---
title: "Scaling Using Subscriber Sites"
canonical: "https://docs.infoblox.com/space/nios85/35481042/Scaling%20Using%20Subscriber%20Sites"
format: markdown
---
<span style="color: #000000">You can create subscriber sites and add a Grid member as a collector member and RPZ members to the site in order to scale the number of subscribers that the system can support. The subscriber collector caches the subscriber data received from the NAS gateways and parental control policies the from Infoblox Harmony product. The RPZ members use the cached subscriber data and the policies to resolve DNS queries. You can add a maximum of five Grid members to the subscriber site. Note that one Grid member can serve only one subscriber site. The subscriber identity information cached in the subscriber cache is replicated between the Grid members in the subscriber site.</span>

<span style="color: #000000">In a strict NAT configuration, where only the NATed subscribers are allowed, the value of the AVP </span>**<span style="color: #000000">Deterministic NAT port</span>**<span style="color: #000000"> must be a non-zero value in the RADIUS accounting message. The ports from 1-1023 (inclusive) are reserved in a deterministic port configuration.</span>

# <span style="color: #000000">Adding Subscriber Sites</span>

<span style="color: #000000">To add a subscriber site, complete the following:</span>

1. <span style="color: #000000">From the </span>**<span style="color: #000000">Data Management</span>**<span style="color: #000000"> tab -> </span>**<span style="color: #000000">DNS</span>**<span style="color: #000000"> tab -> </span>**<span style="color: #000000">Subscriber Services Deployment</span>**<span style="color: #000000"> tab -> </span>**<span style="color: #000000">Subscriber Sites</span>**<span style="color: #000000"> tab, click the Add icon.</span>
2. <span style="color: #000000">In the </span>*<span style="color: #000000">Add Subscriber Site</span>*<span style="color: #000000"> wizard, complete the following:</span>
  1. **<span style="color: #000000">Name</span>**<span style="color: #000000">: Enter the name of the subscriber site.</span>
  2. **<span style="color: #000000">Maximum Subscribers</span>**<span style="color: #000000">: Specify the maximum number of subscribers for the subscriber site. This represents the overall size of the subscriber cache. You can enter a value between 10000 to 10000000.</span>
  3. **<span style="color: #000000">Comment</span>**<span style="color: #000000">: You can enter additional information about the subscriber site.</span>
  4. **<span style="color: #000000">Members</span>**<span style="color: #000000">: In the </span>*<span style="color: #000000">Members</span>*<span style="color: #000000"> table, click the Add icon to add Grid members to the site. If there are multiple members, the </span>*<span style="color: #000000">Member Selector</span>*<span style="color: #000000"> dialog box is displayed, from which you can select a member. Click the required member name in the dialog box. You can also delete a member from the list.</span>  
<span style="color: #000000">Note that a Grid member can support only one subscriber site.</span>
  5. **<span style="color: #000000">NAT port Block Size</span>**<span style="color: #000000">: The block size specifies the number of ports made available for each incoming subscriber address. In a deterministic NAT, zero means not using NAT. The value can be any number from 0 to 64512. </span>
  6. **<span style="color: #000000">First usable port</span>**<span style="color: #000000">: The value of the first usable port for the subscriber. The first usable port will have a default value of 1024, and the value can be any number from 1024 to 65535, both inclusive.</span>
