Hi again,

My original posting on this subject didn't seem very clear.

Here's an explanation again:

The Cisco NAS does a "preauthentication" based on CLI and DNIS. I have
Handlers in the radiator for filtering out bad CLIs or DNISs. However when
"preauthentication" is turned on on the NAS, the authentication seems to be
done in 2 steps. A successful preauthentication is followed by "subsequent"
authorization for the rest of the AAA. In each step there is handshake
between the NAS and the radiator.

I would appreciate any help with this.

Regards,
Lisa

> -----Original Message-----
> From: Lisa Goulet 
> Sent: Thursday, November 23, 2000 1:19 PM
> To:   [EMAIL PROTECTED]
> Subject:      Cisco NAS preauthentication
> 
> 
> Hi all,
> 
> We are implementing preauthentication. The Cisco NAS is sending the DNIS
> as the User-Name. The cisco documentation mentions the attribute 
> cisco-avpair = "preauth:username=<string>"
> 
> Can someone tell me how to access this attribute. I would appreciate it if
> someone has an example on how to do the preauthentication and the
> subsequent authentication.
> 
> Regards,
> Lisa

===
Archive at http://www.starport.net/~radiator/
Announcements on [EMAIL PROTECTED]
To unsubscribe, email '[EMAIL PROTECTED]' with
'unsubscribe radiator' in the body of the message.

Reply via email to