Configuration Guide
RADIUS Dynamic Authorization Extension Configuration
RADIUS Dynamic Authorization
Extension Configuration
Overview
The Dynamic Authorization Extensions to Remote Authentication Dial In User Service (RADIUS) protocol is defined in
RFC 3576 by IETF. This protocol defines a user offline management method, that is, the device communicates with a
RADIUS server through Disconnect-Messages (DMs) to log out authenticated users. This protocol enables devices from
different vendors to communicate with a RADIUS server and log out users of these devices.
The DM mechanism is as follows: A RADIUS sends user logout requests to the device. The device logs out the users that
match the session IDs in the request packets, and sends response packets that contain processing results to the server.
This mechanism allows the RADIUS server to manage user logout.
Working Principle
Figure 1 DM exchange for RADIUS dynamic authorization extension
The above figure shows the DM exchange between the RADIUS server and device. When the RADIUS server sends a
Disconnect-Request packet to the UDP port numbered 3799, the device processes the packet and sends a
Disconnect-Response packet containing the processing results to the server.
Protocol Specification
RADIUS is defined in RFC 3576.
Default Configuration
The default configuration about RADIUS dynamic authorization extension is shown in the table below.
Command
Default Value
DM:
radius dynamic-authorization-extension enable
Disabled
Setting the number of a UDP port for intercepting DMs:
radius dynamic-authorization-extension port
3799
Summary of Contents for RG-S2900G-E Series
Page 1: ...RG S2900G E Series Switch RGOS Configuration Guide Release 10 4 2b12 p1 ...
Page 91: ...Configuration Guide Configuring PoE Configuration ...
Page 133: ...Configuration Guide EEE Configuration ...
Page 319: ...Configuration Guide QinQ Configuration ...
Page 408: ......
Page 409: ...IP Routing Configuration 1 Static Route Configuration ...
Page 412: ......
Page 413: ...Multicast Configuration 1 IGMP Snooping Configuration 2 MLD Snooping Configuration ...
Page 757: ......
Page 758: ...ACL QoS Configuration 1 Access Control List Configuration 2 QoS Configuration ...
Page 801: ...Reliability Configuration 1 RLDP Configuration 2 TPP Configuration 3 SEM Configuration ...
Page 901: ...Configuration Guide ERSPAN Configuration ...
Page 902: ...Web based Configuration 1 Web based Configuration ...