Cisco 10000-2P2-2DC Software Configuration Manual page 201

10000 series
Table of Contents

Advertisement

Chapter 5
Configuring the Layer 2 Tunnel Protocol Access Concentrator and Network Server
Command
Step 10
Router(config)# radius-server attribute
44 include-in-access-req vrf vrf-name
Step 11
Router(config)# radius-server
domain-stripping vrf vrf-name
Verifying and Troubleshooting per VRF AAA
To verify and troubleshoot the per VRF AAA feature, enter the following commands in privileged EXEC
mode.
Due to the large output of some of the commands, many events are not displayed on the console. Instead,
Note
the messages are logged to a console log file. To limit the rate that the Cisco 10000 series router logs
system messages, enter the logging rate-limit command. For more information, see the
"Troubleshooting and Fault Management Commands in the Cisco IOS Configuration Fundamentals
Command Reference, Release 12.2.
Command
Router# show ip route vrf vrf-name
Router# debug aaa accounting
Router# debug aaa authorization
Router# debug ppp negotiation
Router# debug radius
Router# debug vpdn event
Router# debug vpdn error
Because debugging output is assigned high priority in the CPU process, it can render the system
Caution
unusable. For this reason, use debug commands only to troubleshoot specific problems or during
troubleshooting sessions with Cisco Systems technical support personnel. Moreover, it is best to use
debug commands during periods of lower network traffic and fewer users. Debugging during these
periods decreases the likelihood that increased debug command processing overhead will affect system
use.
OL-2226-23
Purpose
Sends RADIUS attribute 44 in access request packets before user
authentication and enables the specification on a per VRF basis.
The vrf vrf-name keyword and argument specify the per VRF
configuration.
(Optional) Enables VRF-aware domain-stripping.
The vrf vrf-name keyword and argument specify the per VRF
configuration.
Purpose
Displays the IP routing table associated with a VRF.
Displays information on accountable events as they occur.
Displays information on AAA authorization.
Displays information on traffic and exchanges in an internetwork
implementing PPP.
Displays information associated with RADIUS.
Displays L2TP errors and events that are a part of normal tunnel
establishment or shutdown for VPNs.
Displays debug traces for VPN.
Cisco 10000 Series Router Software Configuration Guide
L2TP Network Server
5-35

Advertisement

Table of Contents
loading

This manual is also suitable for:

1000510008

Table of Contents