Download Print this page

Advertisement

RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4
7750 SERVICE ROUTER
RADIUS ATTRIBUTES REFERENCE
GUIDE
RELEASE 14.0.R4
3HE 10793 AAAB TQZZA 01
Issue: 01
July 2016
Nokia — Proprietary and confidential.
Use pursuant to applicable agreements.

Advertisement

   Related Manuals for Nokia 7750

   Summary of Contents for Nokia 7750

  • Page 1

    RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 7750 SERVICE ROUTER RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 3HE 10793 AAAB TQZZA 01 Issue: 01 July 2016 Nokia — Proprietary and confidential. Use pursuant to applicable agreements.

  • Page 2

    © 2016 Nokia. All rights reserved. Contains proprietary/trade secret information which is the property of Nokia and must not be made available to, or copied or used by anyone outside Nokia without its written authorization. Not to be used or disclosed except in accordance with applicable agreements.

  • Page 3: Table Of Contents

    RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table of Contents RADIUS Attributes Reference............9 About this Guide ..................9 2.1.1 Audience....................10 RADIUS Authentication Attributes .............10 2.2.1 Subscriber Host Identification..............10 2.2.2 Wholesale-Retail — Local Access Mode...........60 2.2.3 Wholesale-Retail — L2TP Tunneled Access Mode........62 2.2.4 Business Service Access ................76 2.2.5 Accounting On-Line Charging ..............85...

  • Page 4

    RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 3HE 10793 AAAB TQZZA 01 Issue: 01...

  • Page 5

    RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 1 List of Tables RADIUS Attributes Reference............9 Table 1 Attribute Conventions .................9 Table 2 Subscriber Host Identification (Description) ..........10 Table 3 Subscriber Host Identification (Limits) ............37 Table 4 Subscriber Host Identification (Applicability) ..........55 Table 5 Wholesale-Retail: Local Access Mode (Description) ........60 Table 6 Wholesale-Retail: Local Access Mode (Limits) ........61...

  • Page 6

    RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 44 Data Triggered Dynamic Services (CoA Key = Acct-Session-Id of Dynamic Service Data Trigger) - CoA Attributes ........137 Table 45 Lawful Intercept (Description) ..............139 Table 46 Lawful Intercept (Limits) .................140 Table 47 Lawful Intercept (Applicability) ..............141 Table 48 IPSec (Description) .................141 Table 49...

  • Page 7

    RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 89 Disconnect Message: IPSec Tunnel Identification Attributes ....271 Table 90 CoA and Disconnect Message: Data Triggered Dynamic Services Identification Attributes ................272 Table 91 RADIUS CoA Message Supported Attributes .........273 Table 92 RADIUS CoA Message [101] Error-Cause Values .........277 Table 93 RADIUS Disconnect Message [101] Error-Cause Values for IPSec Tunnel ..................279...

  • Page 8

    RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 3HE 10793 AAAB TQZZA 01 Issue: 01...

  • Page 9: Radius Attributes Reference

    RADIUS Attributes Reference RELEASE 14.0.R4 2 RADIUS Attributes Reference 2.1 About this Guide This document provides an overview of all supported RADIUS Authentication, Authorization and Accounting attributes for the 7750 SR. Topics include: • RADIUS Authentication Attributes • RADIUS Accounting Attributes •...

  • Page 10: Audience

    2.1.1 Audience This guide is intended for network administrators who are responsible for configuring and operating the 7750 SR OS using RADIUS AAA. It is assumed that the network administrators have an understanding of networking principles and configuration, routing processes, protocols and standards.

  • Page 11

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description User-Password The password of the user to be authenticated, or the user's input following an Access-Challenge. For PPPoE users it indirectly maps to the password provided by a PPPoE PAP user in response to the PAP Authenticate- Request.

  • Page 12

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description Framed-Protocol The framing to be used for framed access in case of PPPoE users. Optional in RADIUS-Accept and CoA. Treated as a session setup failure if different from PPP.

  • Page 13

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description Framed-Route Routing information (IPv4 managed route) to be configured on the NAS for a host (DHCP, PPPOE, ARP, or data-triggered) that operates as a router without NAT (routed subscriber host).

  • Page 14

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description Session-Timeout Sets the maximum number of seconds of service to be provided to the user (IPoEv4 host, PPPoE or IPoE session) before termination of the session.

  • Page 15

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description Calling-Station-Id Allows the NAS to send unique information identifying the user who requested the service. This format is driven by configuration (configure subscriber-mgmt authentication-policy/radius-accounting-policy name include-radius-attribute calling-station-id <llid | mac | remote- id | sap-id | sap-string>).

  • Page 16

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description NAS-Port-Type The type of the physical port of the NAS which is authenticating the user and value automatically determined from subscriber SAP encapsulation. It can be overruled by configuration.

  • Page 17

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description Framed-Pool The name of one address pool or the name of a primary and secondary address pool separated with a one character configurable delimiter (configure router/service vprn service-id dhcp local-dhcp-server server-name use-pool-from-client delimiter delimiter) that should be used to assign an address for the user and maps to either:...

  • Page 18

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description Framed-IPv6- Routing information (IPv6 managed route) to be configured on the NAS for Route a v6 WAN host (IPoE or PPPoE) that operates as a router. The functionality is comparable with offering multiple PD prefixes for a single host.

  • Page 19

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description Error-Cause The Error-Cause Attribute provides more detail on the cause of the problem if the NAS cannot honor Disconnect-Request or CoA-Request messages for some reason.

  • Page 20

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-2352-36 Ip-Address-Pool- The name of an assigned address pool that should be used to assign an Name address for the user and maps to dhcpv4 option[82] vendor-specific- option [9] sub-option [13] dhcpPool if option is enabled on the node (configure service ies | vprn service-id subscriber-interface ip-int- name group-interface ip-int-name dhcp option vendor-specific-option...

  • Page 21

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-3561-2 Agent-Remote-Id An operator-specific, statically configured string that uniquely identifies the subscriber on the associated access loop of the Access Node/ DSLAM.

  • Page 22

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-3561-135 Maximum-Data- The subscriber's maximum upstream data rate (coded in bits per second), Rate-Upstream as configured by the operator and maps to values received during PPPoE discovery (tag 0x0105) or DHCP (opt-82).

  • Page 23

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-3561-141 Maximum- The subscriber’s maximum one-way downstream interleaving delay in Interleaving- milliseconds, as configured by the operator and maps to values received Delay- during PPPoE discovery (tag 0x0105) or DHCP (opt-82).

  • Page 24

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-4874-2 ERX-Address- The name of an assigned address pool that should be used to assign an Pool-Name address for the user and maps to dhcpv4 option[82] vendor-specific- option [9] sub-option [13] dhcpPool if option is enabled on the node (configure service ies | vprn service-id subscriber-interface ip-int- name group-interface ip-int-name dhcp option vendor-specific-option...

  • Page 25

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-6527-9 Alc-Primary-Dns The IPv4 address of the primary DNS server for this subscribers connection and maps to PPPoE IPCP option 129 Primary DNS Server address or DHCPv4 option 6 Domain Server.

  • Page 26

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-6527-16 Alc-ANCP-Str Information describing the subscriber agent circuit identifier corresponding to the logical access loop port of the Access Node/DSLAM from which a subscriber's requests are initiated and used to associate the ANCP Circuit-Id (info received via ANCP Port Up and Port Down) with the PPPoE/IPoE Circuit-Id (info received via [26-6527-16] Alc-ANCP-Str and...

  • Page 27

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-6527-30 Alc-Secondary- The IPv4 address of the secondary NetBios Name Server (NBNS) for this Nbns subscribers connection and maps to PPPoE IPCP option 132 Primary DNS Server address or DHCPv4 option44 NETBIOS name server.

  • Page 28

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-6527-45 Alc-App-Prof-Str Application Assurance for residential, business or transit-AA subscribers is enabled through the assignment of an application profile as part of either enhanced subscriber management or static configuration.

  • Page 29

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-6527-102 Alc-ToServer- Send to RADIUS all DHCPv4 options received in a DHCPv4 message Dhcp-Options triggering authentication. The dhcpv4 options are concatenated in the attribute up to maximum length per attribute (see limits).

  • Page 30

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-6527-128 Alc-ATM-Ingress- The ATM Traffic Descriptor override for a PPPoA or PPPoEoA host and TD-Profile refers to the preconfigured traffic description QoS profile applied on the ingress ATM Virtual Circuit (configure qos atm-td-profile traffic-desc- profile-id).

  • Page 31

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-6527-132 Alc-Access-Loop- The actual downstream rate (coded in kbits per second) of a PPPoE Rate-Down subscriber's synchronized DSL link and competes with the value received from alternative sources (dsl-forum tags, ludb, ancp).

  • Page 32

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-6527-161 Alc-Delegated- Defines the IA-PD length information [DPL] and only applicable together IPv6-Prefix- with [26-6527-131] Alc-Delegated-IPv6-Pool (silently ignored if received Length in RADIUS Accept without Alc-Delegated-IPv6-Pool).

  • Page 33

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-6527-181 Alc-SLAAC-IPv6- A pool name that can be used in local address assignment to assign an Pool IPv6 SLAAC prefix via a Router Advertisement to the WAN side of the IPoE/PPPoE user.

  • Page 34

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-6527-192 Alc-ToClient- The value of this attribute represents DHCPv6 options encoded in a Dhcp6-Options hexadecimal format. DHCPv6 options originated by RADIUS are appended to the options already present in the DHCPv6 Advertise and Reply messages towards the client.

  • Page 35

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-6527-202 Alc-Dhcp6- The attribute value represents the DHCPv6 lease renew time (T1). T1 is Renew-Time the time at which the client contacts the addressing authority to extend the lifetimes of the DHCPv6 leases (addresses/prefixes).

  • Page 36

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-6527-217 Alc-UPnP-Sub- Specifies the UPnP policy to use for this l2aware subscriber. The policy Override-Policy must be configured in configure service upnp upnp-policy policy- name.

  • Page 37

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 2 Subscriber Host Identification (Description) (Continued) Attribute ID Attribute Name Description 26-6527-234 Alc-DNAT- A composite RADIUS attribute used to modify DNAT function for L2Aware Override NAT subscribers: • enable/disable DNAT functionality without affecting SNAPT •...

  • Page 38

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name CHAP- octets 16+1 Bytes Users CHAP identifier 1 followed by the Encrypted Password password Example: CHAP-Password 01ef8ddc7237f4adcd991ac4c277d312e9 NAS-IP- ipaddr...

  • Page 39

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name Framed- string max 16 "<ip-prefix>[/<prefix-length>] <space> <gateway- Route Framed- address> [<space> <metric>] [<space> tag Routes <space> <tag-value>] [<space> pref <space> attributes <preference-value>]"...

  • Page 40

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name Class octets Up to 6 Example: attributes. Max. Class += My Class1 value length for Class += MyClass2 each attribute is 253 chars.

  • Page 41

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name Acct-Interim- integer 0, [300 to A value of 0 (zero) disables the generation of interim Interval 15552000] update messages.

  • Page 42

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name NAS-IPv6- ipv6addr 16 Bytes # ipv6 address Address Example: NAS-IPv6-Address = 2001:db8::1 Framed- ipv6prefix max. 16 Bytes PPPoE SLAAC wan-host IPv6-Prefix for prefix + 1...

  • Page 43

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name Framed- string max. 16 Example: (continue IPv6-Route Framed-IPv6- Framed-IPv6-Route = "5000:0:1::/48 ::" where :: Route resolves in the wan-host. Default metrics are used attributes (metric=0, preference=0 and no tag) Framed-IPv6-Route = "5000:0:2::/48...

  • Page 44

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name 26-2352- RB-Client- ipaddr 4 Bytes Example: RB-Client-NBNS-Pri = 9.1.1.1 NBNS-Pri 26-2352- RB-Client- ipaddr 4 Bytes Example: RB-Client-NBNS-Sec = 9.1.1.2 NBNS-Sec 26-3561- Agent-...

  • Page 45

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name 26-3561- Maximum- integer 4294967295 Example: Maximum-Data-Rate-Downstream = Data-Rate- 1000 Downstream 26-3561- Minimum- integer 4294967295 Example: Minimum-Data-Rate-Upstream-Low- Data-Rate- Power = 1000 Upstream-...

  • Page 46

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name 26-3561- IWF-Session octets len 0 Example: IWF-Session 26-4874- ERX- string 65 chars Example: ERX-Address-Pool-Name = MyPoolname Address- Pool-Name 26-4874-...

  • Page 47

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name 26-6527- Alc-ANCP- string 63 chars format see also RFC4679 # ATM/DSL <Access-Node-Identifier><atm slot/ port:vpi.vci> # Ethernet/DSL <Access-Node-Identifier><eth slot/ port[:vlan-id]>...

  • Page 48

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name 26-6527- Alc- octets 2 attributes Example: DHCPv4 Discover , option-60 [Class- ToServer- identifier-option] = DHCP-VendorClassId ; Agent- 247 Bytes/ Dhcp- Circuit-Id = circuit10;Agent-Remote-Id = remote10...

  • Page 49

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name 26-6527- Alc- string 18 attributes <direction>:<QoS object>:[<id or Subscriber- name>:][<parameter>=value,...] QoS- <direction> = i or I for ingress, e or E for egress Override <QoS object>...

  • Page 50

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name 26-6527- Alc- Remark: wrr_weight is egress queues [1 to 4] Subscriber- hsmdsv2 only (cont.) QoS- Example: ingress queue 1 pir,cir,mbs,cbs and Override egress aggregate rate overrides (cont.)

