cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1198
Views
0
Helpful
0
Replies

ISG: Session Termination by CoA and Wrong Acct-Terminate-Cause

Hello

Could anyone help with a problem. I am using CoA "subscriber:command=account-logoff" command for PPPoE and IPoE session termination. Sessions are terminated successfully, but Acct-Terminate-Cause field in Accounting-Request (Stop) contains the wrong value. Now it's "User Request (1)", but I think it should be "Admin-Reset (6)".

What am I doing wrong?

This is my ISG config for ASR1006 (some lines are ommited):

aaa new-model
...
aaa group server radius billing
 server-private 10.200.0.61 auth-port 1812 acct-port 1813 key secret
 ip vrf forwarding Mgmt-intf
 ip radius source-interface GigabitEthernet0
...
aaa authentication login default local
aaa authentication ppp default group billing
aaa authorization console
aaa authorization exec default local 
aaa authorization network default group billing 
aaa authorization subscriber-service default group billing 
aaa authorization subscriber-service local-services local 
aaa accounting update periodic 3
aaa accounting network default start-stop group billing
aaa accounting network billing-list start-stop group billing
...
aaa nas port extended
...
aaa server radius dynamic-author
 client 10.200.0.61 vrf Mgmt-intf server-key secret
 client 10.200.0.12 vrf Mgmt-intf server-key secret
...
aaa session-id common
...
bba-group pppoe pppoe-group
 virtual-template 1
...
interface Virtual-Template1
 vrf forwarding internet
 ...
 ppp authentication pap chap
 ppp ipcp dns 8.8.8.8
 ppp ipcp mask 255.255.255.255

This is config for PPPoE, but I expirence same problem with IPoE too.

Nett is my user's profile:

user1             Cleartext-Password := "1234"
                  Framed-Protocol     = PPP,
                  Session-Timeout     = 600,
                  Idle-Timeout        = 300,
                  Cisco-AVPair       += "ssg-account-info=Assg-internet-10m",
                  Cisco-AVPair       += "ssg-account-info=Assg-peering-100m"

and service's profile:

ssg-internet-10m  Cleartext-Password := "cisco"
                  Cisco-AVPair       += "ip:traffic-class=out access-group 15 priority 1000",
                  Cisco-AVPair       += "ip:traffic-class=in access-group 15 priority 1000",
                  Cisco-Service-Info += "QU;10000000;5000000;D;10000000;5000000"

ssg-peering-100m  Cleartext-Password := "cisco"
                  Cisco-AVPair       += "ip:traffic-class=out access-group 105 priority 100",
                  Cisco-AVPair       += "ip:traffic-class=in access-group 105 priority 100",
                  Cisco-Service-Info += "QU;30000000;1500000;D;30000000;1500000"

This is the "kill session" command:

User-Name = "user1",
Acct-Session-Id = "000000F9",
Cisco-AVPair = "subscriber:command=account-logoff"
0 Replies 0