Cisco Unified Border Element (SP Edition) Configuration Guide: Unified Model
Appendix A: End-to-End Configuration Example

Table Of Contents

End-to-End Cisco Unified Border Element
(SP Edition) Configuration Example


End-to-End Cisco Unified Border Element
(SP Edition) Configuration Example


This section contains a complete Cisco Unified Border Element (SP Edition) configuration on the Cisco ASR 1000 Series Routers.


6RU-SFO-CPE1# show run 
Building configuration... 

!
! 
upgrade fpd auto 
version 12.2
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
service internal
platform shell
!
hostname 6RU-SFO-CPE1
!
boot-start-marker
boot system flash bootflash:boot/packages.conf
boot system harddisk:2008-09-09_02.58.rp_super.ppc.bin
boot config bootflash:startup-config
boot-end-marker
!
vrf definition Mgmt-intf
 !
 address-family ipv4
 exit-address-family
 !
 address-family ipv6
 exit-address-family
!
vrf definition abacus1
 rd 3:3
 route-target export 3:3
 route-target import 3:3
 route-target import 300:300
 !
 address-family ipv4
 exit-address-family
 !
 address-family ipv6
 exit-address-family
!
vrf definition data1
 rd 2:2
 route-target export 2:2
 route-target import 2:2
 route-target import 200:200
 !
 address-family ipv4
 exit-address-family
 !
 address-family ipv6
 exit-address-family
!
vrf definition dslam1
 rd 1:1
 route-target export 1:1
 route-target import 1:1
 route-target import 100:100
 !
 address-family ipv4
 exit-address-family
 !
 address-family ipv6
 exit-address-family
!
!
no aaa new-model
process cpu extended accounting size 65536
ip subnet-zero
ip source-route
no ip domain lookup
!
!
ipv6 unicast-routing
l2tp congestion-control
!
!
!
multilink bundle-name authenticated
!
!
!
redundancy
 mode sso
! 
!
!
!
!
!
!
!
!
interface Loopback0
 vrf forwarding dslam1
 ip address 4.4.4.4 255.255.255.255
!
interface Loopback1
 vrf forwarding data1
 ip address 4.4.4.5 255.255.255.255
!
interface Loopback2
 vrf forwarding abacus1
 ip address 4.4.4.6 255.255.255.255
!
interface SBC1
 vrf forwarding dslam1
 ip media-pool 109.0.0.3 109.0.0.254
 ip address 109.0.0.1 255.255.255.0
!
interface SBC2
 vrf forwarding dslam1
 ip media-pool 110.0.0.3 110.0.0.254
 ip address 110.0.0.1 255.255.255.0
!
interface SBC3
 vrf forwarding abacus1
 ip media-pool 207.0.0.2 207.0.0.254
 ip address 207.0.0.1 255.255.255.0
!
interface SBC4
 vrf forwarding abacus1
 ip media-pool 208.0.0.2 208.0.0.254
 ip address 208.0.0.1 255.255.255.0
!
interface GigabitEthernet1/0/0
 vrf forwarding dslam1
 ip address 70.0.0.1 255.255.0.0
 negotiation auto
 cdp enable
!
interface GigabitEthernet1/0/1
 vrf forwarding data1
 ip address 72.0.0.1 255.255.0.0
 negotiation auto
 cdp enable
!
interface GigabitEthernet1/0/2
 vrf forwarding abacus1
 ip address 74.0.0.1 255.255.0.0
 negotiation auto
 cdp enable
!
interface GigabitEthernet1/0/3
 vrf forwarding dslam1
 ip address 76.0.0.1 255.255.0.0
 negotiation auto
 cdp enable
!
interface GigabitEthernet1/0/4
 no ip address
 shutdown
 negotiation auto
 cdp enable
!
interface GigabitEthernet1/0/5
 no ip address
 shutdown
 negotiation auto
 cdp enable
!
interface GigabitEthernet1/0/6
 no ip address
 shutdown
 negotiation auto
 cdp enable
!
interface GigabitEthernet1/0/7
 no ip address
 shutdown
 negotiation auto
 cdp enable
!
interface TenGigabitEthernet2/0/0
 no ip address
 cdp enable
!
interface TenGigabitEthernet2/0/0.1
 vrf forwarding dslam1
 encapsulation dot1Q 2
 ip address 77.0.0.1 255.255.0.0
 cdp enable
!
interface TenGigabitEthernet2/0/0.2
 vrf forwarding data1
 encapsulation dot1Q 3
 ip address 79.0.0.1 255.255.0.0
 cdp enable
!
interface TenGigabitEthernet2/0/0.3
 vrf forwarding abacus1
 encapsulation dot1Q 4
 ip address 80.0.0.1 255.255.0.0
 cdp enable
!
interface GigabitEthernet0
 vrf forwarding Mgmt-intf
 no ip address
 ip broadcast-address 0.0.0.0
 shutdown
 negotiation auto
 cdp enable
!
router ospf 2 vrf data1
 router-id 4.4.4.5
 log-adjacency-changes
 redistribute connected subnets
 network 4.4.4.5 0.0.0.0 area 0
 network 72.0.0.0 0.0.255.255 area 0
 network 79.0.0.0 0.0.255.255 area 0
!
router ospf 3 vrf abacus1
 router-id 4.4.4.6
 log-adjacency-changes
 redistribute connected subnets
 network 4.4.4.6 0.0.0.0 area 0
 network 74.0.0.0 0.0.255.255 area 0
 network 80.0.0.0 0.0.255.255 area 0
 network 207.0.0.0 0.0.0.255 area 0
 network 208.0.0.0 0.0.0.255 area 0
!
router ospf 1 vrf dslam1
 router-id 4.4.4.4
 log-adjacency-changes
 network 4.4.4.4 0.0.0.0 area 0
 network 70.0.0.0 0.0.255.255 area 0
 network 77.0.0.0 0.0.255.255 area 0
 network 109.0.0.0 0.255.255.255 area 0
 network 110.0.0.0 0.255.255.255 area 0
!
ip classless
ip route vrf abacus1 64.0.0.0 255.0.0.0 80.0.0.2
ip route vrf data1 62.0.0.0 255.0.0.0 79.0.0.2
!
no ip http server
no ip http secure-server
!

!
!
sbc diagnostics sparse
!
!
sbc sfo
 sbe
   adjacency sip PE1
    vrf dslam1
    inherit profile preset-core
    signaling-address ipv4 110.0.0.1
    signaling-port 5060
    remote-address ipv4 106.0.0.0 255.0.0.0
    signaling-peer 106.0.0.1
    account PE1
    attach
   adjacency sip B2B-PE1
    vrf abacus1
    inherit profile preset-core
    signaling-address ipv4 207.0.0.1
    signaling-port 5060
    remote-address ipv4 206.0.0.0 255.0.0.0
    signaling-peer 206.0.0.1
    account B2B-PE1
    attach
   adjacency sip ccm-trunk
    vrf dslam1
    inherit profile preset-core
    signaling-address ipv4 109.0.0.1
    signaling-port 5060
    remote-address ipv4 70.0.0.0 255.255.0.0
    signaling-peer 70.0.0.4
    account ccm-trunk
    attach
   adjacency sip CE1-Trunk3
    inherit profile preset-core
    signaling-address ipv4 209.0.0.1
    signaling-port 5060
    remote-address ipv4 74.0.0.0 255.0.0.0
    signaling-peer 74.0.0.2
    account CE1-Trunk3
    attach
   adjacency sip CE1-Trunk4
    signaling-address ipv4 210.0.0.1
    signaling-port 5060
    remote-address ipv4 74.0.0.0 255.0.0.0
    signaling-peer 74.0.0.2
    account CE1-Trunk4
    attach
   adjacency sip CE1-Trunk5
    signaling-address ipv4 211.0.0.1
    signaling-port 5060
    remote-address ipv4 74.0.0.0 255.0.0.0
    signaling-peer 74.0.0.2
    attach
   adjacency sip CE1-Trunk6
    signaling-address ipv4 212.0.0.1
    signaling-port 5060
    remote-address ipv4 74.0.0.0 255.0.0.0
    signaling-peer 74.0.0.2
    attach
   adjacency sip CE1-Trunk7
    signaling-address ipv4 213.0.0.1
    signaling-port 5060
    remote-address ipv4 72.0.0.0 255.0.0.0
    signaling-peer 72.0.0.2
    account CE1-Trunk7
    attach
   adjacency sip CE1-Trunk8
    vrf data1
    inherit profile preset-core
    signaling-address ipv4 214.0.0.1
    signaling-port 5060
    remote-address ipv4 72.0.0.0 255.0.0.0
    account CE1-Trunk8
    attach
   adjacency sip PE1-Trunk3
    vrf abacus1
    inherit profile preset-core
    signaling-address ipv4 209.0.0.2
    signaling-port 5060
    remote-address ipv4 231.0.0.0 255.0.0.0
    signaling-peer 231.0.0.1
    account PE1-Trunk3
    attach
   adjacency sip PE1-Trunk4
    vrf abacus1
    inherit profile preset-core
    signaling-address ipv4 210.0.0.2
    signaling-port 5060
    remote-address ipv4 232.0.0.0 255.0.0.0
    signaling-peer 232.0.0.1
    attach
   adjacency sip PE1-Trunk5
    vrf abacus1
    signaling-address ipv4 211.0.0.2
    signaling-port 5060
    remote-address ipv4 233.0.0.0 255.0.0.0
    signaling-peer 232.0.0.1
    account PE1-Trunk5
    attach
   adjacency sip PE1-Trunk6
    vrf data1
    signaling-address ipv4 212.0.0.2
    signaling-port 5060
    remote-address ipv4 234.0.0.0 255.0.0.0
    signaling-peer 234.0.0.1
    account PE1-Trunk6
    attach
   adjacency sip PE1-Trunk7
    vrf data1
    inherit profile preset-core
    signaling-address ipv4 213.0.0.2
    signaling-port 5060
    remote-address ipv4 235.0.0.0 255.0.0.0
    account PE1-Trunk7
    attach
   adjacency sip PE1-Trunk8
    vrf data1
