Alcatel-Lucent 7750 Reference Manual page 63

Service router radius attributes
Table of Contents

Advertisement

Table 8: Wholesale-Retail: L2TP Tunneled Access Mode (description) (Continued)
Attribute ID
26-6527-51
Alc-Tunnel-Destruct-Timeout
26-6527-52
Alc-Tunnel-Max-Retries-Estab
26-6527-53
Alc-Tunnel-Max-Retries-Not-
Estab
26-6527-54
Alc-Tunnel-AVP-Hiding
7750 SR RADIUS Attributes Reference Guide
Attribute Name
The time in seconds that operational data of a disconnected tunnel
will persist on the node before being removed. Availability of the
data after tunnel disconnection allows better troubleshooting. The
value with tag 0 is used as default for the tunnels where the value is
not specified. Pre-configured values are used when attribute is
omitted (configure router/service vprn <service-id> l2tp destruct-
timeout). Values outside Limits are treated as a setup failure.
The number of retries allowed for established tunnels before their
control connection goes down. An exponential backoff mechanism is
used for the retransmission interval: the first retransmission occurs
after 1 second, the next after 2 seconds, then 4 seconds up to a
maximum interval of 8 seconds (1,2,4,8,8,8,8). The value with tag 0
is used as default for the tunnels where the value is not specified. Pre-
configured values are used when attribute is omitted (configure
router/service vprn <service-id> l2tp max-retries-estab). Values
outside Limits are treated as a setup failure.
The number of retries allowed for unestablished tunnels before their
control connection goes down. An exponential backoff mechanism is
used for the retransmission interval: the first retransmission occurs
after 1 second, the next after 2 seconds, then 4 seconds up to a
maximum interval of 8 seconds (1,2,4,8,8,8,8). The value with tag 0
is used as default for the tunnels where the value is not specified. Pre-
configured values are used when attribute is omitted (configure
router/service vprn <service-id> l2tp max-retries-not-estab).
Values outside Limits are treated as a setup failure.
Identifies the hiding of data in the Attribute Value field of an L2TP
AVP. The H bit in the header of each L2TP AVP provides a
mechanism to indicate to the receiving peer whether the contents of
the AVP are hidden or present in cleartext. This feature can be used
to hide sensitive control message data such as user passwords or user
IDs. All L2TP AVP's will be passed in cleartext if attribute is omitted
and corresponds with the value 'nothing'. The value 'sensitive-only'
specifies that the H bit is only set for AVP's containing sensitive
information. The value 'all' specifies that the H bit is set for all AVP's
where it is allowed. The value with tag 0 is used as default for the
tunnels where the value is not specified. Pre-configured values are
used when attribute is omitted (configure router/service vprn
<service-id> l2tp avp-hiding). AVP hiding uses the shared LAC-
LNS secret defined in attribute [69] Tunnel-Password or in
configuration. If no password is specified, the tunnel setup will fail
for values 'sensitive-only' and 'all'. Values outside the Limits are
treated as a setup failure.
RADIUS Attributes Reference
Description
Page 63

Advertisement

Table of Contents
loading

Table of Contents