000022574 - Windows 2008 Terminal Server Gateway integration with Steel Belted RADIUS 6.1

Document created by RSA Customer Support Employee on Jun 14, 2016Last modified by RSA Customer Support Employee on Apr 22, 2017
Version 2Show Document
  • View in full screen mode

Article Content

Article Number000022574
Applies ToMicrosoft Windows 2008 Terminal Server Gateway
RSA RADIUS 6.1.x
Steel Belted Radius for Authentication Manager 6.1
Resolution

Microsoft Windows 2008 Terminal Server Gateway needs  the following Service-Type Attribute Value:  Authorize-Only. Service-Type is an RFC standard RADIUS attribute not a Vendor Specific Attribute (VSA). There is no need to create a new dictionary or add the Make/Model to the Vendor.ini file . You can use Standard Radius for Make/Model.

The current SBR radius.dct file does not contain the standard attribute Service-Type value Authorize-Only

To add the attribute value go to C:\Program Files\RSA Security\RSA Radius\Service open the radius.dct file with notepad or wordpad.
add the following line under the Service-Type attribute VALUE Service-Type Authorize-Only 12 (this line is also case sensitive) example below:

 ATTRIBUTE Service-Type 6 integer Cr # NRHH

VALUE Service-Type Login 1

VALUE Service-Type Framed 2

VALUE Service-Type Callback-Login 3

VALUE Service-Type Callback-Framed 4

VALUE Service-Type Outbound 5

VALUE Service-Type Administrative 6

VALUE Service-Type NAS-Prompt 7

VALUE Service-Type Authenticate-Only 8

VALUE Service-Type Callback-NAS-Prompt 9

VALUE Service-Type Call-Check 10

VALUE Service-Type Callback-Administrative 11

VALUE Service-Type Authorize-Only 12

 

Legacy Article IDa38094

Attachments

    Outcomes