<br><div class="gmail_quote"><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div><br></div><div><br></div><div><br></div><div><br></div><div><br></div><div><br></div><div>
<br></div><div>Hi Fajar,</div><div><br></div><div>First of all thanks for fast reply . I have used following config changes in users and clients.conf , do ppoe session requires any special changes. Please suggest me inline questions.</div>
<div><br></div><div><a href="http://www.iana.org/assignments/radius-types/radius-types.xml#radius-types-3" target="_blank">http://www.iana.org/assignments/radius-types/radius-types.xml#radius-types-3</a>
</div><div><br></div><div>Attribute value 61 ---> Nas-port-type</div><div><br></div><div><table style="border-collapse:collapse;font-size:13px;font-family:sans-serif;margin:1em;border:1px solid rgb(145,150,153)">
<tbody><tr><td style="border:1px solid rgb(145,150,153);padding-left:0.5em;padding-right:0.5em;vertical-align:top">32</td><td style="border:1px solid rgb(145,150,153);padding-left:0.5em;padding-right:0.5em;vertical-align:top">
PPPoEoE - PPP over Ethernet over Ethernet</td></tr></tbody></table><br></div><div>Should this be configured for users.conf or client.conf file ?</div><div><br></div><div><br></div><div><br></div><div><br></div><div><br></div>
<div><div>[root@PC4-Abhi raddb]# more users </div><div>cisco Auth-Type := Local, User-Password = "cisco"</div><div> cisco-avpair = "shell:Admin=Admin default-domain karthik karthik1"</div>
<div><br></div><div>DEFAULT Framed-Protocol == PPP</div><div> Framed-Protocol = PPP,</div><div> Framed-Compression = Van-Jacobson-TCP-IP</div><div><br></div><div> </div><div><br></div><div><br></div><div><br>
</div><div>[root@PC4-Abhi raddb]# more clients.conf ..</div><div><br></div><div><br></div><div>client <a href="http://78.0.0.0/16" target="_blank">78.0.0.0/16</a> {</div><div> secret = cisco</div><div> shortname = cisco</div>
<div> nastype = cisco >>>>>>>>>>>>>>>>>> should it be other ? do we have to configure NAS-ip and attribute value and type ?</div><div>
}</div><div><br></div><div><br></div></div><div><br></div><div><br></div><div>Thanks,</div><div>K. Karthik Kumar</div><div class="HOEnZb"><div class="h5"><div><br></div><div><br></div><div><br></div><div><br></div><div>
<br></div><div><br></div><div><br></div>
<div><br></div><br><br><div class="gmail_quote">On Wed, Aug 1, 2012 at 3:30 PM, <span dir="ltr"><<a href="mailto:freeradius-devel-request@lists.freeradius.org" target="_blank">freeradius-devel-request@lists.freeradius.org</a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">Send Freeradius-Devel mailing list submissions to<br>
<a href="mailto:freeradius-devel@lists.freeradius.org" target="_blank">freeradius-devel@lists.freeradius.org</a><br>
<br>
To subscribe or unsubscribe via the World Wide Web, visit<br>
<a href="http://lists.freeradius.org/mailman/listinfo/freeradius-devel" target="_blank">http://lists.freeradius.org/mailman/listinfo/freeradius-devel</a><br>
or, via email, send a message with subject or body 'help' to<br>
<a href="mailto:freeradius-devel-request@lists.freeradius.org" target="_blank">freeradius-devel-request@lists.freeradius.org</a><br>
<br>
You can reach the person managing the list at<br>
<a href="mailto:freeradius-devel-owner@lists.freeradius.org" target="_blank">freeradius-devel-owner@lists.freeradius.org</a><br>
<br>
When replying, please edit your Subject line so it is more specific<br>
than "Re: Contents of Freeradius-Devel digest..."<br>
<br>
<br>
Today's Topics:<br>
<br>
1. BNG(BRAS) + free radius (karthik kumar)<br>
2. Re: BNG(BRAS) + free radius (Fajar A. Nugraha)<br>
<br>
<br>
----------------------------------------------------------------------<br>
<br>
Message: 1<br>
Date: Wed, 1 Aug 2012 13:04:57 +0530<br>
From: karthik kumar <<a href="mailto:mail2karthek@gmail.com" target="_blank">mail2karthek@gmail.com</a>><br>
To: <a href="mailto:freeradius-devel@lists.freeradius.org" target="_blank">freeradius-devel@lists.freeradius.org</a><br>
Subject: BNG(BRAS) + free radius<br>
Message-ID:<br>
<<a href="mailto:CANHveityOa4QmOe2EX6K4CsX8zdATxPqEBUD-muaFbRb3PCLLw@mail.gmail.com" target="_blank">CANHveityOa4QmOe2EX6K4CsX8zdATxPqEBUD-muaFbRb3PCLLw@mail.gmail.com</a>><br>
Content-Type: text/plain; charset="utf-8"<br>
<br>
Hi Team,<br>
<br>
<br>
<br>
I have used free radius for authentication purpose but I never tried for<br>
BNG.<br>
<br>
<br>
<br>
<br>
<br>
MY requirement is as follows:<br>
<br>
<br>
<br>
<br>
<br>
<br>
<br>
PPOE client (router) -----------------------? PPOE<br>
server(router) -------------? Free<br>
radius<br>
<br>
<br>
<br>
<br>
<br>
<br>
When many internet users try to connect to isp router the free radius<br>
connected to the ppoe server should authenticate all the users in the<br>
client. What are the configuration changes need to be applied in the free<br>
radius.<br>
<br>
<br>
<br>
<br>
<br>
<br>
<br>
<br>
<br>
<a href="https://supportforums.cisco.com/docs/DOC-19726" target="_blank">https://supportforums.cisco.com/docs/DOC-19726</a> >>>>>>>>>>>>.<br>
Configuration explaination<br>
<br>
<br>
<br>
<br>
<br>
Thanks,<br>
<br>
K. Karthik Kumar<br>
-------------- next part --------------<br>
An HTML attachment was scrubbed...<br>
URL: <<a href="http://lists.freeradius.org/pipermail/freeradius-devel/attachments/20120801/4116f670/attachment-0001.html" target="_blank">http://lists.freeradius.org/pipermail/freeradius-devel/attachments/20120801/4116f670/attachment-0001.html</a>><br>
<br>
------------------------------<br>
<br>
Message: 2<br>
Date: Wed, 1 Aug 2012 14:48:34 +0700<br>
From: "Fajar A. Nugraha" <<a href="mailto:list@fajar.net" target="_blank">list@fajar.net</a>><br>
To: FreeRadius developers mailing list<br>
<<a href="mailto:freeradius-devel@lists.freeradius.org" target="_blank">freeradius-devel@lists.freeradius.org</a>><br>
Subject: Re: BNG(BRAS) + free radius<br>
Message-ID:<br>
<<a href="mailto:CAG1y0sd1LBhrJVReV2r8TEWyf0qC_QCEQjG5ctbeYMOpg82nCA@mail.gmail.com" target="_blank">CAG1y0sd1LBhrJVReV2r8TEWyf0qC_QCEQjG5ctbeYMOpg82nCA@mail.gmail.com</a>><br>
Content-Type: text/plain; charset=ISO-8859-1<br>
<br>
On Wed, Aug 1, 2012 at 2:34 PM, karthik kumar <<a href="mailto:mail2karthek@gmail.com" target="_blank">mail2karthek@gmail.com</a>> wrote:<br>
<br>
> I have used free radius for authentication purpose<br>
<br>
Authentication for what? wireless AP?<br>
<br>
> When many internet users try to connect to isp router the free radius<br>
> connected to the ppoe server should authenticate all the users in the<br>
> client.<br>
<br>
Meaning what, exactly?<br>
<br>
If you mean "check client's user/password, and if it's correct send<br>
access-accept", then that's what radius does, nothing special there.<br>
<br>
> What are the configuration changes need to be applied in the free<br>
> radius.<br>
<br>
Generally speaking, radius (ANY radius) doesn't really care what<br>
device acts as NAS. It can be wireless AP, pppoe/pptp server, BRAS,<br>
GGSN, whatever. If they can use the same authentication mechanism<br>
(e.g. PAP, MSCHAPv2, EAP-PEAP-MSCHAPv2) then the radius-side setup is<br>
the same no matter what the NAS is.<br>
<span><font color="#888888"><br>
--<br>
Fajar<br>
<br>
<br>
------------------------------<br>
<br>
-<br>
List info/subscribe/unsubscribe? See <a href="http://www.freeradius.org/list/devel.html" target="_blank">http://www.freeradius.org/list/devel.html</a><br>
<br>
<br>
End of Freeradius-Devel Digest, Vol 88, Issue 1<br>
***********************************************<br>
</font></span></blockquote></div><br>
</div></div></blockquote></div><br>