[c-nsp] AAA & VPDN (Tunnel-Client-Endpoint)

Denis V. Schapov dschapov at dsi.ru
Thu May 3 04:12:32 EDT 2007


Hi.

Is it possible to get radius attribute 66, Tunnel-Client-Endpoint or it's value on another
attribute for incoming VPDN (L2TP, PPTP) connections to LNS in Radius authentication
requests for ppp/network authentication/authorization ?
Currently this attribute is present only in accounting start/stop/alive.
LNS is running 12.2(31)SB3x
Tunnel authentication is disabled.

The goal is to make decision on AAA server side based on Username and
Tunnel-Client-Endpoint to restrict access from only allowed IP addresses/networks per
user.

Didn't find something relevant in IOS documentation.

Thanks for answer.

----
Denis V. Schapov
JSC "DSI"
Irkutsk, Russia
dschapov at dsi.ru
+7 3952 510506





More information about the cisco-nsp mailing list