Attributes supported in dynamic authorization

Following are the RADIUS attributes supported in dynamic authorization:

| Attribute name        | Tx | Rx | Notes        |
|-----------------------|----|----|--------------|
| User-name             | N  | Y  | RFC2865      |
| Calling-station-id    | N  | Y  | RFC2865/3580 |
| Called-station-id     | N  | Y  | RFC2865/3580 |
| NAS-port-id           | N  | Y  | RFC2869      |
| NAS-port              | N  | Y  | RFC2865      |
| NAS-IP-Address        | N  | Y  | RFC2865      |
| NAS-Identifier        | N  | Y  | RFC2865      |
| NAS-Ipv6-Address      | N  | Y  | RFC3162      |
| Error-cause           | Y  | N  | RFC5176      |
| Acct-Terminate-Cause  | Y  | Y  | RFC2866      |
| Acct-Session-Id       | N  | Y  | RFC2866      |
| Message-Authenticator | N  | Y  | RFC2869      |
| Event-Timestamp       | N  | Y  | RFC2869      |
NOTE:
  • One or more of the following attributes, NAS-IP-Address, NAS-Identifier, NAS-IPv6-Address, is mandatory for processing Change of Authorization (CoA) requests from dynamic authorization clients.

  • Either Acct-Session-Id attribute, or one or both of NAS-port and NAS-port-id attributes and the Calling-station-id attribute is mandatory to identify the user session for processing CoA requests from dynamic authorization clients.

  • The User-name attribute is mandatory for processing all CoA requests.

  • The Acct-Terminate-Cause attribute is used in the CoA disconnect request and response messages.

  • All session authorization attributes (both VSA and standard) are supported in the CoA message only, including Aruba-Port-Bounce.