Radius Dynamic-Request Server References; How Radius Dynamic-Request Server Works; Radius-Initiated Disconnect; Disconnect Messages - Juniper JUNOSE SOFTWARE FOR E SERIES 11.3.X - BROADBAND ACCESS CONFIGURATION GUIDE 2010-10-12 Configuration Manual

Software for e series broadband services routers broadband access configuration guide
Hide thumbs Also See for JUNOSE SOFTWARE FOR E SERIES 11.3.X - BROADBAND ACCESS CONFIGURATION GUIDE 2010-10-12:
Table of Contents

Advertisement

RADIUS Dynamic-Request Server References

How RADIUS Dynamic-Request Server Works

RADIUS-Initiated Disconnect

Disconnect Messages

Message Exchange

Copyright © 2010, Juniper Networks, Inc.
See the E120 and E320 Module Guide for modules supported on the E120 and E320
Broadband Services Routers.
For more information about the RADIUS dynamic-request server feature, see the following
references:
RFC 2865—Remote Authentication Dial In User Service (RADIUS) (June 2000)
RFC 2866—RADIUS Accounting (June 2000)
RFC 5176—Dynamic Authorization Extensions to Remote Authentication Dial In User
Service (RADIUS) (January 2008)
In a typical client-server RADIUS environment, the E Series router functions as the client
and the RADIUS server functions as the server. However, when using the RADIUS
dynamic-request server feature, the roles are reversed. For example, during a
RADIUS-initiated disconnect operation, the E Series router's RADIUS dynamic-request
server functions as the server, and the RADIUS server functions as the disconnect client.
This section describes the RADIUS dynamic-request server's RADIUS-initiated disconnect
feature.
To centrally control the disconnection of remote access users, the RADIUS
dynamic-request server on the router must receive and process unsolicited messages
from RADIUS servers.
The RADIUS-initiated disconnect feature uses the existing format of RADIUS disconnect
request and response messages. The RADIUS-initiated disconnect feature uses the
following codes in its RADIUS request and response messages:
Disconnect-Request (40)
Disconnect-ACK (41)
Disconnect-NAK (42)
The RADIUS server and the router's RADIUS dynamic-request server exchange messages
using User Datagram Protocol (UDP). The Disconnect-Request message sent by the
RADIUS server has the same format as the CoA-Request packet that is sent for a change
of authorization operation.
The disconnect response is either a Disconnect-ACK or a Disconnect-NAK message:
Chapter 4: Configuring RADIUS Dynamic-Request Server
239

Advertisement

Table of Contents
loading

This manual is also suitable for:

Junose 11.3

Table of Contents