Component: radius
22 changelog entries across 17 version(s)
Activity over time (changelog entries per month)
- fixed issue with Session-Timeout attribute functionality;
- fixed RADIUS client section becoming unresponsive when RadSec is configured, but server is not responding;
- fixed wrong RadSec port number in logs;
- properly verify certificate when RadSec is used;
- added "require-message-auth" option that requires "Message-Authenticator" in received Access-Accept/Challenge/Reject messages;
- include "Message-Authenticator" in any RADIUS communication messages besides accounting for all services;
- added "require-message-auth" option that requires "Message-Authenticator" in received Access-Accept/Challenge/Reject messages;
- include "Message-Authenticator" in any RADIUS communication messages besides accounting for all services;
- require "policy" policy for "login" service configuration;
- added VRF support for RADIUS client;
- added "Service-Type" attribute to Access-Request for IPv4 and IPv6 DHCP servers;
- added "Service-Type" attribute to Access-Request for IPv4 and IPv6 DHCP servers;
- fixed open socket leak when invalid packet is received (introduced in v6.44);
- fixed open socket leak when invalid packet is received (introduced in v6.44);
- fixed "User-Password" encoding (introduced in v6.45);
- implemented Proxy-State attribute handling in CoA and disconnect requests;
- added warning if PPP authentication over RADIUS is enabled;
- increase allowed RADIUS server timeout to 60s;
- limited RADIUS timeout maximum value to 3 seconds;
- added IPSec service (cli only);
- warn radius client if incorrect secret is being used;
- respond to CoA & Disconnect requests with the same ip address