Disconnect user session on data counter

Anirudh Malhotra amalhotra.sp-dl at nkn.in
Sat Dec 5 00:13:42 CET 2015


Yes matthew the rfc does say to use port 3799 and i did spent lot of time disconnecting on 3799 using radclient, unsuccessfully. Then i scanned that port and found that wlc wasnt even listening on it. Only then i came to know that wlc does run rfc3576 but works on port 1700

http://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/115732-central-web-auth-00.html

Anyways my problem is with ciscoavpairs now any idea about the syntax of redirect url and redirect acl?

BR,
Anirudh Malhotra
NKN

Sent from a handheld device, Sorry for typos.

> On 04-Dec-2015, at 22:40, Matthew Newton <mcn4 at leicester.ac.uk> wrote:
> 
>> On Fri, Dec 04, 2015 at 08:51:11PM +0530, Anirudh Malhotra wrote:
>> http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_aaa/configuration/15-sy/sec-usr-aaa-15-sy-book/sec-rad-coa.html
>> 
>> Also i read your blog, just to correct one small thing cisco wlc
>> listens on 1700 for coa rather than 3799.
> 
> Not according to RFC3576 and what works here (WLC versions 7.x and
> 8.x).
> 
> The document you refer to above gives a default of 1700, but that
> is for IOS not AireOS, and also pretty much states that it should
> be changed to 3799.
> 
> Matthew
> 
> 
> -- 
> Matthew Newton, Ph.D. <mcn4 at le.ac.uk>
> 
> Systems Specialist, Infrastructure Services,
> I.T. Services, University of Leicester, Leicester LE1 7RH, United Kingdom
> 
> For IT help contact helpdesk extn. 2253, <ithelp at le.ac.uk>
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


More information about the Freeradius-Users mailing list