  • Page 51

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name 26-6527- Alc-PPP- integer [0 to 0 : False - start IPv6CP negotiation only when IPv6 Force- 4294967295] attributes are obtained in authentication IPv6CP...

  • Page 52

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name 26-6527- Alc-Ipv6- string 247 chars URL string. An empty string removes the override. Portal-Url Example: Alc-IPv6-Portal-Url = “http://portal.com/ welcome?sub=$SUB”...

  • Page 53

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name 26-6527- Alc-ToClient- octets 8 attributes Example, to insert following option: Dhcp6- 247 Bytes/ Option: Simple Network Time Protocol Server (31) Options attribute Length: 32...

  • Page 54

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name 26-6527- Alc-Acct- integer 1 VSA per tag Tagged attribute Interim-IvI per message A value of 0 (zero) disables the generation of interim Max.

  • Page 55

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 3 Subscriber Host Identification (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name 26-6527- Alc-DNAT- string 247 chars {DNAT-state | DNAT-ip-addr}[,nat-policy-name] Override DNAT state = none | disable DNAT-ip-addr = implicit enable with destination IPv4 address in dotted format (a.b.c.d) DNAT-state and DNAT-ip-addr parameters are mutually exclusive...

  • Page 56

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 4 Subscriber Host Identification (Applicability) (Continued) Attribute ID Attribute Name Access Access CoA Request Request Accept User-Password CHAP-Password NAS-IP-Address NAS-Port Service-Type Framed-Protocol Framed-IP-Address Framed-IP-Netmask Reply-Message Framed-Route Class Session-Timeout Idle-Timeout Called-Station-Id Calling-Station-Id NAS-Identifier Acct-Session-Id...

  • Page 57

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 4 Subscriber Host Identification (Applicability) (Continued) Attribute ID Attribute Name Access Access CoA Request Request Accept Error-Cause Delegated-IPv6-Prefix 26-2352-1 Client-DNS-Pri 26-2352-2 Client-DNS-Sec 26-2352-36 Ip-Address-Pool-Name 26-2352-99 RB-Client-NBNS-Pri 26-2352-100 RB-Client-NBNS-Sec 26-3561-1 Agent-Circuit-Id 26-3561-2 Agent-Remote-Id 26-3561-129...

  • Page 58

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 4 Subscriber Host Identification (Applicability) (Continued) Attribute ID Attribute Name Access Access CoA Request Request Accept 26-3561-254 IWF-Session 26-4874-2 ERX-Address-Pool-Name 26-4874-4 ERX-Primary-Dns 26-4874-5 ERX-Secondary-Dns 26-4874-6 ERX-Primary-Wins 26-4874-7 ERX-Secondary-Wins 26-4874-47 ERX-Ipv6-Primary-Dns 26-4874-48 ERX-Ipv6-Secondary-Dns 26-6527-9...

  • Page 59

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 4 Subscriber Host Identification (Applicability) (Continued) Attribute ID Attribute Name Access Access CoA Request Request Accept 26-6527-105 Alc-Ipv6-Primary-Dns 26-6527-106 Alc-Ipv6-Secondary-Dns 26-6527-126 Alc-Subscriber-QoS-Override 26-6527-128 Alc-ATM-Ingress-TD-Profile 26-6527-129 Alc-ATM-Egress-TD-Profile 26-6527-131 Alc-Delegated-IPv6-Pool 26-6527-132 Alc-Access-Loop-Rate-Down 26-6527-133 Alc-Access-Loop-Encap-Offset 26-6527-135...

  • Page 60: Wholesale-retail — Local Access Mode

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 4 Subscriber Host Identification (Applicability) (Continued) Attribute ID Attribute Name Access Access CoA Request Request Accept 26-6527-202 Alc-Dhcp6-Renew-Time 26-6527-203 Alc-Dhcp6-Rebind-Time 26-6527-217 Alc-UPnP-Sub-Override-Policy 26-6527-228 Alc-Trigger-Acct-Interim 26-6527-232 Alc-Acct-Interim-IvI 26-6527-234 Alc-DNAT-Override 26-6527-242 Alc-Radius-Py Note: 1.

  • Page 61

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 5 Wholesale-Retail: Local Access Mode (Description) (Continued) Attribute ID Attribute Name Description 26-6527-32 Alc-MSAP-Policy Managed sap policy-name used to create Managed SAPs and refers to the CLI context configure subscriber-mgmt msap-policy msap- policy-name).

  • Page 62: Wholesale-retail — L2tp Tunneled Access Mode

    L2TP. The same attribute is included on LNS in the Access-Request and Acct-Request if the CLI RADIUS policy include-radius-attribute tunnel-server-attrs is enabled on a 7750 SR LNS. For L2TP Tunnel/Link Accounting this attribute is always included on LAC and LNS. Tunnel-Medium-Type...

  • Page 63

    Tunnel-Private-Group-ID The group ID for a particular tunneled session. This RADIUS attribute is copied by a 7750 SR LAC in AVP 37 - Private Group ID (ICCN) and is used by the LAC to indicate that this call is to be associated with a particular customer group.

  • Page 64

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 8 Wholesale-Retail: L2TP Tunneled Access Mode (Description) (Continued) Attribute ID Attribute Name Description Tunnel-Preference Indicates the relative preference assigned to each tunnel if more than one set of tunneling attributes is returned by the RADIUS server to the tunnel initiator.

  • Page 65

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 8 Wholesale-Retail: L2TP Tunneled Access Mode (Description) (Continued) Attribute ID Attribute Name Description 26-4874-64 ERX-Tunnel-Group The name of the tunnel group that refers to the CLI created tunnel-group-name context.(configure router/service vprn service-id l2tp group tunnel-group-name).

  • Page 66

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 8 Wholesale-Retail: L2TP Tunneled Access Mode (Description) (Continued) Attribute ID Attribute Name Description 26-6527-48 Alc-Tunnel-Max-Sessions The maximum number of sessions allowed per Tunnel (if tag is 1 to 31) or per Tunnel-Group (if tag is 0).This attribute has the same meaning as attribute 26-2352-21 Tunnel-Max-sessions and 26-4874-33 ERX-Tunnel-Maximum-Sessions with the only difference that these latter attributes refers to the Tunnel-Group...

  • Page 67

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 8 Wholesale-Retail: L2TP Tunneled Access Mode (Description) (Continued) Attribute ID Attribute Name Description 26-6527-53 Alc-Tunnel-Max-Retries-Not- The number of retries allowed for unestablished tunnels before Estab their control connection goes down. An exponential backoff mechanism is used for the retransmission interval: the first retransmission occurs after 1 second, the next after 2 seconds, then 4 seconds up to a maximum interval of 8 seconds...

  • Page 68

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 8 Wholesale-Retail: L2TP Tunneled Access Mode (Description) (Continued) Attribute ID Attribute Name Description 26-6527-100 Alc-Serv-Id The service ID on the LNS node where the PPP sessions are established (configure service ies/vprn service-id subscriber-interface name group-interface name).

  • Page 69

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 8 Wholesale-Retail: L2TP Tunneled Access Mode (Description) (Continued) Attribute ID Attribute Name Description 26-6527-144 Alc-Tunnel-Acct-Policy Refers to a preconfigured L2TP tunnel accounting policy-name (configure aaa l2tp-accounting-policy policy-name). L2TP tunnel accounting (RFC 2867) can collect usage data based either on L2TP tunnel and/or L2TP session and send these accounting data to a RADIUS server.

  • Page 70

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 9 Wholesale-Retail: L2TP Tunneled Access Mode (Limits) Attribute ID Attribute Type Limits SR OS Format Name Tunnel-Type integer 3 (mandatory Mandatory 3=L2TP value) Example: Tunnel-Type = L2TP Tunnel- integer 1 (mandatory Mandatory 1=IP or IPv4 Medium- value)

  • Page 71

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 9 Wholesale-Retail: L2TP Tunneled Access Mode (Limits) (Continued) Attribute ID Attribute Type Limits SR OS Format Name Tunnel- string 32 chars Tag 0x00 tunnel-group Assignment- Tag 0x01-0x01f individual tunnels within this tunnel-group Example: Tunnel-Assignment-ID:0 += LNS-ALU...

  • Page 72

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 9 Wholesale-Retail: L2TP Tunneled Access Mode (Limits) (Continued) Attribute ID Attribute Type Limits SR OS Format Name 26-6527-48 Alc-Tunnel- integer 131071 max sessions per group and/or tunnel with Max- default=131071 Sessions Example: # 10000 for the group and individual settings per tunnel...

  • Page 73

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 9 Wholesale-Retail: L2TP Tunneled Access Mode (Limits) (Continued) Attribute ID Attribute Type Limits SR OS Format Name 26-6527-54 Alc-Tunnel- integer values [1 to 1=nothing,2=sensitive-only,3=all; default AVP-Hiding nothing 1=nothing: All L2TP AVPs in clear text 2=sensitive-only: AVP 11-Challenge, 13- Response,14-Assigned Session ID,21-Called- number,22-Calling-number,26-Initial Received...

  • Page 74

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 9 Wholesale-Retail: L2TP Tunneled Access Mode (Limits) (Continued) Attribute ID Attribute Type Limits SR OS Format Name 26-6527-215 Alc-Tunnel- integer [0 to 900] [0 to 900] in seconds; default = 0 Recovery- seconds Example: Alc-Tunnel-Recovery-Time = 180...

  • Page 75

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 10 Wholesale-Retail: L2TP Tunneled Access Mode (Applicability) (Continued) Attribute ID Attribute Name 26-6527-50 Alc-Tunnel-Hello-Interval 26-6527-51 Alc-Tunnel-Destruct-Timeout 26-6527-52 Alc-Tunnel-Max-Retries- Estab 26-6527-53 Alc-Tunnel-Max-Retries-Not- Estab 26-6527-54 Alc-Tunnel-AVP-Hiding 26-6527-97 Alc-Tunnel-Challenge 26-6527-100 Alc-Serv-Id 26-6527-101 Alc-Interface 26-6527-104 Alc-Tunnel-Serv-Id 26-6527-120...

  • Page 76: Business Service Access

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 2.2.4 Business Service Access Table 11 Business Access (Description) Attribute ID Attribute Name Description Framed-Route Routing information (IPv4 managed route) to be configured on the NAS for a host (dhcp, pppoe, arp) that operates as a router without NAT (so called routed subscriber host).

  • Page 77

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 11 Business Access (Description) (Continued) Attribute ID Attribute Name Description Framed-IPv6-Route Routing information (ipv6 managed route) to be configured on the NAS for a v6 wan host (IPoE or PPPoE) that operates as a router. The functionality is comparable with offering multiple PD prefixes for a single host.

  • Page 78

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 11 Business Access (Description) (Continued) Attribute ID Attribute Name Description 26-6527-55 Alc-BGP-Policy Refers to a preconfigured policy under configure subscriber-mgmt bgp- peering-policy policy-name. Mandatory attribute for dynamic BGPv4 peering. The referenced policy contains all required parameters to setup the dynamic BGPv4 peer.

  • Page 79

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 11 Business Access (Description) (Continued) Attribute ID Attribute Name Description 26-6527-207 Alc-RIP-Policy Refers to the preconfigured policy under configure subscriber-mgmt rip-policy policy-name and enables the BNG to listen to RIPv1/v2 messages from the host (master SRRP node only in case of a dual- homed BNG).

  • Page 80

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 11 Business Access (Description) (Continued) Attribute ID Attribute Name Description 26-6527-211 Alc-BGP-IPv6- Optional attribute for dynamic BGPv6 peering. Refers to a Export-Policy preconfigured BGP export policy (configure router policy-options policy-statement name). The RADIUS received policy is appended to the peer (if preconfigured policies for peer are smaller than 15) or replaces the fifteenth policy (if preconfigured policies for peer are exact 15).

  • Page 81

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 12 Business Access (Limits) Attribute ID Attribute Type Limits SR OS Format Name Framed- string max. 16 "<ip-prefix>[/<prefix-length>] <space> <gateway- Route Framed- address> [<space> <metric>] [<space> tag Route <space> <tag-value>] [<space> pref <space> attributes <preference-value>]”...

  • Page 82

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 12 Business Access (Limits) (Continued) Attribute ID Attribute Type Limits SR OS Format Name Framed- string max. 16 Example: (continued) Route Framed- Framed-Route = "192.168.1.0/24 0.0.0.0" where Route 0.0.0.0 is replaced by host address. Default attributes metrics are used (metric=0, preference=0 and no tag)

  • Page 83

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 12 Business Access (Limits) (Continued) Attribute ID Attribute Type Limits SR OS Format Name Framed- string max. 16 Example: (continued) IPv6-Route Framed- Framed-IPv6-Route = "5000:0:1::/48 ::" where :: IPv6-Route resolves in the wan-host. Default metrics are used attributes (metric=0, preference=0 and no tag) Framed-IPv6-Route = "5000:0:2::/48...

  • Page 84

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 12 Business Access (Limits) (Continued) Attribute ID Attribute Type Limits SR OS Format Name 26-6527-209 Alc-BGP- string 32 chars Example: Alc-BGP-IPv6-Auth-Keychain = IPv6-Auth- MyKeychain Keychain 26-6527-210 Alc-BGP- octets 247 Bytes Example: Alc-BGP-IPv6-Auth-Key = IPv6-Auth- “SecuredBGPv6”...

