At 12:04 PM 11/17/2003, Enrico Starke wrote:
Hi everyone,

i need to know if the NAS blocks a REQUEST-ID for the time of processing
this request por is it possible that 2 identical ids are used from one NAS at the
same time for different REQUESTs.

Request-ID is 1 octet. It can/will roll-over pretty quickly, especially on the dense NAS you have today.

For this reason there are other methods used to identify distinct radius
packets from the same NAS, such as the 16 octet Request-Authenticator,
which is per the RFC uniquely generated for each distinct session.

Additionally, the RFC says this about the Indentifier field:

http://www.freeradius.org/rfc/rfc2865.html Section 3. Packet Format

Identifier

      The Identifier field is one octet, and aids in matching requests
      and replies.  The RADIUS server can detect a duplicate request if
      it has the same client source IP address and source UDP port and
      Identifier within a short span of time.

-Chris
--
   \\\|||///  \          StarNet Inc.      \         Chris Parker
   \ ~   ~ /   \       WX *is* Wireless!    \   Director, Engineering
   | @   @ |    \   http://www.starnetwx.net \      (847) 963-0116
oOo---(_)---oOo--\------------------------------------------------------
                  \ Wholesale Internet Services - http://www.megapop.net



- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to