сабж, не ставятся acl и rate limit.
AS5300, IOS (tm) 5300 Software (C5300-IS-M), Version 12.3(10), RELEASE SOFTWARE (fc3)
подключение по PPTP, radius - netup utmпередаю такие атрибуты, для acl:
vendor 0, attribut 11, значение "acl=94" (также пробовал ставить - acl=94.in и просто 94)
для rate limit:
vendor 9, attribut 1, значение "lcp:interface-config#1=rate-limit output 64000 8000 8000 conform-action transmit exceed-action drop"
атрибуты на циску приходят, но ничего не работает, вот дебаг:
Aug 26 08:37:08.827: RADIUS: Filter-Id [11] 8
Aug 26 08:37:08.827: RADIUS: 61 63 6C 3D 39 34 [acl=94]
Aug 26 08:37:08.827: RADIUS: Filter-Id [11] 11
Aug 26 08:37:08.827: RADIUS: 61 63 6C 3D 39 34 2E 69 6E [acl=94.in]
Aug 26 08:37:08.827: RADIUS: Vendor, Cisco [26] 107
Aug 26 08:37:08.827: RADIUS: Cisco AVpair [1] 101 "lcp:interface-config#1=rate-limit input 64000 8000 8000 conform-action transmit exceed-action drop "
Aug 26 08:37:08.827: RADIUS: Vendor, Cisco [26] 107
Aug 26 08:37:08.827: RADIUS: Cisco AVpair [1] 101 "lcp:interface-config#1=rate-limit output 64000 8000 8000 conform-action transmit exceed-action drop"
nas-1#sh interfaces rate-limit
nas-1#
nas-1#sh ip in vi3
Virtual-Access3 is up, line protocol is up
Interface is unnumbered. Using address of Loopback0 (10.0.192.129)
Broadcast address is 255.255.255.255
Peer address is 10.0.192.173
MTU is 1500 bytes
Helper address is not set
Directed broadcast forwarding is disabled
Outgoing access list is not set
Inbound access list is not set