Mailing List Archive

dial-backup "extra" authentication
A lot of our customers have leased lines with us, but they also have an isdn line serving
as a backup method. The ll + bri config is on the same router on customer's side.

We are trying to find a method (through aaa) in order to distinguish isdn calls coming
from this router, from isdn calls coming from a pc. Both calls are made using the same
username/password and are terminated to the same nas.

Is there a way we can accomplish such a thing?

We're thinking of CLID, but there are 2 problems with this:

1. Our PTT doesn't always provide CLID
2. The pc isdn call may originate from the same isdn number as the router isdn call, so
the CLID will be the same


--
***********************************
Chatzithomaoglou Anastasios
Network Design & Operations Center
FORTHnet S.A.
<achatz@forthnet.gr>
***********************************
Re: dial-backup "extra" authentication [ In reply to ]
Realistically, I think your best bet will be to change
the username/password configured on the ISDN client routers
to be different from what's used on the PCs.

If you can't have different usernames, and can't count
on CLID, then all that remains is DNIS. Of course there
will be nothing stopping the ISDN PCs from calling to
the "router" DNIS, other than obscurity.

Aaron

---

> A lot of our customers have leased lines with us, but they also have an isdn line serving
> as a backup method. The ll + bri config is on the same router on customer's side.

> We are trying to find a method (through aaa) in order to distinguish isdn calls coming
> from this router, from isdn calls coming from a pc. Both calls are made using the same
> username/password and are terminated to the same nas.

> Is there a way we can accomplish such a thing?

> We're thinking of CLID, but there are 2 problems with this:

> 1. Our PTT doesn't always provide CLID
> 2. The pc isdn call may originate from the same isdn number as the router isdn call, so
> the CLID will be the same


> --
> ***********************************
> Chatzithomaoglou Anastasios
> Network Design & Operations Center
> FORTHnet S.A.
> <achatz@forthnet.gr>
> ***********************************


> _______________________________________________
> cisco-nas mailing list
> cisco-nas@puck.nether.net
> https://puck.nether.net/mailman/listinfo/cisco-nas