H3C S3100 Series Operation Manual page 411

H3c s3100 series ethernet switches operation manual
Hide thumbs Also See for S3100 Series:
Table of Contents

Advertisement

5)
The Authenticator field (16 bytes) is used to authenticate the response from the RADIUS server;
and is used in the password hiding algorithm. There are two kinds of authenticators: Request
Authenticator and Response Authenticator.
6)
The Attributes field contains specific authentication/authorization/accounting information to provide
the configuration details of a request or response message. This field contains a list of field triplet
(Type, Length and Value):
The Type field (one byte) specifies the type of an attribute. Its value ranges from 1 to 255.
lists the attributes that are commonly used in RADIUS authentication/authorization.
The Length field (one byte) specifies the total length of the attribute in bytes (including the Type,
Length and Value fields).
The Value field (up to 253 bytes) contains the information of the attribute. Its format is determined
by the Type and Length fields.
Table 1-2 RADIUS attributes
Type field value
1
User-Name
2
User-Password
3
CHAP-Password
4
NAS-IP-Address
5
NAS-Port
6
Service-Type
7
Framed-Protocol
8
Framed-IP-Address
9
Framed-IP-Netmask
10
Framed-Routing
11
Filter-ID
12
Framed-MTU
13
Framed-Compression
14
Login-IP-Host
15
Login-Service
16
Login-TCP-Port
17
(unassigned)
18
Reply-Message
19
Callback-Number
20
Callback-ID
21
(unassigned)
22
Framed-Route
The RADIUS protocol has good scalability. Attribute 26 (Vender-Specific) defined in this protocol allows
a device vendor to extend RADIUS to implement functions that are not defined in standard RADIUS.
Attribute type
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40-59
60
61
62
63
1-6
Type field
value
Framed-IPX-Network
State
Class
Vendor-Specific
Session-Timeout
Idle-Timeout
Termination-Action
Called-Station-Id
Calling-Station-Id
NAS-Identifier
Proxy-State
Login-LAT-Service
Login-LAT-Node
Login-LAT-Group
Framed-AppleTalk-Link
Framed-AppleTalk-Network
Framed-AppleTalk-Zone
(reserved for accounting)
CHAP-Challenge
NAS-Port-Type
Port-Limit
Login-LAT-Port
Table 1-2
Attribute type

Advertisement

Chapters

Table of Contents
loading

Table of Contents