How to set user RADIUS profile to include Cisco vendor-specific DNS servers (primary and secondary)
Originally Published: 2004-03-08
Article Number
Applies To
RADIUS
Cisco VPN 3000 Concentrator
Vendor-Specific Attribute (VSA)
Issue
User does not have (but needs) a Primary DNS set in RADIUS profile
Cisco VPN Concentrator does not work with the Ascend Primary DNS attribute number of 135 set in user profile
Resolution
1. Choose to edit or add Profile
2. From left hand table, choose Vendor-Specific and press button "Add Attribute"
3. In pop-up box, choose Value type to be String Value
4. Enter value: 9 1 "ip:dns-servers=192.168.1.20"
5. Click OK button
If there is a need to enter more than one DNS Server IP address, then separate the IP addresses with space character as shown below:
9 1 "ip:dns-servers=192.168.1.20 192.168.2.21"
As an example, when adding the vendor-specific attribute into the ACE/Server user profile, the Primary DNS should look like the following:
3076 1 "ip:CVPN3000-Primary-DNS=192.168.2.23"
and for the secondary DNS:
3076 1 "ip:CVPN3000-Secondary-DNS=192.168.4.22"
Workaround
for more information.
Related Articles
Secondary RVM not available when Primary down 10Number of Views New Archive run cannot be created due to overlapping with existing archives error in RSA Identity Governance & Lifecycle 41Number of Views All 50-series Appliance: End of Sale/End of Life Notification 56Number of Views Error: '** FIND FIRST/LAST failed for table replace-token-buffer.(565)' when unassigning replacement token and 'this token… 82Number of Views Cloud Access Service User System Requirements 159Number of Views
Trending Articles
Download RSA SecurID Access Cloud User Event audit logs using Cloud Administration REST API CLU RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory Authentication Manager Security Console and Operations Console Inaccessible After Certificate Update Authentication Manager How to Retrieve the LDAPS Certificate and Configure an External Identity Source to Use LDAPS
Don't see what you're looking for?