  • Page 85: Accounting On-line Charging

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 13 Business Access (Applicability) (Continued) Attribute ID Attribute Name Access Access Accept CoA Request Request 26-6527-212 Alc-BGP-IPv6-Import-Policy 26-6527-213 Alc-BGP-IPv6-PeerAS 2.2.5 Accounting On-Line Charging Table 14 Accounting: On-Line Charging (Description) Attribute ID Attribute Name Description 26-6527-95...

  • Page 86

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 15 Accounting: On-line Charging (Limits) Attribute ID Attribute Name Type Limits SR OS Format 26-6527-95 Alc-Credit- string 32 chars Example: Alc-Credit-Control-CategoryMap Control- = MyCatMap CategoryMap 26-6527-96 Alc-Credit- string (2^64 - 1) volume volume-value volume-units|time-value Control-Quota value...

  • Page 87: Ip And Ipv6 Filters

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 16 Accounting: On-Line Charging (Applicability) Attribute ID Attribute Name Access Access CoA Request Request Accept 26-6527-95 Alc-Credit-Control- CategoryMap 26-6527-96 Alc-Credit-Control- Quota 2.2.6 IP and IPv6 Filters Table 17 IP and IPv6 Filters (Description) Attribute ID Attribute Name Description...

  • Page 88

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 17 IP and IPv6 Filters (Description) (Continued) Attribute ID Attribute Name Description 26-529-242 Ascend-Data-Filter A local configured filter policy can be extended with shared dynamic filter entries. A dynamic copy of the base filter (filter associated to the host via sla-profile or host filter override) is made and extended with the set of filter rules per type (ipv4/ipv6) and direction (ingress/egress) in the RADIUS message.

  • Page 89

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 17 IP and IPv6 Filters (Description) (Continued) Attribute ID Attribute Name Description 26-6527-158 Alc-Nas-Filter-Rule- A local configured filter policy can be extended with shared dynamic Shared filter entries. A dynamic copy of the base filter (filter associated to the host via sla-profile or host filter override) is made and extended with the set of filter rules per type (ipv4/ipv6) and direction (ingress/egress) in the RADIUS message.

  • Page 90

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 18 IP and IPv6 Filters (Limits) Attribute ID Attribute Name Type Limits SR OS Format NAS-Filter-Rule string max. 10 attributes per The format of a NAS-Filter-Rule is message or max. 10 filter defined in RFC 3588, Diameter entries per message Base Protocol, section-4.3,...

  • Page 91

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 18 IP and IPv6 Filters (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format 26-6527-134 Alc-Subscriber- string Max. 1 VSA. Comma separated list of strings: Filter Ingr-v4:<number>, Ingr- v6:<number>,Egr- v4:<number>,Egr-v6:<number>...

  • Page 92: Ip Filter Attribute Details

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 18 IP and IPv6 Filters (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format 26-6527-159 Alc-Ascend-Data- octets max. 10 attributes per A string of octets with fixed field Filter-Host-Spec message or max.

  • Page 93

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 20 [92] Nas-Filter-Rule Attribute Format Action or Classifier Value Corresponding SR OS Filter Function action deny action drop permit action forward direction ingress egress protocol protocol none any number [0 to 255] protocol [0 to 255] next-header none any number [1 to 42]...

  • Page 94

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 20 [92] Nas-Filter-Rule Attribute Format (Continued) Action or Classifier Value Corresponding SR OS Filter Function to destination ingress: dst-ip = 0.0.0.0/0 | ::/0; dst-port eq 100 egress: dst-ip = host-ip-address; dst-port eq 100 200 to ingress: dst-ip = 0.0.0.0/0 | ::/0;...

  • Page 95

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 20 [92] Nas-Filter-Rule Attribute Format (Continued) Action or Classifier Value Corresponding SR OS Filter Function options: tcpoptions not supported window not supported sack not supported not supported !mss not supported !window not supported !sack...

  • Page 96

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 20 [92] Nas-Filter-Rule Attribute Format (Continued) Action or Classifier Value Corresponding SR OS Filter Function options: icmptypesv4 echo reply protocol 1 / icmp-type 0 destination unreachable protocol 1 / icmp-type 3 source quench protocol 1 / icmp-type 4 redirect...

  • Page 97

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 [26-529-242] Ascend-Data-Filter and [26-6527-159] Alc-Ascend-Data-Filter-Host- Spec The format for [26-529-242] Ascend-Data-Filter and [26-6527-159] Alc-Ascend- Data-Filter-Host-Spec is an octet string with fixed length fields. Table 21 displays details on the respective fields. Table 21 [26-529-242] Ascend-Data-Filter Attribute Format Field...

  • Page 98: Subscriber Host Creation

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 21 [26-529-242] Ascend-Data-Filter Attribute Format (Continued) Field Length Value Field Length Value Destination port qualifier 1 byte 0 = no compare 1 = less than 2 = equal to 3 = greater than 4 = not equal to (not supported) Reserved 2 bytes...

  • Page 99

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 22 Subscriber Host Creation (Description) (Continued) Attribute ID Attribute Name Description 26-6527-98 Alc-Force-Nak An individual DHCPv4 session is terminated with a CoA with attribute [26-6527-98] Alc-Force-Nak. The NAS initiates the ForceRenew procedure which will be blocked (reply on client DHCP Request with DHCP Nak and send DHCP Release to DHCP server).

  • Page 100: Subscriber Services

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 24 Subscriber Host Creation (Applicability) (Continued) Attribute ID Attribute Name Access Access Request Accept Request 26-6527-98 Alc-Force-Nak 2.2.8 Subscriber Services Table 25 Subscriber Services (Description) Attribute ID Attribute Name Description 26-6527-151 Alc-Sub-Serv- Activate a subscriber service.

  • Page 101

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 25 Subscriber Services (Description) (Continued) Attribute ID Attribute Name Description 26-6527-154 Alc-Sub-Serv-Acct- The interim accounting interval in seconds at which Acct-Interim- Interim-Ivl Update messages should be generated for subscriber service accounting.

  • Page 102: Gtp Uplink

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 27 Subscriber Services (Applicability) Attribute ID Attribute Name Access Access Max. Tag Request Accept Request 26-6527-151 Alc-Sub-Serv-Activate 0-31 (untagged) 26-6527-152 Alc-Sub-Serv-Deactivate 0-31 26-6527-153 Alc-Sub-Serv-Acct-Stats- 0-31 Type 26-6527-154 Alc-Sub-Serv-Acct-Interim-Ivl 0-31 2.2.9 GTP uplink In this section, GTP uplink application specific attributes are detailed.

  • Page 103

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 28 GTP Uplink (Description) (Continued) Attribute ID Attribute Name Description 26-6527-219 Alc-Egress-Report- This value will be subtracted from the base downlink AMBR value Rate-Subtract calculated via the report-rate mechanism. This attribute will only be interpreted if report-rate is enabled in the applicable sla-profile: configure subscriber-mgmt sla-profile sla-profile-name egress report-rate.

  • Page 104

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 29 GTP Uplink (Limits) Attribute ID Attribute Name Type Limits SR OS Format 26-6527-145 Alc-MGW- integer values [1 to 3] Gn(GTPv1)=1; S2a(GTPv2)=2; interface-Type S2b(GTPv2)=3 default = s2a Example: Alc-MGW-Interface-Type = 1 26-6527-146 Alc-Wlan-APN- string...

  • Page 105

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 29 GTP Uplink (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format 26-10415-5 3GPP-GPRS- string length as Specified in TS 29.061 version 8.5.0 Release defined in the 8 section 16.4.7.2 Negotiated-QoS- 3GPP TS Profile...

  • Page 106: Wlan Gateway

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 30 GTP Uplink (Applicability) (Continued) Attribute ID Attribute Name Access Access Acct. Request Accept Request Messages 26-10415-3 3GPP-PDP-Type 26-10415-5 3GPP-GPRS-Negotiated-QoS- Profile 26-10415-7 3GPP-GGSN-Address 26-10415-13 3GPP-Charging-Characteristics 26-10415-20 3GPP-IMEISV 26-10415-21 3GPP-RAT-Type 26-10415-22 3GPP-User-Location-Info 2.2.10 WLAN Gateway In this section, WLAN gateway application specific attributes are detailed, including...

  • Page 107

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 31 WLAN Gateway (Description) (Continued) Attribute ID Attribute Name Description Called-Station-Id If configured for inclusion in authentication and accounting policy (configure aaa isa-radius-policy policy-name auth-include- attributes/acct-include-attributes called-station-id), the called- station-id received from EAP authentication request is transparently forwarded in access-request.

  • Page 108

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 31 WLAN Gateway (Description) (Continued) Attribute ID Attribute Name Description 26-3561-1 Agent-Circuit-Id Agent-circuit-id is transparently taken from the circuit-id in DHCP option-82. Most WIFI access-points insert information describing the AP and SSID that the UE is associated with.

  • Page 109

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 31 WLAN Gateway (Description) (Continued) Attribute ID Attribute Name Description 26-6527-184 Alc-Wlan-Ue- When promoting a migrant user, this indicates if the UE should be Creation-Type created on CPM/IOM (as an ESM host) or on ISA (as a DSM host). When this attribute is not present during promote, creation-type CPM/ IOM is assumed.

  • Page 110

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 31 WLAN Gateway (Description) (Continued) Attribute ID Attribute Name Description 26-6527-189 Alc-Wlan-Dsm- Specifies the name of a distributed subscriber management (DSM) Egress-Policer egress policer configured under configure subscriber-mgmt wlan-gw distributed-sub-mgmt dsm-policer policer-name. This policer will be applied to the DSM UE.

  • Page 111

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 31 WLAN Gateway (Description) (Continued) Attribute ID Attribute Name Description 26-25053-2 Ruckus-Sta-RSSI Received Signal Strength Indication. Used in conjunction with the radius-proxy track-accounting feature. When the radius-proxy receives this attribute in an accounting message, it will be copied into the DHCP lease state and echoed by the SR OS accounting.

  • Page 112

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 32 WLAN Gateway (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name 26-6527- Alc-Wlan-Ue- integer values [0 to values: iom = 0, isa = 1 Creation- Any other value is invalid and the corresponding Type RADIUS message will be dropped.

  • Page 113

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 32 WLAN Gateway (Limits) (Continued) Attribute Attribute Type Limits SR OS Format Name 26-6527- Alc-Tunnel- string Up to 4 <direction>:<QoS object>:[<id or QoS- attributes name>:][<parameter>=value,...] Override <direction> = e or E for egress <QoS object>...

  • Page 114

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 33 WLAN Gateway (Applicability) (Continued) Attribute ID Attribute Name 26-6527-149 Alc-Num-Attached-Ues 26-6527-172 Alc-Wlan-Portal-Redirect 26-6527-173 Alc-Wlan-Portal-Url 26-6527-184 Alc-Wlan-Ue-Creation-Type 26-6527-186 Alc-Wlan-Dsm-Ot-Http-Redirect-Url 26-6527-187 Alc-Wlan-Dsm-Ip-Filter 26-6527-188 Alc-Wlan-Dsm-Ingress-Policer 26-6527-189 Alc-Wlan-Dsm-Egress-Policer 26-6527-190 Alc-Wlan-Handover-Ip-Address 26-6527-206 Alc-Wlan-SSID-VLAN 26-6527-216 Alc-Datatrig-Lease-Time 26-6527-218 Alc-Wlan-Handover-Ipv6-Address...

  • Page 115

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 34 WLAN Gateway ISA Authentication (Applicability) Attribute ID Attribute Name Access Portal Request Access Accept Accept User-Name User-Password NAS-IP-Address NAS-Port Framed-IP-Address Class Session-Timeout Idle-Timeout Called-Station-Id Calling-Station-Id NAS-Identifier Acct-Session-Id NAS-Port-Type Acct-Interim-Interval NAS-Port-Id 26-3561-1 Agent-Circuit-id...

  • Page 116: Virtual Residential Gateway

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 34 WLAN Gateway ISA Authentication (Applicability) (Continued) Attribute ID Attribute Name Access Portal Request Access Accept Accept 26-6527-123 Alc-LI-Destination 26-6527-138 Alc-LI-Intercept-Id 26-6527-139 Alc-LI-Session-id 26-6527-172 Alc-Wlan-Portal-Redirect 26-6527-173 Alc-Wlan-Portal-Url 26-6527-182 Alc-AA-Sub-Http-Url-Param 26-6527-184 Alc-Wlan-Ue-Creation-Type 26-6527-186 Alc-Wlan-Dsm-Ot-Http-...

  • Page 117

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 35 Table 36 list the description and limits for vRGW authentication attributes that are specific to vRGW applications only or that are different from the ESM or WLAN-GW authentication scenarios. Table 37 lists the applicability for BRG level authentication Access Request attributes.

  • Page 118

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 35 vRGW (Description) (Continued) Attribute ID Attribute Name Description 26-6527-220 Alc-Home- This specifies a basic small-scale IP pool that can be used to allocate Aware-Pool addresses to multiple hosts of the same subscriber. This IP allocation mechanism has priority over other mechanisms (IP from radius, IP from LUDB, IP from DHCP server).

  • Page 119

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 35 vRGW (Description) (Continued) Attribute ID Attribute Name Description 26-6527-222 Alc-Standby-lps After a stateless redundancy event this attribute can be used to inform the home aware pool of which addresses where in use before failure. The pool will set these addresses aside and not use them for dynamic allocation.

  • Page 120

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 35 vRGW (Description) (Continued) Attribute ID Attribute Name Description 26-6527-223 Alc-Reserved- For a subscriber with home-aware pool management this attribute lists a Addresses set of MAC-IP combinations that are reserved. IP addresses listed here will only be allocated to the host with that specific MAC address.

