@rnayar wrote:
ERX-Framed-route-tag is used to assign tag.
"<addr>[/<maskLen>] [<nexthop> [<cost>]] [tag <tagValue>] [distance <distValue>]"
To assign Framed-route, please use below attribute.
ATTRIBUTE Framed-Route 22 string
Thanks you very much, My log file is :
Nov 30 16:35:52.785882 ###################################################################
Nov 30 16:35:52.785915 ########################### AUTH REQ RCVD #########################
Nov 30 16:35:52.786394 ###################################################################
Nov 30 16:35:52.786426 Auth-FSM: Process Auth-Request for session-id:3946
Nov 30 16:35:52.786460 Framework: Starting authentication
Nov 30 16:35:52.786498 authd_advance_module_for_aaa_request_msg: result:0
Nov 30 16:35:52.786537 Authd module start session-id:3946
Nov 30 16:35:52.786568 authd_radius_start_auth: Starting RADIUS authentication session-id:3946
Nov 30 16:35:52.786852 authd_radius_build_basic_auth_request: session-id:3946 profile=RADIUS, username=cty02
Nov 30 16:35:52.786895 radius-access-request: User-Name added: cty02
Nov 30 16:35:52.786956 radius-access-request: User-Password added: ""
Nov 30 16:35:52.787003 dup_type: 0 effective profile RADIUS
Nov 30 16:35:52.787079 radius-access-request: Service-Type added: 2
Nov 30 16:35:52.787137 radius-access-request: Framed-Protocol added: 1
Nov 30 16:35:52.787204 radius-access-request: Chargeable-User-Identity added:
Nov 30 16:35:52.787265 radius-access-request: Acct-Session-Id added: 3946
Nov 30 16:35:52.787343 radius-access-request: DHCP-MAC-Address (Juniper-ERX-VSA) added: abcd.0000.0001
Nov 30 16:35:52.787412 radius-access-request: NAS-Port added: 00 00 0f ff
Nov 30 16:35:52.787457 radius-access-request: NAS-Port-Id added: -0/0/0.0
Nov 30 16:35:52.787504 radius-access-request: NAS-Port-Type added: 15
Nov 30 16:35:52.787568 radius-access-request: PPPoE-Description (Juniper-ERX-VSA) added: pppoe ab:cd:00:00:00:01
Nov 30 16:35:52.787662 authd_create_application_specific_radius_server: Evaluating RADIUS server 192.168.10.5 to add to the server list
Nov 30 16:35:52.787703 Evaluating RADIUS server 192.168.10.5 to add to the server list
Nov 30 16:35:52.787747 Verify source address c0a80a14 in routing instance index=0
Nov 30 16:35:52.787853 authd_radius_server_add: server 192.168.10.5 retry 3, timeout 3
Nov 30 16:35:52.788177 Request queued successfully
Nov 30 16:35:52.788229 REQUEST: AUTHEN - module_index 0 module(radius) return: ASYNC
Nov 30 16:35:52.788284 UserAccess:cty02 session-id:3946 state:start -0/0/0.0
Nov 30 16:35:52.788325 Auth-FSM: GRES-Mirror for session-id:3946 state:AuthStart(1)
Nov 30 16:35:52.788359 doPersistedDataUpdates
Nov 30 16:35:52.788392 doPersistedDataUpdates
Nov 30 16:35:52.808902 RadiusServer: server[0] used for last request - 192.168.10.5 no timeout
Nov 30 16:35:52.808985 loadDefaultService:: default service for the subscriber is empty
Nov 30 16:35:52.809021 Radius result is CLIENT_REQ_STATUS_SUCCESS
Nov 30 16:35:53.031660 Parsing RADIUS message for session-id:3946
Nov 30 16:35:53.031783 radius-access-accept: Framed-Protocol received: 1
Nov 30 16:35:53.031857 RADIUS Attribute: Parse Error: "Unsupported attribute type" Radius Standard Attr-Type: 13
Nov 30 16:35:53.031907 radius-access-accept: IP-Loopback-Interface (Juniper-ERX-VSA) received: lo0.0
Nov 30 16:35:53.031959 radius-access-accept: Primary-DNS (Juniper-ERX-VSA) received: 8.8.8.8
Nov 30 16:35:53.032010 radius-access-accept: Secondary-DNS (Juniper-ERX-VSA) received: 8.8.4.4
Nov 30 16:35:53.032067 radius-access-accept: Egress-Policy-Name (Juniper-ERX-VSA) received: NETV1_UP
Nov 30 16:35:53.032121 radius-access-accept: Ingress-Statistics (Juniper-ERX-VSA) received: 1
Nov 30 16:35:53.032170 radius-access-accept: Egress-Statistics (Juniper-ERX-VSA) received: 1
Nov 30 16:35:53.032209 RADIUS Attribute: Parse Error: "Unsupported attribute type" Radius ERX VSA Attr-Type: 2
Nov 30 16:35:53.032302 processRadiusAttrib22: wholeString: [10.0.0.8/29 0.0.0.0 2]
Nov 30 16:35:53.032535 processRadiusAttrib22: Attribute 22 missing nextHop, using default [0.0.0.0]
Nov 30 16:35:53.032578 processRadiusAttrib22: Received FR Attributes
Nov 30 16:35:53.032637 radius-access-accept: Framed-Route received: 10.0.0.8/29 0.0.0.0 2
Nov 30 16:35:53.032694 radius-access-accept: Ingress-Policy-Name (Juniper-ERX-VSA) received: NETV1_DOWN
Nov 30 16:35:53.032778 Framework - module(radius) return: SUCCESS
Nov 30 16:35:53.032816 authd_advance_module_for_aaa_response_msg: result:2
Nov 30 16:35:53.032868 Client-session response-attr:: type:79 len:4
Nov 30 16:35:53.033589 Client-session response-attr:: type:122 len:4
Nov 30 16:35:53.033634 Client-session response-attr:: type:123 len:4
Nov 30 16:35:53.033835 authd_update_session_dynamic_attributes: Client-session response-dyn-attr:: name:junos-output-filter, len:8, value: NETV1_UP, encode 0
Nov 30 16:35:53.033890 authd_update_session_dynamic_attributes: Client-session response-dyn-attr:: name:junos-framed-route-ip-address-prefix, len:12, value: 10.0.0.8/29, encode 1
Nov 30 16:35:53.033937 authd_update_session_dynamic_attributes: Client-session response-dyn-attr:: name:junos-framed-route-nexthop, len:8, value: 0.0.0.0, encode 2
Nov 30 16:35:53.034014 authd_update_session_dynamic_attributes: Client-session response-dyn-attr:: name:junos-framed-route-cost, len:1, value: 2, encode 3
Nov 30 16:35:53.034061 authd_update_session_dynamic_attributes: Client-session response-dyn-attr:: name:junos-input-filter, len:10, value: NETV1_DOWN, encode 0
Nov 30 16:35:53.034110 Finding a client snapshot sessions
But when I show route table, Why I don't show 10.0.0.8 route.