Bay Networks Radius Instrukcja Użytkownika

Przeglądaj online lub pobierz Instrukcja Użytkownika dla Oprogramowanie Bay Networks Radius. Network Working Group D. Mitton Request for Comments Instrukcja obsługi

  • Pobierz
  • Dodaj do moich podręczników
  • Drukuj
  • Strona
    / 14
  • Spis treści
  • BOOKMARKI
  • Oceniono. / 5. Na podstawie oceny klientów
Przeglądanie stron 0
Network Working Group D. Mitton
Request for Comments: 2882 Nortel Networks
Category: Informational July 2000
Network Access Servers Requirements:
Extended RADIUS Practices
Status of this Memo
This memo provides information for the Internet community. It does
not specify an Internet standard of any kind. Distribution of this
memo is unlimited.
Copyright Notice
Copyright (C) The Internet Society (2000). All Rights Reserved.
Abstract
This document describes current practices implemented in NAS products
that go beyond the scope of the RADIUS RFCs 2138, 2139 [1,2]. The
purpose of this effort is to give examples that show the need for
addressing and standardizing these types of ad-hoc functions. Since
many of these features require a matching server support component,
the ability to deploy and manage interoperable NAS and AAA server
products is severely hindered.
These practices are documented here to show functions that are
obviously desired in developing future AAA protocols for NAS
deployment.
Table of Contents
1. Introduction . . . . . . . . . . . . . . . . . . . . . . . 2
1.1. Disclaimers . . . . . . . . . . . . . . . . . . . . . . . 3
1.2. Presentation . . . . . . . . . . . . . . . . . . . . . . 3
2. Attribute Usage . . . . . . . . . . . . . . . . . . . . . . 3
2.1. Attribute Conflicts . . . . . . . . . . . . . . . . . . . 4
2.2. Attribute Value Conflicts . . . . . . . . . . . . . . . . 4
2.2.1 Vendor Specific Enumerations Proposal . . . . . . . . . . 4
2.3 Vendor Specific Attribute Usage . . . . . . . . . . . . . 5
2.3.1 VSAs in use by clients: . . . . . . . . . . . . . . . . . 5
2.3.2 Clients that support multiple Vendors: . . . . . . . . . 5
3. Attribute Data Types . . . . . . . . . . . . . . . . . . . 6
4. New Messages . . . . . . . . . . . . . . . . . . . . . . . 7
5. Additional Functions . . . . . . . . . . . . . . . . . . . 7
5.1 Password Change . . . . . . . . . . . . . . . . . . . . . 8
Mitton Informational [Page 1]
RFC 2882 Extended RADIUS Practices July 2000
5.2 Authentication Modes . . . . . . . . . . . . . . . . . . . 8
5.3 Menus . . . . . . . . . . . . . . . . . . . . . . . . . . . 8
5.4 Pseudo Users . . . . . . . . . . . . . . . . . . . . . . . 9
6. Resource Management . . . . . . . . . . . . . . . . . . . . 9
6.1 Managed Resources . . . . . . . . . . . . . . . . . . . . . 9
6.2 Resource Management Messages . . . . . . . . . . . . . . . 10
6.3 Concurrent Logins . . . . . . . . . . . . . . . . . . . . . 10
Przeglądanie stron 0
1 2 3 4 5 6 ... 13 14

Podsumowanie treści

Strona 1

Network Working Group D. Mitton Request for Comments: 2882 Nortel Networ

Strona 2

exchange, and use the Username field for information about the Mitton Informational [Page 11] RFC 288

Strona 3

This memo is not a complete survey by any means. It is a representative summary of practices that I am aware of at the time of writing. I

Strona 4

12. References [1] Rigney, C., Rubens, A., Simpson, W. and S. Willens, "Remote Authentication Dial In User Service (RADIUS)",

Strona 5

Mitton Informational [Page 15] RFC 2882 Extended RADIUS Practices

Strona 6

Mitton Informational [Page 16]

Strona 7

6.4 Authorization Changes . . . . . . . . . . . . . . . . . . . 11 7. Policy Services . . . . . . . . . . . . . . . . . . . . . . 11 8. Acco

Strona 8

change by vendors without notice. I would appreciate any direct input, preferably first hand, from implementors. 1.2. Presentation Withou

Strona 9

the numeric value (ala VSAs) which would to divide up the attribute value space. This technique has not seen any acceptance by the working g

Strona 10

Now that MS-CHAP RADIUS attributes have been published in RFC 2548 [9] as Microsoft VSA attributes, it will become typical that for NAS clie

Strona 11

4. New Messages A number of new message types have been introduced by various parties over time. The base specification has 6, vendors have a

Strona 12

5.2. Authentication Modes Additional message types have been added to negotiate passcode changes for token card servers. - Next Passcode

Strona 13

attached to the profile. The client should test for this returned value, to prevent normal dial-in users from gaining access via this profile

Strona 14

on a RADIUS environment. Some vendors have build NAS monitoring tools either into their RADIUS servers, either directly or as auxiliary deam

Komentarze do niniejszej Instrukcji

Brak uwag