system provides AAA wide unified alarm numbering and management, including alarm
collection, alarm report and resume, alarm enquiry. The content of alarm in OAM system
includes:
ID
Category, fault or event
Level, critical, major, minor and prompt
Timestamp
Entity ID, used to locate which component raise the alarm
Reason
Advice for troubleshooting
Additional information
I2000 client provides visible and audible alarm prompt. Equipment contains different level
alarm will be displayed in different icon, and the sound for different alarm is also different.

4-4 Huawei Proprietary and Confidential Issue 01 (2017-3-16)


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

4.2.3 Rich monitoring function, Reliable control network status


The I2000 provide real time monitoring including processor monitor, fault inspection, etc.,
which enable provide effective methods for problem detect.

4.2.4 Rich Online Help, Facilitate the use of Operator


The AAA provides rich online help, which can help the operator to operate and maintain the
system.

Issue 01 (2017-3-16) Huawei Proprietary and Confidential 4-5


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

5 Technical Specification

5.1 Protocols and Standards

AAA complies with the following standards, but not all the feature or the field can be
supported by the AAA.

No Name Notes
RFC 1901: Introduction to Community-based
1
SNMPv2
RFC 1902: Structure of Management Information
2 for Version 2 of the Simple Network
SNMP V2 Standards
Management Protocol (SNMPV2)
RFC 1905: Protocol Operations for Version 2 of
3 the Simple Network Management Protocol
(SNMPV2)
4 RFC 2618: RADIUS Authentication Client MIB
5 RFC 2619: RADIUS Authentication Server MIB Radius Protocol Standards
6 RFC 2620: RADIUS Accounting Client MIB MIB

7 RFC 2621: RADIUS Accounting Server MIB


RFC 2068: Hypertext Transfer Protocol --
8 HTTP Protocol Standards
HTTP/1.1
9 RFC 2138: RADIUS
10 RFC 2139: RADIUS accounting
11 RFC 2865: RADIUS
Radius Standards Protocol
12 RFC 2866: RADIUS accounting
RFC 2867: RADIUS accounting modification
13
supported by the tunneling protocol

Issue 01 (2017-3-16) Huawei Proprietary and Confidential 5-1


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

No Name Notes
RFC 2868:RADIUS Attributes for Tunnel
14
Protocol Support
15 RFC 2869: RADIUS extension
EAP-TTLS Reference
16 draft-funk-eap-ttls-v1-01.txt
Standard
17 draft-funk-tls-inner-application-extension-03.txt EAP-TLS Reference Standard
EAP-TTLS Reference
18 draft-ietf-pppext-eap-ttls-05.txt
Standard
RFC2716: PPP EAP TLS Authentication
19 EAP-TLS Reference Standard
Protocol
20 RFC2246: The TLS Protocol Version 1.0 TLS Reference Standard
RFC2759: Microsoft PPP CHAP Extensions, Microsoft CHAP Used in
21
Version 2 EAP-TTLS
RFC3579: RADIUS (Remote Authentication Dial
22 In User Service) Support For Extensible EAP Reference Standard
Authentication Protocol (EAP)
RFC3748: Extensible Authentication Protocol
23 EAP Reference Standard
(EAP)
RFC3749: Transport Layer Security Protocol
24 TLS Reference Standard
Compression Methods
RFC4346: The Transport Layer Security (TLS)
25 TLS Reference Standard
Protocol Version 1.1
3GPP TS29.273 Technical Specification Group
26 Core Network and Terminals; Evolved Packet
System; 3GPP EPS AAA Interfaces (Release 8)
3GPP TS23.402 Technical Specification Group
27 Services and System Aspects; Architecture
enhancements for non-3GPP accesses (Release 8)
3GPP TS33.402 Technical Specification Group
3GPP
Services and System Aspects; 3GPP System
28
Architecture Evolution (SAE); Security aspects
of non-3GPP accesses (Release 8)
3GPP TS 29.002:Mobile Application Part (MAP)
29
specification R9
3GPP TS29.234 3GPP system to Wireless Local
30
Area Network (Release 8)

5-2 Huawei Proprietary and Confidential Issue 01 (2017-3-16)


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

5.2 Key Index


5.2.1 Fault Possibility
Critical faults: MTBF - Mean Time Between Failures > 2000 days
Major faults: MTBF > 1000 days
The MTBF value is estimated according to minicomputer vendors information. It may vary
under certain condition.

5.2.2 Faults Resume Time


Critical faults: MTTR - Mean Time To Repair < 30 minutes (cluster switchover)
Major faults: MTTR < 30 minutes (cluster switchover)

Notes:
Fault resume duration above for critical or major faults is achieved by dual-cluster switchover. For
troubleshooting, critical fault will be handled in 24 hours; major fault will be handled in 48 hours. In
case of hardware spare part replacement, additional hours are needed.

