Hi Arun,
It's been a while since I last touched SBR but for sure you may configure
SBR to store accounting records in an external database like SQL.
After that making a nice GUI that would allow you to filter or aggregate
the data shouldn't be a problem.
Regards,
Wojciech
2015-08-25 11:51 GMT+02
Hi All,
I am evaluating Juniper SBR as AAA server. Most of the devices in our
network are Cisco. Completed Authentication and Authorization part of SBR
but stuck in Accounting part.
The requirement is to have GUI in SBR to view 'accounting' logs per device,
but in SBR all the accounting logs are
Wed, 29 Oct 2014 13:59:16 -0600
> Subject: [j-nsp] Radius authentication
>
> I recently set up a very basic WLC and a few APs using the web interfaces.
> For my first SSID I enabled 802.1x PEAP/MSCHAPv2 authentication and pointed
> it to an existing RADIUS server but users cannot
I recently set up a very basic WLC and a few APs using the web interfaces. For
my first SSID I enabled 802.1x PEAP/MSCHAPv2 authentication and pointed it to
an existing RADIUS server but users cannot connect to the SSID. The RADIUS
server says authentication is succeeding but the WLC gives the f
Currently I’ve
the following problems using Juniper MAG 4610 + Radius-server license:
1) Psw not permitted to be changed via
cli (on EX, MX and SRX)
2) Session logout not registered
(session remain pending)
3) Not able to sync local DB between
two MAG reachable via routing (
PM
To: juniper-nsp@puck.nether.net
Subject: Re: [j-nsp] Radius - Static IP / ERX
We have a very similar setup (for some obvious reason) and it works just
fine. We use Framed-IP-Address. No other attributes are required.
What I suggest is that you try the "test aaa" command in the ERX and t
Chris Hellberg [mailto:ch...@chrishellberg.com]
Sent: Saturday, August 13, 2011 8:56 AM
To: Paul Stewart; juniper-nsp@puck.nether.net
Subject: Re: [j-nsp] Radius - Static IP / ERX
It might be because you don't have an ERX-Local-Interface VSA present. If
that doesn't work, double-check that it
ay, August 13, 2011 8:56 AM
To: Paul Stewart; juniper-nsp@puck.nether.net
Subject: Re: [j-nsp] Radius - Static IP / ERX
It might be because you don't have an ERX-Local-Interface VSA present. If
that doesn't work, double-check that it's in your profile. There're one or
two une
netmask shouldn't be needed.
Regards,
Chris
>
>From: Paul Stewart
>To: juniper-nsp@puck.nether.net
>Sent: Friday, 12 August 2011, 1:35
>Subject: Re: [j-nsp] Radius - Static IP / ERX
>
>Thanks.. yeah the MTU statement is legacy and i
Chris Adams writes:
> Once upon a time, Paul Stewart said:
>> Getting ready to cut an ERX into production shortly and the only thing not
>> working is static IP assignments via Radius. According to the docs, you can
>> use "Framed-IP-Address" the same as we do in Cisco land today.. but it
>> doe
igned but could be wrong...
Take care,
Paul
-Original Message-
From: juniper-nsp-boun...@puck.nether.net
[mailto:juniper-nsp-boun...@puck.nether.net] On Behalf Of Chris Adams
Sent: August-11-11 2:26 PM
To: juniper-nsp@puck.nether.net
Subject: Re: [j-nsp] Radius - Static IP / ERX
Once up
Once upon a time, Paul Stewart said:
> Getting ready to cut an ERX into production shortly and the only thing not
> working is static IP assignments via Radius. According to the docs, you can
> use "Framed-IP-Address" the same as we do in Cisco land today.. but it
> doesn't' work.
Your example e
Hey folks..
Getting ready to cut an ERX into production shortly and the only thing not
working is static IP assignments via Radius. According to the docs, you can
use "Framed-IP-Address" the same as we do in Cisco land today.. but it
doesn't' work.
Is this a Radius attribute issue or is it
Dear All,
we are planing to replace our cisco BRAS with Juniper BRAS E120,
The configuration on Cisco BRAS for radius attributes is
radius-server attribute nas-port format d
radius-server attribute 31 mac format unformatted
as per my understanding the configuration on juniper BRAS for achieving
Hi,
Can someone send me a sample config file with LNS and Radius
authentication for Jnpr e320?
I have configured LNS with radius authentication, but the Radius
access-request is not being sent from the LNS (I'm sniffing the wire).
I see that the LAC sends Proxy LCP to the LNS, so everything up to
t
Hey,
I'm attempting to dynamically tunnel switch some of our users.
The requirement is that the tunnel is initiated from a different virtual router
and it appears that the radius attribute that I'm using simply doesn't work.
t...@teksavvy.com Cleartext-Password := "test123"
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
On 30 Aug, 2010, at 1:27 AM, snort bsd wrote:
so I have an user named "admin" on juniper routers. then all of
other users who
registered in radius server must be mapped to this local user of
"admin"?
In short, if you do not map the user to any
Hi, all:
I am trying to understand the radius authentication process supported by
Juniper
routers. on JNCIS book:
[quote]A user supplies a name of Scott to the remote authentication server,
which accepts the request. However, Scott is not a current username in the
local
password database.
Hi everyone,
Does anyone knows if I can enable radius accounting per host on a Juniper
platform (E320 or MX).
I want to send interim-updates for each host to the accounting server. But
if I have multiple hosts sharing the same qos template, then all the hosts
are sharing the counters for the queues
Hi - can someone point me to some more info, somewhere I can find more on
radius accounting for subscriber access.
I did enabled it on MX but I can't find any info one where sta stats are
stored and which statistics are accounted for? For example, I'd like to
collect number of packets for the subsc
Hi - does anyone know how to enable MX for Radius CoA? The manual says that
the lines in red are mandatory and that by default Junos listens on UDP
port 3799. This is on MX480.
ad...@ny-access001# show access
radius-server {
114.0.1.10 secret "$9$fzF/tu1SyKBIyK8LbwfTz6tO"; ## SECRET-DATA
}
pr
Hi - does anyone know what those tags below mean? They are used by
Subscriber Management in Junos to define variables that will receive its
values through Radius. But I've never heard of tags in Radius so I'm not
quite sure how to configure this on Radius.
dynamic-profiles access-profile {
varia
you can use "aaa accounting duplication" to replicate those informaion to
another radius in another VR
- Original Message -
From: "Flavio Schappo"
To:
Sent: Monday, December 15, 2008 10:21 PM
Subject: [j-nsp] Radius JUNOSe.
Hi All,
Anybody knows if it´s
Hi All,
Anybody knows if it´s possible to transmit *the same accounting packet* to 2
or more radius accounting servers in ERX 320 JUNOSe 8-2-4? (No using direct
or round-robin algorithm)
Thanks for attention.
Flavio
___
juniper-nsp mailing list junip
Hello,
i am using L2TP on a M7i but the M120 also can act als a LNS.
However this affects L2TP services. There is no IQ pic, this is using
the onboard GE. But this shouldnt matter as interim updates is a purely
software based feature. I still havent gotten this to work. The router
just sends no up
On Thursday 13 November 2008, Jonas Frey wrote:
> But under [access radius-server] i have no option to set any
> update-interval.
>
> Are radius accounting (interim)-updates not supported for L2TP (yet)?
Is it possible for M120 may be ? I am not assured, but:
http://www.juniper.net/techpubs/sof
Hello,
i am running 9.2R15 on a M7i acting as LNS.
I am trying to get accounting updates to work but apparently they are
never sent.
This is my config:
[EMAIL PROTECTED] show access
radius-server {
xx.xx.xx.xx {
port 1812;
accounting-port 1813;
secret "";
Hi,
>From the looks of it, it uses the JUNOSe RADIUS dictionary:
https://download.juniper.net/software/erx/9-2-0/unisphere9-2.dct
Kind regards,
Bas
[EMAIL PROTECTED] wrote on 01-10-2008 06:17:04:
> Does anyone have entries for Radius dictionary file for Juniper VSA,
> specifically ones on pa
Does anyone have entries for Radius dictionary file for Juniper VSA,
specifically ones on page 32 of Subscriber Access Conf guide, Junos 9.2.
I'm using FreeRadius.
Thanks,
Marlon
___
juniper-nsp mailing list juniper-nsp@puck.nether.net
https://puck.nether
Does anyone know why would Radius NAS on an MX router prepend \001\t and
\002\b to the values coming from a DHCP client while sending access request
message to the Radius server?
This is what MX is sending to the Radius server:
Attribute Value Pairs
AVP: l=23 t=User-Name(1): \001\tcirc
Hello regarding radius attributes which one is for policy-list and which one
for access-list when you want to download these to subscribers via radius?
Thank you
___
juniper-nsp mailing list juniper-nsp@puck.nether.net
https://puck.nether.net/
On Wed, 2007-12-05 at 15:17 +0200, M.Mihailidis wrote:
> the thing im looking for is interim (something) to keep track of subscriber
> packets or bandwidth any one have any clue??
> - Original Message -
> From: M.Mihailidis
> To: Juniper-Nsp
> Sent: Wednesday, December 05, 2007
the thing im looking for is interim (something) to keep track of subscriber
packets or bandwidth any one have any clue??
- Original Message -
From: M.Mihailidis
To: Juniper-Nsp
Sent: Wednesday, December 05, 2007 2:57 PM
Hello
i need help on monitoring packects on subscri
Hello
i need help on monitoring packects on subscribers on an e320 can anyone
tell me how ican accomplish this?is it via aaa accounting? and which is the
commands to use?Every documention i found was not very helpful
Cheers
___
juniper-nsp mail
Hello all
i want to monitor on a E 320 the packets or bandwidth from subscribers and
send it to radius. i think its something to do with radius interim or i
maybe wrong or radius accounting, anyway if anyone have any ideas it would
really help me.
> This factor is really dependent on the configuration of your
> accounting server, both software implementation and hardware.
> Can you provide some details on your HW/SW configuration?
This is what is in the ERX (it probably doesn't matter for this though)
0online SRP310-10G enabled ---
Hello Gabriel,
This factor is really dependent on the configuration of your
accounting server, both software implementation and hardware.
Can you provide some details on your HW/SW configuration?
Regards
Amos
On May 14, 2007, at 11:21 PM, Gabriel wrote:
>
> We have an ERX310 router with over
We have an ERX310 router with over 10,000 sessions of ADSL customers and
would like to enable Interim-Updates through radius to have it send
updates every x minute to update accountingmy concern is that this
may add a LOT of load on the radius accounting server. Does anyone know
what would be
38 matches
Mail list logo