[cisco-nas] l2tp & radius domain-stripping

jc jc at isnet.net
Thu Sep 30 06:17:29 EDT 2004


hi,

moved onto new code on my lns in order to make use of radius
domain-stripping (123-7T)

am seeing some funnies in my logs, not quite sure if its only cometic..
tried finding some reference to this on CCO for better understanding but
without any luck ...

simple vpdn solution, user dials into nas, creates tunnel to home gateway
router...

000561: Sep 30 10:26:10.217 SAT: uid:1179 Tnl/Sn 2900/33427 L2TP: Can't
collect more keys, no service found
000562: Sep 30 10:26:55.325 SAT: uid:140 Tnl/Sn 2900/33451 L2TP: Can't
collect more keys, no service found
000563: Sep 30 10:27:42.222 SAT: uid:1213 Tnl/Sn 2900/33479 L2TP: Can't
collect more keys, no service found
000564: Sep 30 10:28:44.343 SAT: uid:147 Tnl/Sn 45954/33517 L2TP: Can't
collect more keys, no service found
000565: Sep 30 10:34:28.041 SAT: uid:521 Tnl/Sn 45954/33688 L2TP: Can't
collect more keys, no service found
000566: Sep 30 10:35:38.194 SAT: uid:565 Tnl/Sn 45954/33738 L2TP: Can't
collect more keys, no service found

and second question regarding radius domain-stripping.. after reading CCO
(http://www.cisco.com/en/US/products/sw/iosswrel/ps5012/products_feature_guide09186a008014281e.html#wp1025127)
seems very straight forward setting it up... however, and i am sure i am
going to kick myself on this one.. it complains about an unknown vrf
name..

gateway(config)#radius-server domain-stripping right-to-left delimiter @ vrf speedy
% Unknown VRF name=speedy

now erm .. do i need to configure vrf before hand for this to work ?

j.







More information about the cisco-nas mailing list