  • Page 121

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 35 vRGW (Description) (Continued) Attribute ID Attribute Name Description 26-6527-225 Alc-BRG-Id In session authentication, reflects the BRG identifier of the associated BRG (if known) in Access-Request. In BRG authentication, reflects the BRG identifier (if known), in the Access Request.

  • Page 122

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 36 vRGW (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-6527- Alc-Home- string Max. 2048 IP <gateway-ip>/<prefix-length> <space> Aware-Pool addresses in range <start-address> <dash> <end-address> Example: Alc-Home-Aware-Pool = “192.168.1.2/24 192.168.1.50-192.168.1.100”...

  • Page 123

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 36 vRGW (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-6527- Alc-Reserved- string Max. 40 chars <static|sticky> <space> <mac-address> Addresses <space> <ip-address> Max. 64 attributes Per attribute, a single MAC and IP to specify the reservation and a keyword to specify the type of reservation (sticky or static).

  • Page 124

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 36 vRGW (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-6527- Alc-BRG-DHCP- ipaddr 4 Bytes Destination IPv4 address for streaming Streaming-Dest DHCPv4 messages. IPv4 = 0.0.0.0 disables DHCPv4 streaming at BRG level Example: Alc-BRG-DHCP-Streaming-Dest =...

  • Page 125

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 36 vRGW (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-6527- Alc-Per-Host- integer 0-64512 A value of 0 disables per-host port range Port-Range allocation. Ports are allocated from the available dynamic ports per IP address.

  • Page 126

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 38 vRGW - BRG and Session Level Authentication (Applicability) (Continued) Attribute ID Attribute Name BRG Level Session Level Access Access Accept Accept Acct-Interim-Interval NAS-Port-Id NAS-Filter-Rule Framed-IPv6-Prefix Framed-IPv6-Route Framed-IPv6-Pool Error-Cause 26-529-242 Ascend-Data-Filter 26-2352-1 Client-DNS-Pri...

  • Page 127

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 38 vRGW - BRG and Session Level Authentication (Applicability) (Continued) Attribute ID Attribute Name BRG Level Session Level Access Access Accept Accept 26-6527-29 Alc-Primary-Nbns 26-6527-30 Alc-Secondary-Nbns 26-6527-31 Alc-MSAP-Serv-Id 26-6527-32 Alc-MSAP-Policy 26-6527-33 Alc-MSAP-Interface 26-6527-45...

  • Page 128

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 38 vRGW - BRG and Session Level Authentication (Applicability) (Continued) Attribute ID Attribute Name BRG Level Session Level Access Access Accept Accept 26-6527-160 Alc-Relative-Session-Timeout 26-6527-174 Alc-Lease-Time 26-6527-177 Alc-Portal-Url 26-6527-178 Alc-Ipv6-Portal-Url 26-6527-181 Alc-SLAAC-IPv6-Pool 26-6527-182...

  • Page 129: Dynamic Data Services

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Notes: 1. Only for new sessions. Ignored for existing sessions. 2. The update will be applied to an existing session at the next DHCP/DHCPv6 Renew or Router Advertisement (RA). 3. May be present in re-auth or CoA but cannot change for an existing BRG. 4.

  • Page 130

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 39 Dynamic Data Services (Description) (Continued) Attribute ID Attribute Name Description Acct-Session-Id (RADIUS authentication of data triggered Dynamic Data Services only) A unique identifier that represents the dynamic service data trigger that is authenticated.

  • Page 131

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 39 Dynamic Data Services (Description) (Continued) Attribute ID Attribute Name Description 26-6527-165 Alc-Dyn-Serv-Script- Parameters as input to the Dynamic Data Service Python script. The Params parameters can cross an attribute boundary. The concatenation of all [26-6527-165] Alc-Dyn-Serv-Script-Params attributes with the same tag in a single message must be formatted as function-key dictionary where function-key specifies which Python functions will be called and...

  • Page 132

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 39 Dynamic Data Services (Description) (Continued) Attribute ID Attribute Name Description 26-6527-170 Alc-Dyn-Serv-Acct- Enable or disable dynamic data service accounting to the primary Stats-Type-1 accounting server and specify the stats type: volume and time or time only.

  • Page 133

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 40 Dynamic Data Services (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format 26-6527-27 Alc-Client-Hardware- string 6 bytes Format fixed to xx:xx:xx:xx:xx:xx Addr Example: Alc-Client-Hardware-Addr = 00:51:00:dd:01:01 26-6527-99 Alc-Ipv6-Address ipv6addr 16 bytes...

  • Page 134

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 40 Dynamic Data Services (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format 26-6527-167 Alc-Dyn-Serv-Policy string 1 VSA per tag per The name of the local configured message; max. Dynamic Service Policy length: 32 chars.

  • Page 135

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 41 Dynamic Data Services (Applicability) Attribute ID Attribute Name User-Name User-Password NAS-IP-Address Framed-IP-Address NAS-Identifier Acct-Session-Id NAS-Port-Id NAS-IPv6-Address 26-6527-27 Alc-Client-Hardware-Addr 26-6527-99 Alc-Ipv6-Address 26-6527-164 Alc-Dyn-Serv-SAP-Id 0-31 26-6527-165 Alc-Dyn-Serv-Script-Params 0-31 (untagged) 26-6527-166 Alc-Dyn-Serv-Script-Action 0-31 26-6527-167 Alc-Dyn-Serv-Policy...

  • Page 136

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 42 Dynamic Data Services — Control Channel CoA Attributes Attribute name Setup Modify Tear Comment Down Acct-Session-Id (CoA key) Acct-Session-Id of the Control Channel (or any other valid CoA key for ESM hosts/ sessions) Alc-Dyn-Serv-SAP-Id Identifies the dynamic data service...

  • Page 137

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 43 Data Triggered Dynamic Services (CoA Key = Nas-Port-Id or Acct-Session-Id of Dynamic Data Service SAP) - CoA Attributes (Continued) Attribute Name Setup Modify Teardown Comment Alc-Dyn-Serv-SAP- If specified, the sap-id must be the same as the Nas-Port-Id or correspond with the dynamic service sap identified with the Acct-Session-Id.

  • Page 138

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 44 Data Triggered Dynamic Services (CoA Key = Acct-Session-Id of Dynamic Service Data Trigger) - CoA Attributes (Continued) Attribute Name Setup Modify Teardown Comment Alc-Dyn-Serv- For a Modify, the Script Parameters represent the Script- Params new parameters required for the change.

  • Page 139: Lawful Intercept

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 2.2.13 Lawful Intercept Table 45 Lawful Intercept (Description) Attribute ID Attribute Name Description 26-6527-122 Alc-LI-Action Defines the traffic mirroring action start-mirroring 'enable' or stop- mirroring 'disable'. The Alc-LI-Action 'no-action' specifies that the router does not perform any traffic mirroring-related action.

  • Page 140

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 45 Lawful Intercept (Description) (Continued) Attribute ID Attribute Name Description 26-6527-138 Alc-LI-Intercept-Id Specifies the intercept-id to be placed in the LI-Shim header and only applicable if the mirror-dest (as specified by the [26-6527-123] Alc-LI- Destination attribute) is configured with routable encap that contains the LI-Shim (configure mirror mirror-dest service-id encap layer-3- encap ip-udp-shim).

  • Page 141: Ipsec

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 46 Lawful Intercept (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format 26-6527-138 Alc-LI-Intercept- integer 29b w dir-bit 29b = [0 to 536870911] 30b w/o dir-bit 30b = [0 to 1073741823] Example: Alc-LI-Intercept-Id = 1234 26-6527-139 Alc-LI-Session-...

  • Page 142

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 48 IPSec (Description) (Continued) Attribute ID Attribute Name Description User-Password For IKEv1 remote-access tunnel, this represents the xauth password. For IKEv2 remote-access tunnel with pskradius authentication method, this represents the pre-shared-key of the ipsec-gw or ipsec-tunnel: configure service ies/vprn service-id interface interface-name sap sap-id ipsec-gw gw-name pre-shared-key configure service vprn service-id interface interface-name sap sap-...

  • Page 143

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 48 IPSec (Description) (Continued) Attribute ID Attribute Name Description Message- This attribute is used in EAP authentication and provides message Authenticator integrity verification. Nas-Port-Id The public SAP ID of IKEv2 remote-access tunnel. The attribute can be included/excluded with configure ipsec radius-authentication-policy policy-name include-radius-attribute nas-port-id or configure ipsec radius-accounting-policy policy-name include-radius-attribute nas-...

  • Page 144

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 48 IPSec (Description) (Continued) Attribute ID Attribute Name Description 26-6527-10 Alc-Secondary-Dns The IPv4 DNS server address to be assigned to an IKEv2 remote- access tunnel client via IKEv2 configuration payload: INTERNAL_IP4_DNS.

  • Page 145

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 48 IPSec (Description) (Continued) Attribute ID Attribute Name Description 26-6527-67 Alc-IPsec-SA-Auth- IPSec phase2 SA Authentication Algorithm, used by IKEv1/v2 remote- Algorithm access tunnel. The esp-auth-algorithm in ipsec-transform is used when this attribute is omitted (configure ipsec ipsec-transform esp-auth- algorithm algo).

  • Page 146

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 49 IPSec (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format Called-Station-Id string 253 bytes # local gateway address of IKEv2 remote-access tunnel. Example: Called-Station-Id = “172.16.100.1” Calling-Station-Id string 253 bytes # peer-address:port...

  • Page 147

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 49 IPSec (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format 26-6527-10 Alc-Secondary-Dns ipaddr Up to 4 Example: attributes (4B Alc-Secondary-Dns = 192.168.2.1 per attribute) 26-6527-61 Alc-IPsec-Serv-Id integer 2147483647 Example: Alc-IPsec-Serv-Id = 100 26-6527-62...

  • Page 148

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 49 IPSec (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format 26-6527-237 Alc-Subject-Key-Identifier octets Up to 247 The least significant 247 bytes of the bytes Subject Key Id in peer's certificate. Table 50 IPSec (Applicability) Attribute ID...

  • Page 149: Application Assurance

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 50 IPSec (Applicability) (Continued) Attribute ID Attribute Name Access Access Access Acct Request Accept Challenge Request 26-6527-64 Alc-IPsec-SA-Lifetime 26-6527-65 Alc-IPsec-SA-PFS-Group 26-6527-66 Alc-IPsec-SA-Encr-Algorithm 26-6527-67 Alc-IPsec-SA-Auth-Algorithm 26-6527-68 Alc-IPsec-SA-Replay- Window 26-6527-105 Alc-Ipv6- Primary-Dns 26-6527-106 Alc-Ipv6- Secondary-Dns 26-6527-229...

  • Page 150

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 51 Application Assurance (Description) (Continued) Attribute Attribute Name Description 26-6527-11 Alc-Subsc-ID- A mandatory attribute used in Access-Accept for AA subscriber creation (as in ESM host creation) or application-profile change (CoA) and for AA-transit subscriber creation (CoA), removal (Disconnect) or audit (CoA).

  • Page 151

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 51 Application Assurance (Description) (Continued) Attribute Attribute Name Description 26-6527- Alc-AA-App- Used to apply Application Service Option (ASO) overrides. These attributes Service-Options can only be applied if an app-profile is also or has previously been associated with the AA-sub (explicitly or by default), or else the override is rejected.

  • Page 152

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 51 Application Assurance (Description) (Continued) Attribute Attribute Name Description 26-6527- Alc-AA-App- • A new aa-sub characteristic can be applied, or an existing 193 (cont.) Service-Options characteristic modified, by an ASO VSA. (cont.) •...

  • Page 153: Cli User Authentication And Authorization

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 52 Application Assurance (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format 26-6527- Alc-AA-Sub-Http-Url- string 32 chars # Example Param Alc-AA-Sub-Http-Url-Param = "&Provider=ISPname&Location=Station2 1" 26-6527- Alc-AA-App-Service- string 65 bytes per Format characteristic=value, Options string (char.

  • Page 154

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 54 CLI User Authentication and Authorization (Description) (Continued) Attribute ID Attribute Name Description User-Password The password of user requesting user-Authentication, Authorization, Accounting and always encrypted in a fixed length NAS-IP-Address The identifying IP Address of the NAS requesting the Authentication or Accounting.

  • Page 155

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 54 CLI User Authentication and Authorization (Description) (Continued) Attribute ID Attribute Name Description NAS-IPv6-Address The identifying IP Address of the NAS requesting the Authentication or Accounting. Included when the RADIUS server is reachable via IPv6. The address is determined by the routing instance through which the RADIUS server can be reached: “Management”...

  • Page 156

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 54 CLI User Authentication and Authorization (Description) (Continued) Attribute ID Attribute Name Description 26-6527-6 Timetra-Cmd Command string, subtree command-string or a list of command-strings as scope for the match condition for user authorization. Multiple command-strings in the same attribute are delimited with the;...

  • Page 157

    Example: NAS-IPv6-Address = 2001:db8::1 26-6527-1 Timetra- integer 1,2,3 1=ftp, 2=console (serial port, Telnet and SSH(SCP)), Access 3=both Example: Timetra-Access = console 26-6527-2 Timetra- string Example: Timetra-Home-Directory = cf3:/7750/configs/ Home- chars Directory 26-6527-3 Timetra- integer 1=true, 2=false Restrict-To- (false, Example: Timetra-Restrict-To-Home = true Home...

  • Page 158

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 55 CLI User Authentication and Authorization (Limits) (Continued) Attribute ID Attribute Type Limits SR OS Format Name 26-6527-5 Timetra- integer 1,2,3 1=permit-all, 2=deny-all, 3=none Default- Example: Timetra-Default-Action = none Action 26-6527-6 Timetra-Cmd string...

