RADIUS Route Download

Similar documents
L2TP Dial-Out Load Balancing and Redundancy

Cisco Network Planning Solution Documentation Guide and Supplemental License Agreement

Constraining IP Multicast in a Switched Ethernet Network

This feature was introduced. This feature was integrated in Cisco IOS Release 12.2(11)T.

Transferring Files Using HTTP or HTTPS

Cisco 10-Gigabit Ethernet Transceiver Modules Compatibility Matrix

Upgrading to the Cisco ubr7246vxr Universal Broadband Router

Cisco 10-Gigabit Ethernet Transceiver Modules Compatibility Matrix

Configuring Cisco Unified Communications Manager for the NovaTec TransNova S3 Voice Gateway

How to Register, Start, and Access a Cisco Online Exam

Cisco IP Phone 7961G/7961G-GE and 7941G/7941G-GE Enhancements

Cisco OC-3/OC-12/OC-48 SFP Transceiver Modules Compatibility Matrix

Cisco Registered Envelope Recipient Guide

Cisco 100-Megabit Ethernet SFP Modules Compatibility Matrix

Cisco Smart Services for Small and Medium Business: Solutions for Your Success

Connecting Cisco Serial High-Speed WAN Interface Cards

Release Notes for the Cisco WAN Modeling Tools, Release Patch 1

FXO, FXS, and E&M Voice Interface Card Support on Cisco 1700 Series Routers

Data Center Infrastructure Design Guide 2.1 Readme File

White Paper: Active Directory Capacity Planning (Cisco Unity Versions 4.x, 3.1, and 3.0(3) and Later with Microsoft Exchange)

Terminal Services Overview

BGP Multipath Load Sharing for Both ebgp and ibgp in an MPLS-VPN

Cisco Aironet 5-dBi Omnidirectional Antenna (AIR-ANT2450V-N)

Cisco IronPort Encryption Appliance Release Notes

Enabling and Monitoring NetFlow on Subinterfaces

Basic Software Configuration Using the Cisco IOS Command-Line Interface

System Message Logging

Cisco Router and Security Device Manager File Management

Danish Train Operator Gets Customer Service Back On Track

Installing and Configuring External Flash Memory Cards in Cisco 3600 Series Routers

Calling Name Delivery (CNAM)

CISCO SMALL AND MEDIUM BUSINESS CLASS VOICE SOLUTIONS: CISCO CALLMANAGER EXPRESS BUNDLES

Connecting Cisco Fast Ethernet ISDN PRI Network Modules to the Network

Integrating CAD with Thin Client and Virtual Desktop Environments

Cisco Unified CallConnector for Microsoft Office Troubleshooting Guide

Cisco Unified Wireless IP Phone 7925G Accessory Guide

Installation Guide for Cisco Unified ICM/Contact Center Enterprise and Hosted Release 9.0(1)

Cipher Suites and WEP

CISCO CATALYST 3750 SERIES SWITCHES

Cisco Unified Wireless IP Phone 7925G Accessory Guide

Cisco Unified Attendant Console Backup and Restore Guide

Cisco Smart Care Services Questions and Answers About the Voice Quality Monitor Service

Disaster Recovery System Administration Guide for Cisco Unified Presence Server Release 1.0(3)

Cisco GLBP Load Balancing Options

Cisco Director Class SAN Planning and Design Service

CISCO SFP OPTICS FOR PACKET-OVER-SONET/SDH AND ATM APPLICATIONS

Release Notes for Cisco Support Tools Release 2.4(1)

CISCO IOS SOFTWARE FEATURE PACKS FOR THE CISCO 1700 SERIES MODULAR ACCESS ROUTERS AND CISCO 1800 SERIES (MODULAR) INTEGRATED SERVICES ROUTERS

