first of all in the ADMIN of the RA8000 set the following parameters

enable_security:*Y security_broadcast:*N
pref_secure1_host:* pref_secure2_host:*
network_turnaround: 2 loose_source_route: Y
acp_key: "<unset>" password:*"<set>"
lock_enable: Y passwd_limit: 3
chap_auth_name:*"RLAN" max_chap_chall_int: 0
auth_protocol:*radius enable_radius_acct:*Y
radius_acct1_host:* radius_acct2_host:*
radius_auth1_port: 1645 radius_auth2_port: 1645
radius_acct1_port: 1646 radius_acct2_port: 1646
radius_auth1_secret:*"<set>" radius_auth2_secret:*"<set>"
radius_acct1_secret:*"<set>" radius_acct2_secret:*"<set>"
radius_auth_timeout: 4 radius_acct_timeout: 4
radius_retries: 10 radius_acct_level:*basic
radius_user_prompt: "Annex%susername%c"
radius_pass_prompt: "Annex%spassword%c"
compatibility_mode: BayNetworks

ofcourse change the IP-addresses to your servers...

The radius_port_encoding lets the RA send the port in a more useful way,
indicating the WAN-channel, Type of Call and port the call was on... It
works for us.


I am having trouble getting the On-line feature to work in Emerald with
Bay Networks RAC8000. When I run radius in debug mode I see the

Resp Time: 10 Auth: 135/28 -> 163 Acct: 2/0/0 -> 2
radrecv: Request from host d84dbe42 code=1, id=79, length=128
User-Name = "jcbradford"
Password = "\036l\313\322\007\370\214\335\024\234r\332\347\353"
User-Service = Framed-User
Framed-Protocol = PPP
NAS-Identifier =
Framed-Address =
NAS-Port = 12
NAS-Port-Type = ISDN
NAS-Port-DNIS = "5024440608"
Caller-Id = "5024438078"
Signature = "\201P\037E\233gpZ\263\027\2261\357?i\300"
Password = "\036l\313\322\007\370\214\335\024\234r\332\347\353"

SQL Statement: Select DateDiff(Minute, GetDate(), DateAdd(Day,
..OverDue+1), maExpireDate)), DateDiff(Minute, GetDate(), DateAdd(Day,
on+1, saExpireDate)), sa.AccountID, sa.AccountType, sa.Password,
ell, sa.LoginLimit, ma.Balance, ma.OverLimit From MasterAccounts ma,
sa Where (sa.Login='jcbradford' or sa.Shell='jcbradford' or
rd') AND ma.CustomerID=sa.CustomerID and sa.Active<>0 and ma.Active<>0

Decrypted Password: davidson
Database Password: davidson
Checking for duplicate logins.

SQL Statement: RadCheckOnline 'jcbradford'

jcbradford found on-line 0 time(s).

SQL Statement: RadGetConfigs 63

Loading radius defaults for this type...

SQL Statement: RadGetATConfigs 'PPP'

User-Service = Framed-User (2)
Framed-Protocol = PPP (1)
Sending Ack of id 79 to d84dbe42 (RAC8000)
User-Service = Framed-User
Framed-Protocol = PPP

Resp Time: 10 Auth: 136/28 -> 164 Acct: 2/0/0 -> 2

It appears that the RAC8000 is sending the NAS-port = 12. However, I do
see the call online. Nor does it appear in the users log file. I called
to ask them what the port values where and they said on async they use
and on sync 1-64.

Any clues?

I have been trying to make this think work for 2 weeks and am starting
look for loaded gun.

Tim Farmer
