[c-nsp] VPN users w/ different ACLs

clemens.schmikal at linetec.at clemens.schmikal at linetec.at
Fri Feb 9 08:46:22 EST 2007


for example in free-radius:

username        Auth-Type := MS-CHAP, Password == pwd
                Service-Type = Framed-User,
                Framed-Protocol = PPP,
                Cisco-AVPair += "ip:inacl#1=permit ip 192.168.100.0 0.0.0.255 192.168.101.0 0.0.0.255",
                Cisco-AVPair += "lcp:interface-config=ip vrf forwarding ra",
                Cisco-AVPair += "lcp:interface-config=ip unnumbered loopback96",
                Cisco-AVPair += "lcp:interface-config=peer default ip address pool ra-vpn" 

(including vrf assingment and other stuff)

clemens




More information about the cisco-nsp mailing list