Index


A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z

GS: Getting Started Guide; IG: Integration Guide; MT: Monitoring and Troubleshooting Guide;
NG: Network Guide; SG: Solutions Guide; SP: Services and Policies Guide; SS: Subscribers and Subscriptions Guide


Index Key

A

aaaCheck
Merit    IG-137, IG-145
RAD    IG-161
aaaDeny
Merit    IG-137, IG-145
RAD    IG-152, IG-161
aaaReply
Merit    IG-137, IG-145
RAD    IG-152, IG-161
access control information
DirX directory server    IG-64
eTrust Directory    IG-44
Oracle Internet Directory    IG-50, IG-52
Sun ONE Directory Server    IG-57
access control scheme
activating access
operator    IG-105
subscription operator    IG-105
binding    IG-97
cachedAuthentication profile    IG-98
common access rights    IG-106
directories    IG-96
directory entries    IG-95
directory-specific    IG-107
DirX directory server    IG-107
LDAP    IG-108
lock subtree    IG-101
mutex group objects    IG-103
network subtree    IG-102
parameter subtree    IG-100
permissions    IG-96
policy subtree    IG-100
RADIUS profile    IG-99
service, policy, and global parameter objects    IG-104
sspServiceProfile    IG-98
subscriber, retailer, and service profiles    IG-102
substitution access    IG-106
Sun ONE Directory Server    IG-109
system management    IG-101
UmcConfiguration    IG-98
umcRadius Person    IG-99
umcUser    IG-99
user class    IG-96
user subtree    IG-104
workflow subtree    IG-103
access DNs    NG-181
access lines    SS-6
description    SS-5
access policy, examples    SP-243
DHCP    SP-244
PPP    SP-246
access services    SP-4
adding    SP-5
configuring subscriptions    SS-171
access subscribers    SS-4
configuring    SS-146
accessing
Prepaid Account Administration application    SG-151
account server, prepaid services demo    SG-146
manual configuration    SG-149
publishing object references    SG-148
script configuration    SG-147
starting    SG-149
stopping    SG-150
accounting
applications    GS-4
basic RADIUS accounting plug-in    SS-102
custom RADIUS accounting plug-ins    SS-102
description    GS-7
flat file accounting plug-ins    SS-102
flexible RADIUS accounting plug-ins    SS-102
SAE, description    NG-10
accounting log file
Merit    IG-145
RAD    IG-162
SPE    IG-129
accounts
administering with Prepaid Account Administration application    SG-152
aci attribute (Sun)    IG-57
ACP (Admission Control Plug-In)
event publishers, configuring    SG-123
overview    GS-34
SAE, configuring for    SG-121
Web administration application    GS-20
action classes in the sample residential portal    SS-188
action threshold, service schedules    SP-59, SP-65
actions. See policy actions
Adaptive Services PIC    SP-93
See also JUNOS ASP policy rules
add-on packages
description    GS-65
directory types    GS-15
DirX directory server    IG-64
eTrust Directory    IG-43
migration    GS-151
OpenLDAP    GS-80, IG-72
Oracle Internet Directory    IG-50
Sun ONE Directory Server    IG-56-IG-57
address pools
assigned IP subscribers
configuring    SG-107
See also IP address pools    NG-42
admin command    GS-73
administration user interface (SPE)    IG-130
administrative users    GS-52
admintool command    GS-71, GS-75
agents. See NIC
aggregate services    SP-17, SP-28-SP-37
adding    SP-31
before you configure    SP-30
fragment services    SP-28
infrastructure services    SP-37
mandatory services    SP-28
Python expressions    SP-33
redundancy    SP-28
sessions    SP-29
activation    SP-29
deactivation    SP-30
monitoring    SP-30
subscriber reference expressions, configuring    SP-32
timers, configuring    SP-36
alarms, license server    GS-116
APIs (application programming interfaces)
CORBA plug-in SPI    GS-32
CORBA remote API    GS-32, NG-9
description    GS-8
documentation    GS-161, SP-60, SS-224
NIC    NG-165
provided with SAE    NG-8
SAE core API    GS-32, NG-8
application manager
role, in PCMM environment    SG-34
application programming interfaces. See APIs
application protocols, managing    SS-351-SS-356
apply-groups statement, JUNOS routing platforms    SP-158
architecture
enterprise service portal    SS-289
SDX software    GS-3-GS-6
ASG (Advanced Services Gateway)
description    GS-24
Subscriber Manager    GS-24
assigned IP subscribers
PCMM network    SG-45
address pools    SG-107
IP address pools    SG-45, SG-64
setting timeouts    SG-31
third-party devices    IG-6
IP address pools    IG-6
voice over IP    SG-31
attribute value pairs
Merit    IG-137, IG-145
RAD    IG-152
Attribute/name section, LDAP authentication (SPE)    IG-124
attributes
AAA
Merit    IG-145
RAD    IG-161
JUNOSe-specific
integration    IG-121, IG-142
Merit    IG-136, IG-140, IG-145
RAD    IG-154, IG-161, IG-162
LDAP    IG-39
Attributes section, customizing authentication
file (SPE)    IG-129
authentication
credentials (SPE)    IG-130
log file, customizing (SPE)    IG-129
authentication plug-ins
configuring    SS-111
types    SS-84
authentication/authorization transfer vectors (AATVs)
Merit    IG-136
RAD    IG-151
authfile file
Merit    IG-142
RAD    IG-157
authorization plug-ins
configuring    SS-111
types    SS-84

B

backing up
DirX directory    IG-70
OpenLDAP directory    IG-72
Sun ONE directory    IG-60
backup directory    GS-163
bandwidth on demand. See BoD
Base variable (SPE)    IG-124
basic RADIUS accounting plug-in    SS-102
configuring    SS-107
basic RADIUS authentication plug-in    SS-111
configuring    SS-112
BEEP, JUNOS routing platforms    NG-4
configuring port    NG-76
connecting    NG-66
binary directory (RAD)    IG-150
Bind
LDAP authentication (SPE)    IG-121
request (SPE)    IG-121, IG-126
binding
access control    IG-97
BindName
LDAP authentication (SPE)    IG-122
LDAP server (SPE)    IG-123
SDX application (SPE)    IG-124
user password attribute (SPE)    IG-124
BindPassword
LDAP authentication (SPE)    IG-122
LDAP server (SPE)    IG-123
Blocks Extensible Exchange Protocol. See BEEP
BoD (bandwidth on demand)
services    SS-246, SS-258-SS-265
subscriptions    SS-334-SS-381
Bootstrap section, LDAP authentication (SPE)    IG-121
browser requirements (SPE)    IG-114

C

cable modem termination system. See CMTS devices
cacerts files, LDAPS    IG-77
cachedAuthentication and access controls    IG-98
callback interface    SS-283
captive portal
implementing    SS-226
preventing access to resources    SS-225
using with next-hop action    SP-212
CDs for SDX software distribution    GS-52
certificate authority (CA)    MT-52, NG-78
certificate files, LDAPS    IG-77
certificate signing request (CSR), SAE Web Admin    MT-52, NG-80
certificates, securing SAE Web Admin    MT-51
Class
Merit    IG-145
RAD    IG-162
SPE    IG-129
class of service. See CoS
classification scripts
configuring    SS-52
criteria
definition    SS-50
glob matching    SS-53
joining    SS-53
regular expression matching    SS-54
descriptions    SS-49
DHCP classification
configuring    SS-71
criteria    SS-72
description    SS-49
targets    SS-73
interface classification
configuring    SS-58
criteria    SS-58
description    SS-49
examples    SS-60
how it works    SS-50
targets    SS-60
testing    MT-74
structure    SS-52
subscriber classification
configuring    SS-62
criteria    SS-63
description    SS-49
DHCP options    SS-66
enterprise subscriber example    SS-69
how it works    SS-51
static IP subscriber example    SS-68
subscriber group example    SS-69
targets    SS-68
testing    MT-73
wholesaler/retailer example    SS-70
target
definition    SS-50
expressions    SS-52
types    SS-52
classify-traffic condition    SP-104
application protocol
defining    SP-186
map expressions    SP-187
configuring    SP-171-SP-193
destination network, setting    SP-176
expanded classifiers    SP-105
configuring    SP-172, SG-144
extended classifiers    SP-111
configuring    SP-173
ICMP type and code, setting    SP-182
IGMP type, setting    SP-182
IP protocol, setting    SP-179
JUNOS filter conditions, setting    SP-184
match direction, setting    SP-174
multiple classifiers    SP-104
network protocol, setting    SP-175
packet length, setting    SP-179
PCMM I02 and I03    SP-111
configuring    SP-173
source network, setting    SP-176
SPI (security parameter index), setting    SP-182
TCP flags, setting    SP-182
ToS byte, setting    SP-181
client type 1, PCMM    SG-36
client type 2, PCMM    SG-37
CMTS devices
adding objects to directory    SG-60
adding virtual router objects to directory    SG-62
role    SG-34
commands
keytool    IG-77
Common Information Model (CIM)    IG-33
component distribution scenarios
consolidated installation    GS-46-GS-48
distributed installation    GS-41-GS-43
regionalized installation    GS-44-GS-45
single host installation    GS-40
component installation    GS-72
component interactions
DHCP
initial login    SS-17
persistent login    SS-20
subscriber account login    SS-19
subscriber logout    SS-22
enterprise subscribers
login    SS-26
remote session activation    SS-32
JUNOS routing platforms and SAE    NG-4
PPP
login    SS-13
logout    SS-15
static IP subscribers    SS-23
subscription activation    SS-28
subscription deactivation    SS-30
compress command    GS-75
config command    GS-175
configuration
enable LDAP host (SPE)    IG-116
files (SPE)    IG-115, IG-116
procedure (SPE)    IG-116, IG-117
configuration directory
Merit    IG-140, IG-142
RAD    IG-150
configuration group, JUNOS routing
platforms    NG-66, NG-95
configuration level in Enterprise Manager Portal    SS-327
configuration manager, instantiating for NIC    NG-166
configuration tool. See local configuration tool
configuring
SAE for ACP    SG-121
consolidated installation
component distribution scenario    GS-46-GS-48
redundancy schemes    GS-47
content rules    IG-40
controlled load service, FlowSpec    SP-113
COPS (Common Open Policy Service)
connection with JUNOSe routers    NG-38
COPS-PR versus COPS XDR    NG-4
DHCP interactions
initial login    SS-18
logout    SS-22
persistent login    SS-21
subscriber account login    SS-19
interface startup interactions    SS-16
JUNOSe router connection    NG-4, NG-38
configuring router    NG-61, NG-62
configuring SAE    NG-46
PPP interactions
login    SS-14
logout    SS-15
static IP subscriber interactions    SS-23
subscription activation interactions    SS-30
subscription deactivation interactions    SS-31
CORBA (Common Object Request Broker Architecture)
object reference in external plug-ins    SS-95
plug-in interface
enterprise service portal    SS-290-SS-291
remote API    NG-9, SS-224
CORBA-based plug-in SPI. See plug-ins, external
CoS (class of service)    SP-92
ToS byte, setting    SP-181
credentials
authentication (SPE)    IG-130
bind to LDAP server (SPE)    IG-123
LDAP authentication (SPE)    IG-122
crontab file    IG-85, IG-90, SS-276
custom RADIUS accounting plug-ins    SS-102
configuring    SS-109
custom RADIUS authentication plug-ins    SG-23, SS-111
configuring    SS-114
customized interface modules    NG-9

D

data directory (RAD)    IG-150
data integrators
adding VPNs    IG-90, SS-270
configuring    IG-85
deactivating invalid subscriptions
to VPNs    IG-92, SS-275
description    IG-81
developing    IG-84
executing    IG-90
getting help    IG-83
logging properties    IG-85
order of processors    IG-86
planning    IG-84
processors
Database Reader    IG-86
description    IG-82
Enterprise Audit File Reader    IG-88
LDAP Reader    IG-87
LDAP Writer    IG-89
suite, installing    IG-84
XML File Reader    IG-88
XML File Writer    IG-89
Data over Cable Service Interface Specifications.
See DOCSIS protocol
data security, Policy Editor    SP-135
database
files
installation (SPE)    IG-115
previous installations (SPE)    IG-116
integrating data into directory    IG-82
JDBC drivers    IG-84
Database Reader    IG-86
Data-over-Cable Service Interface Specifications. See DOCSIS
datastream format    GS-75
DCU (destination class usage)    SS-268
default policies    SP-94
example    SP-243
installing on router    SP-95
reloading on router    SP-95
default retailer authentication plug-ins    SS-135, SS-136
default SDX installation directory    GS-71
default.properties file    GS-93
demonstration application, prepaid services    SG-145
denial-of-service attacks    SS-238
deploying
Prepaid Account Administration application    SG-151
deployment scenarios
enterprise service portal    SS-291
SDX software    GS-40
DES (directory eventing system)    GS-163
sample configuration    GS-168
SDX properties    GS-165
standard properties    GS-164
using
large directories    GS-171
OpenLDAP    GS-171
destination class usage    SS-268
DHCP (Dynamic Host Configuration Protocol)
access policy example    SP-244
address assignment    SS-86
classification scripts. See classification scripts
options    SS-74
profiles    SS-77
subscribers
login process    SS-16-SS-21
logout process    SS-22
dictionary files with JUNOSe parameters
Merit    IG-139
RAD    IG-154
SPE    IG-119
differentiated QoS    GS-8
Differentiated Services code point, ToS byte    SP-181
directed accounting (SPE)    IG-128
directed authentication (SPE)    IG-127, IG-128
directory
access control scheme    IG-95-IG-110
access rights    IG-31
client    GS-15
configuring
redundancy    GS-163
type    GS-169
default SDX installation    GS-71
deleting entries    GS-169
description    GS-10
enterprise service portal    SS-290
eventing and failover, description    GS-15
exception handling, Policy Editor    SP-135
failover    GS-163
finding new entries    GS-169
LDAP version 3 compatibility    GS-14
managing problems    GS-170
multimaster replication    NG-172
prepackaged integration    GS-15
primary    GS-163
provisioning    IG-67
RADIUS    GS-33
reading data    IG-82
redundancy    IG-30
retrieving changed data    GS-163
schema    IG-33-IG-40
secondary (backup)    GS-163
supported directory servers    IG-31
synchronizing    SP-135
transferring data    IG-81
updates to    IG-30
Workflow application    GS-30
See also LDAP
directory eventing system. See DES
Directory Information Shadowing Protocol    GS-42
directory migration
cloning the directory server    GS-152
DirX    GS-153
OpenLDAP    GS-152
Sun ONE    GS-153
completion
DirX    GS-156
OpenLDAP    GS-156
Sun ONE    GS-156
configuration file    GS-154
DirX slave directories    GS-149
host preparation    GS-151
installing directory packages    GS-151, GS-154
OpenLDAP slave directories    GS-148
script    GS-146, GS-155
shadowed environment    GS-148
DirX    GS-149
OpenLDAP    GS-148
Sun ONE    GS-150
updating the host    GS-157
directory server
cloning    GS-152
deployment with remote SAE    SS-291
supported    GS-57
third-party    GS-15
See DirX directory server; eTrust Directory; OpenLDAP directory server; Oracle Internet Directory; Sun ONE Directory Server
Directory Service Protocol    GS-42
directory shadows    GS-42
DirX directory server
access control scheme    IG-107
add-on package    GS-15, IG-64
backing up directory    IG-70
cloning the directory server    GS-153
deployment with remote SAE    SS-291
directory user    IG-65
dirx user environment    IG-68, IG-69
installing    IG-66
integrating with SDX software    IG-64-IG-67
integration    GS-14, GS-15
loading sample data    IG-67
obtaining    IG-65
restoring directory database    IG-70
slave directories, migrating    GS-149
standards    IG-64
starting    IG-68, IG-69
stopping    IG-69
superuser environment    IG-69
uninstalling    IG-68
dirxadm (DirX)    GS-149
DirXmetahub    IG-64, IG-67
DISP (Directory Information Shadowing Protocol)    GS-42
distinguished name. See DN
distributed installation
reliability    GS-43
scalability    GS-43
simplified management and security    GS-43
DIT (Directory Information Tree)
content rules    IG-40
structure rules    IG-40
dlm1Chassis object class    IG-38
DN (distinguished name)
NIC resolution    NG-181
subscriber data    NG-15
DOCSIS policy actions    SP-105
configuring    SP-195
DOCSIS protocol    SG-35
Document Object Model. See DOM
document type definitions. See DTDs
DOM (Document Object Model)    IG-86
domain name parsing
configuring    SS-45
testing    MT-75
domains
IP service edge    SG-40
IP subscriber edge    SG-40
radio frequency    SG-40
draft RFCs    GS-210
drop profile maps
configuring    SP-230
drop probability, setting    SP-232
fill level, setting    SP-232
DSCP (Differentiated Services code point), ToS byte    SP-181
DSP (Directory Service Protocol)    GS-42
DTDs (document type definitions), data integrators    IG-82
dtterm command    GS-63
duplicate entries    GS-190
duplicate entries in SDX Admin    GS-190
dynamic Web pages    GS-7

E

editing level, SDX Configuration Editor    GS-194
effective period, service schedules    SP-61
embedded AdminServer authorization plug-in    SS-137
end-to-end services    SG-40
enterprise
description    SS-5
hierarchy    SS-6
service parameters    SS-284
subscriptions    SS-6
Enterprise Audit File Reader    IG-88
Enterprise Manager Portal
application protocols, managing    SS-352-SS-356
BoD subscriptions    SS-334-SS-381
configuration level    SS-327
deployment settings    SS-299
directory eventing    SS-315
firewall exception rules
stateful firewalls    SS-368
stateless firewalls    SS-359
firewall subscriptions    SS-356-SS-373
fixed addresses for outgoing traffic    SS-381
help    SS-325
NAT
IP address    SS-374, SS-376
rules for traffic    SS-378
NAT Address Management Portal    SS-305
NAT rules    SS-377, SS-381
overview    SS-282, SS-326
policies    SS-245-SS-268
public IP addresses, configuring
incoming traffic    SS-379
outgoing traffic    SS-378
schedules    SS-327-SS-334
services    SS-245-SS-268
Enterprise Service Portal audit plug-in    SS-316-SS-320
logs    IG-82
using with VPN Subscription Deactivator    SS-275
enterprise service portals
accessing    SS-287
architecture    SS-289
communication protocols    SS-290
configuring directory connections    SS-297
data, displaying    SS-321
deploying    SS-305
description    GS-27
improving performance    SS-283
installing    SS-296-SS-305
IT Manager audit plug-in sample    SS-318-SS-320
locating in SDX software distribution    SS-281
logging properties    SS-314
NIC proxy    SS-314
operators, managing    SS-322, SS-324
overview    SS-279
performance    SS-283
planning    SS-292
prerequisites    SS-287, SS-295, SS-321, SS-385, SS-399
properties    SS-306
remote SAE properties    SS-315
search bases    SS-312
server description    SS-290
service directory connection    SS-310
subscriber directory connection    SS-307
value substitution    SS-286
value substitution for policy parameters    SS-286
See also Enterprise Manager Portal
enterprise subscribers    SS-3
adding to directory    SS-156
enterprise subscribers, login process    SS-26
enterprise tag library    SS-280, SS-281
equipment registration
deleting    MT-67
description    SS-187
viewing on SAE    MT-67
See also sample residential portal
ERX VSA    SP-11, SP-15
/etc/services file (Merit)    IG-137
eTrust Directory
add-on package    GS-15, IG-43
installing    IG-45
integrating with SDX software    IG-45
integration    GS-14
Juniper SDX eTrust Directory
displaying status    IG-47
starting    IG-46
stopping    IG-47
load script    IG-43, IG-46
loading sample data    IG-46
setup.sh script    IG-44, IG-46
event messages    MT-3
categories    MT-10
severity levels    MT-10
system logging    MT-7
writing to text file    MT-5
event notification
DHCP server    SG-117
IP address manager    SG-117
PCMM network    SG-117
RADIUS server    SG-117
event notification, PCMM network
configuring properties    SG-54
description    SG-47
event notification, third-party devices
configuring properties    IG-20
description    IG-7
event publishers
accessing    SS-91
configuring in property file    SS-99
configuring with SDX Configuration Editor    SS-134
default retailer authentication, configuring    SS-135
default retailer DHCP authentication,
configuring    SS-136
description    SS-84
global, configuring    SS-135-SS-137
retailer-specific    SS-138
service-specific    SS-137
virtual router-specific    SS-138
events
IT manager audit    SS-316
publishing    SG-123
examples
access policy
PPP    SP-246
exclusions to service schedule    SP-63, SP-71, SP-73
expanded classifiers    SP-105
configuring    SP-172, SG-144
expressions
map, application protocol conditions    SP-187
parameter definitions    SP-267-SP-273
policy fields    SP-158
extended classifiers, PCMM    SP-111
configuring    SP-173
external applications, interaction with NIC    NG-165
external database (SPE)    IG-121
external plug-ins. See plug-ins
extranet clients
adding to VPNs
Enterprise Manager portal    SS-273
LDAP clients    SS-273
SDX Admin    SS-273
removing from VPNs    SS-275

F

failover directories    GS-163
feature sets for installation    GS-72
file format translation    GS-75
file system format    GS-75
file transfer, verifying    GS-75
files
ipnat.conf    SS-228
WEB-INF/jboss-web.xml    SS-192
WEB-INF/portalBehavior.properties    SS-192
WEB-INF/struts-config.xml    SS-192, SS-195
WEB-INF/tiles-defs.xml    SS-192, SS-197
WEB-INF/web.xml    SS-192
filter actions    SP-105
configuring    SP-200
finding new directory entries    GS-169
firewall filter    SP-92
matching destination class    SP-185
matching source class    SP-185
firewall ports for SDX-related components    GS-83
firewall services
configuring    SS-247, SS-250
description    SS-356
managing in Enterprise
Manager Portal    SS-356-SS-373
policies for    SS-249
router support    SS-246
flat file accounting plug-ins    SS-102
configuring    SS-102
headers    SS-106
flexible RADIUS accounting plug-ins    SS-102
attributes, defining    SS-127
examples    SS-132
configuring    SS-108
RADIUS packets, defining    SS-99, SS-126
flexible RADIUS authentication plug-ins    SS-111
attributes, defining    SS-127
examples    SS-132
configuring    SG-23, SS-113
RADIUS packets, defining    SS-99, SS-126
setting responses    SS-133
FlowSpec actions    SP-105
configuring    SP-201
folders
default SDX installation    GS-71
SDX Admin    GS-183
format translation, file    GS-75
forward actions    SP-106
configuring    SP-204
forwarding class actions    SP-106
configuring    SP-205
forwarding preferences    SS-263, SS-265
fragment services    SP-28
configuring    SP-32

G

gates, PCMM    SP-110
gateSpec actions    SP-106
configuring    SP-206
generate.sh script (DirX)    IG-67
getting help, data integration    IG-83
global parameter objects and access
control scheme    IG-104
global parameters    SP-114
configuring    SP-126-SP-129
predefined, list    SP-123
runtime    SP-123
summary table    SP-115
types    SP-117
viewing in Policy Editor    SP-115
global plug-ins, configuring    SS-135-SS-137
graphical installation mode    GS-65
groups, NIC hosts    NG-109, NG-134
guaranteed service, FlowSpec    SP-113
gzip command    GS-75

H

hard-disk space requirements
Merit    IG-136
RAD    IG-150
SPE    IG-114
hardware
consolidated installation    GS-48
requirements    GS-54
Host values (SPE)    IG-123
hosted plug-ins. See plug-ins
hostid command    GS-96
hosts
transferring software packages    GS-75
See also NIC hosts
HTTP proxy    SS-227, SS-228
HTTP with Workflow application    GS-31

I

Idle-Timeout    IG-145, IG-162
IDP (Intrusion Detection and Protection) integration applications    GS-26
ifconfig command    SS-229
infrastructure services    SP-17, SP-37-SP-38
initialize.cp flat file (DirX)    IG-64
install.sh script (SPE)    IG-114, IG-117
installation
components    GS-72
designating nonroot users    GS-73
feature sets    GS-72
graphical mode    GS-65
installation folders    GS-71, GS-72
installation sets    GS-67
IP Filter    GS-74
logging the session    GS-63
modes    GS-65
package names for features    GS-72
packages    GS-73
patches    GS-57
procedure    GS-63
procedure (Merit)    IG-136
scripts (SPE)    IG-115, IG-116
silent mode    GS-65
software CD (SPE)    IG-114
starting the installation program    GS-70
system resource limits    GS-73
uninstallation    GS-76
Web applications    GS-137
installing software
enterprise service portals    SS-296-SS-305
Merit    IG-136
RAD    IG-150
SPE    IG-114
instlic command    GS-101, GS-103, GS-104
integrating data into directory    IG-32, IG-82
interface classification scripts. See classification scripts
interface modules, SAE    NG-9
interfaces
callback    SS-283
viewing on SAE    MT-65
interim accounting, configuring on SAE    SS-38
interim update interval    SG-146
Interlink RAD-Series RADIUS Server    GS-33
internal plug-ins. See plug-ins
internationalization of SDX Admin    GS-191
interoperable object reference. See IOR
invalid subscriptions to VPNs    IG-92
IOR (interoperable object reference)
external plug-ins    SS-95, SS-98
router initialization scripts    NG-51, NG-89
SNMP file locations    MT-23
IP address managers
logging in subscribers
event notification method    SG-117
IP address pools    NG-55-NG-58
assigned IP subscribers    SG-45
configuring    SG-64
example, ranges    NG-42
local address pools, configuring    NG-42
static pools, configuring    NG-43
syntax    NG-42, SG-64, SG-107
updating for JUNOSe VRs    NG-55-NG-58
poolRepublish    NG-56
SDX Admin    NG-56
IP addresses
acknowledging release    SS-387
assigning in NAT Address Management
Portal    SS-385, SS-386
NAT services    SS-374, SS-376
IP Filter    SS-226, SS-228
installation order    GS-74
installation prerequisite    GS-62
IP Security. See IPSec
IP service, life-cycle process    GS-4
IP-in-IP tunneling    SS-238
ipnat.conf file    SS-228
IPSec
between SAE and other applications    SG-69-SG-80
configuring for SAE    SG-71
keys, supported    SG-70
IPTV application    GS-27
configuring    SG-119
installing    SG-118
ISP service in sample residential portal    SS-188, SS-190
IT manager
audit plug-in
configuring    SS-318
events    SS-316
operators, managing    SS-322, SS-324
IVE (Instant Virtual Extranet) Host Checker integration application    GS-27

J

J2EE application server    GS-36
J2SE patches    GS-57
JacORB, for NIC
configuring
default ORB for JRE    NG-154
properties on redundant NIC hosts    NG-177
Web application    NG-155
Web application server    NG-156
JRE package    NG-154
Jakarta Struts Web application framework    SS-187
Java Database Connectivity. See JDBC
Java development environment, Tomcat    SS-239, SS-399
Java Management Extension    MT-91
Java Naming and Directory Interface. See JNDI
Java Runtime Environment, NIC proxy    NG-154
Java Virtual Machine, for NIC proxy    NG-154
Javadoc documentation for sample
residential portal    SS-224
JBoss
installing Web applications    SS-198, SS-295
installing Web applications inside    GS-138
removing Web applications    GS-139
JDBC (Java Database Connectivity) drivers    IG-84
JMX (Java Management Extension) software    MT-91
JNDI (Java Naming and Directory Interface)    GS-164
JPS (Juniper Policy Server)
advanced properties, configuring    SG-99
architecture    SG-82
installing    SG-83
local configuration, applying    SG-83
monitoring    SG-86, SG-114
NTP configuration
applying    SG-84
modifying local time    SG-84
operational status    SG-86
overview    SG-81
stopping    SG-86
subscriber address mappings, configuring    SG-100
subscriber configuration, modifying    SG-100
JPS Administration
CMTS locator, configuring    SG-100
description    GS-20
JPS configuration, monitoring    SG-115
JPS state, monitoring    SG-114
monitoring    SG-114
server process, monitoring    SG-114
starting    SG-87
subscriber configuration
configuring    SG-100
monitoring    SG-116
JSP (Java Server Pages) technology
Web application server    GS-36
JSP tag library. See enterprise tag library
Juniper Networks dictionary files
Merit    IG-139
RAD    IG-155
SPE    IG-119
Juniper Networks Professional Services    IG-83
Juniper Policy Server. See JPS; JPS Administration
Juniper SDX eTrust Directory. See eTrust Directory
JUNOS ASP policy rules    SP-101
NAT actions    SP-106
configuring    SP-210
network, specifying    SP-177
stateful firewall actions, configuring    SP-235
JUNOS filter policy rules    SP-101
conditions, setting    SP-184
JUNOS policer policy rules    SP-101
policer actions    SP-106
configuring    SP-217
JUNOS port mirror policy rules
traffic mirror actions    SP-107
JUNOS routing platforms
accessing CLI    NG-92
BEEP connection    NG-4
configuring port    NG-76
configuration groups    NG-66, NG-95
configuring to interact with SAE    NG-94
CoS (Class of Service)    SS-258
default virtual router    NG-66
disabling interactions with SAE    NG-95
enabling interactions with SAE    NG-95
forwarding preferences    SS-265
logging    NG-96
managing traffic    SS-246
monitoring interactions with SAE    NG-95
policies
basic BoD    SS-260
BOD    SS-261
BoD and VPNs    SS-267
firewall    SS-247-SS-256
NAT    SS-256
policy features
Adaptive Services PIC    SP-93
CoS    SP-92
firewall filter    SP-92
NAT, description    SP-93
policing, description    SP-92
policy sharing    SP-96
rate-shaping    SP-101
stateful firewall, description    SP-93
provisioning services
prerequisites    SS-247
router objects, adding    NG-68-NG-69
routing preferences    SS-263
SAE interactions    NG-4
scalability    GS-6
SDX software process    NG-66
services
basic BoD    SS-260
BoD    SS-262
BoD and VPNs    SS-267
firewall    SS-247-SS-256
NAT    SS-256
value-added services    SS-268
simulated router driver, configuring    MT-15
statements for integration
port-number    NG-94
server-address    NG-94
source-address    NG-94
troubleshooting    NG-96
VR objects, adding individually    NG-70-NG-75
JUNOS scheduler policy rules    SP-101
actions    SP-106
configuring    SP-227
drop profile maps
configuring    SP-230
drop probability, setting    SP-232
fill level, setting    SP-232
QoS conditions, configuring    SP-191
JUNOS shaping policy rules    SP-101
JUNOSe RADIUS client
Merit    IG-145
RAD    IG-162
JUNOSe routers
(QoS) quality of service    SS-258
accessing CLI    NG-59
COPS connection    NG-4
configuring    NG-46
integration overview    NG-38
logging    NG-63
monitoring interactions with SAE    NG-62
policies
basic BoD    SS-260
BOD    SS-261
policy features
packet filtering    SP-93
packet forwarding    SP-93
policy routing    SP-93
policy sharing    SP-96
QoS classification and marking    SP-93
rate limiting    SP-93
router objects, adding    NG-38-NG-40
scalability with SDX software    GS-6
SDX client    NG-38
starting    NG-61
stopping    NG-62
services
basic BoD    SS-260
BoD    SS-262
SNMP communities, configuring    NG-50
SNMP server, configuring    NG-49
troubleshooting    NG-63
VR objects
adding individually    NG-41-NG-46
adding operative VRs    NG-38
JVM (Java virtual machine), for NIC proxy    NG-154

