What attributes are needed to Radius COA?

  • 1
  • Question
  • Updated 5 years ago
  • Answered
There is no information about it, can you help me?

Thanks
Photo of Felipe

Felipe

  • 6 Posts
  • 2 Reply Likes
  • thankful

Posted 5 years ago

  • 1
Photo of Mike Kouri

Mike Kouri, Official Rep

  • 1030 Posts
  • 271 Reply Likes
Felipe,
Your question is a little vague for us to answer confidently. Can you elaborate on what specifically you are wanting to accomplish?
Photo of Felipe

Felipe

  • 6 Posts
  • 2 Reply Likes
Sorry
I wish I could disconnect and change attributes of users connected to an AP. I saw that in the configuration of an external RADIUS server, it is possible to enable sending Change-of-Authorization (CoA) messages, as are described in RFC 5176.Aerohive doesn't have documentation about it

I want to disconnect users sending these messages without using HMOL

regards
Photo of Kell Van Daal

Kell Van Daal

  • 9 Posts
  • 1 Reply Like
Hi Felipe,

We do support CoA as defined in RFC 3576. RFC 5176 supersedes RFC 3576, so your external RADIUS Server should support it.

To enable CoA, go to "Configuration -> Advanced Configuration -> Authentication -> AAA Client Settings" and edit your appropriate entry. Check the box called "Permit Dynamic Change of Authorization Messages (RFC 3576)".

See the attached screenshot.
Photo of Felipe

Felipe

  • 6 Posts
  • 2 Reply Likes
Thanks for your answer

I checked the box and configured the RADIUS server to redirect messages to the AP, and I do not receive any response.

regards
Photo of Kell Van Daal

Kell Van Daal

  • 9 Posts
  • 1 Reply Like
Hi Felipe,

What RADIUS Server are you using? And how is it configured? If it is a well-known RADIUS Server, I might be able to recreate your setup here. If not, I might have to ask you to call Support on this.
Photo of Felipe

Felipe

  • 6 Posts
  • 2 Reply Likes
Hi Kell,

i've been investigating about it. The problem was the radius server, not Aerohive AP. I update the server and problem resolved.

Thanks for your responses

Best regards.