Cisco Cisco Packet Data Interworking Function (PDIF) Prospecto
AAA Server Group Configuration Mode Commands
▀ radius allow
▄ Cisco ASR 5x00 Command Line Interface Reference
182
radius allow
This command configures the system behavior for allowing subscriber sessions when RADIUS accounting and/or
authentication is unavailable.
authentication is unavailable.
Product
All products used in CDMA deployments
Privilege
Security Administrator, Administrator
Mode
Exec > Global Configuration > Context Configuration > AAA Server Group Configuration
configure > context context_name > aaa group group_name
Entering the above command sequence results in the following prompt:
[context_name]host_name(config-aaa-group)#
Syntax
[ no ] radius allow { authentication-down | accounting-down }
no
Specifies that the specified option is to be disabled.
authentication-down
Allows sessions while authentication is not available (down).
Default: Disabled
Default: Disabled
accounting-down
Allows sessions while accounting is unavailable (down).
Default: Enabled
Default: Enabled
Usage
Allow sessions during system troubles when the risk of IP address and/or subscriber spoofing is minimal. The
denial of sessions may cause dissatisfaction with subscribers at the cost/expense of verification and/or
accounting data.
denial of sessions may cause dissatisfaction with subscribers at the cost/expense of verification and/or
accounting data.
Important:
Please note that this command is applicable ONLY to CDMA products. To configure this
functionality in UMTS/LTE products (GGSN/P-GW/SAEGW), use the command
mediation-device delay-GTP-
response
in APN Configuration mode.
Example
The following command configures the RADIUS server to allow the sessions while accounting is
unavailable.
unavailable.
radius allow accounting-down