RADIUS IETF Attributes Supported by the AAA Service Framework
Table 7 describes the RADIUS IETF attributes that the Junos AAA Service Framework supports.
![]() | Note: A “Yes” entry in the Dynamic CoA Support column indicates that the attribute can be dynamically configured by Access-Accept messages and dynamically modified by CoA-Request messages. |
Table 7: Supported RADIUS IETF Attributes
Attribute Number | Attribute Name | Description | Dynamic CoA |
|---|---|---|---|
1 | User-Name |
| No |
2 | User-Password |
| No |
4 | NAS-IP-Address | IP address of the network access server (NAS) that is requesting authentication of the user | No |
5 | NAS-Port | Physical port number of the NAS that is authenticating the user | No |
6 | Service-Type | Type of service the user has requested or the type of service to be provided | No |
8 | Framed-IP-Address |
| No |
9 | Framed-IP-Netmask |
| No |
11 | Filter-ID |
| Yes |
18 | Reply-Message |
| No |
22 | Framed-Route | String that provides routing information to be configured for the user on the NAS; in the format: <addr>[/<maskLen>] [<nexthop> [<cost>]] [tag <tagValue>] [distance <distValue>] | Yes |
25 | Class | An arbitrary value that the NAS includes in all accounting packets for the user if supplied by the RADIUS server | No |
27 | Session-Timeout | Maximum number of consecutive seconds of service to be provided to the user before termination of the session | No |
31 | Calling-Station-ID | Indicates that the NAS can send the phone number from which the call originated | No |
32 | NAS-Identifier | Identifies the NAS originating the request | No |
40 | Acct-Status-Type | Indicates whether this Accounting-Request marks the beginning of the user service (Start), the end (Stop), or the interim (Interim-Update) | No |
41 | Acct-Delay-Time | Indicates how many seconds the client has been trying to send a particular record | No |
42 | Acct-Input-Octets | Indicates how many octets have been received from the port during the time this service has been provided | No |
43 | Acct-Output-Octets | Indicates how many octets have been sent to the port during the time this service has been provided | No |
44 | Acct-Session-ID | Unique accounting identifier that makes it easy to match start and stop records in a log file. The identifier can be in one of the following formats:
| No |
45 | Acct-Authentic | Indicates how the user was authenticated: whether by RADIUS, the NAS itself, or another remote authentication protocol | No |
46 | Acct-Session-Time | Indicates how long in seconds that the user has received service | No |
47 | Acct-Input-Packets | Indicates how many packets have been received from the port during the time this service has been provided to a framed user | No |
48 | Acct-Output-Packets | Indicates how many packets have been sent to the port in the course of delivering this service to a framed user | No |
49 | Acct-Terminate-Cause | Contains the reason the service (a PPP session) was terminated. The service can be terminated for the following reasons:
| No |
52 | Acct-Input-Gigawords | Indicates how many times the Acct-Input-Octets counter has wrapped around 232 during the time this service has been provided. Can be present in Accounting-Request records only where the Acct-Status-Type is set to Stop or Interim-Update | No |
53 | Acct-Output-Gigawords | Indicates how many times the Acct-Output-Octets counter has wrapped around 232 in the course of delivering this service. Can be present in Accounting-Request records only where the Acct-Status-Type is set to Stop or Interim-Update | No |
55 | Event-Timestamp | Records the time that this event occurred on the NAS, in seconds, since January 1, 1970 00:00 UTC | No |
61 | NAS-Port-Type | Indicates the type of physical port the NAS is using to authenticate the user | No |
85 | Acct-Interim-Interval | Number of seconds between each interim accounting update for this session The router uses the following guidelines for interim accounting:
| No |
87 | NAS-Port-ID | Text string that identifies the physical interface of the NAS that is authenticating the user | No |
88 | Framed-Pool | Name of an assigned address pool to use to assign an address for the user | No |
95 | NAS-IPv6-Address | Address of the NAS that is requesting authentication of the user | No |
96 | Framed-Interface-ID | Interface identifier that is configured for the user | No |
97 | Framed-IPv6-Prefix | IPv6 prefix that is configured for the user | No |
98 | Login-IPv6-Host | System the user connects to when the Login-Service attribute is included | No |
99 | Framed-IPv6-Route | IPv6 routing information that is configured for the user. | Yes |
100 | Framed-IPv6-Pool | Name of assigned pool used to assign an IPv6 prefix for the user | No |
123 | Delegated-IPv6-Prefix | Prefix that is delegated to the user | No |
Hide Navigation Pane
Show Navigation Pane
Download
SHA1
