3Com MSR 50 Series Configuration Manual page 1756

3com msr 30-16: software guide
Hide thumbs Also See for MSR 50 Series:
Table of Contents

Advertisement

1756
C
93: AAA/RADIUS/HWTACACS C
HAPTER
ONFIGURATION
4 The Authenticator field (16-byte long) is used to authenticate the reply from the
RADIUS server, and is also used in the password hiding algorithm. There are two
kinds of authenticators: Request and Response.
5 The Attribute field carries information about the configuration details of a request
or response. This field is represented in triplets of Type, Length, and Value.
Type: One byte, in the range 1 to 255. It is for indicating the type of the
attribute. Commonly used attributes for RADIUS authentication and
authorization are listed in
Length: One byte for indicating the length of the attribute in bytes, including
the Type, Length, and Value fields.
Value: Value of the attribute, up to 253 bytes. Its format and content depend
on the Type and Length fields.
Table 54 RADIUS attributes
Type
Attribute type
1
User-Name
2
User-Password
3
CHAP-Password
4
NAS-IP-Address
5
NAS-Port
6
Service-Type
7
Framed-Protocol
8
Framed-IP-Address
9
Framed-IP-Netmask
10
Framed-Routing
11
Filter-ID
12
Framed-MTU
13
Framed-Compression
14
Login-IP-Host
15
Login-Service
16
Login-TCP-Port
17
(unassigned)
18
Reply_Message
19
Callback-Number
20
Callback-ID
21
(unassigned)
22
Framed-Route
The RADIUS protocol features excellent extensibility. Attribute 26 (Vender-Specific)
allows a vender to define extended attributes to implement functions that the
standard RADIUS protocol does not provide.
RADIUS packet containing an extended attribute. The four-byte field Vendor-ID
indicates the ID of the vendor. Its highest byte is 0 and the other three bytes
contain a code complying with RFC 1700. A vendor can encapsulate multiple
type-length-value (TLV) sub-attributes in RADIUS packets for extension in
applications.
Table
54.
Type
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40-59
60
61
62
63
Figure 514
Attribute type
Framed-IPX-Network
State
Class
Vendor-Specific
Session-Timeout
Idle-Timeout
Termination-Action
Called-Station-Id
Calling-Station-Id
NAS-Identifier
Proxy-State
Login-LAT-Service
Login-LAT-Node
Login-LAT-Group
Framed-AppleTalk-Link
Framed-AppleTalk-Network
Framed-AppleTalk-Zone
(reserved for accounting)
CHAP-Challenge
NAS-Port-Type
Port-Limit
Login-LAT-Port
illustrates a segment of a

Hide quick links:

Advertisement

Table of Contents

Troubleshooting

loading

Table of Contents