Re: Question on the Class attribute

Vijay Devarapalli <vijay.devarapalli@azairenet.com> Tue, 18 December 2007 23:21 UTC

Return-path: <owner-radiusext@ops.ietf.org>
Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1J4ll7-0007kb-QE for radext-archive-IeZ9sae2@lists.ietf.org; Tue, 18 Dec 2007 18:21:57 -0500
Received: from psg.com ([147.28.0.62]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1J4ll6-0002cx-05 for radext-archive-IeZ9sae2@lists.ietf.org; Tue, 18 Dec 2007 18:21:57 -0500
Received: from majordom by psg.com with local (Exim 4.68 (FreeBSD)) (envelope-from <owner-radiusext@ops.ietf.org>) id 1J4ldp-000JxV-7S for radiusext-data@psg.com; Tue, 18 Dec 2007 23:14:25 +0000
X-Spam-Checker-Version: SpamAssassin 3.2.3 (2007-08-08) on psg.com
X-Spam-Level:
X-Spam-Status: No, score=-2.5 required=5.0 tests=BAYES_00,RDNS_NONE autolearn=no version=3.2.3
Received: from [207.47.15.6] (helo=mail2.azairenet.com) by psg.com with esmtp (Exim 4.68 (FreeBSD)) (envelope-from <Vijay.Devarapalli@AzaireNet.com>) id 1J4ldm-000Jwx-JQ for radiusext@ops.ietf.org; Tue, 18 Dec 2007 23:14:23 +0000
Received: from [127.0.0.1] ([207.47.15.6]) by mail2.azairenet.com over TLS secured channel with Microsoft SMTPSVC(6.0.3790.3959); Tue, 18 Dec 2007 15:14:17 -0800
Message-ID: <47685448.70402@azairenet.com>
Date: Tue, 18 Dec 2007 15:14:16 -0800
From: Vijay Devarapalli <vijay.devarapalli@azairenet.com>
User-Agent: Thunderbird 2.0.0.9 (Windows/20071031)
MIME-Version: 1.0
To: Bernard Aboba <bernard_aboba@hotmail.com>
CC: "David B. Nelson" <dnelson@elbrysnetworks.com>, radiusext@ops.ietf.org
Subject: Re: Question on the Class attribute
References: <4766C83C.8030606@azairenet.com> <4767DCD5.2070305@elbrysnetworks.com> <47681092.8010706@azairenet.com> <BAY117-W2174DC4042E2FF8D5AFB6693630@phx.gbl>
In-Reply-To: <BAY117-W2174DC4042E2FF8D5AFB6693630@phx.gbl>
Content-Type: text/plain; charset="ISO-8859-1"; format="flowed"
Content-Transfer-Encoding: 7bit
X-OriginalArrivalTime: 18 Dec 2007 23:14:17.0882 (UTC) FILETIME=[B6A9FFA0:01C841CB]
Sender: owner-radiusext@ops.ietf.org
Precedence: bulk
X-Spam-Score: -4.0 (----)
X-Scan-Signature: e5ba305d0e64821bf3d8bc5d3bb07228

Got it. Thanks for the responses.

Vijay

Bernard Aboba wrote:
>  > It appears to me that RFC 2865 requires the class attribute, if
>  > used, to be the same in the Access Accept and the Accounting
>  > Request. I agree with you that if the Accounting Request goes to
>  > a different server from the one that sent the Access Accept
>  > message, this matching does not make sense. The use of this
>  > attribute also may not make sense.
> 
> The Class attribute is designed to allow the RADIUS authentication server
> to provide information to be placed within accounting records.  This is
> typically most useful in situations where the accounting server may not
> have access to all the information which the authentication server has
> access to -- because if it did, why would the Class attribute be needed 
> at all?
>  
> Accounting records need not even be handled by the same administrative 
> domain
> (let alone the same RADIUS authentication server).  So the Class 
> attribute does not
> assume that the RADIUS authentication server and accounting server are the
> same entity. 


--
to unsubscribe send a message to radiusext-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.
archive: <http://psg.com/lists/radiusext/>