Using Radius filter id attribute for VPN clients
 




IT Certification FAQ

 
|
Home
|
Microsoft
|
CISCO
|
CompTIA
|
Exam/Study FAQ
|
Employment FAQ
| Links  | Forums  |
Book Reviews


FAQFAQ  SearchSearch  MemberlistMemberlist  UsergroupsUsergroups  RegisterRegister  ProfileProfile  Log in to check your private messagesPrivate messages  Log inLog in

Using Radius filter id attribute for VPN clients

 
Post new topic   Reply to topic    Forum Index -> comp.dcom.sys.cisco
Author Message
Michael Flanigan
Guest





PostPosted: Sat Jun 30, 2007 11:18 am    Post subject: Using Radius filter id attribute for VPN clients Reply with quote

I have a 6509 MSFC with VPN service module handling VPN client access,
authenticated by an RSA RADIUS server with tokens. I have tried to get the
MSFC to recognize attribute 11, filter ID, but, although it is clearly
there in the debug, the acl seems to have no effect. I have

aaa authorization network groupauthor local
specified for group shared-secret authentication. I also have

aaa authorization network default group radrsa if-authenticated
aaa authorization configuration default group radrsa

for handling the filter attribute. I have tried with and without the 'if-
authenticated'. I suspect from the debug that the local method specified
for shared-secret handling is overriding the other specifications. Has
anyone been able to use the aaa filter attribute with local shared secrets?
Any other ideas as to the nature of the problem would be appreciated. I
can supply debug and config as needed. Thanks

--
Posted via a free Usenet account from http://www.teranews.com
Back to top
Display posts from previous:   
Post new topic   Reply to topic    Forum Index -> comp.dcom.sys.cisco All times are GMT
Page 1 of 1

 

Copyright © 2002-2006 Web-S-Sense Pty. Ltd. All rights reserved.

Powered by phpBB
Advertising | Policies/Disclaimers | Contact us | Link to us


Featured Sites: Free Antivirus and Antispyware Info | Free PC Support | MCSE Directory