What are the NetScreen Vendor Specific Attributes required for configuring Radius?
Knowledge Base ID: KB6392
Version: 2.0
Published: 07 Oct 2008
Updated: 07 Oct 2008
Categories: . NS-5GT
. NS-5XP
. NS-5XT
. NS-25
. NS-50
. NS-204
. NS-208
. NS-5200
. NS-5400
. ScreenOS

Summary:
What are the NetScreen Vendor Specific Attributes required for configuring Radius?

Problem or Goal:
Radius server Vendor Specific Attributes (VSA) Vendor ID Attribute Name Attribute Number The NetScreen Vendor ID is 3224

Solution:

Note: This article applies to ScreenOS 4.0 and higher.

The following table illustrates the NetScreen Vendor Specific Attributes (VSA) used by Radius.

VSA #

NetScreen VSA Value

VSA Type

Description

1

NS-Admin-Privilege

Integer

Device Admin Access Rights

2

NS-VSYS-Name

String

Name of VSYS, used for Admin Privilege

3

NS-User-Group

String

Matches External User Group definitions

4

NS-Primary-DNS

IP Address

Used for XAuth / L2TP DNS Only

5

NS-Secondary-DNS

IP Address

Used for XAuth / L2TP DNS Only

6

NS-Primary-WINS

IP Address

Used for XAuth / L2TP DNS Only

7

NS-Secondary-WINS

IP Address

Used for XAuth / L2TP DNS Only

VSAs 4 through 7 are used to assign a client's Virtual DNS/WINS Addresses when Query Client Settings on Server is enabled for a particular XAUTH or L2TP connection.

Purpose:
Troubleshooting