You are here
- Home
- Scott's eduroam blog
- Blogs
- Sending Operator Name with Cisco ACS 5.4
Group administrators:
Recent members:
Sending Operator Name with Cisco ACS 5.4
Friday, July 13, 2012 - 22:30
Sending Operator Name with ACS 5.4
Cisco ACS 5.4 provides the ability to inject and/or overwrite RADIUS attributes while proxying. This means that attribute 126 Operator Name can be injected for eduroam Visited sites.
Note: This guide is specifically for adding Operator Name attribute injection to an existing Visited Site. For details of how to configure ACS to be a Visited Site see https://community.ja.net/blogs/scotts-eduroam-blog/article/eduroam-visited-configuration-cisco-acs-53
Operator Name injection while proxying to NRPS
In the Visitor Access Policy (JRS in the example below) first remove any existing Operator Name attributes (which may have been added by the NAS) and add the Service Provide Operator Name.
- Go to “Access Policies > Access Services” and click on the Visitor Access Policy (JRS)
- Click on the “RADIUS Attibutes” drop down (Below “External Proxy Servers”)
- Select “RADIUS-IETF” as the “Dictionary Type:”
- Click the ‘Select’ button for “RADIUS Attribute”
- In the ‘RADIUS Dictionary popup window select ‘ID’ in the “Filter:” field
- In the ‘RADIUS Dictionary popup window select ‘Equals’ in the “Match If:” field
- In the ‘RADIUS Dictionary popup window in the text box after the “Match If:” field enter 126 and click the ‘Go’ button
- Then tick the radio button for ‘Operator-Name’ and click ‘OK’ at the bottom
- In the “Operation:” field chose ‘DELETE’ and then click the ‘Add ^’ button
- Repeat steps 3 to 8
- In the “Operation:” field chose ‘ADD’
- In the “Attribute New Value:” text box enter the your site's realm prepended with 1 e.g. ‘1camford.ac.uk’
- Click the ‘Add ^’ button
- Click the ‘Submit’ button