  • Page 159: Aaa Route Downloader

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 56 CLI User Authentication and Authorization (Applicability) (Continued) Attribute ID Attribute Name Access Access- Access Access- Request Challenge Request Accept 1 or 2 NAS-IPv6-Address 26-6527-1 Timetra-Access 26-6527-2 Timetra-Home- Directory 26-6527-3 Timetra-Restrict-To- Home 26-6527-4...

  • Page 160

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 57 AAA Route Downloader (Description) (Continued) Attribute ID Attribute Name Description Framed-Route The RADIUS route-download application periodically sends a RADIUS Access-Request message to the RADIUS server to request that ipv4/ ipv6 routes be downloaded.

  • Page 161

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 58 AAA Route Downloader (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format Framed-Route string 253 bytes Format [vrf {vpn-name|vpn-serviceid}] {IP} prefix-mask {null0 | null 0 | black-hole} [metric] 200.000 [tag tag-value] attributes...

  • Page 162

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 58 AAA Route Downloader (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-9-1 cisco-av-pair string 253 bytes Format [vrf {vpn-name | vpn-serviceid}] {IP} prefix-mask {null0 | null 0 | black-hole} [metric] 200.000 [tag tag-value] attributes...

  • Page 163: Radius Accounting Attributes

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 2.3 RADIUS Accounting Attributes 2.3.1 Enhanced Subscriber Management (ESM) Accounting There are currently three accounting modes in Enhanced Subscriber Management accounting: • Host accounting (H) • Session accounting (S) • Queue instance accounting (Q) A single host can have up to two simultaneously active accounting modes.

  • Page 164

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Queue instance accounting (per queue instance): show service id <svc-id> subscriber-hosts detail Acct-Q-Inst-Session-Id: 241AFF000000224FE9D801 The Host or Session accounting session id can be included in a RADIUS Access Request: configure subscriber-mgmt authentication-policy <policy-name>...

  • Page 165

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 61 Accounting Statistics Type Accounting Mode Statistics Type host-accounting interim-update Time and volume based accounting session-accounting interim-update [host-update] session-accounting host-update queue-instance-accounting interim-update host-accounting Time based accounting session-accounting queue-instance-accounting The different sets of volume accounting attributes that can be included in the Accounting Interim and Stop messages are controlled via include-radius-attribute CLI commands.

  • Page 166

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description NAS-IP-Address The identifying IP Address of the NAS requesting the Authentication or Accounting. Included when the RADIUS server is reachable via IPv4. The address is determined by the routing instance through which the RADIUS server can be reached: “Management”...

  • Page 167

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description Framed-IP-Netmask The IP netmask to be configured for the user when the user is a router to a network. For DHCPv4 users, the attribute maps to DHCPv4 option [1] Subnet mask and is mandatory if [8] Framed-IP-Address is also returned.

  • Page 168

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description Calling-Station-Id Allows the NAS to send unique information identifying the user who requested the service. This format is driven by configuration (configure subscriber-mgmt radius-accounting-policy name include-radius- attribute calling-station-id <llid | mac | remote-id | sap-id | sap- string>).

  • Page 169

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description Acct-Session-Id A unique identifier that represents a subscriber host, a set of subscriber hosts that belong to the same queue-instance or a set of hosts that belong to a PPPoE or IPoE session.

  • Page 170

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description Acct-Multi-Session-Id A unique Accounting ID that links together multiple related accounting sessions. (see Table 60) Each linked accounting session has a unique [44] Acct-Session-Id and the same [50] Acct-Multi-Session-Id.

  • Page 171

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description Tunnel-Type (L2TP LAC and LNS only) The tunneling protocol(s) to be used (in the case of a tunnel initiator) or the tunneling protocol in use (in the case of a tunnel terminator).

  • Page 172

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description NAS-Port-Id A text string which identifies the physical/logical port of the NAS which is authenticating the user and/or reported for accounting. Attribute is also used in CoA and Disconnect Message (part of the user identification-key).

  • Page 173

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description NAS-IPv6-Address The identifying IP Address of the NAS requesting the Authentication or Accounting. Included when the RADIUS server is reachable via IPv6. The address is determined by the routing instance through which the RADIUS server can be reached: “Management”...

  • Page 174

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description Framed-IPv6-Route The routing information (IPv6 managed route) to be configured on the NAS for a v6 wan-host (IPoE or PPPoE) that operates as a router and/ or a DHCPv6 IA-PD host modeled as a managed route.

  • Page 175

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-3561-129 Actual-Data-Rate- Actual upstream train rate (coded in bits per second) of a subscriber's Upstream synchronized DSL link and maps to values received during PPPoE discovery (tag 0x0105) or DHCP (opt-82).

  • Page 176

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-3561-135 Maximum-Data-Rate- The subscriber's maximum upstream data rate (coded in bits per Upstream second), as configured by the operator and maps to values received during PPPoE discovery (tag 0x0105) or DHCP (opt-82).

  • Page 177

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-3561-141 Maximum- The subscriber's maximum one-way downstream interleaving delay in Interleaving-Delay- milliseconds, as configured by the operator and maps to values Downstream received during PPPoE discovery (tag 0x0105) or DHCP (opt-82).

  • Page 178

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-11 Alc-Subsc-ID-Str A subscriber is a collection of subscriber-hosts (typically represented by IP-MAC combination) and is uniquely identified by a subscriber string. Subscriber-hosts queues/policers belonging to the same subscriber (residing on the same forwarding complex) can be treated under one aggregate scheduling QoS mechanism.

  • Page 179

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-19 Alc-Acct-I-Inprof- Indicates how many queue | policer ingress forwarded bytes have been Octets-64 handled for this user over the course of this service being provided. •...

  • Page 180

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-21 Alc-Acct-O-Inprof- Indicates how many queue|policer egress forwarded bytes have been Octets-64 handled for this user over the course of this service being provided. •...

  • Page 181

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-23 Alc-Acct-I-Inprof- Indicates how many queue|policer ingress forwarded packets have Pkts-64 been handled for this user over the course of this service being provided.

  • Page 182

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-25 Alc-Acct-O-Inprof- Indicates how many queue|policer egress forwarded packets have Pkts-64 been handled for this user over the course of this service being provided.

  • Page 183

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-27 Alc-Client-Hardware- The MAC address from a user that requests a service and included in Addr CoA, Authentication or Accounting (configure subscriber-mgmt authentication-policy/radius-accounting-policy name include- radius-attribute mac-address).

  • Page 184

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-43 Alc-Acct-OC-O- HSMDA override counter: counts egress forwarded packets: Inprof-Pkts-64 • no queue stat-mode: Count in-profile packets (IPv4 and IPv6) [26-6527-127] Alc-Acct-O-statmode VSA not included •...

  • Page 185

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-69 Alc-Acct-I-High- A customized record and provides the flexibility to reduce the volume of Octets-Drop_64 data generated, network operators can define the record that needs to be collected.

  • Page 186

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-71 Alc-Acct-I-High-Pack- A customized record and provides the flexibility to reduce the volume of Drop_64 data generated, network operators can define the record that needs to be collected.

  • Page 187

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-74 Alc-Acct-I-Low- A customized record and provides the flexibility to reduce the volume Octets-Offer_64 of data generated, network operators can define the record that needs to be collected.

  • Page 188

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-81 Alc-Acct-O-Inprof- A customized record and provides the flexibility to reduce the volume Pack-Drop_64 of data generated, network operators can define the record that needs to be collected.

  • Page 189

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-83 Alc-Acct-O-Inprof- A customized record and provides the flexibility to reduce the volume Octs-Drop_64 of data generated, network operators can define the record that needs to be collected.

  • Page 190

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-91 Alc-Acct-OC-O-Inpr- HSMDA override counter: counts egress dropped packets Pack-Drop_64 • no queue stat-mode: Count in-profile packets (IPv4 and IPv6) [26-6527-127] Alc-Acct-O-statmode VSA not included •...

  • Page 191

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-94 Alc-Acct-OC-O- HSMDA override counter: counts egress dropped bytes Outpr-Octs-Drop_64 • no queue stat-mode: Count out-of-profile bytes (IPv4 and IPv6) [26-6527-127] Alc-Acct-O-statmode VSA not included •...

  • Page 192

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-107 Alc-Acct-I-statmode Identifies what ingress counters the operator wishes to maintain for the policer and defined by configure qos sap-ingress policy-id policer policer-id stat-mode stat-mode.

  • Page 193

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-110 Alc-Acct-O-Hiprio- Policer-specific counter. Indicates how many policer egress-forwarded- Octets_64 bytes have been handled for this user over the course of this service being provided.

  • Page 194

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-113 Alc-Acct-I-Lowprio- Policer-specific counter. Indicates how many policer ingress-forwarded- Packets_64 packets have been handled for this user over the course of this service being provided.

  • Page 195

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-117 Alc-Acct-O-All- Policer-specific counter. Indicates how many policer egress-forwarded- Octets_64 bytes have been handled for this user over the course of this service being provided.

  • Page 196

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-148 Alc-RSSI Received Signal Strength Indication. Used in conjunction with the radius-proxy track-accounting feature. When the radius-proxy receives this attribute in an accounting message, it will be copied into the DHCP lease state and echoed by the SROS accounting.

  • Page 197

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-194 Alc-IPv6-Acct-Input- Aggregate of all ingress forwarded IPv6 packet counters for policers Packets and queues that have stat-mode v4-v6 enabled (example: configure subscriber-mgmt sla-profile sla-profile-name ingress qos policy-id queue | policer id stat-mode v4-v6).

  • Page 198

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-199 Alc-IPv6-Acct- Indicates how many times (one or more) the [26-6527-198] Alc-IPv6- Output-Gigawords Acct-Output-Octets counter has wrapped around 2^32 in the course of delivering this service.

  • Page 199

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 62 Enhanced Subscriber Management Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-6527-230 Alc-Acct-O-Exprof- Policer-specific counter. Indicates how many policer egress-exceed- Octets_64 profile-forwarded-bytes have been handled for this user over the course of this service being provided.

  • Page 200

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format NAS-Port integer 4 Bytes nas-port <binary-spec> <binary-spec> = <bit- specification> <binary-spec> <bit-specification> = 0 | 1 | <bit-origin> <bit-origin> = *<number-of- bits><origin>...

  • Page 201

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format Class octets Up to 6 Example: Class = My Class attributes. Max. value length for each attribute is 253 chars.

  • Page 202

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format Acct-Session-Id string 22 bytes Internal generated 22 byte string (number format): (number Acct-Session-Id = 241AFF0000003250B5F750 format) max.

  • Page 203

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format Acct-Output- integer 32 bit counter Example: Acct-Output-Gigawords = 3 Gigawords Event-Timestamp date 4 Bytes Example: # Jul 6 2012 17:28:23 CEST is reported as 4FF70417 Event-Timestamp = 4FF70417 NAS-Port-Type integer...

  • Page 204

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format NAS-Port-Id string 253 Bytes <prefix> : optional string 8 chars max <suffix> : optional string containing remote-id ( max 64 chars) or circuit-id ( max 64 chars) # IPoE/PPPoE: “<prefix><space><slot>/<mda>/<port>/...

  • Page 205

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format Framed-IPv6- ipv6prefi max. 16 PPPoE SLAAC wan-host <ipv6-prefix/prefix- Prefix Bytes for length> with prefix-length 64 prefix + 1 Example: Framed-IPv6-Prefix 2021:1:FFF3:1::/64 Byte for...

  • Page 206

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-3561- Actual-Data- integer 4294967295 Example: # 5Mbps Actual-Data-Rate-Downstream Rate- = 5000000 Downstream 26-3561- Minimum-Data- integer 4294967295 Example: Minimum-Data-Rate-Upstream = 1000 Rate-Upstream...

  • Page 207

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-3561- Actual- integer 4294967295 Example: Actual-Interleaving-Delay-Downstream Interleaving- milliseconds = 10 Delay- Downstream 26-3561- Access-Loop- octets 3 Bytes <Data Link><Encaps-1><Encaps-2>...

  • Page 208

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-6527- Alc-Acct-I- octets 10 bytes/ <Q/P-selection 1 Byte><Queue-id|Policer-id 1 Outprof-Octets- attribute w/ Byte><8 Byte value> where Q/P-selection : 00 = max 31 Queue counters, 80= Policer counters where attributes...

  • Page 209

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-6527- Alc-Acct-I- octets 10 bytes/ <Q/P-selection 1 Byte><Queue-id|Policer-id 1 Outprof-Pkts-64 attribute w/ Byte><8 Byte value> where Q/P-selection : 00 = max 31 Queue counters, 80= Policer counters where attributes...

  • Page 210

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-6527- Alc-Acct-OC-O- octets 10 bytes <Counter-id> <8 Byte value> Inprof-Pkts-64 Example: Alc-Acct-OC-O-Inprof-Pkts-64 = 0x0005000000000001fda4 26-6527- Alc-Acct-OC-O- octets 10 bytes...

  • Page 211

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-6527- Alc-Acct-I-Low- octets 10 bytes <Queue-id 2Bytes><8 Byte value> where Queue- Pack-Offer_64 id range <1 to 32> Example: INPUT_LOW_PACK_OFFER_64 [76] 10 0x00010000000000000000 26-6527-...

  • Page 212

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-6527- Alc-Acct-OC-O- octets 10 bytes <Counter-id> <8 Byte value> Inpr-Octs- Example: Alc-Acct-OC-O-Inpr-Octs-Drop_64 = Drop_64 0x000100000000000143fa 26-6527- Alc-Acct-OC-O- octets...