Cisco Registered Envelope Recipient Guide

Cause Codes and Debug Values

Cisco Registered Envelope Service 4.3 Recipient Guide

CISCO AIRONET POWER INJECTOR

Overview: Cisco Wireless Network Management Suite 1.0

Cisco Registered Envelope Service 4.4 Recipient Guide

Cisco Unified Communications Express Historical Reporting Client Configuration Guide

CISCO ISDN BRI S/T WIC FOR THE CISCO 1700, 1800, 2600, 2800, 3600, 3700, AND 3800 SERIES

Cisco Aironet 1130AG Series

Cisco IOS Flexible NetFlow Overview

Figure 1. The Cisco Aironet Power Injectors Provide Inline Power to Cisco Aironet Access Points and Bridges

Implementation Note for NetFlow Collectors

PCI Compliance: Improve Payment Security

CISCO IOS SOFTWARE RELEASES 12.4 MAINLINE AND 12.4T FEATURE SETS FOR THE CISCO 3800 SERIES ROUTERS

Cisco Data Center Infrastructure Design Guide 2.1 Release Notes

Cisco Data Center Business Continuity Planning Service

CISCO IOS SOFTWARE RELEASES 12.4 MAINLINE AND 12.4T FEATURE SETS FOR THE CISCO 2800 SERIES ROUTERS

User Guide for Cisco Unified MeetingPlace Web Conferencing

Cisco Smart Business Communications System Setup

Installation Guide for Cisco Unified Call Services, Universal Edition and Unified Call Studio

Customizing Your Cisco Unified IP Phone on the Web

CISCO 10GBASE X2 MODULES

User Guide Cisco Unified MeetingPlace Express Release 2.0

Definition of Financial Terms

How To Install A Cisco Antenna For Outdoor Use

Cisco PIX 515E Security Appliance Getting Started Guide

Getting Started. Cisco Desktop Product Suite 4.5 (ICD)

Cisco Unified Web and Interaction Manager Knowledge Base Author s Guide

Cisco MDS 9000 Family Release Notes for Storage Services Interface Image Release 3.2(1)

Cisco Aironet Dual Band MIMO Low Profile Ceiling Mount Antenna (AIR-ANT2451NV-R)

CISCO MEETINGPLACE FOR OUTLOOK 5.3

Cisco Smart Business Communications System Setup

Including License and Warranty

Cisco Unified SIP Phone 3911 Phone Guide for Cisco Unified Communications Manager 6.0 and 5.1

Installation and Configuration Guide Cisco Unified CRM Connector for SAP

Cisco Unified Web and Interaction Manager Knowledge Base Author s Guide

TelePresence in Education

Incorporating Managed Services into an Enterprise Architecture Strategy

Cisco Router and Security Device Manager USB Storage

Release Notes for Cisco IronPort Security Plug-in 7.1

Voice Call Flow Overview

Cisco Unified CallConnector for Microsoft Dynamics CRM 3.0 Installation and Configuration Guide

END-OF-SALE AND END-OF-LIFE ANNOUNCEMENT FOR SELECTIVE CISCO CATALYST 6503, CATALYST 6506 AND CATALYST 6509 CHASSIS

Cisco Unified Contact Center Express Port Utilization Guide

Cisco IP Phone 7912G. At a Glance

User Guide for Resource Manager Essentials

CISCO NETWORK ANALYSIS SOFTWARE 3.4

End-of-Sale and End-of-Life Announcement for the Cisco Catalyst 2970 Series Switches

City Government Improves Caller Service and Cultivates Economic Vitality

Configuring the SA 500 for Active Directory Authentication of VPN Clients 2. Establishing a SSL VPN Connection By Using a Different Port Number 35

User Guide for Cisco Unified MeetingPlace Web Conferencing

USER GUIDE Cisco Unified Communications Manager Express User Guide for Cisco Unified IP Phones 7942G and 7962G 1

Transcription:

RADIUS Route Download Feature History RADIUS Route Download Release Modification 12.2(8)T This feature was introduced. 12.2(27)SBA This feature was integrated into Cisco IOS Release 12.2(27)SBA. Finding Support Information for Platforms and Cisco IOS Software Images Use Cisco Feature Navigator to find information about platform support and Cisco IOS software image support. Access Cisco Feature Navigator at http://www.cisco.com/go/fn. You must have an account on Cisco.com. If you do not have an account or have forgotten your username or password, click Cancel at the login dialog box and follow the instructions that appear. Contents Feature Overview, page 1 Supported Platforms, page 2 Supported Standards, MIBs, and RFCs, page 3 Prerequisites, page 3 Configuration Tasks, page 3 Configuration Examples, page 4 Command Reference, page 5 Feature Overview The RADIUS Route Download feature allows users to configure their network access server (NAS) to send static route download requests to authorization, authentication, and accounting (AAA) servers specified by a named method list. Before this feature, RADIUS authorization for static route download requests could be sent only to AAA servers specified by the default method list. Corporate Headquarters: Cisco Systems, Inc., 170 West Tasman Drive, San Jose, CA 95134-1706 USA Copyright 2001, 2002, 2005 Cisco Systems, Inc. All rights reserved.

Supported Platforms RADIUS Route Download This feature extends the functionality of the command to allow users to specify the name of the method list that will be used to direct static route download requests to the AAA servers. The aaa route download command may be used to specify a separate method list for downloading static routes. This method list can be added by using the aaa authorization configuration command. Benefits The RADIUS Route Download feature allows users to specify a separate method list for static route download requests; that is, the NAS can direct RADIUS authorization for static route download requests to servers specified by a method list in addition to the default method list. Related Documents The chapter AAA Overview in the Cisco IOS Security Configuration Guide, Release 12.2 The chapter Configuring Large-Scale Dial-Out in the Cisco IOS Dial Technologies Configuration Guide, Release 12.2 Cisco IOS Dial Technologies Command Reference, Release 12.2 Supported Platforms Cisco 800 series Cisco 805 Cisco 806 Cisco 820 Cisco 828 Cisco 1400 series Cisco 1600 series Cisco 1751 Cisco 2420 Cisco 2600 series Cisco 3620 Cisco 3631 Cisco 3640 Cisco 3660 Cisco 3725 Cisco 3745 Cisco 7100 series Cisco 7200 series Cisco 7500 series Cisco 7700 series 2

RADIUS Route Download Supported Standards, MIBs, and RFCs Cisco CVA120 Cisco MC3810 Cisco ubr7200 series Route Processor Module (RPM) Universal Route Module (URM) Supported Standards, MIBs, and RFCs Standards None MIBs None To obtain lists of supported MIBs by platform and Cisco IOS release, and to download MIB modules, go to the Cisco MIB website on Cisco.com at the following URL: http://www.cisco.com/public/sw-center/netmgmt/cmtk/mibs.shtml RFCs None Prerequisites AAA network security must be enabled before you perform the tasks in this feature. For information about enabling AAA, refer to the AAA section in the Cisco IOS Security Configuration Guide, Release 12.2. Configuration Tasks See the following sections for configuration tasks for the RADIUS Route Download feature. Each task in the list is identified as either required or optional. Configuring RADIUS Route Download (required) Verifying RADIUS Route Download (optional) 3

Configuration Examples RADIUS Route Download Configuring RADIUS Route Download To configure the NAS to send static route download requests to the servers specified by a named method list, use the following commands in global configuration mode: Step 1 Step 2 Command Router(config)# aaa authorization configuration method-name [radius tacacs+ group group-name] Router(config)# aaa route download [time] [authorization method-list] Purpose Downloads static route configuration information from the AAA server using RADIUS. Enables the static route download feature. Use the authorization method-list attributes to specify a named method list to which RADIUS authorization requests for static route downloads are sent. Verifying RADIUS Route Download To verify the routes that are installed, use the show ip route command in EXEC mode. To display information that is associated with RADIUS, use the debug radius command in privileged EXEC mode. Configuration Examples This section provides the following configuration examples: RADIUS Route Download Configuration Example RADIUS Route Download Configuration Example The following example shows how to configure the NAS to send static route download requests to the servers specified by the method list named foo : aaa new-model aaa group server radius rad1 server 2.2.2.2 auth-port 1645 acct-port 1646! aaa group server tacacs+ tac1 server 3.3.3.3! aaa authorization configuration default group radius aaa authorization configuration foo group rad1 group tac1 aaa route download 1 authorization foo tacacs-server host 3.3.3.3 tacacs-server key cisco tacacs-server administration! radius-server host 2.2.2.2 auth-port 1645 acct-port 1646 radius-server key cisco 4

