[c-nsp] Cisco VPN Client - accounting log

Oliver Boehmer (oboehmer) oboehmer at cisco.com
Thu Feb 9 02:55:23 EST 2006


Piestaga <> wrote on Wednesday, February 08, 2006 4:08 PM:

> Hi,
> 
> My problem is that couple of months ago, for established Cisco VPN
> IPSec session, the NAS was sending to radius the NAS-PORT attribute.
> Now it is not (in fact NAS sends 'zero' as a NAS-PORT).
> It causes that every authenticated second IPSec session clears the
> previous one what causes that I am not able to verify the number of
> session from single User. (I need to limit the total number of
> sessions to one from single user at a time)
> 
> I tried to force the NAS to send NAS-PORT using:
> radius-server attribute nas-port format /a-e/
> but it doesn't help in fact.
> Still the parameter is 'zero'
> 
> Did you have notice is it a bug that will be repaired in next release
> or is it going to stay working (not-working) that way ?
> 
> It is strange that NAS stops sending the NAS-PORT for Cisco CPN Client
> sessions just like that.

Which image are you using? We should be sending a NAS-Port in 12.3(11)T
and later.. 

	oli



More information about the cisco-nsp mailing list