  • Page 213

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-6527- Alc-Acct-I- octets 10 bytes <0x80><policer-id><8 byte value> where policer- Lowprio- id <1 to 63> Octets_64 Example: # ingress policer 5 INPUT_LOWPRIO_OCTETS_64 [109] 10...

  • Page 214

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-6527- Alc-Acct-I-All- octets 10 bytes <0x80><policer-id><8 byte value> where policer- Octets_64 id <1 to 63> Example: # egress policer 1 INPUT_ALL_OCTETS_64 [116] 10 0x80010000000000000000...

  • Page 215

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-6527- Alc-Acct-O- string 253 chars <Q/P-selection 1 Byte><Queue-id|Policer-id 1 statmode Byte><space><statmode-string> Q/P-selection: 0x00 = Queue statmode, 0x80 = Policer statmode Queue-id range <1 to 8>...

  • Page 216

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-6527- Alc-ToServer- octets Multiple DSM Only. One DHCPv6 option per RADIUS Dhcp6-Options attributes attribute. In case of DHCPv6 relay or LDRA this reflects the options as they appear in the outer 247 bytes / packet.

  • Page 217

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-6527- Alc-IPv6-Acct- integer 4 bytes Example: Output-Octets Alc-IPv6-Acct-Output-Octets = 8521943 26-6527- Alc-IPv6-Acct- integer 4 bytes Example: Output- Alc-IPv6-Acct-Output-Gigawords = 2...

  • Page 218

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 63 Enhanced Subscriber Management Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format 26-6527- Alc-Nat-Port- string No limits <public-ip> <space> <port- range> <space> Range-Freed <outside-routing-instance> <space> <nat-policy- name> Example: a public pool with address 180.0.1.248;...

  • Page 219

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 64 Enhanced Subscriber Management Accounting (Applicability) (Continued) Attribute ID Attribute Name Acct-Status-Type Acct-Delay-Time Acct-Input-Octets Acct-Output-Octets Acct-Session-Id Acct-Authentic H->S->Q Acct-Session-Time Acct-Input-Packets Acct-Output-Packets Acct-Terminate-Cause Acct-Multi-Session-Id Acct-Input-Gigawords Acct-Output-Gigawords Event-Timestamp NAS-Port-Type H->S->Q Tunnel-Type Tunnel-Medium-Type Tunnel-Client-Endpoint Tunnel-Server-Endpoint Acct-Tunnel-Connection...

  • Page 220

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 64 Enhanced Subscriber Management Accounting (Applicability) (Continued) Attribute ID Attribute Name Tunnel-Server-Auth-ID NAS-IPv6-Address Framed-Interface-Id H->S->Q Framed-IPv6-Prefix H->S->Q Framed-IPv6-Route H->S->Q Delegated-IPv6-Prefix H->S->Q 26-3561-1 Agent-Circuit-Id H->S->Q 26-3561-2 Agent-Remote-Id H->S->Q 26-3561-129 Actual-Data-Rate-Upstream H->S->Q 26-3561-130 Actual-Data-Rate-Downstream H->S->Q...

  • Page 221

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 64 Enhanced Subscriber Management Accounting (Applicability) (Continued) Attribute ID Attribute Name 26-3561-142 Actual-Interleaving-Delay-Downstream H->S->Q 26-3561-144 Access-Loop-Encapsulation H->S->Q 26-3561-254 IWF-Session H->S->Q 26-6527-11 Alc-Subsc-ID-Str 26-6527-12 Alc-Subsc-Prof-Str 26-6527-13 Alc-SLA-Prof-Str 26-6527-19 Alc-Acct-I-Inprof-Octets-64 26-6527-20 Alc-Acct-I-Outprof-Octets-64 26-6527-21 Alc-Acct-O-Inprof-Octets-64 26-6527-22...

  • Page 222

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 64 Enhanced Subscriber Management Accounting (Applicability) (Continued) Attribute ID Attribute Name 26-6527-72 Alc-Acct-I-Low-Pack-Drop_64 26-6527-73 Alc-Acct-I-High-Octets-Offer_64 26-6527-74 Alc-Acct-I-Low-Octets-Offer_64 26-6527-75 Alc-Acct-I-High-Pack-Offer_64 26-6527-76 Alc-Acct-I-Low-Pack-Offer_64 26-6527-77 Alc-Acct-I-Unc-Octets-Offer_64 26-6527-78 Alc-Acct-I-Unc-Pack-Offer_64 26-6527-81 Alc-Acct-O-Inprof-Pack-Drop_64 26-6527-82 Alc-Acct-O-Outprof-Pack-Drop_64 26-6527-83 Alc-Acct-O-Inprof-Octs-Drop_64 26-6527-84 Alc-Acct-O-Outprof-Octs-Drop_64...

  • Page 223

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 64 Enhanced Subscriber Management Accounting (Applicability) (Continued) Attribute ID Attribute Name 26-6527-114 Alc-Acct-O-Hiprio-Packets_64 26-6527-115 Alc-Acct-O-Lowprio-Packets_64 26-6527-116 Alc-Acct-I-All-Octets_64 26-6527-117 Alc-Acct-O-All-Octets_64 26-6527-118 Alc-Acct-I-All-Packets_64 26-6527-119 Alc-Acct-O-All-Packets_64 26-6527-121 Alc-Nat-Port-Range 26-6527-127 Alc-Acct-O-statmode 26-6527-148 Alc-RSSI 26-6527-149 Alc-Num-Attached-UEs H->S->Q 26-6527-163...

  • Page 224

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 64 Enhanced Subscriber Management Accounting (Applicability) (Continued) Attribute ID Attribute Name 26-6527-197 Alc-IPv6-Acct-Output-Packets 26-6527-198 Alc-IPv6-Acct-Output-Octets 26-6527-199 Alc-IPv6-Acct-Output-Gigawords 26-6527-206 Alc-Wlan-SSID-VLAN H->S->Q 26-25053-2 Ruckus-Sta-RSSI Notes: 1. On acct-on/off: The table represents the acct-on-off attributes for an accounting server configured via a radius-server-policy (configure subscriber-mgmt radius-accounting-policy name radius-server-policy radius-server-policy-name and with acct-on-off enabled.

  • Page 225

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 2.3.2 Distributed Subscriber Management (DSM) Accounting In Distributed Subscriber Management (DSM), a single accounting session per UE is started. A unique Accounting-Session-ID per UE is generated. An Acct-Multi- Session-Id is also generated but currently not used to link any accounting sessions. Acct-Status-Type and Acct-Session-Id are always included by default.

  • Page 226

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 65 Distributed Subscriber Management Accounting (Applicability) (Continued) Attribute ID Attribute Name Acct Acct Acct Acct On Acct Off Start Stop Interim- Update Acct-Session-Time Acct-Input-Packets Acct-Output-Packets Acct-Terminate-Cause Acct-Multi-Session-Id Acct-Input-Gigawords Acct-Output-Gigawords Event-Timestamp NAS-Port-Type NAS-Port-Id Framed-IPv6-Prefix...

  • Page 227: Subscriber Service Accounting

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 65 Distributed Subscriber Management Accounting (Applicability) (Continued) Attribute ID Attribute Name Acct Acct Acct Acct On Acct Off Start Stop Interim- Update 26-6527-148 Alc-RSSI 26-6527-163 Alc-Acct-Triggered-Reason 26-6527-184 Alc-Wlan-Ue-Creation-Type 26-6527-191 Alc-ToServer-Dhcp6-Options 26-6527-206 Alc-Wlan-SSID-VLAN Note:...

  • Page 228

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 66 Subscriber Service Accounting (Description) (Continued) Attribute ID Attribute Name Description Acct-Session-Id Unique generated hexadecimal number that represents the accounting session for this Subscriber Service instance. Acct-Input-Packets packets received for this subscriber service instance. Only included if stats-type is set to volume and time.

  • Page 229

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 67 Subscriber Service Accounting (Limits) (Continued) Attribute Attribute Name Type Limits SR OS Format Acct-Session-Id string 22 Bytes Example: # Acct-Session-Id = 24ADFF0000000950C5F138 Acct-Session-Id 0x3231323834363335393231303235313231 3133343039 Acct-Input-Packets integer 4 Bytes Example: Acct-Input-Packets = 15200 4294967295 packets...

  • Page 230: Large Scale Nat (lsn) Accounting

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 68 Subscriber Service Accounting (Applicability) (Continued) Attribute ID Attribute Name Acct Start Acct Stop Acct Interim- Update Acct-Multi-Session-Id Acct-Input-Gigawords Acct-Output-Gigawords 26-6527-151 Alc-Sub-Serv-Activate 2.3.4 Large Scale NAT (LSN) Accounting Table 69 LSN Accounting (Description) Attribute ID Attribute Name...

  • Page 231

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 69 LSN Accounting (Description) (Continued) Attribute ID Attribute Name Description Called-Station-Id Holds information to which nat-group and nat-member the NAT user belongs. The format of this attribute is a string 00-00-00-00-NatGroup- NatMember.

  • Page 232

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 69 LSN Accounting (Description) (Continued) Attribute ID Attribute Name Description Acct-Output-Packets Indicates how many packets have been received for this nat user over the course of this service being provided and send together with [47] Acct-Input-Packets when frame-counters is included under configure aaa isa-radius-policy policy-name acct-include-attributes.

  • Page 233

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 69 LSN Accounting (Description) (Continued) Attribute ID Attribute Name Description Framed-IPv6-Prefix Inside private ipv6address of the user (NAT64,DSLITE) and send when framed-ipv6-prefix is included under configure aaa isa-radius-policy policy-name acct-include-attributes. 26-6527-11 Alc-Subsc-ID-Str The reported format is LSN44@, DS-lite@ and NAT64@ followed by...

  • Page 234

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 70 LSN Accounting (Limits) Attribute ID Attribute Name Type Limits SR OS Format User-Name string [32|64] chars Subscriber unaware: LSN44@<ipaddr>, DS- lite@<ipv6addr> and NAT64@<ipv6addr>Subscriber aware: format and length depends on the subscriber- identification attribute configuration- attribute- type alc-sub-string max 32 chars- attribute- type user-name, class and station-id max 64...

  • Page 235

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 70 LSN Accounting (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format Acct-Session-Id string 32 bytes No useful information can be extracted from the string. Example:# internal generated asid 32 Bytes/16 chars: 0x3466666434383332306232313436393738 363238346262323339326462636232Acct-...

  • Page 236

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 70 LSN Accounting (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format Framed-IPv6- ipv6prefi max. 16 private inside ipv6address of nat64 or DSlite Prefix Bytes for user prefix + 1 Example: Framed-IPv6-Prefix = 2001::1/128 byte for length...

  • Page 237

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 71 LSN Accounting (Applicability) Attribute ID Attribute Name User-Name NAS-IP-Address NAS-Port Framed-IP-Address Called-Station-Id NAS-Identifier Acct-Input-Octets Acct-Output-Octets Acct-Session-Id Acct-Session-Time Acct-Input-Packets Acct-Output-Packets Acct-Terminate-Cause Acct-Multi-Session-Id Acct-Input-Gigawords Acct-Output-Gigawords Event-Timestamp Framed-IPv6-Prefix 26-6527-11 Alc-Subsc-ID-Str 26-6527-100 Alc-Serv-Id 26-6527-121 Alc-Nat-Port-Range 26-6527-140...

  • Page 238: L2tp Tunnel Accounting

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 71 LSN Accounting (Applicability) (Continued) Attribute ID Attribute Name 26-6527-163 Alc-Acct-Triggered-Reason 2.3.5 L2TP Tunnel Accounting Table 72 L2TP Tunnel Accounting (Description) Attribute ID Attribute Name Description User-Name Refers to the PPPoE user-name NAS-IP-Address The identifying IP Address of the NAS requesting the Authentication or Accounting.

  • Page 239

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 72 L2TP Tunnel Accounting (Description) (Continued) Attribute ID Attribute Name Description Service-Type The type of service the PPPoE user has requested, or the type of service to be provided for the PPPoE user. Optional in RADIUS-Accept and CoA.

  • Page 240

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 72 L2TP Tunnel Accounting (Description) (Continued) Attribute ID Attribute Name Description Acct-Session-Time Reports the elapsed time in seconds over the course of this service (L2TP session or L2TP tunnel) being provided. Acct-Input-Packets Tunnel-link and Tunnel level accounting uses the ESM accounting statistics.

  • Page 241

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 72 L2TP Tunnel Accounting (Description) (Continued) Attribute ID Attribute Name Description Tunnel-Medium-Type Which transport medium to use when creating a tunnel for those protocols (such as L2TP) that can operate over multiple transports. This attribute is mandatory on LAC Access-Accept and needs to be IP or IPv4.

  • Page 242

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 72 L2TP Tunnel Accounting (Description) (Continued) Attribute ID Attribute Name Description Acct-Tunnel-Packets- Indicates the number of packets dropped and uses the ESM accounting Lost statistics for this. For Tunnel Link Stop it reports an aggregate of the dropped input and output packets for this user over the course of this service being provided.

  • Page 243

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 72 L2TP Tunnel Accounting (Description) (Continued) Attribute ID Attribute Name Description NAS-IPv6-Address The identifying IP address of the NAS requesting the Authentication or Accounting. Included when the RADIUS server is reachable via IPv6. The address is determined by the routing instance through which the RADIUS server can be reached: “Management”...

  • Page 244

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 73 L2TP Tunnel Accounting (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format Acct-Delay-Time integer 4294967295 Example:# initial accounting start Acct-Delay- seconds Time = 0# no ack and retry after 5 seconds Acct-Delay-Time = 5 Acct-Input-Octets integer...

  • Page 245

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 73 L2TP Tunnel Accounting (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format NAS-Port-Type integer 4 Bytes Values as defined in rfc-2865 and rfc-4603For Values [0 to LNS, the value is set to virtual (5) 255] Example: NAS-Port-Type = PPPoEoQinQ (34) Tunnel-Type...

  • Page 246

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 73 L2TP Tunnel Accounting (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format Acct-Tunnel- string [4|8] bytes Default format: Connection tunnel-start/stop : 8 Byte value representing the lac + lns tunnel-id converted in hexadecimallink-start/stop: maps to the AVP 15 call Serial Number from ICRQ (32 bit) Configured format:...

  • Page 247

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 74 L2TP Tunnel Accounting (Applicability) Attribute ID Attribute Name User-Name NAS-IP-Address NAS-Port Service-Type Calling-Station-Id NAS-Identifier Acct-Delay-Time Acct-Input-Octets Acct-Output-Octets Acct-Session-Id Acct-Session-Time Acct-Input-Packets Acct-Output-Packets Acct-Terminate-Cause Acct-Input-Gigawords Acct-Output-Gigawords Event-Timestamp NAS-Port-Type Tunnel-Type Tunnel-Medium-Type Tunnel-Client-Endpoint Tunnel-Server-Endpoint Issue: 01 3HE 10793 AAAB TQZZA 01...

  • Page 248: Application Assurance (aa) Accounting

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 74 L2TP Tunnel Accounting (Applicability) (Continued) Attribute ID Attribute Name Acct-Tunnel-Connection Tunnel-Assignment-ID Acct-Tunnel-Packets-Lost NAS-Port-Id Tunnel-Client-Auth-ID Tunnel-Server-Auth-ID NAS-IPv6-Address 2.3.6 Application Assurance (AA) Accounting Table 75 Application Assurance Accounting (Description) Attribute ID Attribute Name Description User-Name...

  • Page 249

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 75 Application Assurance Accounting (Description) (Continued) Attribute ID Attribute Name Description Acct-Status-Type Indicates AA Acct request type. Acct On is sent each time a RADIUS accounting policy (configure application-assurance radius- accounting-policy rad-acct-plcy-name) is enabled under a partition (configure application-assurance group aa-group-id:partition-id statistics aa-sub radius-accounting-policy rad-acct-plcy-name) or...

  • Page 250

    (asymmetry removal that is required to remove routing asymmetry when using redundant transit-aa-nodes), meaning you have 2 redundant transit 7750 SR nodes, we expect PCRF(DSC) to push a CoA create to both 7750 SR nodes. This is achieved by adding the peer-identifier information in the original Accounting-start sent by the primary 7750 SR.

  • Page 251

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 76 Application Assurance Accounting (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format NAS-IP-Address ipaddr 4 Bytes Example:# ip-address 10.1.1.1NAS-IP-Address 0a010101 NAS-Identifier string Example:NAS-Identifier = PE1-Antwerp chars Acct-Status-Type integer 1=Start, 2=Stop, 3=Interim Update, 7=Accounting-On, 8=Accounting-Off...

  • Page 252

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 76 Application Assurance Accounting (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format 26-6527-21 Alc-Acct-O-Inprof- octets <Type of second byte 1 Byte><export-id 1 Octets-64 Bytes Byte><8 Byte value> Where: <Type of second byte>...

  • Page 253

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 76 Application Assurance Accounting (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format 26-6527-156 Alc-AA-Group- string <Group ID>:<Partition ID>:<ISA slot>/<ISA MDA> Partition-Isa-Id limits Example: Alc-AA-Group-Partition-Isa-Id = 2:4:3/2 26-6527-157 Alc-AA-Peer- string <AARP ID>@<Peer IP address>@<Peer Port-id>...

  • Page 254: Dynamic Data Service Accounting

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 2.3.7 Dynamic Data Service accounting This section specifies the attributes for RADIUS accounting on dynamic data service SAPs. The attributes for RADIUS accounting of the associated control channel is identical as the ESM accounting case (see section Enhanced Subscriber Management (ESM) accounting.

  • Page 255

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 78 Dynamic Data Service Accounting (Description) (Continued) Attribute ID Attribute Name Description Acct-Session-Time The acct session time is started when the corresponding dynamic data service sap is created. The acct session time is stopped when the corresponding dynamic data service sap is deleted.

  • Page 256

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 78 Dynamic Data Service Accounting (Description) (Continued) Attribute ID Attribute Name Description 26-3561-2 Agent-Remote-Id (Dynamic Data Services associated with an ESM control channel only) The Agent-Remote-Id attribute from the Dynamic Data Service Control Channel associated with this Dynamic Data Service SAP accounting session 26-6527-165...

  • Page 257

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 79 Dynamic Data Service Accounting (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format Acct-Status-Type integer 1=Start, 2=Stop, 3=Interim Update, 7=Accounting-On, 8=Accounting-Off, 9=Tunnel-Start, 10=Tunnel-Stop, 11=Tunnel- Reject, 12=Tunnel-Link-Start, 13=Tunnel- Link-Stop, 14=Tunnel-Link-Reject, 15=Failed Acct-Delay-Time integer...

  • Page 258

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 79 Dynamic Data Service Accounting (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format 26-3561-2 Agent-Remote-Id string 247 chars format see also RFC 4679 Example: Agent-Remote-Id = MyRemoteId 26-6527-165 Alc-Dyn-Serv- string...

  • Page 259: Cli User Access Accounting

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 80 Dynamic Data Service Accounting (Applicability) (Continued) Attribute ID Attribute Name Acct Start Acct Stop Acct Interim-Update 26-3561-2 Agent-Remote-Id 26-6527-165 Alc-Dyn-Serv-Script-Params 2.3.8 CLI User Access Accounting Table 81 CLI User Access Accounting (Description) Attribute ID Attribute Name Description...

  • Page 260

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 81 CLI User Access Accounting (Description) (Continued) Attribute ID Attribute Name Description NAS-IPv6-Address The identifying IP Address of the NAS requesting the Authentication or Accounting. Included when the RADIUS server is reachable via IPv6. The address is determined by the routing instance through which the RADIUS server can be reached: “Management”...

  • Page 261: Accounting Terminate Causes

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 82 CLI User Access Accounting (Limits) (Continued) Attribute ID Attribute Name Type Limits SR OS Format Acct-Session-Id string 22 Bytes Example: Acct-Session-Id = “2128463592102512113409” NAS-Port-Type integer 4 Bytes Fixed set to value virtual (5) value 5 fixed Example: NAS-Port-Type 00000005...

  • Page 262

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 84 Accounting Terminate Causes Code Acct Terminate Description SR OS Cause User-Request User requested termination of service, example, with LCP Terminate or by logging out. Lost-Carrier Data Carrier Detect (DCD) was dropped on the port Lost-Service Service can no longer be provided;...

  • Page 263: Accounting Triggered Reason Vsa Values

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 84 Accounting Terminate Causes (Continued) Code Acct Terminate Description SR OS Cause Reauthentication Indicates that a previously authenticated Supplicant has failed Failure to re-authenticate successfully following expiry of the re- authentication timer or explicit re-authentication request by management action.

  • Page 264

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 85 Accounting Triggered Reason Value Reason Description Accounting Mode CPM Based ISA Based Host Session Queue regular Periodic Accounting Interim Update. — The interval can be returned from RADIUS or configured ESM: configure subscriber-mgmt radius-accounting-policy name update-interval.

  • Page 265

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 85 Accounting Triggered Reason (Continued) Value Reason Description Accounting Mode CPM Based ISA Based Host Session Queue Delegated- — — — — IP address/prefix tracking IPv6-Prefix- Generated for a session when a DHCPv6 IA-PD host or DHCPv6 IA- PD as managed route is added.

  • Page 266

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 85 Accounting Triggered Reason (Continued) Value Reason Description Accounting Mode CPM Based ISA Based Host Session Queue Wlan- Generated when mobility triggered — — Mobility- accounting is enabled (configure Event router | service vprn id wlan-gw mobility-triggered-acct interim- update) and when a mobility event is...

  • Page 267: Subscriber Host Identification Attributes

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 85 Accounting Triggered Reason (Continued) Value Reason Description Accounting Mode CPM Based ISA Based Host Session Queue Nat-Free Generated for Large Scale NAT per — — — — port-block accounting when an existing port-block is released.

  • Page 268

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 86 CoA and Disconnect Message: Subscriber Host Identification Attributes # (priority) Attribute Attribute Name Notes Identifies NAS-Port-Id + IP address/prefix Single host NAS-Port-Id Framed-IP-Address + [87] NAS-Port-Id Single IPv4 host + single address/ 26-6527-99...

  • Page 269

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 3. Maximum 32 hosts can be targeted in a single CoA or Disconnect Message. When more than 32 hosts are identified, the CoA and Disconnect Message is rejected with [101] Error-Cause attribute value 501 (Administratively Prohibited).

  • Page 270: Wlan-gw Migrant Users Identification Attributes

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 2.4.2 WLAN-GW migrant users Identification Attributes Table 87 details the attribute that can be used in a CoA and Disconnect Message to target migrant users. A Disconnect Message removes any existing migrant state for the specified UE.

  • Page 271: Dynamic Data Services Identification Attributes

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 89 Disconnect Message: IPSec Tunnel Identification Attributes Attribute ID Attribute Name Notes Identifies ID method NAS-Port-Id NAS-Port-Id+ Single IPSec Tunnel Alc-IPsec-Serv-Id + a single IP Address 26-6527-61 Alc-IPSec-Serv-Id or IPv6 Prefix Framed-IP-Address attribute Framed-IPv6-Prefix...

  • Page 272: Overview Of Coa Attributes

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 90 CoA and Disconnect Message: Data Triggered Dynamic Services Identification Attributes Attribute Attribute Name Identifies Acct-Session-Id Accounting session id of a dynamic services data trigger (can be displayed with "show service dynamic-services data-triggers [sap sap-id]"): •...

  • Page 273

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 91 RADIUS CoA Message Supported Attributes Attribute ID Attribute Name User-Name Service-Type Framed-Protocol Framed-IP-Address Class Session-Timeout Idle-Timeout Called-Station-Id Calling-Station-Id Acct-Session-Id NAS-Port-Type Acct-Interim-Interval NAS-Port-Id NAS-Filter-Rule Framed-IPv6-Prefix Framed-IPv6-Pool Error-Cause Delegated-IPv6-Prefix 26-529-242 Ascend-Data-Filter 26-2352-1 Client-DNS-Pri 26-2352-2...

  • Page 274

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 91 RADIUS CoA Message Supported Attributes (Continued) Attribute ID Attribute Name 26-4874-47 ERX-Ipv6-Primary-Dns 26-4874-48 ERX-Ipv6-Secondary-Dns 26-6527-9 Alc-Primary-Dns 26-6527-10 Alc-Secondary-Dns 26-6527-11 Alc-Subsc-ID-Str 26-6527-12 Alc-Subsc-Prof-Str 26-6527-13 Alc-SLA-Prof-Str 26-6527-14 Alc-Force-Renew 26-6527-15 Alc-Create-Host 26-6527-16 Alc-ANCP-Str 26-6527-17 Alc-Retail-Serv-Id...

  • Page 275

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 91 RADIUS CoA Message Supported Attributes (Continued) Attribute ID Attribute Name 26-6527-125 Alc-LI-Direction 26-6527-126 Alc-Subscriber-QoS-Override 26-6527-130 Alc-AA-Transit-IP 26-6527-132 Alc-Access-Loop-Rate-Down 26-6527-134 Alc-Subscriber-Filter 26-6527-136 Alc-Onetime-Http-Redirection-Filter-Id 26-6527-137 Alc-Authentication-Policy-Name 26-6527-138 Alc-LI-Intercept-Id 26-6527-139 Alc-LI-Session-Id 26-6527-151 Alc-Sub-Serv-Activate 26-6527-152 Alc-Sub-Serv-Deactivate...

  • Page 276

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 91 RADIUS CoA Message Supported Attributes (Continued) Attribute ID Attribute Name 26-6527-179 Alc-GTP-Local-Breakout 26-6527-181 Alc-SLAAC-IPv6-Pool 26-6527-182 Alc-AA-Sub-Http-Url-Param 26-6527-185 Alc-Onetime-Http-Redirect-Reactivate 26-6527-186 Alc-Wlan-Dsm-Ot-Http-Redirect-Url 26-6527-187 Alc-Wlan-Dsm-Ip-Filter 26-6527-188 Alc-Wlan-Dsm-Ingress-Policer 26-6527-189 Alc-Wlan-Dsm-Egress-Policer 26-6527-192 Alc-ToClient-Dhcp6-Options 26-6527-193 Alc-AA-App-Service-Options 26-6527-200 Alc-v6-Preferred-Lifetime...

  • Page 277: Error-cause Attribute Values

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 91 RADIUS CoA Message Supported Attributes (Continued) Attribute ID Attribute Name 26-6527-238 Alc-Remove-Override 26-6527-241 Alc-Per-Host-Port-Range 26-6527-242 Alc-Radius-Py 2.4.7 [101] Error-Cause Attribute Values Table 92 provides an overview of the [101] Error-Cause attribute values as defined in RFC 5176 and lists if they are generated in SR OS.

  • Page 278

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Table 92 RADIUS CoA Message [101] Error-Cause Values (Continued) Code CoA Error Cause Description SR OS Unsupported Unsupported Extension is a fatal error sent due to lack of Extension support for an extension such as Disconnect and/or CoA packets.

  • Page 279

    RADIUS ATTRIBUTES REFERENCE GUIDE RADIUS Attributes Reference RELEASE 14.0.R4 Table 92 RADIUS CoA Message [101] Error-Cause Values (Continued) Code CoA Error Cause Description SR OS Multiple Session Multiple Session Selection Unsupported is a fatal error sent by Selection a NAS in response to a CoA-Request or Disconnect-Request Unsupported whose session identification attributes match multiple sessions, where the NAS does not support Requests applying to multiple...

  • Page 280

    RADIUS Attributes Reference RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 3HE 10793 AAAB TQZZA 01 Issue: 01...

  • Page 281: Standards And Protocol Support

    RELEASE 14.0.R4 3 Standards and Protocol Support Note: The information presented is subject to change without notice. Nokia assumes no responsibility for inaccuracies contained herein. Access Node Control Protocol (ANCP) draft-ietf-ancp-protocol-02, Protocol for Access Node Control Mechanism in Broadband Networks...

  • Page 282

    Standards and Protocol Support RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 draft-ietf-idr-best-external-03, Advertisement of the best external route in BGP draft-ietf-idr-bgp-gr-notification-01, Notification Message support for BGP Graceful Restart draft-ietf-idr-error-handling-03, Revised Error Handling for BGP UPDATE Messages draft-ietf-sidr-origin-validation-signaling-04, BGP Prefix Origin Validation State Extended Community RFC 1772, Application of the Border Gateway Protocol in the Internet RFC 1997, BGP Communities Attribute...

  • Page 283

    RADIUS ATTRIBUTES REFERENCE GUIDE Standards and Protocol Support RELEASE 14.0.R4 Circuit Emulation MEF-8, Implementation Agreement for the Emulation of PDH Circuits over Metro Ethernet Networks, October 2004 RFC 4553, Structure-Agnostic Time Division Multiplexing (TDM) over Packet (SAToP) RFC 5086, Structure-Aware Time Division Multiplexed (TDM) Circuit Emulation Service over Packet Switched Network (CESoPSN) RFC 5287, Control Protocol Extensions for the Setup of Time-Division Multiplexing (TDM) Pseudowires in MPLS Networks...

  • Page 284: Frame Relay

    Standards and Protocol Support RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Ethernet VPN (EVPN) draft-ietf-bess-evpn-overlay-02, A Network Virtualization Overlay Solution using EVPN draft-ietf-bess-evpn-prefix-advertisement-02, IP Prefix Advertisement in EVPN draft-ietf-bess-evpn-proxy-arp-nd-00, Operational Aspects of Proxy-ARP/ND in EVPN Networks draft-ietf-bess-evpn-vpls-seamless-integ-00, (PBB-)EVPN Seamless Integration with (PBB-)VPLS draft-ietf-bess-evpn-vpws-06, VPWS support in EVPN RFC 7432, BGP MPLS-Based Ethernet VPN RFC 7623, Provider Backbone Bridging Combined with Ethernet VPN (PBB-EVPN)

  • Page 285

    RADIUS ATTRIBUTES REFERENCE GUIDE Standards and Protocol Support RELEASE 14.0.R4 Intermediate System to Intermediate System (IS-IS) draft-ginsberg-isis-mi-bis-01, IS-IS Multi-Instance (single topology) draft-ietf-isis-mi-02, IS-IS Multi-Instance draft-ietf-isis-segment-routing-extensions-04, IS-IS Extensions for Segment Routing draft-kaplan-isis-ext-eth-02, Extended Ethernet Frame Size Support ISO/IEC 10589:2002, Second Edition, Nov. 2002, Intermediate system to Intermediate system intra-domain routeing information exchange protocol for use in conjunction with the protocol for providing the connectionless-mode Network Service (ISO 8473)

  • Page 286

    Standards and Protocol Support RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Internet Protocol (IP) — Fast Reroute draft-ietf-rtgwg-lfa-manageability-08, Operational management of Loop Free Alternates RFC 5286, Basic Specification for IP Fast Reroute: Loop-Free Alternates RFC 7431, Multicast-Only Fast Reroute RFC 7490, Remote Loop-Free Alternate (LFA) Fast Reroute (FRR) Internet Protocol (IP) —...

  • Page 287

    RADIUS ATTRIBUTES REFERENCE GUIDE Standards and Protocol Support RELEASE 14.0.R4 RFC 4251, The Secure Shell (SSH) Protocol Architecture RFC 4252, The Secure Shell (SSH) Authentication Protocol (publickey, password) RFC 4253, The Secure Shell (SSH) Transport Layer Protocol RFC 4254, The Secure Shell (SSH) Connection Protocol RFC 4632, Classless Inter-domain Routing (CIDR): The Internet Address Assignment and Aggregation Plan RFC 5082, The Generalized TTL Security Mechanism (GTSM)

  • Page 288

    Standards and Protocol Support RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 RFC 3810, Multicast Listener Discovery Version 2 (MLDv2) for IPv6 RFC 3956, Embedding the Rendezvous Point (RP) Address in an IPv6 Multicast Address RFC 3973, Protocol Independent Multicast - Dense Mode (PIM-DM): Protocol Specification (Revised) (auto-RP groups) RFC 4541, Considerations for Internet Group Management Protocol (IGMP) and Multicast Listener Discovery (MLD) Snooping Switches...

  • Page 289

    RADIUS ATTRIBUTES REFERENCE GUIDE Standards and Protocol Support RELEASE 14.0.R4 Internet Protocol (IP) — Version 4 RFC 791, Internet Protocol RFC 792, Internet Control Message Protocol RFC 826, An Ethernet Address Resolution Protocol RFC 1519, Classless Inter-Domain Routing (CIDR): an Address Assignment and Aggregation Strategy RFC 1812, Requirements for IPv4 Routers RFC 1918, Address Allocation for Private Internets...

  • Page 290

    Standards and Protocol Support RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 RFC 5095, Deprecation of Type 0 Routing Headers in IPv6 RFC 5952, A Recommendation for IPv6 Address Text Representation RFC 6106, IPv6 Router Advertisement Options for DNS Configuration RFC 6164, Using 127-Bit IPv6 Prefixes on Inter-Router Links Internet Protocol Security (IPsec) draft-ietf-ipsec-isakmp-mode-cfg-05, The ISAKMP Configuration Method draft-ietf-ipsec-isakmp-xauth-06, Extended Authentication within ISAKMP/Oakley...

  • Page 291

    RADIUS ATTRIBUTES REFERENCE GUIDE Standards and Protocol Support RELEASE 14.0.R4 RFC 4868, Using HMAC-SHA-256, HMAC-SHA-384, and HMAC-SHA-512 with IPSec RFC 4891, Using IPsec to Secure IPv6-in-IPv4 Tunnels RFC 4945, The Internet IP Security PKI Profile of IKEv1/ISAKMP, IKEv2 and PKIX RFC 5280, Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) Profile RFC 5996, Internet Key Exchange Protocol Version 2 (IKEv2)

  • Page 292

    Standards and Protocol Support RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Layer Two Tunneling Protocol (L2TP) Network Server (LNS) draft-mammoliti-l2tp-accessline-avp-04, Layer 2 Tunneling Protocol (L2TP) Access Line Information Attribute Value Pair (AVP) Extensions RFC 2661, Layer Two Tunneling Protocol "L2TP" RFC 2809, Implementation of L2TP Compulsory Tunneling via RADIUS RFC 3438, Layer Two Tunneling Protocol (L2TP) Internet Assigned Numbers: Internet Assigned Numbers Authority (IANA) Considerations Update RFC 3931, Layer Two Tunneling Protocol - Version 3 (L2TPv3)

  • Page 293

    RADIUS ATTRIBUTES REFERENCE GUIDE Standards and Protocol Support RELEASE 14.0.R4 RFC 1213, Management Information Base for Network Management of TCP/IP- based Internets: MIB-II RFC 1215, A Convention for Defining Traps for use with the SNMP RFC 1724, RIP Version 2 MIB Extension RFC 2021, Remote Network Monitoring Management Information Base Version 2 using SMIv2 RFC 2115, Management Information Base for Frame Relay DTEs Using SMIv2...

  • Page 294

    Standards and Protocol Support RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 RFC 3273, Remote Network Monitoring Management Information Base for High Capacity Networks RFC 3416. Version 2 of the Protocol Operations for the Simple Network Management Protocol (SNMP) RFC 3417, Transport Mappings for the Simple Network Management Protocol (SNMP) (SNMP over UDP over IPv4) RFC 3419, Textual Conventions for Transport Addresses RFC 3498, Definitions of Managed Objects for Synchronous Optical Network...

  • Page 295

    RADIUS ATTRIBUTES REFERENCE GUIDE Standards and Protocol Support RELEASE 14.0.R4 RFC 5101, Specification of the IP Flow Information Export (IPFIX) Protocol for the Exchange of IP Traffic Flow Information RFC 5102, Information Model for IP Flow Information Export RFC 5246, The Transport Layer Security (TLS) Protocol Version 1.2 (TLS client, RSA public key) RFC 5357, A Two-Way Active Measurement Protocol (TWAMP) (server, unauthenticated mode)

  • Page 296

    Standards and Protocol Support RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 Multiprotocol Label Switching (MPLS) RFC 3031, Multiprotocol Label Switching Architecture RFC 3032, MPLS Label Stack Encoding RFC 3443, Time To Live (TTL) Processing in Multi-Protocol Label Switching (MPLS) Networks RFC 4023, Encapsulating MPLS in IP or Generic Routing Encapsulation (GRE) RFC 4182, Removing a Restriction on the use of MPLS Explicit NULL RFC 5332, MPLS Multicast Encapsulations RFC 6790, The Use of Entropy Labels in MPLS Forwarding...

  • Page 297

    RADIUS ATTRIBUTES REFERENCE GUIDE Standards and Protocol Support RELEASE 14.0.R4 RFC 3623, Graceful OSPF Restart Graceful OSPF Restart (helper mode) RFC 3630, Traffic Engineering (TE) Extensions to OSPF Version 2 RFC 4203, OSPF Extensions in Support of Generalized Multi-Protocol Label Switching (GMPLS) RFC 4222, Prioritized Treatment of Specific OSPF Version 2 Packets and Congestion Avoidance...

  • Page 298

    Standards and Protocol Support RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 RFC 1877, PPP Internet Protocol Control Protocol Extensions for Name Server Addresses RFC 1989, PPP Link Quality Monitoring RFC 1990, The PPP Multilink Protocol (MP) RFC 1994, PPP Challenge Handshake Authentication Protocol (CHAP) RFC 2153, PPP Vendor Extensions RFC 2516, A Method for Transmitting PPP Over Ethernet (PPPoE) RFC 2615, PPP over SONET/SDH...

  • Page 299

    RADIUS ATTRIBUTES REFERENCE GUIDE Standards and Protocol Support RELEASE 14.0.R4 RFC 4717, Encapsulation Methods for Transport Asynchronous Transfer Mode (ATM) over MPLS Networks RFC 4816, Pseudowire Emulation Edge-to-Edge (PWE3) Asynchronous Transfer Mode (ATM) Transparent Cell Transport Service RFC 5085, Pseudowire Virtual Circuit Connectivity Verification (VCCV): A Control Channel for Pseudowires RFC 5659, An Architecture for Multi-Segment Pseudowire Emulation Edge-to-Edge RFC 5885, Bidirectional Forwarding Detection (BFD) for the Pseudowire Virtual...

  • Page 300

    Standards and Protocol Support RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 RFC 2747, RSVP Cryptographic Authentication RFC 2961, RSVP Refresh Overhead Reduction Extensions RFC 3097, RSVP Cryptographic Authentication -- Updated Message Type Value RFC 3209, RSVP-TE: Extensions to RSVP for LSP Tunnels RFC 3473, Generalized Multi-Protocol Label Switching (GMPLS) Signaling Resource ReserVation Protocol-Traffic Engineering (RSVP-TE) Extensions (IF_ID RSVP_HOP object with unnumbered interfaces and RSVP-TE graceful...

  • Page 301

    RADIUS ATTRIBUTES REFERENCE GUIDE Standards and Protocol Support RELEASE 14.0.R4 Synchronous Optical Networking (SONET)/Synchronous Digital Hierarchy (SDH) ITU-G.841, Types and Characteristics of SDH Networks Protection Architecture, issued in October 1998 and as augmented by Corrigendum 1, issued in July 2002 Timing GR-1244-CORE, Clocks for the Synchronized Network: Common Generic Criteria, Issue 3, May 2005...

  • Page 302

    Standards and Protocol Support RADIUS ATTRIBUTES REFERENCE GUIDE RELEASE 14.0.R4 RFC 7117, Multicast in Virtual Private LAN Service (VPLS) Voice and Video DVB BlueBook A86, Transport of MPEG-2 TS Based DVB Services over IP Based Networks ETSI TS 101 329-5 Annex E, QoS Measurement for VoIP - Method for determining an Equipment Impairment Factor using Passive Monitoring ITU-T G.1020 Appendix I, Performance Parameter Definitions for Quality of Speech and other Voiceband Applications Utilizing IP Networks - Mean Absolute...

  • Page 303

    Customer Document and Product Support Customer Documentation Customer Documentation Welcome Page Technical Support Product Support Portal Documentation Feedback Customer Documentation Feedback...

  • Page 304

    © 2016 Nokia. 3HE 10793 AAAB TQZZA 01...

Comments to this Manuals

Symbols: 0
Latest comments: