Cisco Systems Servers Benutzerhandbuch

Seite von 654
Appendix D      RADIUS Attributes
IETF Dictionary of RADIUS AV Pairs
D-12
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
78-13751-01, Version 3.0
IETF Dictionary of RADIUS AV Pairs
 lists the supported RADIUS (IETF) attributes. If the attribute has a 
security server-specific format, the format is specified. Accounting attributes are 
listed in 
.
Table D-7
RADIUS (IETF) Attributes
No.
 Attribute
Description
1
User-Name
Name of the user being authenticated.
2
User-Password
User’s password or input following an access challenge. Passwords 
longer than 16 characters are encrypted using IETF Draft #2 or later 
specifications.
3
CHAP-Password
PPP (Point-to-Point Protocol) CHAP (Challenge Handshake 
Authentication Protocol) response to an Access-Challenge.
4
NAS-IP Address
IP address of the AAA client that is requesting authentication.
5
NAS-Port
Physical port number of the AAA client that is authenticating the user. 
The AAA client port value (32 bits) consists of one or two 16-bit 
values, depending on the setting of the RADIUS server extended 
portnames command. Each 16-bit number is a 5-digit decimal integer 
interpreted as follows:
For asynchronous terminal lines, async network interfaces, and virtual 
async interfaces, the value is  00ttt, where  ttt is the line number or 
async interface unit number.
For ordinary synchronous network interfaces, the value is  10xxx.
For channels on a primary-rate ISDN (Integrated Services Digital 
Network) interface, the value is  2ppcc.
For channels on a basic rate ISDN interface, the value is  3bb0c.
For other types of interfaces, the value is  6nnss.