Radius Authentication Attributes Sent By The Access Point - Cisco 2100 Series Configuration Manual

Wireless lan controller
Hide thumbs Also See for 2100 Series:
Table of Contents

Advertisement

Chapter 5
Configuring Security Solutions

RADIUS Authentication Attributes Sent by the Access Point

The tables in this section identify the RADIUS authentication attributes sent by a lightweight access
point to a client in access-request and access-accept packets.
Table 5-1
Attribute ID
1
2
3
4
5
6
12
30
31
32
33
60
61
79
243
1. To specify read-only or read-write access to controllers through RADIUS authentication, you must set the
Table 5-2
Attribute ID
1
2
3
4
5
6
Note
OL-17037-01
Authentication Attributes Sent in Access-Request Packets
Description
User-Name
Password
CHAP-Password
NAS-IP-Address
NAS-Port
Service-Type
Framed-MTU
Called-Station-ID (MAC address)
Calling-Station-ID (MAC address)
NAS-Identifier
Proxy-State
CHAP-Challenge
NAS-Port-Type
EAP-Message
TPLUS-Role
Service-Type attribute (6) on the RADIUS server to Callback NAS Prompt for read-only access or to
Administrative for read-write privileges. See
more information.
Authentication Attributes Honored in Access-Accept Packets (Cisco)
Description
Cisco-LEAP-Session-Key
Cisco-Keywrap-Msg-Auth-Code
Cisco-Keywrap-NonCE
Cisco-Keywrap-Key
Cisco-URL-Redirect
Cisco-URL-Redirect-ACL
These Cisco-specific attributes are not supported: Auth-Algo-Type and SSID.
1
Step 19
in the
"Configuring RADIUS on the ACS"
Cisco Wireless LAN Controller Configuration Guide
Configuring RADIUS
section for
5-15

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

4400 series

Table of Contents