we have a cisco 3745 with a PRI card that uses a AAA server to authenticate users. This router caters for both DIALOUT users and DIALIN users. The issue we have is that we are unable to differentiate between the two types of users on the AAA server. As a result a user with a DIALOUT account is also able to DIALIN as well. Does anyone know of a RADIUS attribute that will define if a user is DIALOUT or DIALIN. Any connection from outside that attempts to use a DIALOUT account should be refused.
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...