Cisco CNS Access Registrar User's Guide, 3.0
Index

Table Of Contents

A - B - C - D - E - F - G - H - I - J - L - M - N - O - P - Q - R - S - T - U - V -

A

AA

services 3-10

AAAFileServiceSyncInterval 3-28

AcceptAll 3-8

Accepted-Profiles B-1

Access Registrar

backups 14-1

definition 1-1

dictionaries 6-1

internal database 14-1

objects 3-1, 3-3

server 3-1

Access-Challenge 1-2

Access-Reject B-5

Access-Request 4-2, 4-6, 4-7

Accounting

attributes 1-4

database 1-1

definition 1-1

log file 3-10

Accounting-Service B-1

addProfile method A-2

Advanced objects 3-1

AdvancedDuplicateDetectionMemoryInterval 3-29

APPEND A-2, A-5, A-7, A-8

aregcmd

Access Registrar command 2-1

commands 2-2

add 2-2

cd 2-2

delete 2-3

exit 2-3

filter 2-3

find 2-3

help 2-4

insert 2-4

login 2-4

logout 2-4

ls 2-5

next 2-5

prev 2-5

pwd 2-5

query-sessions 2-6

quit 2-6

release-sessions 2-6

reload 2-7

save 2-7

set 2-8

start 2-8

stats 2-9

status 2-10

stop 2-10

trace 2-10

unset 2-12

validate 2-12

definition 2-1

save 5-3

session management commands 3-13

syntax 2-1

ARIsCaseInsensitive 3-30

Attribute Dictionary 1-4, 3-33, A-1

methods A-1

put method A-2

Attributes 3-20, C-1

alphabetical list C-2

check item 9-22

numeric list C-4

AUGMENT A-2, A-5, A-7, A-8

Authorization

definition 1-1

B

Backups 14-1

BaseProfile 3-4, 3-5

BindName 3-23

BindPassword 3-23

C

Callback-Number 1-4

callsPerSecond 4-10

Case insensitive commands

see also aregcmd

cd command 2-1

CertificateDBPath 3-29

change directory command

see also aregcmd

CHAP

Access Request packet 4-2

CHAP_ PASSWORD

attribute type 3-33

Check item attributes 9-22

CiscoWithODAPIncomingScript 8-1, 8-3

clear method A-2

Client/server model 1-1

Client-Behind-the-Proxy 6-2

Clients

IPAddress 3-6

list 3-30

objects 3-1

vendor properties 3-6

Configuration Objects 2-2

ConfigurationError reply message 3-32

Configuring

check item attributes 9-23

LDAP RemoteServer 12-2

local service 5-2

ODBC RemoteServer 13-3

containsKey method A-2

D

Database

Access Registrar backups 14-1

MCD 5-3

DefaultAccountingService 3-3

DefaultAuthenticationService 3-2

DefaultAuthorizationService 3-2

DefaultReturnedSubnetSizeIfNoMatch 3-29

DefaultSessionManager 3-3

DefaultSessionService 3-3

Dictionaries

Types of 6-1

Dictionary

attribute 3-30

DNSLookupAndLDAPRebindInterval 12-5

DropPacket. 3-8

E

EAP 3-9

authentication mechanism 3-9

EAP-LEAP 3-10

EAP-MD5 3-10

Easysoft Open Source 13-6

Empty string 2-1

EntryPoint 3-12

ENUM

attribute type 3-34

Environment Dictionary 6-1, 6-3

Environment Dictionary script 6-4

Environment variable

Accounting-Service B-1

Acquire-Group-Session-Limit B-2

Acquire-IP-Dynamic B-2

Acquire-IP-Per-NAS-Port B-2

Acquire-IPX-Dynamic B-2

Acquire-Subnet-Dynamic B-2

Acquire-User-Session-Limit B-2

Acquire-USR-VPN B-2

Allow-Null-Password B-2

Authentication-Service B-3

Authorization-Service B-3

Current-Group-Count B-3

Dynamic-Search-Path B-3

Group-Session-Limit B-3

Ignore-Accounting-Signature B-3

Incoming-Translation-Groups B-3

Misc-Log-Msg-Info B-4

Reject-Reason B-4

Remote-Server B-4

Request-Authenticator B-4

Request-Type B-4

Require-User-To-Be-In-Authorization-List B-5

Response-Type B-5

Session-Key B-6

Session-Manager B-6

Session-Service B-6

Source-IP-Address B-7

Trace-Level B-7

Unavailable-Resource B-7

Unavailable-Resource-Type B-7

User Authorization-Script B-8

User-Group B-8

User-Group-Session-Limit B-8

User-Name B-8

User-Profile B-8

User-Session-Limit B-8

ExecPrefixRule 10-8

Extension points 6-1

F

Failover policy 3-10

file service 3-8, 3-10

FilenamePrefix 3-11

MaxFileAge 3-11

MaxFileSize 3-11

Filename 3-12

FilenamePrefix 3-11

Filter 3-24

firstKey method A-2

Framed Protocol 1-4

Framed-IP-Address 1-4

FramedRouting 3-19

