11-25-2021 11:21 PM
I connected IPOE subscriber through separate sub-interface on ASR9001 OS V 6.4.2 using DHCP initiate . Now subscribers are being assigned IPs through DHCP but what i want is to assign IP to the customer on the bases their NAS port id which i have customized as pasted below.
Nov 26 11:49:22.373 GMT: radiusd[1153]: RADIUS: NAS-Port-Id [87] 22 Bundle-Ether142.4000
Radius will forward this attribute to data base where IPs wil be binded against "Bundle-Ether142.4000" value. Actually i want to how i could achieve this using COA or other AAA options running is pasted below. Please guide.
@xthuijs you are specially requested to assist.
aaa group server radius BNG
server 172.16.149.102 auth-port 1812 acct-port 1813
source-interface Loopback70
!
aaa authentication ppp default group BNG
address-family ipv4 unicast
pool vrf default ipv4 IPSUB
network 172.16.21.104/29
dhcp ipv4
profile IPSUB server
pool IPSUB
dns-server 101.50.101.50
default-router 172.16.21.110
!
interface Bundle-Ether142.4000 server profile IPSUB
interface Bundle-Ether142.4020 server profile IPSUB
!
interface Bundle-Ether142.4000
ipv4 point-to-point
ipv4 unnumbered Loopback70
ipv4 verify unicast source reachable-via rx
service-policy type control subscriber POL_IPSUB
encapsulation dot1q 4000
ipsubscriber ipv4 l2-connected
initiator dhcp
!
ipsubscriber ipv6 l2-connected
initiator dhcp
!
!
interface Bundle-Ether142.4020
ipv4 point-to-point
ipv4 unnumbered Loopback70
ipv4 verify unicast source reachable-via rx
service-policy type control subscriber POL_IPSUB
encapsulation dot1q 4020
ipsubscriber ipv4 l2-connected
initiator dhcp
!
ipsubscriber ipv6 l2-connected
initiator dhcp
!
!
interface Loopback70
ipv4 address 172.16.21.110 255.255.255.255
!
aaa attribute format MY_AUTH
mac-address plus circuit-id plus remote-id separator #
!
aaa attribute format NAS-PORT-ID-FORMAT2
format-string length 253 "Bundle-Ether%s.%s" physical-port outer-vlan-id
!
aaa radius attribute nas-port format e SSAAPPPPQQQQQQQQQQVVVVVVVVVVUUUU type 40
aaa radius attribute nas-port-id format NAS-PORT-ID-FORMAT2
aaa accounting subscriber default group radius
aaa authorization subscriber default group radius
aaa authentication subscriber default group radius
!
class-map type control subscriber match-any CLASS_IPSUB
match protocol dhcpv4
end-class-map
!
!
policy-map type control subscriber POL_IPSUB
event session-start match-first
class type control subscriber CLASS_IPSUB do-until-failure
1 activate dynamic-template IPSUB
10 authorize aaa list default format MY_AUTH password test
!
!
end-policy-map
11-26-2021 04:55 AM
11-28-2021 09:38 PM
Thanks xander for your prompt response!
I am glad that you explained the logic for achieving this. Would you please share how i can configure a profile base. Any informational link or sample will be helpful
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide