gshaw Posted September 4, 2015 Posted September 4, 2015 I'm having a lot of "fun" battling with our Aruba controller at present trying to get it to present RADIUS accounting info to, well anything right now having tried: - Smoothwall - Bloxx - Windows NPS The sticking point even if I can get accounting working (currently no traffic on port 1813) there's another potential issue around getting the device's IP address. It seems under RADIUS only the username is passed on authentication and the framed-ip-address is sent as an accounting update later on. Thing is it seems that every wireless vendor interprets the accounting behaviour differently. Some send the update of their own accord when the device's IP changes whereas others only send after a timeout period expires (600 seconds on the RADIUS RFC), which isn't much use when the filtering device needs the IP to allow the user to access the network. Does anyone have this kind of setup working in a usable fashion? In theory the RADIUS authentication is much better as it does away with captive portals and suchlike but this IP address issue is holding back progress right now.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now