RFC3576ÖÐÎİæ ÏÂÔØ±¾ÎÄ

ÊØÔò×é³ÉµÄ×Ö½ÚÁ÷±êʶ·û£¬³¤¶È£¬

ÇëÇóAuthenticatorÓò´ÓÊý¾Ý°ü±»»Ø´ð£¬

ÏìÓ¦£¬Èç¹ûûÓеÄÊôÐÔ£¬È»ºóͨ¹ý¹²ÏíµÄÃØÃÜ¡£ Óɴ˲úÉúµÄ16¸ö×Ö½ÚµÄMD5¹þÏ£Öµ±»´æ´¢ÔÚ AuthenticatorÓòÏìÓ¦±¨ÎÄ¡£

ÐÐÕþ×¢£ºÕýÈç[RFC2865]µÚ3½Ú£¬ÃØÃÜ

£¨¿Í»§¶ËºÍRADIUS·þÎñÆ÷Ö®¼ä¹²ÏíµÄÃÜÂ룩£¬Ó¦ ÖÁÉÙÒ»Ñù´ó£¬Í¶µÝ¾«ÐÄÌôÑ¡µÄÃÜÂë¡£ RADIUS ¿Í»§¶Ë±ØÐëʹÓÃRADIUS UDPÊý¾Ý°üµÄÔ´IPµØÖ· ¾ö¶¨¹²ÏíÃØÃÜʹÓã¬ÕâÑùÇëÇó¾Í¿ÉÒÔ±»´úÀí¡£

ÊôÐÔ

ÔÚ¶Ï¿ªºÍCOAÇëÇóÏûÏ¢£¬ËùÓеÄÊôÐÔ±»ÊÓΪ

×÷ÎªÇ¿ÖÆÐԵġ£Ò»¸öNAS±ØÐëÓ¦¶ÔµÄCoA-ÇëÇó°üº¬Ò»¸ö »ò¶à¸ö²»Ö§³ÖµÄÊôÐÔ»òÊôÐÔÖµÓëCOAA-NAK; ¶Ï¿ªÇëÇó°üº¬Ò»¸ö»ò¶à¸ö²»Ö§³ÖµÄÊôÐÔ ÊôÐÔÖµ±ØÐë¶Ï¿ªNAK»Ø´ð¡£ÖÝ

±ØÐëÊÇÔ­×ӵı仯Ôì³ÉµÄCoAÇëÇó£º ÇëÇóÊdzɹ¦µÄCoA-ACK·¢ËÍ£¬ËùÓÐÒªÇó ÊÚȨ±ØÐë×÷³ö¸Ä±ä¡£ £¬Èç¹ûCOAÇëÇóÊÇ ²»³É¹¦µÄCoA-NAK±ØÐë±»·¢ËÍ£¬ºÍ±»ÇëÇó

ǧҶ£¬µÈ¡£ÐÅÏ¢[µÚ15Ò³]

RFC 3576¶¯Ì¬ÊÚȨÀ©Õ¹µ½radiusΪ2003Äê7ÔÂ

ÊÚȨһ¶¨ÊÇûÓиı䡣ͬÑù£¬×´Ì¬¸Ä±ä

±ØÐë×÷Ϊһ¸ö²»³É¹¦µÄ¶Ï¿ªÇëÇóµÄ½á¹û²»»á·¢Éú; ÕâÀï¶Ï¿ª£¬±ØÐë·¢ËÍNAK¡£

ÓÉÓÚÔÚ±¾ËµÃ÷ÊéÖеÄÊôÐÔ¿ÉÒÔ±»ÓÃÓÚ Ê¶±ð£¬ÊÚȨ»òÆäËûÄ¿µÄ£¬¼´Ê¹Ò»¸öNAS ʵÏÖÁËÒ»¸öÊôÐÔÓÃÓÚRADIUSÈÏÖ¤ºÍ »á¼Æ£¬Ëü¿ÉÄܲ»Ö§³ÖÄÚÄÉÈë¸ÃÊôÐÔ

¶Ï¿ªÁ¬½ÓÇëÇó»òCOAÇëÇóÏûÏ¢£¬¸ø³öÖвî ÔÚÊôÐÔÓïÒå¡£ÕâÊÇÕæÊµµÄ£¬¼´Ê¹ÊôÐÔ

[RFC2865]£¬[RFC2868]£¬[RFC2869]»ò[RFC3162]Ö¸¶¨µÄ·¶Î§ÄÚ

ÄÚÔÊÐí·ÃÎʽÓÊÜÏûÏ¢¡£

Òò´Ë£¬ÊôÐÔ³¬Ô½ÔÚ3.2½ÚµÄ¹æ¶¨¡£ ²»Ó¦¸Ã±»°üº¬ÄÚ¶Ï¿ª»òCOAÏûÏ¢£¬ÒòΪ Õâ»á²úÉúÎÞ·¨Ô¤ÁϵĽá¹û¡£

µ±Ê¹ÓÃת·¢´úÀí£¬´úÀí±ØÐëÄܹ»¸Ä±ä

£¬ÒòΪËüͨ¹ýÔÚÿ¸ö·½ÏòÉϵÄÊý¾Ý°ü¡£µ±´úÀí

ת·¢Ò»¸ö¶Ï¿ª»òCOAÇëÇóµÄ£¬Ëü¿ÉÄÜ»áÔö¼Ó´úÀí¹ú¼Ò ÊôÐÔ£¬ºÍ´úÀíת·¢ÏìӦʱ£¬Ëü±ØÐëɾ³ý

Æä´úÀí¹ú¼ÒÊôÐÔ£¬Èç¹ûËüÔö¼ÓÁËÒ»¸ö¡£´úÀí¹ú¼Ò×ÜÊÇ Ìí¼Ó»òɾ³ýÈÎºÎÆäËû´úÀíµÄ¹úºó£¬µ«Ã»ÓÐÆäËû ¼ÙÉèÓÐ¹ØÆäλÖõÄÊôÐÔÁбíÄÚ

¿ÉÖÆ³É¡£ÓÉÓÚ¶Ï¿ªºÍCoA·´Ó¦½øÐÐÉí·ÝÑéÖ¤ ¶ÔÕû¸öÊý¾Ý°üµÄÄÚÈÝ£¬°þÀëµÄProxy-State ÊôÐÔÎÞЧµÄÍêÕûÐÔ¼ì²é - ´úÀíÐèÒª

ÖØÐ¼ÆË㡣ת·¢´úÀí±ØÐëÐÞ¸ÄÏÖÓеĴúÀí Ŀǰ¹ú¼Ò£¬ÖÝ»òÀàÊôÐÔµÄÊý¾Ý°ü¡£

Èç¹ûÓÐÈκÎÒ»¸ö¶Ï¿ªÇëÇóÖеÄProxy-StateÊôÐÔ»ò COAÇëÇó´Ó·þÎñÆ÷½ÓÊÕ£¬×ª·¢´úÀí±ØÐë °üÀ¨ÄÇЩÆäÓ¦¶ÔµÄProxy-StateÊôÐÔ ·þÎñÆ÷¡£×ª·¢´úÀí¿ÉÄܰüÀ¨´úÀí¹ú¼Ò ÔÚ¶Ï¿ªÁ¬½ÓÇëÇó»òCOAÇëÇóµÄÊôÐÔ£¬µ±Ëü ½«ÇëÇóת·¢£¬»òÕß¿ÉÄÜÊ¡ÂÔÔÚת·¢

ÇëÇó¡£ £¬Èç¹ûת·¢´úÀíÊ¡ÂÔµÄProxy-StateÊôÐÔ ÇëÇó£¬Ëü±ØÐ븽¼Óµ½ÏìÓ¦·¢ËÍǰ µ½·þÎñÆ÷¡£

ǧҶ£¬µÈ¡£ÐÅÏ¢[µÚ10Ò³]

RFC 3576¶¯Ì¬ÊÚȨÀ©Õ¹µ½radiusΪ2003Äê7ÔÂ

3¡£ÊôÐÔ

ÔÚ¶Ï¿ªÇëÇóºÍCOAA-Request±¨ÎÄÖУ¬Ä³Ð©ÊôÐÔ ÓÃÓÚΨһµØÊ¶±ðµÄNAS£¬ÒÔ¼°Ò»¸öÉϵÄÓû§»á»° NAS¡£ËùÓÐNAS¼ø±ðÇëÇóÏûÏ¢Öаüº¬µÄÊôÐÔ ±ØÐëÆ¥Å䣬ÒÔ±ã¶Ï¿ªÇëÇó»òCOAÇëÇó