G

Gateway

Description 3-19

IPAddress 3-19

LocationID 3-19

Name 3-19

SharedSecret 3-19

TunnelRefresh 3-19

Gateways 3-19

get method A-2

Group-Session-Limit Resource Manager 3-16

H

HiddenAttributes 3-4

HostName 3-23

I

Identifier 3-19

Incoming scripts 1-2

IncomingScript 3-2, 3-6, 3-7, 3-23

IncomingScript RejectedRequest reply message 3-32

IncomingScriptFailed reply message 3-32

InitEntryPoint 3-8, 3-12

InitEntryPointArgs 3-12

InitialBackgroundTimerSleepTime 3-28

InitialTimeout 3-23, 3-26

Interfaces properties 3-1

InternalError reply message 3-32

IPADDR

attribute type 3-33

IPAddress 3-6

IP-Dynamic Resource Manager 3-15

IP-Per-NAS-Port Resource Manager 3-15

IPX-Dynamic Resource Manager 3-16

isEmpty method A-2

J

JavaVMOptions 3-29

L

LDAP 12-1

MultipleServersPolicy 12-2

protocol 3-23

RemoteServers 3-22

ldap

BindName 3-23

BindPassword 3-23

Filter 3-24

HostName 3-23

LDAPToEnvironmentMappings 3-25

LDAPToRadiusMappings 3-25

LimitOutstandingRequests 3-24

MaxOutstandingRequests 3-24

MaxReferrals 3-24

PasswordEncryptionStyle 3-24

ReferralAttribute 3-24

ReferralFilter 3-24

SearchPath 3-23

Timeout 3-23, 3-26

UserPasswordAttribute 3-24

UseSSL 3-25

LDAP Rebind 12-4

failures 12-5

LDAP RemoteServer 12-2

LDAP server 1-4

LDAP service 12-1

LDAPToCheckItemMappings 3-25, 12-6

LDAPToEnvironmentMappings 3-25, 12-6

LDAPToRadiusMappings 3-25, 12-5

LEAP 3-9

Lightweight Directory Access Protocol 12-1

LimitOutstandingRequests 3-24

local 3-9, B-8

UserList type 3-3

Local Service 5-2

local service 3-3

localhost 4-6

log method A-2

LogFileCount 3-29

LogFileSize 3-29

Logging in 2-4

Logging out 2-4

login command 2-4

LogServerActivity 3-27

M

Malformed Request reply message 3-32

MaxFileAge 3-11

MaxFileSize 3-11

Maximum NumberOf RadiusPackets 3-27

MaximumNumberOfUDPTacacsPackets 3-28

MaximumODBCResultSize 3-29

MaxOutstandingRequests 3-24

MaxReferrals 3-24

MaxTries 3-23, 3-26

MCD 14-1

MCD database 5-3

mcdcd.d01-d03 14-2

mcdConfig.txt 14-2

mcddb.dbd 14-2

mcddb.k01-k03 14-2

mcdshadow 14-1

MinimumSocketBufferSize 3-28

MPLS 8-1

MultipleServersPolicy 3-10, 12-2, 13-3

N

Name=value 3-20

NAS 1-1

NAS IP Address 3-33

NAS-IP-Address 1-4

NAS-Port 1-4

NAS-Vendor-Behind-the-Proxy 6-2

Neighbor 3-19

nextKey method A-2

O

ODAP

accounting service 8-7

address ranges 8-2

AllowNullPassword property 8-6

CiscoIncomingScript 8-3

configuration summary 8-4

configuring 8-4

configuring clients 8-15

configuring Session Managers 8-13

detailed configuration 8-5

on-demand address pool 8-1

Resource Managers 8-9

service 8-6

Session Managers 8-8

userlist 8-5

users 8-5

vendor type 8-4

ODBC RemoteServer 13-3

ODBC service 13-2

ODBC.ini file 13-2

ODBCDataSource 13-4, 13-6

ODBCToEnvironmentMappings 13-5

ODBCToRadiusMappings 13-5

Oracle Driver

Easysoft Open Source 13-6

Oracle functions 13-5

ORACLE_HOME 13-1

order dependent commands

see also aregcmd

OutagePolicy 3-8

OutageScript 3-8

Outgoing scripts 1-3

OutgoingScript 3-2, 3-6, 3-7, 3-23

OutgoingScriptFailed 3-32

OutgoingScriptRejectedRequest 3-32

P

Packet fields 1-3

packet-identifier 4-3

Password

length of 3-4

PasswordEncryptionStyle 3-24

Ports 3-30

Ports properties 3-1

PPP 1-4, 3-19

Prefix feature 10-8

attributes 10-8

Profile objects 3-1

Proxy server 1-4

put method A-2

Q

query-sessions command 3-13

R

radclient

callsPerSecond 4-10

syntax 4-1

timetest 4-9

RADIUS

attribute name 4-5

attributes C-1

messages 1-3

packet type identifier 4-3

program flow 1-2

protocol 1-1

server 2-2, 2-4, 3-5, 4-3, 6-4

server test tool 4-1

RADIUS EXtension. See REX

RadiusServer object 3-1

ReactivateTimerInterval 3-22

ReferralAttribute 3-24

ReferralFilter 3-24

RejectAll 3-8

Reject-Reason B-4

release-sessions command 3-13

Remote servers