  7. **<span style="color: #000000">Allow NATed Subscribers only</span>**<span style="color: #000000">: Select this option to restrict only NATed subscribers. Here the IP address and port block allocations are made dynamically for the subscriber instance. </span>
  8. **<span style="color: #000000">Stop the anycast service when the subscriber service is in the interim state</span>**<span style="color: #000000">: Select this option to stop the anycast service from running when the subscriber service is in the interim state. By default, this option is selected. </span>
3. <span style="color: #000000">Click </span>**<span style="color: #000000">Next</span>**<span style="color: #000000"> to configure NAS gateways for the subscriber site. Complete the following:</span>
  1. **<span style="color: #000000">Listen on RADIUS port number</span>**<span style="color: #000000">: Enter the UDP port number that the collector member uses to collect accounting information from the NAS gateway. You can enter an integer from 1 to 65535. The default is 1813.</span>
  2. **<span style="color: #000000">NAS Gateways</span>**<span style="color: #000000">: You must add at least one NAS gateway to the subscriber site in order to start the subscriber collection service. You can add up to 20 NAS gateways. Click the Add icon and complete the following to add a NAS gateway:</span>
    1. **<span style="color: #000000">Name</span>**<span style="color: #000000">: Enter the name of the NAS gateway.</span>
    2. **<span style="color: #000000">IP Address</span>**<span style="color: #000000">: Enter the IP address of the NAS gateway.</span>
    3. **<span style="color: #000000">Shared Secret</span>**<span style="color: #000000">: Enter a shared secret that can be used to authenticate the communication between the RADIUS accounting server and the collector member. This shared secret must match the one you entered on the RADIUS server.</span>
    4. **<span style="color: #000000">Confirm Shared Secret</span>**<span style="color: #000000">: Enter the shared secret again.</span>
    5. **<span style="color: #000000">Send Protocol Acknowledgment</span>**<span style="color: #000000">: Select this checkbox to send an acknowledgment to the client when the collector member receives accounting information from the NAS gateway.</span>
    6. **<span style="color: #000000">Comment</span>**<span style="color: #000000">: Enter additional information about the NAS gateway.</span>
    7. <span style="color: #000000">Click </span>**<span style="color: #000000">Add</span>**<span style="color: #000000"> to add the NAS gateway.</span>  
<span style="color: #000000">You can select a NAS gateway configuration and click the Edit icon to modify it or click the Delete icon to delete it.</span>
4. *<span style="color: #000000">This step is required only if Infoblox Subscriber Parental Control is enabled</span>*<span style="color: #000000">. For information about enabling Parental Control, see </span>[*<u><span style="color: #000000">Infoblox Subscriber Parental Control</span></u>*](https://infoblox-docs.atlassian.net/wiki/spaces/nios85/pages/35417031)<span style="color: #000000">. Click </span>**<span style="color: #000000">Next</span>**<span style="color: #000000"> to configure the parental control blocking IP addresses. Complete the following:</span>
  1. **<span style="color: #000000">Content Proxy Addresses</span>**<span style="color: #000000">: You can add IP addresses of the Infoblox Harmony product. The appliance will forward the subscriber session to Infoblox Harmony for in-line processing of the subscriber session, depending on the policies. Click the Add icon. Grid Manager adds a row to the </span>**<span style="color: #000000">Content Proxy Addresses</span>**<span style="color: #000000"> table. It is recommended that you enter two addresses in this field. The first address is considered the primary address and the second address is considered the secondary address. If you enter only one address, the same address is considered the primary and secondary address. </span><span style="color: #000000"> </span><span style="color: #000000">Click the row and enter the IP address in the </span>**<span style="color: #000000">Address</span>**<span style="color: #000000"> field. To delete an IP address, select the checkbox and then click the Delete icon.</span>
  2. **<span style="color: #000000">Proxy RPZ Passthru</span>**<span style="color: #000000">: </span><span style="color: #000000">Select this checkbox if you want to proxy the traffic to the MSP (Multi-Services Proxy) server. If you select this checkbox, and a passthru rule from any RPZ zone is hit, then the query resolves to an MSP proxy virtual IP address and NIOS generates a "synthetic resolution”. If you do not select this checkbox and a passthru rule from any RPZ zone is hit, then the query resolves normally. </span><span style="color: #000000">T</span><span style="color: #000000">his checkbox is disabled and you will not be able to enable it until you add a context proxy address.</span>
  3. **<span style="color: #000000">Additional Blocking Servers</span>**<span style="color: #000000">: Besides the IP addresses you specify in the </span>**<span style="color: #000000">Parental Control Blocking IP Addresses</span>**<span style="color: #000000"> fields, you can specify additional IP addresses to act as blocking servers for the blocking policies you defined when </span>*[<u><span style="color: #000000">configuring blocking server policies</span></u>](https://infoblox-docs.atlassian.net/wiki/spaces/nios85/pages/35751317)*<span style="color: #000000">. Click the Add icon. Grid Manager adds a row to the </span>**<span style="color: #000000">Additional Blocking Servers</span>**<span style="color: #000000"> table. Click the row and select a blocking policy. In the </span>**<span style="color: #000000">Address </span>**<span style="color: #000000">field, enter the IP address of the blocking server that will contain the selected blocking policy. To delete an IP address, select the checkbox and then click the Delete icon. </span>
  4. **<span style="color: #000000">Parental Control Blocking IP Addresses</span>**<span style="color: #000000">: You can configure two sets of IPv4 and IPv6 addresses that are used as blocking VIP addresses. The parental control subscribers are redirected to the following blocking IP addresses whenever the domain queried by the subscriber is blocked based on the subscriber parental control policy. </span>
    <span style="color: #000000">Complete the following:</span>
    1. **<span style="color: #000000">IPv4 Address (primary)</span>**<span style="color: #000000">: Enter the primary blocking IPv4 address.</span>
    2. **<span style="color: #000000">IPv4 Address (secondary)</span>**<span style="color: #000000">: Enter the secondary blocking IPv4 address.</span>
    3. **<span style="color: #000000">IPv6 Address (primary)</span>**<span style="color: #000000">: Enter the primary blocking IPv6 address.</span>
    4. **<span style="color: #000000">IPv6 Address (secondary)</span>**<span style="color: #000000">: Enter the secondary blocking IPv6 address.</span>
    
