Доброе время суток
система
Cisco 2691 - UTM Radius
клиенты коннектяца по PPPoE
Cisco 2691 (R7000) processor (revision 0.1) with 118784K/12288K bytes of memory.
Processor board ID JMX0737L00C
R7000 CPU at 160MHz, Implementation 39, Rev 3.3, 256KB L2 Cache
2 FastEthernet interfaces
1 Channelized E1/PRI port
DRAM configuration is 64 bits wide with parity disabled.
55K bytes of NVRAM.
31360K bytes of ATA System CompactFlash (Read/Write)
Configuration register is 0x3922
Подскажите IOS. Перепробовал кучу IOS не могу заставить Киску отправлять mac в debug radius .
нет такой команды в IOS
radius-server attribute 31 send nas-port-detail mac-only
вот конф
radius-server attribute 44 include-in-access-req
radius-server attribute 6 on-for-login-auth
radius-server attribute 8 include-in-access-req
radius-server attribute 31 mac format unformatted
radius-server configure-nas
radius-server host ххх.ххх.ххх.ххх auth-port 1812 acct-port 1813
radius-server key 123456
radius-server vsa send accounting
log
?Debug : Jun 16 14:32:05 AuthServer: User <kskostja> connecting
?Debug : Jun 16 14:32:05 AuthServer: Session for sessionid <kskostja> not found in <169.254.0.1> cache
?Debug : Jun 16 14:32:05 RADIUS DBA: Info for login <kskostja> found. type <1>
?Debug : Jun 16 14:32:05 AuthServer: Auth scheme: MS-CHAPv2
?Debug : Jun 16 14:32:05 AuthServer: MS-CHAPv2: Authorized user <kskostja>
?Debug : Jun 16 14:32:05 AuthServer: MS-CHAPv2: MPPE Keys send
?Debug : Jun 16 14:32:05 AuthServer: IP claimed: 0xc0a80001 (<192.168.0.1>)
?Debug : Jun 16 14:32:05 AuthServer: Calling fill radius attributes for service. Attr storage size <0>
?Debug : Jun 16 14:32:05 AuthServer: Calling fill radius attributes for slink. Attr storage size <0>
?Debug : Jun 16 14:32:05 AuthServer: Calling fill radius attributes for NAS. Attr storage size <0>
Notice: Jun 16 14:32:05 AuthServer: Login OK <kskostja> from NAS <169.254.0.1> CLID <> Calling-station <>
?Debug : Jun 16 14:32:05 AuthServer: Setting interim update interval from config
?Debug : Jun 16 14:32:05 AuthServer: Auth reply: RPacket:
Code: 2; ID: 2
<Vendor: 0; Attr: 6>[4]: 00000002
<Vendor: 0; Attr: 7>[4]: 00000001
<Vendor: 0; Attr: 8>[4]: c0a80001
<Vendor: 0; Attr: 9>[4]: ffffffff
<Vendor: 0; Attr: 27>[4]: 00015180
<Vendor: 311; Attr: 7>[4]: 00000001
<Vendor: 311; Attr: 8>[4]: 00000006
<Vendor: 311; Attr: 16>[34]: 822e7a98019b0ead717c6fd8493a760032a34ede9bf30bae33045455dcedb737fc05
<Vendor: 311; Attr: 17>[34]: 8507077612a6291c8abf73463406035357c4a438ae07e5551f1e2dcce4966d100d0e
<Vendor: 311; Attr: 26>[43]: 81533d35383744433930374238384244313234323542394345323833444645364136363330413338373141
send nas-port-detail mac-only
Наверняка не скажу, но судя по офсайту Cisco эта команда появилась
в 12.2(31)SB2:
http://www.cisco.com/en/US/docs/ios/sec ... #wp1069425
Command History
Release
Modification
12.2(28)SB
This command was introduced.
12.2(31)SB2
The mac format default, the mac format ietf, the mac format unformatted, and the send nas-port-detail [mac-only] keyword options were added.
12.2(33)SRC
This command was integrated into Cisco IOS Release 12.2(33)SRC.
15.0(1)M
This command was integrated into Cisco IOS Release 15.0(1)M.
P.S. Проверить сейчас не могу.
в 12.2(31)SB2:
http://www.cisco.com/en/US/docs/ios/sec ... #wp1069425
Command History
Release
Modification
12.2(28)SB
This command was introduced.
12.2(31)SB2
The mac format default, the mac format ietf, the mac format unformatted, and the send nas-port-detail [mac-only] keyword options were added.
12.2(33)SRC
This command was integrated into Cisco IOS Release 12.2(33)SRC.
15.0(1)M
This command was integrated into Cisco IOS Release 15.0(1)M.
P.S. Проверить сейчас не могу.