    inherit profile preset-core
    signaling-address ipv4 214.0.0.2
    signaling-port 5060
    remote-address ipv4 236.0.0.0 255.0.0.0
    signaling-peer 236.0.0.1
    account PE1-Trunk8
    attach
   adjacency sip B2B-NavtelA
    vrf abacus1
    inherit profile preset-core
    signaling-address ipv4 208.0.0.1
    signaling-port 5060
    remote-address ipv4 74.0.0.0 255.255.0.0
    signaling-peer 74.0.0.2
    account B2B-NavtelA
    attach
   cac-policy-set 1
    first-cac-table white-list1
    first-cac-scope category
    cac-table white-list1
     table-type limit category
     entry 1
      match-value emergency
      max-num-calls 5000
      action cac-complete
     entry 2
      match-value non-emergency
      action next-table white-list2
    cac-table white-list2
     table-type policy-set
     entry 1
      cac-scope call
      max-bandwidth 160 Kbps
      codec-restrict-to-list mycodecs1
      action cac-complete
    complete
   active-cac-policy-set 1
   call-policy-set 1
    first-number-analysis-table natable1
    first-call-routing-table route-on-dest-uri
    rtg-src-adjacency-table route-on-dest-uri
     entry 1
      action complete
      dst-adjacency PE1
      match-adjacency ccm-trunk
     entry 2
      action complete
      dst-adjacency ccm-trunk
      match-adjacency PE1
     entry 3
      action complete
      dst-adjacency B2B-PE1
      match-adjacency B2B-NavtelA
     entry 4
      action complete
      dst-adjacency B2B-NavtelA
      match-adjacency B2B-PE1
    na-dst-prefix-table natable1
     entry 1
      action accept
      category emergency
      match-prefix 911
     entry 2
      action accept
      category non-emergency
      match-prefix XXX
    complete
   active-call-policy-set 1
   codec list mycodecs1
    codec G729
    codec PCMA
    codec PCMU
    codec T38
    codec TELEPHONE-EVENT
    codec TONE
   blacklist vpn abacus1
    reason routing-failure
     trigger-size 1000
     trigger-period 1 seconds
    reason policy-rejection
     trigger-size 1000
     trigger-period 1 seconds
    reason spam
     trigger-size 1000
     trigger-period 1 seconds
   blacklist vpn dslam1
    reason authentication-failure
     trigger-size 1000
     trigger-period 1 seconds
    reason routing-failure
     trigger-size 1000
     trigger-period 1 seconds
    reason endpoint-registration
     trigger-size 1000
     trigger-period 1 seconds
    reason policy-rejection
     trigger-size 1000
     trigger-period 1 seconds
    reason spam
     trigger-size 1000
     trigger-period 1 seconds
 !
 media-address pool ipv4 109.0.0.3 109.0.0.254 vrf dslam1
  port-range 7000 65535 any
 media-address pool ipv4 110.0.0.3 110.0.0.254 vrf dslam1
  port-range 7000 65535 any
 media-address pool ipv4 207.0.0.2 207.0.0.254 vrf abacus1
  port-range 7000 65535 any
 media-address pool ipv4 208.0.0.2 208.0.0.254 vrf abacus1
  port-range 7000 65535 any
 media-timeout 60
 activate
!
!
control-plane
!
alias exec cf conf t
alias exec smfs sh sbc sp1 dbe media-flow-stats
!
line con 0
 exec-timeout 0 0
 stopbits 1
line vty 0 4
 login
!
end