Dialogic 1010 manual Radius Server Redundancy, Supported Packet Types, Radius Server Debug Mode

Page 6

RADIUS

RADIUS Server Redundancy

The IMG supports an Active/Standby redundancy scheme. Redundancy logic is independent for Authentication and Accounting Servers. When configuring RADIUS servers they may get created with an initial priority preference. The IMG will begin using the Active Server(s) and switchover to a Standby server after detecting a communication failure to the currently Active server. Once the switchover occurs all future Radius messages will flow to the new Active server until a failure occurs on this server. If an error is detected in trying to send a Radius message to this new Active server, the IMG will attempt to switch back to the initial Active server. This behaviour is repeated, until a working server is detected. If the IMG fails to connect to a RADIUS Server an alarm will be sent. You can monitor alarms using EventView. Typically when a RADIUS message needs to be sent to a server it is assembled and passed to the OS for transport to the active server. These servers are configured to send the message wait 2 seconds and then retry sending the message an additional 3 times. Therefor a RADIUS message will be sent a total of 4 times at 2 second intervals. Once the message has been sent 4 times with no success a switchover to the next server will occur. The switchover behaviour is coupled to the message type. Therefore an Accounting Server switchover is independent of an Authentication Server switchover.

Under typical call load it will take a while for the switchover to complete since the IMG may have many RADIUS messages queued up to the failed server. Each of these messages must fail and be retried on the newly active server following notification of the send failure.

NOTE: A negative response does not constitute a server failure.

Supported Packet Types

Access-Request

Sent to a RADIUS server - conveys information used to determine whether a user is allowed access to a specific NAS, and any special services requested for that user.

Access-Accept

Sent by the RADIUS server - provides specific configuration information necessary to begin delivery of service to the user.

Access-Reject

Sent by the RADIUS Server if any value of the received Attributes is not acceptable

Accounting-start

Describes the type of service being delivered and the user to whom it is being delivered at the start of service delivery

Accounting-stop

Describes the type of service that was delivered and some optional statistics, such as elapsed time, input and output octets, and input and output packets.

RADIUS Server Debug Mode

You can configure your RADIUS Client in Debug Mode so that calls will be completed whether the RADIUS server is active or not. The IMG will not require authentication for the RADIUS server to complete a call and no billing information will be logged.

You enable RADIUS Debug Mode using the RADIUS Client screen.

2

Image 6
Contents Dialogic IMG 1010/1004 Integrated Media Gateways Copyright and Legal Notice Important Note Table Of Contents An Overview of Radius on the IMG Topic Location Product Description RadiusRadius Server Debug Mode Radius Server RedundancySupported Packet Types Radius Server Failure Alarm Related TopicsAuthentication and Accounting Radius ScenariosAccounting only Authentication only Generic Radius Attributes Ietf Attribute # Values NameUTF-8 NAS-Request Ethernet Radius Call Flow SS7 to SIP Radius Call Flow SS7 to H.323 Release from SS7 Incomplete Call Behavior Configuring Radius Task SummaryConfiguring a Radius Accounting Server Configuring a Radius Client Configuring Free Radius using Gcems as a Radius Server Radius EOF Radius Client OverviewField Descriptions Radius Time Format Primary Authentication Radius ServerSecondary Authentication Radius Server Primary Accounting Radius ServerRadius Server Radius Server IdRadius Server Type Display Table Radius Servers