Alcatel-Lucent 7750 Reference Manual page 19

Service router radius attributes
Table of Contents

Advertisement

Table 2: Subscriber Host Identification (description) (Continued)
Attribute ID
Attribute Name
32
NAS-Identifier
44
Acct-Session-Id
60
CHAP-Challenge
61
NAS-Port-Type
85
Acct-Interim-
Interval
7750 SR RADIUS Attributes Reference Guide
A string (configure system name <system-name>) identifying the NAS
originating the Authentication or Accounting requests and sent when nas-
identifier is included for the corresponding application: configure subscriber-
mgmt authentication-policy (ESM authentication), configure subscriber-
mgmt radius-accounting-policy (ESM accounting), configure aaa isa-radius-
policy (LSN accounting, WLAN-GW) and configure aaa l2tp-accounting-
policy (L2TP accounting).
A unique identifier that represents the subscriber host or session that is
authenticated. This attribute can be used as CoA or Disconnect Message key to
target the host or session and is reflected in the accounting messages for this
host or session.The attribute is included/excluded based on configure
subscriber-mgmt authentication-policy <name> include-radius-attribute
acct-session-id [host|session]. For PPPoE, either the host acct-session-id
(default) or the session acct-session-id is included.
The CHAP challenge sent by the NAS to a PPPoE CHAP user as part of the
chap authentication sequence RFC 1994 (Challenge, Response, Success,
Failure). The generated challenge length for each new pppoe session is by
default a random value between [32..64] bytes unless configured different under
configure subscriber-mgmt ppp-policy <ppp-policy-name> ppp-chap-
challenge-length [8..64] or configure router l2tp group <tunnel-group-name>
ppp chap-challenge-length [8..64] for LNS. The CHAP challenge value is
copied into the request-authenticator field of the RADIUS Access-Request
message if the minimum and maximum value is configured at exact 16 (RFC
2865, Remote Authentication Dial In User Service (RADIUS), section 2.2,
Interoperation with PAP and CHAP). Attribute CHAP-Password is provided by
a PPPoE CHAP user in response to the [60] CHAP-challenge.
The type of the physical port of the NAS which is authenticating the user and
value automatically determined from subscriber SAP encapsulation. It can be
overruled by configuration. Included only if include-radius-attribute nas-port-
type is added per application: configure subscriber-mgmt authentication-
policy (ESM authentication), configure subscriber-mgmt radius-accounting-
policy (ESM accounting), configure aaa isa-radius-policy (LSN accounting,
WLAN-GW) and configure aaa l2tp-accounting-policy (L2TP accounting).
Checked for correctness if returned in CoA.
The NAS-Port-Type attribute is always included when the Nas-Port-Id is also
included.
Indicates the number of seconds between each interim update for this specific
session. Attribute values outside the allowed Limits are accepted but are
rounded to the minimum or maximum Limit.
RADIUS Attributes Reference
Description
Page 19

Advertisement

Table of Contents
loading

Table of Contents