RADIUS Route Download Command Reference Command Reference This section documents the modified aaa route download command that configures the RADIUS Route Download feature. aaa route download 5

aaa route download RADIUS Route Download aaa route download To enable the static route download feature and set the amount of time between downloads, use the aaa route download command in global configuration mode. To disable this function, use the no form of this command. aaa route download [time] [authorization method-list] no aaa route download Syntax Description time (Optional) Time between downloads, in minutes. The range is from 1 to 1440 minutes. authorization method-list (Optional) Specify a named method list to which RADIUS authorization requests for static route downloads are sent. If these attributes are not set, all RADIUS authorization requests will be sent to the servers that are specified by the default method list. Defaults The default period between downloads (updates) is 720 minutes. Command Modes Global configuration Command History Release Modification 12.0(3)T This command was introduced. 12.1 This command was integrated into Cisco IOS Release 12.1. 12.2(8)T The authorization keyword was added; the method-list argument was added. 12.2(27)SBA This command was integrated into Cisco IOS Release 12.2(27)SBA. Usage Guidelines This command is used to download static route details from the authorization, authentication, and accounting (AAA) server if the name of the router is hostname. The name passed to the AAA server for static routes is hostname-1, hostname-2... hostname-n the router downloads static routes until it fails an index and no more routes can be downloaded. Examples The following example sets the AAA route update period to 100 minutes: aaa route download 100 The following example sets the AAA route update period to 10 minutes and sends static route download requests to the servers specified by the method list name list1 : aaa route download 10 authorization list1 6

RADIUS Route Download aaa route download Related Commands Command aaa authorization configuration default clear ip route download show ip route Description Downloads static route configuration information from the AAA server using TACACS+ or RADIUS. Clears static routes downloaded from a AAA server. Displays all static IP routes, or those installed using the AAA route download function. CCVP, the Cisco logo, and Welcome to the Human Network are trademarks of Cisco Systems, Inc.; Changing the Way We Work, Live, Play, and Learn is a service mark of Cisco Systems, Inc.; and Access Registrar, Aironet, Catalyst, CCDA, CCDP, CCIE, CCIP, CCNA, CCNP, CCSP, Cisco, the Cisco Certified Internetwork Expert logo, Cisco IOS, Cisco Press, Cisco Systems, Cisco Systems Capital, the Cisco Systems logo, Cisco Unity, Enterprise/Solver, EtherChannel, EtherFast, EtherSwitch, Fast Step, Follow Me Browsing, FormShare, GigaDrive, HomeLink, Internet Quotient, IOS, iphone, IP/TV, iq Expertise, the iq logo, iq Net Readiness Scorecard, iquick Study, LightStream, Linksys, MeetingPlace, MGX, Networkers, Networking Academy, Network Registrar, PIX, ProConnect, ScriptShare, SMARTnet, StackWise, The Fastest Way to Increase Your Internet Quotient, and TransPath are registered trademarks of Cisco Systems, Inc. and/or its affiliates in the United States and certain other countries. All other trademarks mentioned in this document or Website are the property of their respective owners. The use of the word partner does not imply a partnership relationship between Cisco and any other company. (0711R) Copyright 2001, 2002, 2005 Cisco Systems, Inc. All rights reserved. 7

aaa route download RADIUS Route Download 8