Users Guide
292 Authentication, Authorization, and Accounting
for Service-Type in the Access-Accept message returned from the RADIUS
server.
• SESSION-TIMEOUT
Session time-out value for the session (in seconds). Used by both 802.1x
and Captive Portal.
• TERMINATION-ACTION
Indication as to the action taken when the service is completed.
• EAP-MESSAGE
Contains an EAP message to be sent to the user. This is typically used for
MAB clients.
• VENDOR-SPECIFIC
The following Cisco AV Pairs are supported:
– shell:priv-lvl
– shell:roles
– ip:inacl={standard-access-control-list-name | extended-access-
control-list-name}
– ipv6:inacl={standard-access-control-list-name | extended-access-
control-list-name}
– ip:inacl[#number]={extended-access-control-list}
– ip:outacl[#number]={extended-access-control-list}
– ipv6:inacl[#number]={extended-access-control-list}
– ipv6:outacl[#number]={extended-access-control-list}
– ip:traffic-class={existing ACL name}
• FILTER-ID
Name of an existing ACL or DiffServ policy for this user.
• FRAMED-IP-ADDRESS
The IP address assigned to the host accessing the network. Cached and
transmitted in accounting packets.
• FRAMED-IPv6-ADDRESS