cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
298
Views
0
Helpful
2
Replies

as5300 and radius

jfeddaoui
Level 1
Level 1

I have 2 nas (as5300) and a radius server for dialup users authentication.in nas, a loopback interface is configured with an ip address aaa.aaa.aaa.125 in nas1 and aaa.aaa.aaa.189 in the other.the problem is that the nas indentifier is aaa.aaa.aaa.125 for the 2 nas .my question is why,in radius,nas identifier is not ip address of Fast ethernet of each nas? and is it necessary to put a loopback interface in configuration?

2 Replies 2

jduffek
Level 1
Level 1

Isn't there a "ip radius source-interface X" command?

Josh

tepatel
Cisco Employee
Cisco Employee

You don't need to have loopback interface configured on nas just to identify NAS in radius..In general, the nas ip address which should be configured in radius is the "ip address of the interface thru which nas can reach radius"..

BUT some admin prefer to have packet for radius from nas with a source ip address of "loopback" using ip radius source-interface x.x.x.x as loopback is virtual interface which is always "up and up"..In that case we need to identify nas as the loopback ip address in radius..Tejal

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: