Got it

COA port configuration

Created: Mar 22, 2018 15:46:27Latest reply: Apr 5, 2018 12:09:58 4237 4 0 0 0
  Rewarded HiCoins: 0 (problem resolved)

Hi there, Community members!


This post enquires about the COA port configuration. Please check below for more information.


ISSUE DESCRIPTION


Please refer the COA configuration for Cisco and please share the related command for Huawei-NE-40-X3.


CISCO CONFIGURATION


aaa server radius dynamic-author
 client Ip
 server-key
 port 3799
 auth-type all


Thanks in advance for assisting me with the COA port configuration.

  • x
  • convention:

Featured Answers
l00188222
Created Mar 26, 2018 07:00:28

Posted by Jaideva at 2018-03-23 09:30Hi,Radius configuration  already done but we are able see multiple session in single user id, we w ...

Hello!


In the case of the COA function, we should configure a radius authorization server. At the same time, we should configure the action on the server.

Here are the commands which should be configured on the NE device. For more details, you can check on the product documentation. The link:

http://support.huawei.com/hedex/ ... 253C%2Fb%3E

(Optional) Configuring a RADIUS Authorization Server

You can configure multiple RADIUS authorization servers to authorize users who use dynamic services.

Context

You need to configure a RADIUS authorization server for a dynamic service so that the RADIUS server can dynamically authorize a user when the user uses the dynamic service.

Perform the following steps on the router.

Procedure

1.Run system-view. The system view is displayed.


2. Run:

radius-server authorization ip-address [ vpn-instance instance-name ]  {  shared-key key | server-group groupname } * [ ack-reserved-interval interval ]

The global RADIUS authorization server is configured.

To retain the RADIUS authorization response packet to respond to the retransmitted packets from the RADIUS authorization server, you need to set the period of retaining the authorization response when configuring the RADIUS authorization server.

For example:

<HUAWEI> system-view
[HUAWEI] radius-server authorization 10.3.150.3 destination-port 3799 shared-key Root@123
View more
  • x
  • convention:

All Answers
StarOfWest
StarOfWest Created Mar 23, 2018 06:59:43

I'm not sure if I'm correct, maybe you can provide the whole Cisco configuration.
Meanwhile, can you try the following:

radius-server group rad_group1
radius-server authentication 10.10.10.2 1812 weight 0 \\\ 10.10.10.2 is the radius server IP, 1812 is the port on which radius server is listening.
radius-server accounting 10.10.10.2 1813 weight 0 \\ 1813 port number used for accounting.
radius-server shared-key-cipher huawei@123 \\\ shared key configuration
View more
  • x
  • convention:

Jaideva
Jaideva Created Mar 23, 2018 09:30:15

Posted by b00745015 at 2018-03-23 06:59 I'm not sure if I'm correct, maybe you can provide the whole Cisco configuration. Meanwhile, can you ...
Hi,

Radius configuration already done but we are able see multiple session in single user id, we want to allow only one session for pppoe user, so that we have to configure COA Port.

Cisco we have the below configuration to avoid the multiple session.

aaa server radius dynamic-author
client Ip 103.*.*.*
server-key abcdef
port 3799
auth-type all

View more
  • x
  • convention:

l00188222
l00188222 Created Mar 26, 2018 07:00:28

Posted by Jaideva at 2018-03-23 09:30Hi,Radius configuration  already done but we are able see multiple session in single user id, we w ...

Hello!


In the case of the COA function, we should configure a radius authorization server. At the same time, we should configure the action on the server.

Here are the commands which should be configured on the NE device. For more details, you can check on the product documentation. The link:

http://support.huawei.com/hedex/ ... 253C%2Fb%3E

(Optional) Configuring a RADIUS Authorization Server

You can configure multiple RADIUS authorization servers to authorize users who use dynamic services.

Context

You need to configure a RADIUS authorization server for a dynamic service so that the RADIUS server can dynamically authorize a user when the user uses the dynamic service.

Perform the following steps on the router.

Procedure

1.Run system-view. The system view is displayed.


2. Run:

radius-server authorization ip-address [ vpn-instance instance-name ]  {  shared-key key | server-group groupname } * [ ack-reserved-interval interval ]

The global RADIUS authorization server is configured.

To retain the RADIUS authorization response packet to respond to the retransmitted packets from the RADIUS authorization server, you need to set the period of retaining the authorization response when configuring the RADIUS authorization server.

For example:

<HUAWEI> system-view
[HUAWEI] radius-server authorization 10.3.150.3 destination-port 3799 shared-key Root@123
View more
  • x
  • convention:

Jaideva
Jaideva Created Apr 5, 2018 12:09:58

Posted by l00188222 at 2018-03-26 07:00 Hello,For the COA function, we should configure a radius authorization server, at the same time we ...
Thanks for your support, its working
View more
  • x
  • convention:

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.
Information Protection Guide
Thanks for using Huawei Enterprise Support Community! We will help you learn how we collect, use, store and share your personal information and the rights you have in accordance with Privacy Policy and User Agreement.