RADIUS ATTRIBUTES REFERENCE GUIDE 
RELEASE 14.0.R4
RADIUS Attributes Reference
Issue: 01 3HE 10793 AAAB TQZZA 01 69
 
26-6527-144 Alc-Tunnel-Acct-Policy Refers to a preconfigured L2TP tunnel accounting policy-name 
(configure aaa l2tp-accounting-policy policy-name). L2TP 
tunnel accounting (RFC 2867) can collect usage data based 
either on L2TP tunnel and/or L2TP session and send these 
accounting data to a RADIUS server. Different RADIUS 
attributes like [66] Tunnel-Client-Endpoint, [67] Tunnel-Server-
Endpoint, [68] Acct-Tunnel-Connection, [82] Tunnel-
Assignment-ID could be used to identify the tunnel or session. 
The value with tag 0 is used as default for the tunnels where the 
value is not specified. Preconfigured values are used when 
attribute is omitted (configure router/service vprn service-id 
l2tp radius-accounting-policy). Unreferenced policy-names 
or policy-names longer than the allowed maximum are treated 
as host setup failures.
26-6527-204 Alc-Tunnel-DF-bit This attribute is used on an L2TP LAC only. By default, a LAC 
does not allow L2TP packet fragmentation by sending L2TP 
towards the LNS with the Do not Fragment (DF) bit set to 1. This 
DF bit can be set to 0 to allow downstream routers to fragment 
the L2TP packets. The LAC itself will not fragment L2TP 
packets. Packets sent with MTU bigger than the allowed size on 
the LAC egress port are dropped. This attribute is silently 
ignored if RADIUS returns an Alc-Tunnel-Group attribute. In 
that case, the tunnel level, group level, or as last resort the root 
level configuration is used instead.
26-6527-214 Alc-Tunnel-Recovery-Method Sets the L2TP LAC failover recovery-method to be used for this 
tunnel: mcs or recovery-tunnel (RFC 4951). Preconfigured 
values are used when attribute is omitted (configure router/
service vprn service-id l2tp failover recovery-method). 
When tunnel recovery method is set to recovery-tunnel but 
LNS does not support this capability, then the system 
automatically falls back to mcs.
Values outside the limits are treated as a setup failure.
26-6527-215 Alc-Tunnel-Recovery-Time Only applicable when the L2TP LAC failover recovery-method 
is set to recovery-tunnel. Sets the L2TP LAC failover recovery-
time to be negotiated with LNS via L2TP failover extensions 
(RFC 4951). It indicates to the LNS how long it needs to extend 
its protocol retry timeout before declaring the control channel 
down. Preconfigured values are used when attribute is omitted 
(configure router/service vprn service-id l2tp failover 
recovery-time).
Values outside the limits are treated as a setup failure.
Table 8 Wholesale-Retail: L2TP Tunneled Access Mode (Description) (Continued)
Attribute ID Attribute Name Description