Hi,
I´ve been trying to create a dialout profile with FreeRadius 0.5 and a Cisco
AS5300. The Dialout User profile looks like this:
tester-out Password == "cisco", User-Service-Type == Outbound-User
Ascend-Send-Auth = Send-Auth-PAP,
Ascend-Dial-Number = "1234567",
Ascend-Send-Secret = "abc123",
Framed-IP-Address = 10.0.0.1,
Framed-IP-Netmask = 255.255.255.255
The dialout succeeds physically but not on the authentication/authorization part
(I guess). The debug from the NAS looks like this:
1d01h: RADIUS: Received from id 203 192.168.1.1:1812, Access-Accept, len 87
1d01h: Attribute 26 12 00000211E7060000
1d01h: Attribute 26 19 00000211E30D3032
1d01h: Attribute 26 24 00000211D612657A
1d01h: Attribute 8 6 D5A87D51
1d01h: Attribute 9 6 FFFFFFFF
1d01h: RADIUS: saved authorization data for user 61420778 at 61262A64
1d01h: RADIUS: Bad attribute (unsupported or inapplicable attribute): type 8 len
6 data 0xD5A87D51
When I remove the attributes "Framed-IP-Address" and "Framed-IP-Netmask" I don´t
get the "Bad Attribute" error from the NAS but I need to set the IP address of
the called peer somehow.
Is "Framed-Address" not Valid with "User-Service-Type == Outbound-User" ?
How can I set the peers´ IP Adress ?
Is there also a way to specify which username the NAS should use to login to the
remote peer after dialing ?
How can specifiy the PAP password to be used when loging into the remote end
after callout ?
I´ve been hitting my head on the wall over this for almost a day now, so any
help will be greatly appreciated :)
Regards,
Emre
P.S.: the other direction, i.e. the remote end calling the NAS works fine.
--
Emre Bastuz
[EMAIL PROTECTED] http://www.emre.de
UIN: 561260 PGP Key ID: 0xAFAC77FD
-------------------------------------------------
This mail sent through IMP: http://horde.org/imp/
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html