Hello !
Could you please help ?
we have cisco3640 as nas, cs acs 2.6 as radius-server.
Now we would need to
forward authentication request to another radius-server ( username is unknown to the acs)
Username is provided with a certain prefix and according to that prefix, request is forwarded to another radius-server.
That another server should give back accept/deny and class attribute 25.
Here comes the question
Can acs 2.6 take the class attribute and use it as username's group-information ?.
for example class attribute 25 named test is forwarded to acs and acs has a group named test. According to group test ACS gives ip/dns information back to to cisco3640 and ras-client.
Or could you please tell me how we could forward username authentication and then bind username that is not known to acs to a certain acs group ?
The ip/dns information must be provided by acs.
Any help will be appreciated !
TIA
Best Regards,
Susanna