WG: [suse-security] Radius and dynamic IP address allocation
<Hi, <we are using the radius daemon (cistron "radiusd") for authentication of <dial-in clients accessing through a cisco access server. <At the moment we use static IP address assignment. < <Does anybody know whether the radius server permits IP address pool <configuration? <The dial-in clients shall get a dynamic assigned IP address from a pool. ooh its hell i know ..... i use this radius server http://www.freeradius.org/ its well documented and runns with moust routers and its a livingston 2.0 implementation ! (read the doc at livingston!) i made this with a bintec xm2 dialinrouter you must import the dictionary in to radius read the docs from the router dont forget radius is just authentification ! this is a sample config with dymic ip adresses for bintec with the right dictionary i think somwhere in the cisco doc you find it ..... # users file DEFAULT Auth-Type = System, Group = "interne" Framed-Protocol = PPP, Framed-MTU = 1500, Framed-IP-Netmask = 255.255.255.255, Service-Type = Framed, Port-Limit = 2, BinTec-biboPPPTable = "IpPoolId=3", BinTec-biboPPPTable = "IpAddress=dynamic_server", BinTec-biboPPPTable = "DNSNegotiation=dynamic_server", BinTec-ipExtIfTable = "Accounting=on", BinTec-biboPPPTable = "ShortHold=0", BinTec-ipExtIfTable = "ProxyArp=off", BinTec-biboPPPTable = "VJHeaderComp=enabled", Idle-Timeout = 3600, hope it helps.... ,,, /'^'\ ( o o ) oOOO--(_)--OOOo---------------------- Mit Freundlichen Grüssen/Best Regards proTask Consulting /"\ Battisti Markus \ / ASCII Ribbon Campaign Marktplatz 7 X Against HTML Mail A-6850 Dornbirn / \ http://www.protask.at mailto:markus.battisti@protask.cc PGP key available on request This message was sent using 100% recyclable electrons
participants (1)
-
Battisti Markus