³É¹¦£¬·ñÔò¶Ï¿ªNAK»òCOAA-NAKÓ¦¸Ã±»·¢ËÍ¡£ ÓÃÓڻỰ±êʶµÄÊôÐÔ£¬Óû§Ãû³ÆºÍACCT »á»°IDÊôÐÔ£¬±ØÐëÆ¥Å䣬Èç¹ûΪÁËʹ

¶Ï¿ªÁ¬½ÓÇëÇó»òCOAÇëÇó²ÅÄܳɹ¦;ÆäËû»áÒé ʶ±ðÊôÐÔÓ¦¸ÃÆ¥Åä¡£Èç¹û³öÏÖ²»Æ¥ÅäµÄ»á»° ʶ±ðÊôÐÔ±»¼ì²âµ½£¬¶Ï¿ªNAK»òCOAA-NAK Ó¦¸Ã±»·¢ËÍ¡£Äܹ»Ê¹ÓÃNAS»ò»á»°Éí·Ý ÊôÐÔÓ³Éäµ½¶ÀÌØ/¶à¸ö»á»°·¶Î§ÒÔÍâµÄ ±¾Îļþ¡£¼ø¶¨ÊôÐÔ°üÀ¨NASºÍ»á»° ±êÊ¶ÌØÐÔ£¬ÈçÏÂËùÊö¡£

NASʶ±ðÊôÐÔ

ÊôÐÔ££²Î¿¼ËµÃ÷

--------------------------------

NAS-IPµØÖ·[RFC2865]ÔÚNASµÄIPv4µØÖ·¡£ NAS±êʶ·û32 [RFC2865]×Ö·û´®Ê¶±ðNAS¡£

NAS-IPv6µÄµØÖ·95 [RFC3162]ÔÚNASµÄIPv6µØÖ·¡£

ǧҶ£¬µÈ¡£ÐÅÏ¢[µÚ11Ò³]

RFC 3576¶¯Ì¬ÊÚȨÀ©Õ¹µ½radiusΪ2003Äê7ÔÂ

»á»°±êʶÊôÐÔ

ÊôÐÔ££²Î¿¼ËµÃ÷

-------------------------------- Óû§Ãû1 [RFC2865]µÄÓû§Ãû

Óë»á»°Ïà¹ØÁª¡£ NAS¶Ë¿Ú5 [RFC2865]µÄ¶Ë¿Ú

»á»°±»ÖÕÖ¹¡£ Ö¡IPµØÖ·[RFC2865]¹ØÁªµÄIPv4µØÖ·

Óë»á»°¡£ ±»½ÐÕ¾ID 30 [RFC2865]Á´½ÓµØÖ·

»á»°Á¬½Ó¡£ ºô½ÐÕ¾ID 31 [RFC2865]Á´½ÓµØÖ·

»á»°Á¬½Ó¡£ ACCT»á»°ID 44 [RFC2866]±êʶ·ûΨһ

ʶ±ð»á»° ÔÚNASÉÏ¡£ ÕÊ»§¶à»á»°ID 50 [RFC2866]±êʶ·ûΨһ

È·¶¨Ïà¹ØµÄ»áÒé¡£ NAS¶Ë¿ÚÀàÐÍ61 [RFC2865]ËùÓõĶ˿ÚÀàÐÍ¡£ NAS¶Ë¿ÚID 87 [RFC2869]×Ö·û´®Ê¶±ð¶Ë¿Ú

»á»°¡£ ʼ·¢Ïß·ÐÅÏ¢94 [NASREQ]ÌṩÐÅÏ¢

ÏßµÄÌØÐÔ ´ÓÄĸö»á»° ÆðÔ´¡£ ¿ò¼ÜµÄ½Ó¿ÚID 96 [RFC3162] IPv6½Ó¿Ú±êʶ·û

Óë»á»°Ïà¹ØÁª; ×ÜÊÇ·¢ËÍ

Ö¡IPv6ǰ׺¡£ Ö¡IPv6ǰ׺97 [RFC3162]Ïà¹ØµÄIPv6ǰ׺