The other aspect of subscriber-host authorization is providing IP configuration (ip-address, subnet-mask, default gateway and dns) through RADIUS directory instead of using centralized DHCP server. In this case, the node receiving following RADIUS attributes assumes the role of DHCP server in conversation with the client and provide the IP configuration received from RADIUS server.
These attributes are accepted only if the system is explicitly configured to perform DHCP server functionality on a specific interface.
The following RADIUS attributes are accepted from authentication-response messages:
framed-ip-address
The IP address to be configured for the subscriber-host
framed-ip-netmask
The IP network to be configured for the subscriber host If RADIUS does not return a netmask, the DHCP request is dropped
framed-pool
The pool on a local DHCP server from which a DHCP-provided IP address should be selected
alc-default-router
The address of the default gateway to be configured on the DHCP client
alc-primary-dns
The DNS address to be provided in DHCP configuration.
Juniper VSA for primary DNS
Redback VSA for primary DNS
alc-secondary-dns
Juniper VSA for secondary DNS
Redback VSA for secondary DNS
alc-lease-time
Defines the lease time
session-timeout — Defines the lease time in absence of the alc-lease-time attribute
NetBIOS
alc-primary-nbns
alc-secondary-nbns