diff options
Diffstat (limited to '')
-rw-r--r-- | share/dictionary.cisco | 226 | ||||
-rw-r--r-- | share/dictionary.cisco.asa | 369 | ||||
-rw-r--r-- | share/dictionary.cisco.bbsm | 15 | ||||
-rw-r--r-- | share/dictionary.cisco.vpn3000 | 243 | ||||
-rw-r--r-- | share/dictionary.cisco.vpn5000 | 21 |
5 files changed, 874 insertions, 0 deletions
diff --git a/share/dictionary.cisco b/share/dictionary.cisco new file mode 100644 index 0000000..c629228 --- /dev/null +++ b/share/dictionary.cisco @@ -0,0 +1,226 @@ +# -*- text -*- +# Copyright (C) 2019 The FreeRADIUS Server project and contributors +# This work is licensed under CC-BY version 4.0 https://creativecommons.org/licenses/by/4.0 +# +# Accounting VSAs originally by +# "Marcelo M. Sosa Lugones" <marcelo@sosa.com.ar> +# +# Version: $Id$ +# +# For documentation on Cisco RADIUS attributes, see: +# +# http://www.cisco.com/univercd/cc/td/doc/product/access/acs_serv/vapp_dev/vsaig3.htm +# +# For general documentation on Cisco RADIUS configuration, see: +# +# http://www.cisco.com/en/US/partner/tech/tk583/tk547/tsd_technology_support_sub-protocol_home.html +# + +VENDOR Cisco 9 + +# +# Standard attribute +# +BEGIN-VENDOR Cisco + +ATTRIBUTE Cisco-AVPair 1 string +ATTRIBUTE Cisco-NAS-Port 2 string + +# +# T.37 Store-and-Forward attributes. +# +ATTRIBUTE Cisco-Fax-Account-Id-Origin 3 string +ATTRIBUTE Cisco-Fax-Msg-Id 4 string +ATTRIBUTE Cisco-Fax-Pages 5 string +ATTRIBUTE Cisco-Fax-Coverpage-Flag 6 string +ATTRIBUTE Cisco-Fax-Modem-Time 7 string +ATTRIBUTE Cisco-Fax-Connect-Speed 8 string +ATTRIBUTE Cisco-Fax-Recipient-Count 9 string +ATTRIBUTE Cisco-Fax-Process-Abort-Flag 10 string +ATTRIBUTE Cisco-Fax-Dsn-Address 11 string +ATTRIBUTE Cisco-Fax-Dsn-Flag 12 string +ATTRIBUTE Cisco-Fax-Mdn-Address 13 string +ATTRIBUTE Cisco-Fax-Mdn-Flag 14 string +ATTRIBUTE Cisco-Fax-Auth-Status 15 string +ATTRIBUTE Cisco-Email-Server-Address 16 string +ATTRIBUTE Cisco-Email-Server-Ack-Flag 17 string +ATTRIBUTE Cisco-Gateway-Id 18 string +ATTRIBUTE Cisco-Call-Type 19 string +ATTRIBUTE Cisco-Port-Used 20 string +ATTRIBUTE Cisco-Abort-Cause 21 string + +# +# Voice over IP attributes. +# +ATTRIBUTE h323-remote-address 23 string +ATTRIBUTE h323-conf-id 24 string +ATTRIBUTE h323-setup-time 25 string +ATTRIBUTE h323-call-origin 26 string +ATTRIBUTE h323-call-type 27 string +ATTRIBUTE h323-connect-time 28 string +ATTRIBUTE h323-disconnect-time 29 string +ATTRIBUTE h323-disconnect-cause 30 string +ATTRIBUTE h323-voice-quality 31 string +ATTRIBUTE h323-gw-id 33 string +ATTRIBUTE h323-incoming-conf-id 35 string + +ATTRIBUTE Cisco-Policy-Up 37 string +ATTRIBUTE Cisco-Policy-Down 38 string + +ATTRIBUTE Cisco-Relay-Information-Option 46 string +ATTRIBUTE Cisco-DHCP-User-Class 47 string +ATTRIBUTE Cisco-DHCP-Vendor-Class 48 string + +ATTRIBUTE Cisco-DHCP-Relay-GiAddr 50 string +ATTRIBUTE Cisco-Service-Name 51 string +ATTRIBUTE Cisco-Parent-Session-Id 