Attributes supported in dynamic authorization
Following are the RADIUS attributes supported in dynamic authorization:
| Attribute name | Tx | Rx | Notes |
|-----------------------|----|----|--------------|
| User-name | N | Y | RFC2865 |
| Calling-station-id | N | Y | RFC2865/3580 |
| Called-station-id | N | Y | RFC2865/3580 |
| NAS-port-id | N | Y | RFC2869 |
| NAS-port | N | Y | RFC2865 |
| NAS-IP-Address | N | Y | RFC2865 |
| NAS-Identifier | N | Y | RFC2865 |
| NAS-Ipv6-Address | N | Y | RFC3162 |
| Error-cause | Y | N | RFC5176 |
| Acct-Terminate-Cause | Y | Y | RFC2866 |
| Acct-Session-Id | N | Y | RFC2866 |
| Message-Authenticator | N | Y | RFC2869 |
| Event-Timestamp | N | Y | RFC2869 |
One or more of the following attributes,
NAS-IP-Address
,NAS-Identifier
,NAS-IPv6-Address
, is mandatory for processing Change of Authorization (CoA) requests from dynamic authorization clients.Either
Acct-Session-Id
attribute, or one or both ofNAS-port
andNAS-port-id
attributes and theCalling-station-id
attribute is mandatory to identify the user session for processing CoA requests from dynamic authorization clients.The
User-name
attribute is mandatory for processing all CoA requests.The
Acct-Terminate-Cause
attribute is used in the CoA disconnect request and response messages.All session authorization attributes (both VSA and standard) are supported in the CoA message only, including
Aruba-Port-Bounce
.