Bay Networks Radius Bedienungsanleitung

Stöbern Sie online oder laden Sie Bedienungsanleitung nach Software Bay Networks Radius herunter. Network Working Group D. Mitton Request for Comments Benutzerhandbuch

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 14
  • Inhaltsverzeichnis
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 0
Network Working Group D. Mitton
Request for Comments: 2882 Nortel Networks
Category: Informational July 2000
Network Access Servers Requirements:
Extended RADIUS Practices
Status of this Memo
This memo provides information for the Internet community. It does
not specify an Internet standard of any kind. Distribution of this
memo is unlimited.
Copyright Notice
Copyright (C) The Internet Society (2000). All Rights Reserved.
Abstract
This document describes current practices implemented in NAS products
that go beyond the scope of the RADIUS RFCs 2138, 2139 [1,2]. The
purpose of this effort is to give examples that show the need for
addressing and standardizing these types of ad-hoc functions. Since
many of these features require a matching server support component,
the ability to deploy and manage interoperable NAS and AAA server
products is severely hindered.
These practices are documented here to show functions that are
obviously desired in developing future AAA protocols for NAS
deployment.
Table of Contents
1. Introduction . . . . . . . . . . . . . . . . . . . . . . . 2
1.1. Disclaimers . . . . . . . . . . . . . . . . . . . . . . . 3
1.2. Presentation . . . . . . . . . . . . . . . . . . . . . . 3
2. Attribute Usage . . . . . . . . . . . . . . . . . . . . . . 3
2.1. Attribute Conflicts . . . . . . . . . . . . . . . . . . . 4
2.2. Attribute Value Conflicts . . . . . . . . . . . . . . . . 4
2.2.1 Vendor Specific Enumerations Proposal . . . . . . . . . . 4
2.3 Vendor Specific Attribute Usage . . . . . . . . . . . . . 5
2.3.1 VSAs in use by clients: . . . . . . . . . . . . . . . . . 5
2.3.2 Clients that support multiple Vendors: . . . . . . . . . 5
3. Attribute Data Types . . . . . . . . . . . . . . . . . . . 6
4. New Messages . . . . . . . . . . . . . . . . . . . . . . . 7
5. Additional Functions . . . . . . . . . . . . . . . . . . . 7
5.1 Password Change . . . . . . . . . . . . . . . . . . . . . 8
Mitton Informational [Page 1]
RFC 2882 Extended RADIUS Practices July 2000
5.2 Authentication Modes . . . . . . . . . . . . . . . . . . . 8
5.3 Menus . . . . . . . . . . . . . . . . . . . . . . . . . . . 8
5.4 Pseudo Users . . . . . . . . . . . . . . . . . . . . . . . 9
6. Resource Management . . . . . . . . . . . . . . . . . . . . 9
6.1 Managed Resources . . . . . . . . . . . . . . . . . . . . . 9
6.2 Resource Management Messages . . . . . . . . . . . . . . . 10
6.3 Concurrent Logins . . . . . . . . . . . . . . . . . . . . . 10
Seitenansicht 0
1 2 3 4 5 6 ... 13 14

Inhaltsverzeichnis

Seite 1

Network Working Group D. Mitton Request for Comments: 2882 Nortel Networ

Seite 2

exchange, and use the Username field for information about the Mitton Informational [Page 11] RFC 288

Seite 3

This memo is not a complete survey by any means. It is a representative summary of practices that I am aware of at the time of writing. I

Seite 4

12. References [1] Rigney, C., Rubens, A., Simpson, W. and S. Willens, "Remote Authentication Dial In User Service (RADIUS)",

Seite 5

Mitton Informational [Page 15] RFC 2882 Extended RADIUS Practices

Seite 6

Mitton Informational [Page 16]

Seite 7

6.4 Authorization Changes . . . . . . . . . . . . . . . . . . . 11 7. Policy Services . . . . . . . . . . . . . . . . . . . . . . 11 8. Acco

Seite 8

change by vendors without notice. I would appreciate any direct input, preferably first hand, from implementors. 1.2. Presentation Withou

Seite 9

the numeric value (ala VSAs) which would to divide up the attribute value space. This technique has not seen any acceptance by the working g

Seite 10

Now that MS-CHAP RADIUS attributes have been published in RFC 2548 [9] as Microsoft VSA attributes, it will become typical that for NAS clie

Seite 11

4. New Messages A number of new message types have been introduced by various parties over time. The base specification has 6, vendors have a

Seite 12

5.2. Authentication Modes Additional message types have been added to negotiate passcode changes for token card servers. - Next Passcode

Seite 13

attached to the profile. The client should test for this returned value, to prevent normal dial-in users from gaining access via this profile

Seite 14

on a RADIUS environment. Some vendors have build NAS monitoring tools either into their RADIUS servers, either directly or as auxiliary deam

Kommentare zu diesen Handbüchern

Keine Kommentare