52 string + +ATTRIBUTE Cisco-Sub-QoS-Pol-In 55 string +ATTRIBUTE Cisco-Sub-QoS-Pol-Out 56 string +ATTRIBUTE Cisco-In-ACL 57 string +ATTRIBUTE Cisco-Out-ACL 58 string +ATTRIBUTE Cisco-Sub-PBR-Policy-In 59 string +ATTRIBUTE Cisco-Sub-Activate-Service 60 string +ATTRIBUTE Cisco-IPv6-In-ACL 61 string +ATTRIBUTE Cisco-IPv6-Out-ACL 62 string +ATTRIBUTE Cisco-Sub-Deactivate-Service 63 string + +ATTRIBUTE Cisco-DHCP-Subscriber-Id 65 string +ATTRIBUTE Cisco-DHCPv6-Link-Address 66 string + +ATTRIBUTE sip-conf-id 100 string +ATTRIBUTE h323-credit-amount 101 string +ATTRIBUTE h323-credit-time 102 string +ATTRIBUTE h323-return-code 103 string +ATTRIBUTE h323-prompt-id 104 string +ATTRIBUTE h323-time-and-day 105 string +ATTRIBUTE h323-redirect-number 106 string +ATTRIBUTE h323-preferred-lang 107 string +ATTRIBUTE h323-redirect-ip-address 108 string +ATTRIBUTE h323-billing-model 109 string +ATTRIBUTE h323-currency 110 string +ATTRIBUTE subscriber 111 string +ATTRIBUTE gw-rxd-cdn 112 string +ATTRIBUTE gw-final-xlated-cdn 113 string +ATTRIBUTE remote-media-address 114 string +ATTRIBUTE release-source 115 string +ATTRIBUTE gw-rxd-cgn 116 string +ATTRIBUTE gw-final-xlated-cgn 117 string + +# SIP Attributes +ATTRIBUTE call-id 141 string +ATTRIBUTE session-protocol 142 string +ATTRIBUTE method 143 string +ATTRIBUTE prev-hop-via 144 string +ATTRIBUTE prev-hop-ip 145 string +ATTRIBUTE incoming-req-uri 146 string +ATTRIBUTE outgoing-req-uri 147 string +ATTRIBUTE next-hop-ip 148 string +ATTRIBUTE next-hop-dn 149 string +ATTRIBUTE sip-hdr 150 string +ATTRIBUTE dsp-id 151 string + +# +# Extra attributes sent by the Cisco, if you configure +# "radius-server vsa accounting" (requires IOS11.2+). +# +ATTRIBUTE Cisco-Multilink-ID 187 integer +ATTRIBUTE Cisco-Num-In-Multilink 188 integer +ATTRIBUTE Cisco-Pre-Input-Octets 190 integer +ATTRIBUTE Cisco-Pre-Output-Octets 191 integer +ATTRIBUTE Cisco-Pre-Input-Packets 192 integer +ATTRIBUTE Cisco-Pre-Output-Packets 193 integer +ATTRIBUTE Cisco-Maximum-Time 194 integer +ATTRIBUTE Cisco-Disconnect-Cause 195 integer +ATTRIBUTE Cisco-Data-Rate 197 integer +ATTRIBUTE Cisco-PreSession-Time 198 integer +ATTRIBUTE Cisco-PW-Lifetime 208 integer +ATTRIBUTE Cisco-IP-Direct 209 integer +ATTRIBUTE Cisco-PPP-VJ-Slot-Comp 210 integer +ATTRIBUTE Cisco-PPP-Async-Map 212 integer +ATTRIBUTE Cisco-IP-Pool-Definition 217 string +ATTRIBUTE Cisco-Assign-IP-Pool 218 integer +ATTRIBUTE Cisco-Route-IP 228 integer +ATTRIBUTE Cisco-Link-Compression 233 integer +ATTRIBUTE Cisco-Target-Util 234 integer +ATTRIBUTE Cisco-Maximum-Channels 235 integer +ATTRIBUTE Cisco-Data-Filter 242 integer +ATTRIBUTE Cisco-Call-Filter 243 integer +ATTRIBUTE Cisco-Idle-Limit 244 integer +ATTRIBUTE Cisco-Subscriber-Password 249 string +ATTRIBUTE Cisco-Account-Info 250 string +ATTRIBUTE Cisco-Service-Info 251 string +ATTRIBUTE Cisco-Command-Code 252 string +ATTRIBUTE Cisco-Control-Info 253 string +ATTRIBUTE Cisco-Xmit-Rate 255 integer + +VALUE Cisco-Disconnect-Cause No-Reason 0 +VALUE Cisco-Disconnect-Cause No-Disconnect 1 +VALUE Cisco-Disconnect-Cause Unknown 2 +VALUE Cisco-Disconnect-Cause Call-Disconnect 3 +VALUE Cisco-Disconnect-Cause CLID-Authentication-Failure 4 +VALUE Cisco-Disconnect-Cause No-Modem-Available 9 +VALUE Cisco-Disconnect-Cause No-Carrier 10 +VALUE Cisco-Disconnect-Cause Lost-Carrier 11 +VALUE Cisco-Disconnect-Cause No-Detected-Result-Codes 12 +VALUE Cisco-Disconnect-Cause User-Ends-Session 20 +VALUE Cisco-Disconnect-Cause Idle-Timeout 21 +VALUE Cisco-Disconnect-Cause Exit-Telnet-Session 22 +VALUE Cisco-Disconnect-Cause No-Remote-IP-Addr 23 +VALUE Cisco-Disconnect-Cause Exit-Raw-TCP 24 +VALUE Cisco-Disconnect-Cause Password-Fail 25 +VALUE Cisco-Disconnect-Cause Raw-TCP-Disabled 26 +VALUE Cisco-Disconnect-Cause Control-C-Detected 27 +VALUE Cisco-Disconnect-Cause EXEC-Program-Destroyed 28 +VALUE Cisco-Disconnect-Cause Close-Virtual-Connection 29 +VALUE Cisco-Disconnect-Cause End-Virtual-Connection 30 +VALUE Cisco-Disconnect-Cause Exit-Rlogin 31 +VALUE Cisco-Disconnect-Cause Invalid-Rlogin-Option 32 +VALUE Cisco-Disconnect-Cause Insufficient-Resources 33 +VALUE Cisco-Disconnect-Cause Timeout-PPP-LCP 40 +VALUE Cisco-Disconnect-Cause Failed-PPP-LCP-Negotiation 41 +VALUE Cisco-Disconnect-Cause Failed-PPP-PAP-Auth-Fail 42 +VALUE Cisco-Disconnect-Cause Failed-PPP-CHAP-Auth 43 +VALUE Cisco-Disconnect-Cause Failed-PPP-Remote-Auth 44 +VALUE Cisco-Disconnect-Cause PPP-Remote-Terminate 45 +VALUE Cisco-Disconnect-Cause PPP-Closed-Event 46 +VALUE Cisco-Disconnect-Cause NCP-Closed-PPP 47 +VALUE Cisco-Disconnect-Cause MP-Error-PPP 48 +VALUE Cisco-Disconnect-Cause PPP-Maximum-Channels 49 +VALUE Cisco-Disconnect-Cause Tables-Full 50 +VALUE Cisco-Disconnect-Cause Resources-Full 51 +VALUE Cisco-Disconnect-Cause Invalid-IP-Address 52 +VALUE Cisco-Disconnect-Cause Bad-Hostname 53 +VALUE Cisco-Disconnect-Cause Bad-Port 54 +VALUE Cisco-Disconnect-Cause Reset-TCP 60 +VALUE Cisco-Disconnect-Cause TCP-Connection-Refused 61 +VALUE Cisco-Disconnect-Cause Timeout-TCP 62 +VALUE Cisco-Disconnect-Cause Foreign-Host-Close-TCP 63 +VALUE Cisco-Disconnect-Cause TCP-Network-Unreachable 64 +VALUE Cisco-Disconnect-Cause TCP-Host-Unreachable 65 +VALUE Cisco-Disconnect-Cause TCP-Network-Admin-Unreachable 66 +VALUE Cisco-Disconnect-Cause TCP-Port-Unreachable 67 +VALUE Cisco-Disconnect-Cause Session-Timeout 100 +VALUE Cisco-Disconnect-Cause Session-Failed-Security 101 +VALUE Cisco-Disconnect-Cause Session-End-Callback 102 +VALUE Cisco-Disconnect-Cause Invalid-Protocol 120 +VALUE Cisco-Disconnect-Cause RADIUS-Disconnect 150 +VALUE Cisco-Disconnect-Cause Local-Admin-Disconnect 151 +VALUE Cisco-Disconnect-Cause SNMP-Disconnect 152 +VALUE Cisco-Disconnect-Cause V110-Retries 160 +VALUE Cisco-Disconnect-Cause PPP-Authentication-Timeout 170 +VALUE Cisco-Disconnect-Cause Local-Hangup 