How to set user RADIUS profile to include Cisco vendor-specific DNS servers (primary and secondary)
Originally Published: 2004-03-08
Article Number
Applies To
RADIUS
Cisco VPN 3000 Concentrator
Vendor-Specific Attribute (VSA)
Issue
User does not have (but needs) a Primary DNS set in RADIUS profile
Cisco VPN Concentrator does not work with the Ascend Primary DNS attribute number of 135 set in user profile
Resolution
1. Choose to edit or add Profile
2. From left hand table, choose Vendor-Specific and press button "Add Attribute"
3. In pop-up box, choose Value type to be String Value
4. Enter value: 9 1 "ip:dns-servers=192.168.1.20"
5. Click OK button
If there is a need to enter more than one DNS Server IP address, then separate the IP addresses with space character as shown below:
9 1 "ip:dns-servers=192.168.1.20 192.168.2.21"
As an example, when adding the vendor-specific attribute into the ACE/Server user profile, the Primary DNS should look like the following:
3076 1 "ip:CVPN3000-Primary-DNS=192.168.2.23"
and for the secondary DNS:
3076 1 "ip:CVPN3000-Secondary-DNS=192.168.4.22"
Workaround
for more information.
Related Articles
Secondary RVM not available when Primary down 10Number of Views When adding a new secondary node to an agent host using sdadmin the first secondary node is selected when tabbing to the o… 5Number of Views How to send authentication requests to alternative/secondary IP addresses of the RSA Authentication Manager 8.x server 81Number of Views For secondary remediator, Maintain All doesn't work after selecting Clear All option 3Number of Views New Archive run cannot be created due to overlapping with existing archives error in RSA Identity Governance & Lifecycle 39Number of Views
Trending Articles
RSA Authentication Manager 8.7 SP2 Setup and Configuration Guide RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide How to Upgrade Internal SHA-1 Certificates to SHA-256 in Authentication Manager Using rsautil RSA Authentication Manager 8.9 Setup and Configuration Guide How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device
Don't see what you're looking for?