Alcatel-Lucent OmniSwitch 9900 Series Network Configuration Manual page 923

Omniswitch aos release 8
Table of Contents

Advertisement

Managing Authentication Servers
Vendor-Specific Attributes for RADIUS
The Alcatel-Lucent Enterprise RADIUS client supports attribute 26, which includes a vendor ID and some
additional sub-attributes called subtypes. The vendor ID and the subtypes collectively are called Vendor
Specific Attributes (VSAs). Alcatel-Lucent Enterprise, through partnering arrangements, has included
these VSAs in some vendors' RADIUS server configurations.
The attribute subtypes are defined in the dictionary file of the server. If you are using single authority
mode, the first VSA subtype, Alcatel-Lucent-Auth-Vlan, must be defined on the server for each
authenticated VLAN. Alcatel-Lucent Enterprise's vendor ID is 800 (SMI Network Management Private
Enterprise Code).
The following are VSAs for RADIUS servers:
Num. RADIUS VSA
1 Alcatel-Lucent-Auth-Group
2 Alcatel-Lucent-Slot-Port
3 Alcatel-Lucent-Time-of-Day
4 Alcatel-Lucent-Client-IP-Addr
5 Alcatel-Lucent-Group-Desc
6 Alcatel-Lucent-Port-Desc
8 Alcatel-Lucent-Auth-Group-
Protocol
9 Alcatel-Lucent-Asa-Access
39 Alcatel-Lucent-Acce-Priv-F-R1
40 Alcatel-Lucent-Acce-Priv-F-R2
41 Alcatel-Lucent-Acce-Priv-F-W1
42 Alcatel-Lucent-Acce-Priv-F-W2
43 Alcatel-Lucent-Acce-Priv-F-R3
44 Alcatel-Lucent-Acce-Priv-F-R4
45 Alcatel-Lucent-Acce-Priv-F-W3
46 Alcatel-Lucent-Acce-Priv-F-W4
OmniSwitch AOS Release 8 Network Configuration Guide
Type
Description
integer
The authenticated VLAN number. The only
protocol associated with this attribute is
Ethernet II. If other protocols are required, use
the protocol attribute instead.
string
Slot(s)/port(s) valid for the user.
string
The time of day valid for the user to
authenticate.
address
The IP address used for Telnet only.
string
Description of the authenticated VLAN.
string
Description of the port.
string
The protocol associated with the VLAN. Must
be configured for access to other protocols.
Values include: IP_E2, IP_SNAP, IPX_E2,
IPX_NOV, IPX_LLC, IPX_SNAP.
string
Specifies that the user has access to the switch.
The only valid value is all.
hex
Configures functional read privileges for the
user.
hex
Configures functional read privileges for the
user.
hex
Configures functional write privileges for the
user.
hex
Configures functional write privileges for the
user.
hex
Configures functional read privileges for the
user.
hex
Configures functional read privileges for the
user.
hex
Configures functional write privileges for the
user.
hex
Configures functional write privileges for the
user.
December 2017
RADIUS Servers
page 31-9

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents