VLAN assigment and Alcatel Omniswitch 7800

Oxiel Contreras oxielc at yahoo.it
Tue Feb 13 21:12:17 CET 2007


Hello Santa.

El Domingo, 11 de Febrero de 2007 22:57, Santa Yeh escribió:
> You can not use the standard attributes :
>
> Tunnel-Type:0 += VLAN
> Tunnel-Medium-Type:0 += IEEE-802
> Tunnel-Private-Group-Id:0 += "3"
>
> The VSA for Alcatel switches is Alcatel-Auth-Group, that is why you
> should check the user manual.

I've added the Alcatel-Auth-Group attribute to dictionary.alcatel like these:

ATTRIBUTE       Alcatel-Auth-Group                      134     integer

and modified users file like these:

Tunnel-Type += 13,
Tunnel-Medium-Type += 6,
Alcatel-Auth-Group += 3

now i see the Access-Accept part of the log which is sent it with the 
attribute, but nothing happens.

Sending Access-Accept of id 181 to 192.168.10.20 port 1074
        Tunnel-Type:0 += VLAN
        Tunnel-Medium-Type:0 += IEEE-802
        Alcatel-Auth-Group += 3
        MS-MPPE-Recv-Key = 
0xc90404d5af28944ae97417b2336cf56e204fe5afab5c7c7e7e50045ec24473b3
        MS-MPPE-Send-Key = 
0xc990b966cc4bed66c7be062e54795ddb253efe28c8426ecbb298d302c64b9359
        EAP-Message = 0x030d0004
        Message-Authenticator = 0x00000000000000000000000000000000
        User-Name = "MYDOMAIN\\jose"
Finished request 8

Could you please pass me the relevant parts of your switch setup ?

vlan port mobile
vlan authentication
aaa

Is it necessary to defina vlan rules on the switch in order to move the mobile 
port to the vlan designed with Alcatel-Auth-Group ?

Thanks and best regards

Oxiel
Chiacchiera con i tuoi amici in tempo reale! 
 http://it.yahoo.com/mail_it/foot/*http://it.messenger.yahoo.com 




More information about the Freeradius-Users mailing list