5.2.3 Capacity and Performance


Key Performance Index

Maximum number of operators supported by BMP: 1000


Maximum OPS (Operations Per Second) supported by BMP
Single BMP can handle maximum 150 non-batch operations per second, while actual
supported OPS depend on the hardware equipment.
Maximum number of subscribers supported by BMP
100,000,000 subscribers, actual capacity depends on the hardware configuration.

Maximum number of subscribers supported by SNE


100,000,000 subscribers, actual capacity depends on the hardware configuration.
The default configuration model for dual system which is formed by two ATAE blades, is
shown as the follow table. The model is determinate by the actual online traffic.

Issue 01 (2017-3-16) Huawei Proprietary and Confidential 5-3


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

Item Specification

Capacity ATAE Max Register User 500K Postpaid User


Hardware
Online User 150K Postpaid User
Performanc ATAE Radius Postpaid: 189/s
e Hardware Authentication
Rate
Total Radius Postpaid: 739/s
Message
Authentication <= 100ms 95% Authentication
Response Time Request
<= 3 99% Authentication
Request
Accounting <= 50s 95% Accounting
Response Time Request
<= 3s 99% Accounting
Request

Rack Dimension Height 2200mm


Width 600mm
Depth 800mm
Installation Internal width: 19 in. Internal height:
Dimension 46 U
Weight With package 120kg
Power Input Power Specification: -48 VDC,
4-channel power input, 80 A for
Power peak each. The max power is 5777 W.

5-4 Huawei Proprietary and Confidential Issue 01 (2017-3-16)


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

Item Specification

System Cate Type Height Width Depth Weig Power


Hardware gory (mm) (mm) (mm) ht (W)
(KG)
Host ATAE Please refer to Error! Reference source
not found.
Stora OceanStor S3900 86.1 446 582 23.9 569
ge with
24
PCS
disk
LAN LS- 43.6 442 220 2.5 20
Switc S3328TP-AC
h
Firew FW-E200-AC 130.50 436.20 420.00 18 100
all

Transmissi Connecting with outer network through Firewall, each E200 firewall
on provide 2*10/100M Ethernet electrical interface
Interface

Input DC -48 V
Power

Temperatur Operating temperature: 5 to 35 (41 to 95)


e

Relative Operating Humidity: 10 to 90 percent RH, no condensing, 27 wet


Humidity bulb, IEC 60068-2-3&56
Air Operating altitude: 03,000 m (010,000 ft.)
Pressure

Electromag EN 60950-1:2001
netic EN 55022: 1998 + A1: 2000 + A2: 2003
Compatibil
ETSI EN 300 386 V1.3.3: 2005
ity
ROHS
Availabilit 99.999%
y

Switching 2Minutes
Time

MTBF 87600 Hours

MTTR 48 Minutes

Issue 01 (2017-3-16) Huawei Proprietary and Confidential 5-5


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

About Capacity Expansion


AAA capacity can be expanded in two ways:
Small scale expansion
BMP, FEP and SEE have multiple processes architecture and can be deployed in different
node. Every subsystem is deployed in single ATAE blade to small scale expansion.

Large scale expansion


Add new SEE, BMP and FEP can increase system capacity in great scale, multiple AAA
components make up of distribute system, it can serve up to tens of millions subscribers.

5.3 Environment Requirements


Temperature Operating temperature: 5 to 35 (41 to 95)

Relative Humidity Operating Humidity: 10 to 90 percent RH, no condensing, 27 wet bulb,


IEC 60068-2-3&56
Air Pressure Operating altitude: 03,000 m (010,000 ft.)

5-6 Huawei Proprietary and Confidential Issue 01 (2017-3-16)


Copyright Huawei Technologies Co., Ltd.
HUAWEI AAA V500R005 Production Description confidential

6 Acronyms and Abbreviations

3GPP The Third Generation Partner Plan

APN Access Point Name

AC Apply Charging

AAA Authentication, Authorization and Accounting

BME Business Management Environment

BMP Business Management Point

BSS Business Support System

FTP File Transfer Protocol

FEP Front End Processor

GGSN Gateway GPRS Support Node

GPRS General Packet Radio Service

GSM Global System for Mobile communications

HLR Home Location Register

HTTP Hypertext Transfer Protocol

LAC Location Area Code

LN Love Number

Issue 01 (2017-3-16) Huawei Proprietary and Confidential 6-1


Copyright Huawei Technologies Co., Ltd.
Huawei AAA
Tables Product Description

MAP Mobile Application Part

NAS Network Access Server

OCS Online Charging System

OSS Operation Support System

RBI Record Bill Interface

RADIUS Remote Authentication Dial-In User Service

SDU Service Data Unit

SGSN Serving GPRS Support Node

SIGTRAN Signaling Transport

WCDMA Wideband Code Division Multiple Access

WIFI Wireless fidelity

6-2 Huawei Proprietary and Confidential Issue 01 (2017-3-16)


Copyright Huawei Technologies Co., Ltd.

Anda mungkin juga menyukai