
Appendix A: | June 30, 2006 |
Hierarchical Attribute Mode
Most of the EDS attributes are operated in hierarchy mode. In this mode, each session includes per each attribute 3
The user space level defines the session's “basic” configuration; whereas the service space level is “layered” above it upon a successful dynamic service change. In each level space, the system keeps a set of relevant configurations for that level. The “lifetime” of operation in a service level space is from a successful authentication of that service until a successful authentication of a new service. The “lifetime” of operation in a user level space is the entire period in which the user is authenticated for the session. The effective value of a hierarchy attribute is the most updated value in the highest level space (the highest level for which there is a value defined for the attribute).
USER GROUP
user:accounting sub-attribute
The user:accounting
•disable – some operations like symmetric multilink, VPN, or unbilled services do not need the accounting information sent to the RADIUS. This accounting operation mode disables the sending of the accounting information.
The user:accounting
Accounting information is sent as followed:
Authentication Response Type | Accounting Behavior |
|
|
Session Authentication | Accounting Start and Stop are disabled |
Access Accept message includes the |
|
user:accounting=disable |
|
|
|
Service Authentication | Accounting On and Off are disabled |
Access Accept message does not include the |
|
user:accounting |
|