hit counter script

Coa Disconnect-Request; Coa Request: Disable Host Port; Coa Request: Bounce-Port - Cisco Catalyst 2960-XR Security Configuration Manual

Ios release 15.0 2 ex1
Hide thumbs Also See for Catalyst 2960-XR:
Table of Contents

Advertisement

RADIUS Change of Authorization

CoA Disconnect-Request

This command is a standard Disconnect-Request. Because this command is session-oriented, it must be
accompanied by one or more of the session identification attributes. If the session cannot be located, the switch
returns a Disconnect-NAK message with the "Session Context Not Found" error-code attribute. If the session
is located, the switch terminates the session. After the session has been completely removed, the switch returns
a Disconnect-ACK.
If the switch fails-over to a standby switch before returning a Disconnect-ACK to the client, the process is
repeated on the new active switch when the request is re-sent from the client. If the session is not found
following re-sending, a Disconnect-ACK is sent with the "Session Context Not Found" error-code attribute.
Related Topics
Session Identification, on page 57

CoA Request: Disable Host Port

This command is carried in a standard CoA-Request message that has this new VSA:
Cisco:Avpair="subscriber:command=disable-host-port"
Because this command is session-oriented, it must be accompanied by one or more of the session identification
attributes. If the session cannot be located, the switch returns a CoA-NAK message with the "Session Context
Not Found" error-code attribute. If the session is located, the switch disables the hosting port and returns a
CoA-ACK message.
If the switch fails before returning a CoA-ACK to the client, the process is repeated on the new active switch
when the request is re-sent from the client. If the switch fails after returning a CoA-ACK message to the client
but before the operation has completed, the operation is restarted on the new active switch.
A Disconnect-Request failure following command re-sending could be the result of either a successful
Note
session termination before change-over (if the Disconnect-ACK was not sent) or a session termination by
other means (for example, a link failure) that occurred after the original command was issued and before
the standby switch became active.
Related Topics
Session Identification, on page 57

CoA Request: Bounce-Port

This command is carried in a standard CoA-Request message that contains the following VSA:
Cisco:Avpair="subscriber:command=bounce-host-port"
Because this command is session-oriented, it must be accompanied by one or more of the session identification
attributes. If the session cannot be located, the switch returns a CoA-NAK message with the "Session Context
Not Found" error-code attribute. If the session is located, the switch disables the hosting port for a period of
10 seconds, re-enables it (port-bounce), and returns a CoA-ACK.
Catalyst 2960-XR Switch Security Configuration Guide, Cisco IOS Release 15.0(2)EX1
60
Configuring RADIUS
OL-29434-01

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents