<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Accounting Stop Packets Dropping in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/accounting-stop-packets-dropping/m-p/122367#M436717</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Need to know that the NAR is "only" dropping the sccouting stop packets? &lt;/P&gt;&lt;P&gt;does that mean that "start" packets are generated and sent to radius server ok? Pl. explain more about that dropping..does that mean that nas is not generating it OR the stop packets are not making to the radius server and lost in the transit.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Issue "debug aaa accounting" and "debug radius" to see NAS is generating the start and stop packets or not. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 03 May 2003 22:03:10 GMT</pubDate>
    <dc:creator>tepatel</dc:creator>
    <dc:date>2003-05-03T22:03:10Z</dc:date>
    <item>
      <title>Accounting Stop Packets Dropping</title>
      <link>https://community.cisco.com/t5/network-access-control/accounting-stop-packets-dropping/m-p/122366#M436716</link>
      <description>&lt;P&gt;I am using AS5300 and my NAS is dropping stop packets.Radius server is located at remote location connected through radio link.Please help for solving this problem.&lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;aaa group server radius rkt&lt;/P&gt;&lt;P&gt; server 1.2.3.4 auth-port 1645 acct-port 1646&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa authentication login default local group radius&lt;/P&gt;&lt;P&gt;aaa authentication login CONSOLE local&lt;/P&gt;&lt;P&gt;aaa authentication ppp default if-needed group radius local&lt;/P&gt;&lt;P&gt;aaa authentication ppp Dialin-Users group radius&lt;/P&gt;&lt;P&gt;aaa authorization network default group radius&lt;/P&gt;&lt;P&gt;aaa accounting network default start-stop group radius&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 14:17:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/accounting-stop-packets-dropping/m-p/122366#M436716</guid>
      <dc:creator>shahnawazmir</dc:creator>
      <dc:date>2019-03-10T14:17:13Z</dc:date>
    </item>
    <item>
      <title>Re: Accounting Stop Packets Dropping</title>
      <link>https://community.cisco.com/t5/network-access-control/accounting-stop-packets-dropping/m-p/122367#M436717</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Need to know that the NAR is "only" dropping the sccouting stop packets? &lt;/P&gt;&lt;P&gt;does that mean that "start" packets are generated and sent to radius server ok? Pl. explain more about that dropping..does that mean that nas is not generating it OR the stop packets are not making to the radius server and lost in the transit.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Issue "debug aaa accounting" and "debug radius" to see NAS is generating the start and stop packets or not. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 03 May 2003 22:03:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/accounting-stop-packets-dropping/m-p/122367#M436717</guid>
      <dc:creator>tepatel</dc:creator>
      <dc:date>2003-05-03T22:03:10Z</dc:date>
    </item>
    <item>
      <title>Re: Accounting Stop Packets Dropping</title>
      <link>https://community.cisco.com/t5/network-access-control/accounting-stop-packets-dropping/m-p/122368#M436718</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thankx for your response.What is actually happening is users come and they are authenticated and when any one of users is dropped or disconnects its info is not updated on RADIUS and he remains han ged there and no one else is allowed to authenticate. For this we do remove hanged user  from radius and remove users from NAS too. Plz help.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 May 2003 09:00:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/accounting-stop-packets-dropping/m-p/122368#M436718</guid>
      <dc:creator>shahnawazmir</dc:creator>
      <dc:date>2003-05-04T09:00:44Z</dc:date>
    </item>
    <item>
      <title>Re: Accounting Stop Packets Dropping</title>
      <link>https://community.cisco.com/t5/network-access-control/accounting-stop-packets-dropping/m-p/122369#M436719</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;In that case, do a "debug radius" and "debug aaa accounting" after the user disconnects and see if the radius stop packet is generated or not and if it being received by radius server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You should be able to see Acct-request and Acct-response.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;RADIUS(00000302): Send Accounting-Request to 171.69.89.25:1646 id 21645/1, len 92&lt;/P&gt;&lt;P&gt;RADIUS:  authenticator 94 99 9E 19 B9 DD AF F7 - 8E B1 01 A6 41 76 CA 14&lt;/P&gt;&lt;P&gt;RADIUS:  Acct-Session-Id     [44]  10  "00000302"&lt;/P&gt;&lt;P&gt;RADIUS:  Acct-Authentic      [45]  6   Local                     [2]&lt;/P&gt;&lt;P&gt;RADIUS:  User-Name           [1]   7   "cisco"&lt;/P&gt;&lt;P&gt;RADIUS:  Acct-Status-Type    [40]  6   Start                     [1]&lt;/P&gt;&lt;P&gt;RADIUS:  NAS-Port            [5]   6   66&lt;/P&gt;&lt;P&gt;RADIUS:  NAS-Port-Type       [61]  6   Virtual                   [5]&lt;/P&gt;&lt;P&gt;RADIUS:  Calling-Station-Id  [31]  13  "10.21.83.50"&lt;/P&gt;&lt;P&gt;RADIUS:  Service-Type        [6]   6   NAS Prompt                [7]&lt;/P&gt;&lt;P&gt;RADIUS:  NAS-IP-Address      [4]   6   172.16.171.28&lt;/P&gt;&lt;P&gt;RADIUS:  Acct-Delay-Time     [41]  6   0&lt;/P&gt;&lt;P&gt;RADIUS: Received from id 21645/1 171.69.89.25:1646, Accounting-response, len 20&lt;/P&gt;&lt;P&gt;RADIUS:  authenticator 67 3D 56 97 9B FB 03 7A - 94 74 51 32 FA 27 53 C8&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 06 May 2003 05:24:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/accounting-stop-packets-dropping/m-p/122369#M436719</guid>
      <dc:creator>sghosh</dc:creator>
      <dc:date>2003-05-06T05:24:19Z</dc:date>
    </item>
  </channel>
</rss>

