AccessManager radius client cannot send NAS-IP-Address attribute

  • 3409387
  • 07-Jan-2008
  • 26-Apr-2012

Environment

Novell Access Management 3 Linux Novell Identity Server
Novell Access Management 3 Support Pack 1 applied
Radius server requiring the NAS-IP-Address attribute

Situation

The VASCO's Vacman Middleware (version 3) requires the NAS-IP-Address attribute for an Access-Request for RADIUS Authentication. Current RADIUS RFC 2865 states the following regarding this attribute:

"This Attribute contains a string identifying the NAS originating the Access-Request. It is only used in Access-Request packets. Either NAS-IP-Address or NAS-Identifier MUST be present in an Access-Request packet."

Resolution

Populate the NAS_IP_ADDRESS property on the Radius class or method with the IP address of the Novell Identity server.

When this is setup, the outgoing radius request will have the NAS_IP_ADDRESS attribute with the string identifying the NAS originating the Access-Request ie. the Novell Identity server.