K

keytool command    IG-77

L

language, setting with SDX Admin    GS-191
LDAP
attributes    IG-39
integration overview    IG-29-IG-31
models
operators    SS-144
policy    SP-107
services    SP-4
subscribers    SS-139
subscriptions    SS-141
overview    IG-29
See also directory; LDAPS
LDAP (Lightweight Directory Access Protocol ). See directory; directory server
LDAP access. See SAE (service activation engine), configuring
LDAP authentication
AATV
Merit    IG-136
RAD    IG-151
Attribute/name section (SPE)    IG-124
Bind (SPE)    IG-121
bind credentials (SPE)    IG-122
BindName (SPE)    IG-122
Bootstrap section (SPE)    IG-121
configuring
Merit    IG-142
SPE    IG-121
enabling
SPE    IG-116
file, sections (SPE)    IG-121
Request section (SPE)    IG-126
Response section (SPE)    IG-126
Search/name section (SPE)    IG-123
Server section (SPE)    IG-122
server/serverName section (SPE)    IG-123
Settings section (SPE)    IG-121
LDAP authentication plug-in    SS-111, SS-116
LDAP configuration
interface (SPE)    IG-128
RAD    IG-161
LDAP database (SPE)    IG-126
LDAP directory
Merit    IG-136, IG-142
SPE    IG-127
See also directory
LDAP features
Merit    IG-136
RAD    IG-151
LDAP host (SPE)    IG-116
LDAP libraries (SPE)    IG-117
LDAP Reader    IG-87
LDAP server
Merit    IG-138
SPE    IG-118, IG-121
LDAP Writer    IG-89
ldapauth.aut file (SPE)    IG-121
LDAPS
authentication and connection sequence    IG-75
cacerts files    IG-77
certificate files    IG-77
configuring
directory server    IG-76
overview    IG-76
SAE components    IG-78, IG-79
directory connections    IG-32
disabling connection for SAE components    IG-79
enabling connection for SAE components    IG-78
overview    IG-75
LDIF (LDAP Data Interchange Format) files    GS-15, IG-32, IG-41
leases for licenses. See license server
licchk command    GS-104
license
installing    GS-102
master    GS-103
obtaining    GS-96
pilot license
description    GS-96
installing    GS-97, GS-101-GS-103
server license    GS-111
configuration properties    GS-98
description    GS-96
installing    GS-97, GS-103
location    GS-113
types    GS-96
upgrading software    GS-103
verifying    GS-104
license manager, configuring SAE properties    GS-106
client properties    GS-109
directory access    GS-106
license server
accessing directory data    GS-118
alarms    GS-116
cleaning log files    GS-114
customizing    GS-106, GS-115-GS-121
errors    GS-112
general properties    GS-119
lease renewal    GS-113
license allocation    GS-113
license release    GS-113
license requests    GS-112
license switching    GS-114
location, configuring    GS-120
management commands    GS-105
SAE failover    GS-114
SNMP traps    GS-116
troubleshooting    GS-121
license string
SPE    IG-114, IG-116
Lightweight Data Interchange Format (LDIF) (Merit)    IG-145
Lightweight Directory Access Protocol. See LDAP
limit command    GS-73
limiting subscribers plug-in    SS-111, SS-112
listeners, defining    SS-283
load balancing (SPE)    IG-122
local configuration tool
description    GS-175
GUI elements    GS-176
local parameters    SP-114
configuring    SP-129-SP-131
parameter folder    SP-116
summary table    SP-130
types    SP-117
viewing in Policy Editor    SP-116
lock subtree and access control scheme    IG-101
log files
license server    GS-114
log filters, syntax    MT-11
log.txt log file (DirX)    IG-67
logging
accessing configuration    MT-4
cleaning log files    MT-12
filters, configuring    MT-10
installation session    GS-63, GS-64
JUNOS routing platforms    NG-96
JUNOSe routers    NG-63
properties
data integrators    IG-85
enterprise service portal    SS-314
redirect server    SS-231
solpkg.log    GS-64
solpkg_Uninstall.log    GS-76
system logging, configuring    MT-7
text files, configuring    MT-5
write access    MT-7
uninstallation session    GS-76
See also event messages
logging out
simulated subscriber sessions    MT-72
subscriber sessions    MT-64
login events, description    SS-10
login names    NG-181
login process
assigned IP subscribers, PCMM    SG-45
assigned IP subscribers, third-party devices    IG-6
enterprise    SS-26
event notification method, PCMM    SG-47
event notification method, third-party devices    IG-7
residential    SS-11
DHCP    SS-16-SS-21
PPP    SS-12-SS-14
See also logout process, residential
summary    SS-10
login registration
configuring    SS-41
deleting    MT-67
viewing on SAE    MT-67
LogLevel (SPE)    IG-122
logout process, residential
DHCP    SS-22
PPP    SS-15
See also login process
logs, Enterprise Service Portal audit plug-in    IG-82
loss priority actions    SP-106
configuring    SP-208

M

managing
unresponsive directories    GS-170
map expressions
application protocol conditions    SP-187
substitutions    SP-269
mark actions    SP-106
configuring    SP-209
master directory    GS-42
master license    GS-103
md5sum command    GS-75
menu bar, SDX Admin    GS-180-GS-182
Merit AAA server
Oracle Internet Directory integration, with    IG-49
Merit RADIUS    GS-33
Merit server
command syntax    IG-138, IG-148
testing    IG-148
meta agent    IG-67
Meta Data tab in SDX Admin    GS-186
metacontroller    IG-67
metadirectory store    IG-67
MIBs
Juniper Networks, list    MT-22
location    MT-23
monitoring with SNMP agent    MT-22
migration. See directory migration
modes, installation    GS-65
monitoring agent application    GS-35
monitors
configuring NIC    NG-177
multihop environment    SS-238
multimaster directory replication    NG-172
multiple classifiers, policies    SP-104
mutex group    SP-45
access control scheme    IG-103
adding    SP-45
adding to service scopes    SP-51

N

naming syntax    IG-33
NAT (Network Address Translation)
rules    SS-381
services for Enterprise Manager Portal    SS-256
services, IP address    SS-374, SS-376, SS-386
types    SS-377
VPNs    SS-270
See also NAT Address Management Portal
NAT (Network Address Translation) policies    SP-93
actions    SP-106
configuring    SP-210
application protocol condition
defining    SP-186
map expressions    SP-187
NAT Address Management Portal
acknowledging IP address release    SS-387
assigning IP addresses    SS-386
deployment settings    SS-299
Enterprise Manager Portal    SS-305
overview    SS-385
navigation pane, SDX Admin    GS-183
Net-SNMP master agent    GS-62, GS-123, MT-20
installing    GS-135
monitoring    GS-136
starting    GS-136
stopping    GS-136
supported    GS-62
using    GS-135
network address translation. See NAT
network and access control scheme    IG-102
network information collector. See NIC
network publisher. See NIC    NG-136
next-hop actions    SP-106
captive portal feature    SP-212
configuring    SP-212
next-interface actions    SP-106
configuring    SP-214
next-rule actions    SP-106
configuring    SP-216
NIC (network information collector)
API    NG-165
communities    NG-171, NG-174
data mapping    MT-84, NG-107
description    GS-13
enterprise service portals. with    SS-283
factory interface    NG-165, NG-166
IP address pool    SG-64, SG-107
IP address pools, syntax    NG-42
log files    MT-90, MT-91
logging configuration, accessing    MT-5
monitors    NG-171
configuring    NG-177
example    NG-257
starting    MT-88, NG-178
stopping    MT-88
network publisher
configuration file    NG-136
input directory    NG-142
output file    NG-142
overview    NG-136
prerequisites    NG-136
running    NG-141
troubleshooting    NG-141
overview    GS-13, NG-106
planning implementation    NG-111
realms