Appendix B: Supported RADIUS Attributes 601

 

 

 

 

Table 39: 801.1X Attributes (continued)

 

 

 

 

 

 

 

 

 

 

 

 

 

Rcv in

Sent in

Sent in

 

 

 

Attribute

Type

Access

Access

Acct

Description and Values

 

 

Resp?

Reqst?

Reqst?

 

 

 

 

 

 

 

 

 

 

Reply-

18

Yes

No

No

String. Text that can be displayed to the

Message

 

 

 

 

user. Multiple Reply-Messages can be

 

 

 

 

 

included. If any are displayed, they must

 

 

 

 

 

appear in the order in which they appear

 

 

 

 

 

in the packet.

 

 

 

 

 

 

 

State

24

Yes

Yes

No

Can be sent by a RADIUS server in an

 

 

 

 

 

Access-Challenge message to the WSS

 

 

 

 

 

switch. If the WSS receives an

 

 

 

 

 

Access-Challenge with this attribute, it

 

 

 

 

 

returns the same State value in an

 

 

 

 

 

Access-Request response to the RADIUS

 

 

 

 

 

server, when a response is required. (For

 

 

 

 

 

details, see RFC 2865.)

 

 

 

 

 

 

 

Class

25

Yes

No

Yes

If received, this information must be sent

 

 

 

 

 

on, without interpretation, in all

 

 

 

 

 

subsequent packets sent to the RADIUS

 

 

 

 

 

server for that client session.

 

 

 

 

 

 

 

Vendor-

26

Yes

No

Yes

String. Allows WSS Software to support

Specific

 

 

 

 

Nortel VSAs. (See Table 40 on

 

 

 

 

 

page 604.)

 

 

 

 

 

 

 

Session-

27

Yes

No

Optional

Maximum number of seconds of service

Timeout

 

 

 

 

allowed the user before reauthentication

 

 

 

 

 

of the session.

 

 

 

 

 

 

 

Called-Station-

30

No

Yes

Yes

For IEEE 802.1X authenticators, stores

Id

 

 

 

 

the AP access point MAC address in

 

 

 

 

 

uppercase ASCII format, with octet

 

 

 

 

 

values separated by hyphens (for

 

 

 

 

 

example, 00-10-A4-23-19-C0).

 

 

 

 

 

 

 

Calling-Station-Id

31

No

Yes

Yes

For IEEE 802.1X authenticators, stores

 

 

 

 

 

the supplicant MAC address in uppercase

 

 

 

 

 

ASCII format, with octet values

 

 

 

 

 

separated by hyphens (for example,

 

 

 

 

 

00-10-A4-23-19-C0).

 

 

 

 

 

 

 

NAS-Identifier

32

No

Yes

No

Name of the RADIUS client originating

 

 

 

 

 

an Access-Request. The value in the

 

 

 

 

 

current release is Nortel and cannot be

 

 

 

 

 

changed.

 

 

 

 

 

 

 

Acct-Status-

40

No

No

Yes

Valid values:

Type

 

 

 

 

Acct-Start

 

 

 

 

 

Acct-Interim-Update

 

 

 

 

 

Acct-Stop

 

 

 

 

 

 

 

Acct-Delay-

41

No

No

Yes

Time in seconds for which the client has

Time

 

 

 

 

been trying to send the record.

 

 

 

 

 

 

 

 

Nortel WLAN Security Switch 2300 Series Configuration Guide

Page 601
Image 601
Nortel Networks 2300 manual 801.1X Attributes