Chapter 54 AAA
XMG1915 Series User’s Guide
316
54.4.2  Supported RADIUS Attributes
Remote Authentication Dial-In User Service (RADIUS) attributes are data used to define specific 
authentication elements in a user profile, which is stored on the RADIUS server. This section lists the 
RADIUS attributes supported by the Switch.
Refer to RFC 2865 for more information about RADIUS attributes used for authentication.
This section lists the attributes used by authentication functions on the Switch. In cases where the 
attribute has a specific format associated with it, the format is specified.
54.4.3  Attributes Used for Authentication
The following sections list the attributes sent from the Switch to the RADIUS server when performing 
authentication.
54.4.3.1  Attributes Used to Login Users
User-Name
User-Password
NAS-Identifier
NAS-IP-Address
54.4.4  Attributes Used for Accounting
The following sections list the attributes sent from the Switch to the RADIUS server when performing 
authentication.
Table 178   Supported VSAs
FUNCTION ATTRIBUTE
Privilege Assignment
Vendor-ID = 890
Vendor-Type = 3
Vendor-Data = "shell:priv-lvl=N"
or
Vendor-ID = 9 (CISCO)
Vendor-Type = 1 (CISCO-AVPAIR)
Vendor-Data = "shell:priv-lvl=N"
where N is a privilege level (from 0 to 14). 
Note: If you set the privilege level of a login account differently on the RADIUS 
servers and the Switch, the user is assigned a privilege level from the 
database (RADIUS or local) the Switch uses first for user authentication.