  5. **<span style="color: #000000">Policy Management Addresses</span>**<span style="color: #000000">: You can add IP addresses of the policy management servers to which the appliance sends APIs about the expired parental control policies. Click the Add icon. Grid Manager adds a row to the </span>*<span style="color: #000000">Policy Management Addresses</span>*<span style="color: #000000"> table. Click the row and enter the IP address in the </span>**<span style="color: #000000">Address </span>**<span style="color: #000000">field. To delete an IP address, select the checkbox and then click the Delete icon.</span>
5. <span style="color: #000000">Save the configuration, or click </span>**<span style="color: #000000">Next</span>**<span style="color: #000000"> to continue to the next step where you define extensible attributes as described in </span>[*<u><span style="color: #000000">Managing Extensible Attributes</span></u>*](https://infoblox-docs.atlassian.net/wiki/spaces/nios85/pages/35448912)<span style="color: #000000">.</span>

# <span style="color: #000000">Modifying Subscriber Sites</span>

<span style="color: #000000">To modify a subscriber site, complete the following:</span>

1. <span style="color: #000000">From the </span>**<span style="color: #000000">Data Management</span>**<span style="color: #000000"> tab -> </span>**<span style="color: #000000">DNS</span>**<span style="color: #000000"> tab -> </span>**<span style="color: #000000">Subscriber Services Deployment</span>**<span style="color: #000000"> tab -> </span>**<span style="color: #000000">Subscriber Sites</span>**<span style="color: #000000"> tab, click the</span>**<span style="color: #000000"> Action</span>**<span style="color: #000000"> icon next to the subscriber site name and select </span>**<span style="color: #000000">Edit</span>**<span style="color: #000000"> from the menu.</span>
2. <span style="color: #000000">The </span>*<span style="color: #000000">Subscriber Site Properties</span>*<span style="color: #000000"> editor provides the following tabs from which you can modify data:</span>
  1. <span style="color: #000000">On the </span>**<span style="color: #000000">General</span>**<span style="color: #000000"> tab, you can modify the information you previously entered through the wizard. </span>
  2. <span style="color: #000000">On the </span>**<span style="color: #000000">NAS Gateways</span>**<span style="color: #000000"> tab, you can edit the NAS gateways configured for the subscriber site.</span>
  3. <span style="color: #000000">If parental control is enabled, the </span>**<span style="color: #000000">Parental Control </span>**<span style="color: #000000">tab is displayed. You can modify information on the </span>**<span style="color: #000000">Parental Control</span>**<span style="color: #000000"> tab. On the </span>**<span style="color: #000000">Advanced</span>**<span style="color: #000000"> tab, you can modify the details pertaining to the DCA subscriber.</span>
    1. **<span style="color: #000000">Enable DCA subscriber Query count logging</span>**<span style="color: #000000">: Select this checkbox to allow the DCA to generate subscriber logs and to record query counts greater than or equal to zero for subscriber query count updates and deletions. These logs are generated for deletions even when the query count is equal to zero. By default, this option is disabled.</span>
    2. **<span style="color: #000000">Enable DCA subscriber Allowed & Blocked list support</span>**<span style="color: #000000">: Select this checkbox to support the blocked and allowed list of subscribers. This option is disabled by default. Once the domain is cached, the blocked lists are provided by DCA. Domains in the allowed list are transferred to BIND. There are several members on the site, but the memory requirement is 32GB or higher for all the vDCA capable members. You must manually restart NIOS after selecting this checkbox for the support to be successful.</span>
  4. <span style="color: #000000">You can enter or edit information in the </span>**<span style="color: #000000">Extensible Attributes </span>**<span style="color: #000000">tab, as described in </span>[*<u><span style="color: #000000">Managing Extensible Attributes</span></u>*](https://infoblox-docs.atlassian.net/wiki/spaces/nios85/pages/35448912)<span style="color: #000000">.</span>
  5. <span style="color: #000000">You can export subscriber site data into a CSV file by selecting the </span>**<span style="color: #000000">Export</span>**<span style="color: #000000"> option. For more information, see </span>[*<u><span style="color: #000000">Importing and Exporting Data using CSV Import</span></u>*](https://infoblox-docs.atlassian.net/wiki/spaces/nios85/pages/35478602)<span style="color: #000000">.</span>
3. <span style="color: #000000">Save the configuration.</span>

# <span style="color: #000000">Deleting Subscriber Sites</span>

<span style="color: #000000">To delete a subscriber site, complete the following:</span>

1. <span style="color: #000000">From the </span>**<span style="color: #000000">Data Management</span>**<span style="color: #000000"> tab -> </span>**<span style="color: #000000">DNS</span>**<span style="color: #000000"> tab -> </span>**<span style="color: #000000">Subscriber Services Deployment</span>**<span style="color: #000000"> tab -> </span>**<span style="color: #000000">Subscriber Sites</span>**<span style="color: #000000"> tab, click the Action icon next to the subscriber site name and select </span>**<span style="color: #000000">Delete</span>**<span style="color: #000000"> from the menu.</span>
  1. <span style="color: #000000">In the </span>*<span style="color: #000000">Delete Confirmation (Subscriber Site)</span>*<span style="color: #000000"> dialog box, click </span>**<span style="color: #000000">Yes</span>**<span style="color: #000000">.</span>

# <span style="color: #000000">Viewing Subscriber Sites</span>

<span style="color: #000000">To view subscriber sites, complete the following:</span>

1. <span style="color: #000000">From the </span>**<span style="color: #000000">Data Management</span>**<span style="color: #000000"> tab -> </span>**<span style="color: #000000">DNS</span>**<span style="color: #000000"> tab -> </span>**<span style="color: #000000">Subscriber Services Deployment</span>**<span style="color: #000000"> tab -> </span>**<span style="color: #000000">Subscriber Sites</span>**<span style="color: #000000"> tab.</span>
  1. <span style="color: #000000">Grid Manager displays the following information for each subscriber site:</span>
    1. **<span style="color: #000000">Actions</span>**<span style="color: #000000">: Click the Action icon next to a selected subscriber site and choose from the following:</span>
      1. **<span style="color: #000000">Edit</span>**<span style="color: #000000">: Modify certain general properties.</span>
      2. **<span style="color: #000000">Delete</span>**<span style="color: #000000">: You can delete the subscriber site.</span>
      3. **<span style="color: #000000">Extensible Attributes</span>**<span style="color: #000000">: Add or modify extensible attributes.</span>
      4. **<span style="color: #000000">View NAS Gateway Message Rates</span>**<span style="color: #000000">: Displays the message rates of the NAS gateways configured for the subscriber site. </span>
    2. **<span style="color: #000000">Name</span>**<span style="color: #000000">: The name of the subscriber site.</span>
    3. **<span style="color: #000000">Comment</span>**<span style="color: #000000">: Information about the subscriber site.</span>
    4. **<span style="color: #000000">Site</span>**<span style="color: #000000">: Displays values that were entered for this predefined attribute.</span>

<span style="color: #000000">You can also perform the following:</span>

- <span style="color: #000000">Edit the subscriber site information.</span>
  - <span style="color: #000000">Select the subscriber site, and then click the Edit icon.</span>
  - <span style="color: #000000">Delete a subscriber site.</span>
    - <span style="color: #000000">Select the subscriber site, and then click the Delete icon.</span>
  - <span style="color: #000000">Export the list of subscriber sites.</span>
    - <span style="color: #000000">Click the Export icon.</span>
  - <span style="color: #000000">Print the list of subscriber sites.</span>
    - <span style="color: #000000">Click the Print icon.</span>
  - <span style="color: #000000">Use filters and the </span>**<span style="color: #000000">Go to</span>**<span style="color: #000000"> function to narrow down the list. With the autocomplete feature, you can just enter the first few characters of an object name in the </span>**<span style="color: #000000">Go to</span>**<span style="color: #000000"> field and select the object from the possible matches.</span>
  - <span style="color: #000000">Create a quick filter to save frequently used filter criteria:</span>
    - <span style="color: #000000">In the filter section, click </span>**<span style="color: #000000">Show Filter</span>**<span style="color: #000000"> and define filter criteria for the quick filter.</span>
    - <span style="color: #000000">Click </span>**<span style="color: #000000">Save</span>**<span style="color: #000000"> and complete the configuration In the </span>*<span style="color: #000000">Save Quick Filter</span>*<span style="color: #000000"> dialog box.</span>
  - <span style="color: #000000">The appliance adds the quick filter to the quick filter drop-down list in the panel. Note that global filters are prefixed with [G], local filters with [L], and system filters with [S].</span>
  - <span style="color: #000000">Sort the subscriber sites in ascending or descending order by column.</span>

# <span style="color: #000000">Viewing NAS Gateway Message Rates</span>

<span style="color: #000000">You can view the NAS gateways (accounting log servers) configured for the subscriber site and the message rate for each NAS gateway.</span>

<span style="color: #000000">To view the NAS gateway message rates, complete the following:</span>

1. <span style="color: #000000">From the </span>**<span style="color: #000000">Data Management</span>**<span style="color: #000000"> tab -> </span>**<span style="color: #000000">DNS</span>**<span style="color: #000000"> tab -> </span>**<span style="color: #000000">Subscriber Services Deployment</span>**<span style="color: #000000"> tab -> </span>**<span style="color: #000000">Subscriber Sites</span>**<span style="color: #000000"> tab.</span>
  1. <span style="color: #000000">On the </span>**<span style="color: #000000">Subscriber Sites</span>**<span style="color: #000000"> tab, click the </span>**<span style="color: #000000">Action</span>**<span style="color: #000000"> icon next to the respective subscriber site and select </span>**<span style="color: #000000">View NAS Gateway Message Rates</span>**<span style="color: #000000"> from the list.</span>
  2. <span style="color: #000000">The </span>*<span style="color: #000000">NAS Gateway Message Rates</span>*<span style="color: #000000"> dialog box displays the following information for the selected subscriber site:</span>

> Macro (legacy-content)