401
DWS-1008 User’s Manual
D-Link Systems, Inc.
Appendix B - Supported RADIUS Attribites
Service-
Type
5
No
Yes
Yes
Access type, which can be one of the
following:
• 2 - Framed; for network user access
• 6 - Administrative; for administrative
access to the switch, with
authorization to access the enabled
(configuration) mode. The user must
enter the
enable
command and the
correct enable password to access
the enabled mode.
• 7 - NAS-Prompt; for administrative
access to the nonenabled mode only.
In this mode, the user can still enter
the
enable
command and the correct
enable password to access the
enabled mode.
For administrative sessions, the switch
always sends 6 (Administrative).
The RADIUS server can reply with one
of the values listed above.
If the service-type is not set on the
RADIUS server, administrative users
receive NAS-Prompt access, and
network users receive Framed access.
Filter-Id
11
Yes
No
Name of an access control list (ACL) to
filter outbound or inbound traffic. Use the
form
ACL name
.
in
and
ACL name
.out
.
Reply-
Message
18
Yes
No
No
String. Text that can be displayed to the
user. Multiple Reply-Messages can be
included. If any are displayed, they must
appear in the order in which they appear
in the packet.
State
24
Yes
Yes
No
Can be sent by a RADIUS server in
an Access-Challenge message to the
switch. If the switch receives an Access-
Challenge with this attribute, it returns
the same State value in an Access-
Request response to the RADIUS
server, when a response is required.
(For details, see RFC 2865.)