cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
509
Views
0
Helpful
4
Replies

AAA alive packets

fvramirez
Level 1
Level 1

is there a way to stop an AS5300 or LNS (7200) from sending alive packets to the radius? we only need start and stop packets. thanks

1 Accepted Solution

Accepted Solutions

You may have command "aaa accounting update periodic x" in the config so that the periodic accouting "alive" packets will be sent. If you remove that command then only start and stop records should be sent. Pl. visit following url for more on that command

http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122cgcr/fsecur_r/faaacr/srfacct.htm#1031586

View solution in original post

4 Replies 4

tepatel
Cisco Employee
Cisco Employee

What kind of AAA alive packets you are talking about. There are no alive packets like that AS5300 should be sending other then accounting start and stop packets.Pl. explain more about those packets which AS5300 is sending.

--begin ciscomoderator note-- The following post has been edited to remove potentially confidential information. Please refrain from posting confidential information on the site to reduce security risks to your network. -- end ciscomoderator note --

below is a sample of the start / alive / stop packets

Tue Jun 24 01:35:15 2003

NAS-IP-Address = xxx.xx.xxx.86

NAS-Port-Id = 376

NAS-Port-Type = 5

User-Name = "xxxxxxxxxxx"

Called-Station-Id = "xxxxxxxxxxx"

Calling-Station-Id = "xxxxxxxxxxxxxx"

Acct-Status-Type = Start

Acct-Authentic = RADIUS

Service-Type = Framed-User

Acct-Session-Id = "xxxxxxxxxx"

Framed-Protocol = PPP

Tunnel-Server-Endpoint = "xxx.xx.xxx.86"

Acct-Tunnel-Client-Endpoint = "10.255.0.44"

Tunnel-Type = L2TP

Acct-Tunnel-Connection-Id = "xxxxxxxxxx"

Acct-Delay-Time = 0

Proxy-State = "0af3"

Timestamp = 1056389715

Request-Authenticator = Verified

Tue Jun 24 01:35:16 2003

NAS-IP-Address = xxx.xx.xxx.86

NAS-Port-Id = 376

NAS-Port-Type = 5

User-Name = "xxxxxxxxxx"

Called-Station-Id = "xxxxxxxxxxxx"

Calling-Station-Id = "0822227277"

Acct-Status-Type = Alive

Acct-Authentic = RADIUS

Service-Type = Framed-User

Acct-Session-Id = "xxxxxxxxxx"

Framed-Protocol = PPP

Tunnel-Server-Endpoint = "xxx.xx.xxx.86"

Acct-Tunnel-Client-Endpoint = "10.255.0.44"

Tunnel-Type = L2TP

Acct-Tunnel-Connection-Id = "xxxxxxxxxx"

Framed-IP-Address = xxx.xxx.xxx.203

Acct-Delay-Time = 0

Proxy-State = "0af5"

Timestamp = 1056389716

Request-Authenticator = Verified

Tue Jun 24 07:16:38 2003

NAS-IP-Address = xxx.xx.xxx.86

NAS-Port-Id = 376

NAS-Port-Type = 5

User-Name = "xxxxxxxxxxxx"

Called-Station-Id = "xxxxxxxxxxx"

Calling-Station-Id = "xxxxxxxxxxxxxxxxx"

Acct-Status-Type = Stop

Acct-Authentic = RADIUS

Service-Type = Framed-User

Acct-Session-Id = "xxxxxxxxxx"

Framed-Protocol = PPP

Tunnel-Server-Endpoint = "xxx.xx.xxx.86"

Acct-Tunnel-Client-Endpoint = "10.255.0.44"

Tunnel-Type = L2TP

Acct-Tunnel-Connection-Id = "xxxxxxxxxx"

Framed-IP-Address = xxx.xxx.xxx.203

Acct-Terminate-Cause = User-Request

Acct-Input-Octets = 23461321

Acct-Output-Octets = 64786639

Acct-Input-Packets = 71358

Acct-Output-Packets = 70546

Acct-Session-Time = 20483

Acct-Delay-Time = 0

Proxy-State = "6540"

Timestamp = 1056410198

Request-Authenticator = Verified

thanks

francis

You may have command "aaa accounting update periodic x" in the config so that the periodic accouting "alive" packets will be sent. If you remove that command then only start and stop records should be sent. Pl. visit following url for more on that command

http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122cgcr/fsecur_r/faaacr/srfacct.htm#1031586

thanks a lot, this solved our problem

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: