796 Appendix C:Supported RADIUS attributes
NN47250-500 (Version 03.01)

Table 49: 802.1X attributes

Attribute Type
Rcv in
Access
Resp?
Sent in
Access
Reqst?
Sent in
Acct
Reqst?
Description and Values
User-Name 1 No Yes Yes String. Name of the user to be
authenticated. Used only in Request
packets.
User-Password 2 No Yes No Password of the user to be authenticated,
unless a CHAP-Password is used.
CHAP-
Password 3 No Yes No Password of the user to be authenticated,
unless a User-Password is used.
NAS-IP-
Address 4 No Yes Yes IP address sent by the WSS.
Service-Type 5 No Yes Yes Access type, which can be one of the
following:
2—Framed; for network user access
6—Administrative; for
administrative access to the WSS,
with authorization to access the
enabled (configuration) mode. The
user must enter the enable command
and the correct enable password to
access the enabled mode.
7—NAS-Prompt; for administrative
access to the nonenabled mode only.
In this mode, the user can still enter
the enable command and the correct
enable password to access the
enabled mode.
For administrative sessions, the WSS
always sends 6 (Administrative).
The RADIUS server can reply with one
of the values listed above.
If the service-type is not set on the
RADIUS server, administrative users
receive NAS-Prompt access, and network
users receive Framed access.

Note: WSS Software will quietly

accept Callback Framed but you

cannot select this access type in

WSS Software.

Filter-Id 11 Yes No Optional Name of an access control list (ACL) to
filter outbound or inbound traffic. Use the
form ACL name.in and ACL name.out.
(For details, see “Configuring and
managing security ACLs” on page 481.)