policy 3-10

RemoteLDAPServiceThreadTimerInterval 3-28

RemoteRadiusServerInterface 3-30

RemoteServers 12-2, 13-3

RemoteServers objects 3-1

remove method A-3

REMOVE_ALL A-3, A-9

REPLACE A-2, A-5, A-7, A-8

Reply Messages 3-31

Request Dictionary 1-2, 6-1

script 6-3

Request-Type Packets

Access-Accept B-5

Access-Challenge B-5

Access-Reject B-5

Access-Request B-5

Accounting-Request B-5

Accounting-Response B-5

Ascend-IPA-Allocate B-5

Ascend-IPA-Release B-5

Status-Client B-5

Status-Server B-5

USR-Enhanced-Radius B-5

USR-NAS-Reboot-Request B-5

USR-NAS-Reboot-Response B-5

USR-Resource-Free-Request B-5

USR-Resource-Free-Response B-5

USR-Resource-Query-Request B-5

USR-Resource-Query-Response B-5

RequireNASsBehindProxyBeInClientList 3-27, 3-30

Resource Managers 3-1, 3-15, 3-16

Group-Session-Limit 3-18

Home-Agent 3-18

IP-Dynamic 3-16

IP-Per-NAS-Port 3-16

IPX-Dynamic 3-17

subnet-dynamic 3-17

User-Session-Limit 3-18

USR-VPN 3-19

Response Dictionary 1-3, 6-1

script 6-3

Response-Type B-5

REX

scripts 3-7

REX attribute dictionary

getBytes method A-6

putBytes method A-8

REX environment dictionary

allocateMemory A-10

clear A-10

containsKey A-10

firstKey A-10

get A-10

isEmpty A-10

log A-10

nextKey A-10

put A-10

remove A-10

reschedule A-11

size A-11

trace A-11

rex service

EntryPoint 3-12

Filename 3-12

InitEntryPoint 3-12

InitEntryPointArgs 3-12

RFC 2138 3-33, C-1

RoundRobin policy 3-10

S

Script objects 3-1

Scripting point 6-1

NAS IncomingScript 6-4

Scripts

adding script definition 6-4

choosing the type of script 6-2

determining goal 6-1

extension points 6-1

writing 6-2

SearchPath 3-23

Services

file 3-10

ldap 3-10

local 3-3, 3-8, 3-9, B-8

proxy requests 3-22

radius 3-10

tacacs-udp 3-10

services 3-8

Services objects 3-1, 3-8

ServiceUnavailable reply message 3-32

Session Management

definition 1-1

Session Managers 3-13

Session Managers objects 3-1

SessionBackingStoreSynchronizationInterval 3-28

Shadow backups 14-1

Shared libraries A-1

Shared secret 3-6

definition 1-2

SharedSecret 3-19, 3-23

size method A-3

SLIP 1-4

SNMP 3-30

SQL queries 13-4

SQL syntax restrictions 13-4

SQLDefinition 13-4

SQLStatement 13-4

stats command B-4

sticky commands 2-5

STRING

attribute type 3-33

T

tacacs-udp 3-10, 3-22

Tcl attribute dictionary A-1, A-2

addProfile method A-2

clear method A-2

firstKey method A-2

get method A-2

isEmpty method A-2

log method A-2

nextKey method A-2

remove method A-3

size method A-3

trace method A-3

TerminationAction reply message 3-32

Timeout 3-23, 3-26

timetest 4-9

trace method A-3

TunnelRefresh 3-19

U

UDPPacketSize 3-27

UINT32

attribute type 3-33

UnableToAcquireResource reply message 3-32

UNDEFINED

attribute type 3-33

UnknownUser reply message 3-32

use_challenge parameter 4-2

UseAdvancedDuplicateDetection 3-29

User extensions. See Scripts.

User properties 3-4

UserDefined 3-4

UserGroup objects 3-1

UserGroups

check item attributes 9-23

UserList 3-1

check item attributes 9-23

UserNotEnabled reply message 3-32

UserPasswordAttribute 3-24

UserPasswordInvalid 3-32

User-Profile B-8

UserService 3-10

User-Session-Limit B-8

UserSessionLimit 3-18

User-Session-Limit Resource Manager 3-16

UseSSL 3-25

USR-VPN

FramedRouting 3-19

Gateways 3-19

Identifier 3-19

Neighbor 3-19

USR-VPN Resource Manager 3-16

V

valueAsInt 4-5

valueAsIPAddress 4-5

Variables

environment B-1

radclient 4-8

Vendor objects 3-1

Vendor specific attributes C-13

Ascend C-23

Cabletron C-32

Cisco C-33

Compatible C-35

Nomadix C-37

RedCreek C-37, C-39

VENDOR_ SPECIFIC

attribute type 3-34

VendorID 3-34

Vendor-specific attributes

3GPP2 C-13

ACC C-16

Altiga C-21

Bay Networks C-32

Vendor-specificattributes

Telebit C-40

VHG/PE router 8-1

VRFs 8-2

VSAs C-13