Re: Ascend -> Radius

Tim Patterson (tim@harborside.com)
Mon, 28 Jul 1997 15:12:42 -0700 (PDT)

I have verified that the secret in /etc/raddb/clients matches
the secret entered in ethernet-Mod config - Accounting -Acct Key

When I re enter the Max *did not* asked to save. Tested changing
the key and Max *did* ask to save.

Any other thoughts?

Tim Patterson
@harborside

On Mon, 28 Jul 1997, Kevin Smith wrote:

> At 04:37 PM 7/27/97 -0700, Benjamin D. Hutchins wrote:
> >> My Ascends - > Livingston Radius detail files
> >> indicate Request-Authenticator = Unverified
> >> This line does not show up on PM generated detail files.
> >>
> >> Issues? or not to worry.
> >
> >Looks like Ascend's RADIUS client doesn't sign its packets properly
> >per the RFC yet. RADIUS 2.0 and 2.0.1 don't insist on it yet and log
> >the above when an unsigned packet comes in. Eventually, as we move
> >toward full RFC compliance (and the RFC moves toward non-draftness),
> >we'll start refusing them.
>
> The Ascend NAS code has always signed Accounting packets - even when the
> PM didn't (despite it being in the then RADIUS spec.). You'll most
> likely find that the auth keys have not been configured correctly on
> the MAX....
>
>
> Kevin
>
>