[rbak-nsp] npm proxy radius problem

Yuri Shefer shefys at gmail.com
Wed Feb 2 14:25:55 EST 2011


Hi,

If you compare access requests from live subscriber and "test aaa" you
will see the difference:

[local]Redback# test aaa authentication username xyz password xyz
protocol radius

Log from radius:
Code:       Access-Request
Identifier: 23
Authentic:  <179><136>=<177><165><250>P<21><132>M<238>P<185>+<171>B
Attributes:
        User-Name = "xyz"
        User-Password =
"<13><134><127><171><228><159><201><204><17><166>2<6><179>;vs"
        NAS-Identifier = "Redback"
        NAS-Port = 16842817
        NAS-Port-Type = Async
        RB-Platform-Type = SE-1200
        RB-OS-Version = "6.4.1.1"

Live subscriber:

*** Received from 6.6.6.6 port 1812 ....
Code:       Access-Request
Identifier: 0
Authentic:  <<167>:%e<161><135><213>oC_L<208><1><148><3>
Attributes:
User-Name = "xyz"
User-Password = "N<211>X<176><252><194>R<177>'<130><25>(<147><238>:<170>"
Service-Type = Framed-User
NAS-Identifier = "Redback"
NAS-Port = 234946624
RB-NAS-Real-Port = 3775529972
NAS-Port-Type = Sync
NAS-Port-Id = "10/1 vpi-vci 10 1012"
Connect-Info = "shaping-default"
Calling-Station-Id = "Redback#10/1#10#1012"
RB-Platform-Type = SE-1200
RB-OS-Version = "6.4.1.1"
Acct-Session-Id = "0D00003F18000036-4D474367"

When you're using "test aaa" SE send access request without
Service-Type attribute.

On Wed, Feb 2, 2011 at 9:50 AM, burgerkill <burgerkill at gmail.com> wrote:
> Hi,
>
> Need a bit help here, i have NPM server that configured as radius proxy.I
> have check on BRAS using sh rad servers both stats on authentication and
> accounting are alive.But when am did test aaa authentication username
> usertest at domain password test protocol radius ,the result was timeout.
>
> I do some debugging command using debug aaa authen and it said failed on
> packet sanity check.Is there something missing config on BRAS or NPM ?
>
> Many thanks for help
>
> Regards,
> Burgerkill

-- 
Best regards,
Yuri


More information about the redback-nsp mailing list