Bay Networks Radius Manual de usuario

Busca en linea o descarga Manual de usuario para Software Bay Networks Radius. Network Working Group D. Mitton Request for Comments Manual de usuario

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 14
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 0
Network Working Group D. Mitton
Request for Comments: 2882 Nortel Networks
Category: Informational July 2000
Network Access Servers Requirements:
Extended RADIUS Practices
Status of this Memo
This memo provides information for the Internet community. It does
not specify an Internet standard of any kind. Distribution of this
memo is unlimited.
Copyright Notice
Copyright (C) The Internet Society (2000). All Rights Reserved.
Abstract
This document describes current practices implemented in NAS products
that go beyond the scope of the RADIUS RFCs 2138, 2139 [1,2]. The
purpose of this effort is to give examples that show the need for
addressing and standardizing these types of ad-hoc functions. Since
many of these features require a matching server support component,
the ability to deploy and manage interoperable NAS and AAA server
products is severely hindered.
These practices are documented here to show functions that are
obviously desired in developing future AAA protocols for NAS
deployment.
Table of Contents
1. Introduction . . . . . . . . . . . . . . . . . . . . . . . 2
1.1. Disclaimers . . . . . . . . . . . . . . . . . . . . . . . 3
1.2. Presentation . . . . . . . . . . . . . . . . . . . . . . 3
2. Attribute Usage . . . . . . . . . . . . . . . . . . . . . . 3
2.1. Attribute Conflicts . . . . . . . . . . . . . . . . . . . 4
2.2. Attribute Value Conflicts . . . . . . . . . . . . . . . . 4
2.2.1 Vendor Specific Enumerations Proposal . . . . . . . . . . 4
2.3 Vendor Specific Attribute Usage . . . . . . . . . . . . . 5
2.3.1 VSAs in use by clients: . . . . . . . . . . . . . . . . . 5
2.3.2 Clients that support multiple Vendors: . . . . . . . . . 5
3. Attribute Data Types . . . . . . . . . . . . . . . . . . . 6
4. New Messages . . . . . . . . . . . . . . . . . . . . . . . 7
5. Additional Functions . . . . . . . . . . . . . . . . . . . 7
5.1 Password Change . . . . . . . . . . . . . . . . . . . . . 8
Mitton Informational [Page 1]
RFC 2882 Extended RADIUS Practices July 2000
5.2 Authentication Modes . . . . . . . . . . . . . . . . . . . 8
5.3 Menus . . . . . . . . . . . . . . . . . . . . . . . . . . . 8
5.4 Pseudo Users . . . . . . . . . . . . . . . . . . . . . . . 9
6. Resource Management . . . . . . . . . . . . . . . . . . . . 9
6.1 Managed Resources . . . . . . . . . . . . . . . . . . . . . 9
6.2 Resource Management Messages . . . . . . . . . . . . . . . 10
6.3 Concurrent Logins . . . . . . . . . . . . . . . . . . . . . 10
Vista de pagina 0
1 2 3 4 5 6 ... 13 14

Indice de contenidos

Pagina 1

Network Working Group D. Mitton Request for Comments: 2882 Nortel Networ

Pagina 2

exchange, and use the Username field for information about the Mitton Informational [Page 11] RFC 288

Pagina 3

This memo is not a complete survey by any means. It is a representative summary of practices that I am aware of at the time of writing. I

Pagina 4

12. References [1] Rigney, C., Rubens, A., Simpson, W. and S. Willens, "Remote Authentication Dial In User Service (RADIUS)",

Pagina 5

Mitton Informational [Page 15] RFC 2882 Extended RADIUS Practices

Pagina 6

Mitton Informational [Page 16]

Pagina 7

6.4 Authorization Changes . . . . . . . . . . . . . . . . . . . 11 7. Policy Services . . . . . . . . . . . . . . . . . . . . . . 11 8. Acco

Pagina 8

change by vendors without notice. I would appreciate any direct input, preferably first hand, from implementors. 1.2. Presentation Withou

Pagina 9

the numeric value (ala VSAs) which would to divide up the attribute value space. This technique has not seen any acceptance by the working g

Pagina 10

Now that MS-CHAP RADIUS attributes have been published in RFC 2548 [9] as Microsoft VSA attributes, it will become typical that for NAS clie

Pagina 11

4. New Messages A number of new message types have been introduced by various parties over time. The base specification has 6, vendors have a

Pagina 12

5.2. Authentication Modes Additional message types have been added to negotiate passcode changes for token card servers. - Next Passcode

Pagina 13

attached to the profile. The client should test for this returned value, to prevent normal dial-in users from gaining access via this profile

Pagina 14

on a RADIUS environment. Some vendors have build NAS monitoring tools either into their RADIUS servers, either directly or as auxiliary deam

Comentarios a estos manuales

Sin comentarios