radius + ppoe user and clients.conf

karthik kumar mail2karthek at gmail.com
Fri Aug 3 14:05:15 CEST 2012


>
>
>
>
>
>
>
> Hi Fajar,
>
> First of all thanks for fast reply . I have used following config changes
> in users and clients.conf , do ppoe session requires any special changes.
> Please suggest me inline questions.
>
>
> http://www.iana.org/assignments/radius-types/radius-types.xml#radius-types-3
>
> Attribute value 61 ---> Nas-port-type
>
> 32 PPPoEoE - PPP over Ethernet over Ethernet
> Should this be configured for users.conf or client.conf file ?
>
>
>
>
>
> [root at PC4-Abhi raddb]# more users
> cisco      Auth-Type       := Local, User-Password = "cisco"
>                cisco-avpair    = "shell:Admin=Admin default-domain karthik
> karthik1"
>
> DEFAULT Framed-Protocol == PPP
>         Framed-Protocol = PPP,
>         Framed-Compression = Van-Jacobson-TCP-IP
>
>
>
>
>
> [root at PC4-Abhi raddb]# more clients.conf   ..
>
>
> client 78.0.0.0/16 {
>         secret          = cisco
>         shortname       = cisco
>         nastype         = cisco                   >>>>>>>>>>>>>>>>>>
> should it be other ? do we have to configure NAS-ip and attribute value and
> type ?
>  }
>
>
>
>
> Thanks,
> K. Karthik Kumar
>
>
>
>
>
>
>
>
>
>
> On Wed, Aug 1, 2012 at 3:30 PM, <
> freeradius-devel-request at lists.freeradius.org> wrote:
>
>> Send Freeradius-Devel mailing list submissions to
>>         freeradius-devel at lists.freeradius.org
>>
>> To subscribe or unsubscribe via the World Wide Web, visit
>>         http://lists.freeradius.org/mailman/listinfo/freeradius-devel
>> or, via email, send a message with subject or body 'help' to
>>         freeradius-devel-request at lists.freeradius.org
>>
>> You can reach the person managing the list at
>>         freeradius-devel-owner at lists.freeradius.org
>>
>> When replying, please edit your Subject line so it is more specific
>> than "Re: Contents of Freeradius-Devel digest..."
>>
>>
>> Today's Topics:
>>
>>    1. BNG(BRAS) + free radius (karthik kumar)
>>    2. Re: BNG(BRAS) + free radius (Fajar A. Nugraha)
>>
>>
>> ----------------------------------------------------------------------
>>
>> Message: 1
>> Date: Wed, 1 Aug 2012 13:04:57 +0530
>> From: karthik kumar <mail2karthek at gmail.com>
>> To: freeradius-devel at lists.freeradius.org
>> Subject: BNG(BRAS) + free radius
>> Message-ID:
>>         <
>> CANHveityOa4QmOe2EX6K4CsX8zdATxPqEBUD-muaFbRb3PCLLw at mail.gmail.com>
>> Content-Type: text/plain; charset="utf-8"
>>
>> Hi Team,
>>
>>
>>
>> I have used free radius for authentication purpose  but I never tried for
>> BNG.
>>
>>
>>
>>
>>
>> MY requirement is as follows:
>>
>>
>>
>>
>>
>>
>>
>> PPOE client (router)       -----------------------?      PPOE
>> server(router)    -------------? Free
>> radius
>>
>>
>>
>>
>>
>>
>> When many internet users try to connect to isp router the free radius
>> connected to the ppoe server should authenticate all the users in the
>> client.  What are the configuration changes need to be applied in the free
>> radius.
>>
>>
>>
>>
>>
>>
>>
>>
>>
>> https://supportforums.cisco.com/docs/DOC-19726   >>>>>>>>>>>>.
>> Configuration explaination
>>
>>
>>
>>
>>
>> Thanks,
>>
>> K. Karthik Kumar
>> -------------- next part --------------
>> An HTML attachment was scrubbed...
>> URL: <
>> http://lists.freeradius.org/pipermail/freeradius-devel/attachments/20120801/4116f670/attachment-0001.html
>> >
>>
>> ------------------------------
>>
>> Message: 2
>> Date: Wed, 1 Aug 2012 14:48:34 +0700
>> From: "Fajar A. Nugraha" <list at fajar.net>
>> To: FreeRadius developers mailing list
>>         <freeradius-devel at lists.freeradius.org>
>> Subject: Re: BNG(BRAS) + free radius
>> Message-ID:
>>         <
>> CAG1y0sd1LBhrJVReV2r8TEWyf0qC_QCEQjG5ctbeYMOpg82nCA at mail.gmail.com>
>> Content-Type: text/plain; charset=ISO-8859-1
>>
>> On Wed, Aug 1, 2012 at 2:34 PM, karthik kumar <mail2karthek at gmail.com>
>> wrote:
>>
>> > I have used free radius for authentication purpose
>>
>> Authentication for what? wireless AP?
>>
>> > When many internet users try to connect to isp router the free radius
>> > connected to the ppoe server should authenticate all the users in the
>> > client.
>>
>> Meaning what, exactly?
>>
>> If you mean "check client's user/password, and if it's correct send
>> access-accept", then that's what radius does, nothing special there.
>>
>> >  What are the configuration changes need to be applied in the free
>> > radius.
>>
>> Generally speaking, radius (ANY radius) doesn't really care what
>> device acts as NAS. It can be wireless AP, pppoe/pptp server, BRAS,
>> GGSN, whatever. If they can use the same authentication mechanism
>> (e.g. PAP, MSCHAPv2, EAP-PEAP-MSCHAPv2) then the radius-side setup is
>> the same no matter what the NAS is.
>>
>> --
>> Fajar
>>
>>
>> ------------------------------
>>
>> -
>> List info/subscribe/unsubscribe? See
>> http://www.freeradius.org/list/devel.html
>>
>>
>> End of Freeradius-Devel Digest, Vol 88, Issue 1
>> ***********************************************
>>
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-devel/attachments/20120803/156b9ac9/attachment.html>


More information about the Freeradius-Devel mailing list