180 +VALUE Cisco-Disconnect-Cause Remote-Hangup 185 +VALUE Cisco-Disconnect-Cause T1-Quiesced 190 +VALUE Cisco-Disconnect-Cause Call-Duration 195 +VALUE Cisco-Disconnect-Cause VPN-User-Disconnect 600 +VALUE Cisco-Disconnect-Cause VPN-Carrier-Loss 601 +VALUE Cisco-Disconnect-Cause VPN-No-Resources 602 +VALUE Cisco-Disconnect-Cause VPN-Bad-Control-Packet 603 +VALUE Cisco-Disconnect-Cause VPN-Admin-Disconnect 604 +VALUE Cisco-Disconnect-Cause VPN-Tunnel-Shut 605 +VALUE Cisco-Disconnect-Cause VPN-Local-Disconnect 606 +VALUE Cisco-Disconnect-Cause VPN-Session-Limit 607 +VALUE Cisco-Disconnect-Cause VPN-Call-Redirect 608 + +END-VENDOR Cisco diff --git a/share/dictionary.cisco.asa b/share/dictionary.cisco.asa new file mode 100644 index 0000000..e1738fe --- /dev/null +++ b/share/dictionary.cisco.asa @@ -0,0 +1,369 @@ +# -*- text -*- +# Copyright (C) 2019 The FreeRADIUS Server project and contributors +# This work is licensed under CC-BY version 4.0 https://creativecommons.org/licenses/by/4.0 +# +# Cisco Adaptative Security Appliance (ASA) Dictionary +# +# http://www.cisco.com/en/US/docs/security/asa/asa90/configuration/guide/ref_extserver.html#wp1802187 +# +# $Id$ +# + +VENDOR Cisco-ASA 3076 + +BEGIN-VENDOR Cisco-ASA + +ATTRIBUTE ASA-Simultaneous-Logins 2 integer +ATTRIBUTE ASA-Primary-DNS 5 ipaddr +ATTRIBUTE ASA-Secondary-DNS 6 ipaddr +ATTRIBUTE ASA-Primary-WINS 7 ipaddr +ATTRIBUTE ASA-Secondary-WINS 8 ipaddr +ATTRIBUTE ASA-SEP-Card-Assignment 9 integer +ATTRIBUTE ASA-Tunneling-Protocols 11 integer +ATTRIBUTE ASA-IPsec-Sec-Association 12 string +ATTRIBUTE ASA-IPsec-Authentication 13 integer +ATTRIBUTE ASA-Banner1 15 string +ATTRIBUTE ASA-IPsec-Allow-Passwd-Store 16 integer +ATTRIBUTE ASA-Use-Client-Address 17 integer +ATTRIBUTE ASA-PPTP-Encryption 20 integer +ATTRIBUTE ASA-L2TP-Encryption 21 integer +ATTRIBUTE ASA-Group-Policy 25 string +ATTRIBUTE ASA-IPsec-Split-Tunnel-List 27 string +ATTRIBUTE ASA-IPsec-Default-Domain 28 string +ATTRIBUTE ASA-IPsec-Split-DNS-Names 29 string +ATTRIBUTE ASA-IPsec-Tunnel-Type 30 integer +ATTRIBUTE ASA-IPsec-Mode-Config 31 integer +ATTRIBUTE ASA-IPsec-Over-UDP 34 integer +ATTRIBUTE ASA-IPsec-Over-UDP-Port 35 integer +ATTRIBUTE ASA-Banner2 36 string +ATTRIBUTE ASA-PPTP-MPPC-Compression 37 integer +ATTRIBUTE ASA-L2TP-MPPC-Compression 38 integer +ATTRIBUTE ASA-IPsec-IP-Compression 39 integer +ATTRIBUTE ASA-IPsec-IKE-Peer-ID-Check 40 integer +ATTRIBUTE ASA-IKE-Keep-Alives 41 integer +ATTRIBUTE ASA-IPsec-Auth-On-Rekey 42 integer +ATTRIBUTE ASA-Required-Client-Firewall-Vendor-Code 45 integer +ATTRIBUTE ASA-Required-Client-Firewall-Product-Code 46 integer +ATTRIBUTE ASA-Required-Client-Firewall-Description 47 string +ATTRIBUTE ASA-Require-HW-Client-Auth 48 integer +ATTRIBUTE ASA-Required-Individual-User-Auth 49 integer +ATTRIBUTE ASA-Authenticated-User-Idle-Timeout 50 integer +ATTRIBUTE ASA-Cisco-IP-Phone-Bypass 51 integer +ATTRIBUTE ASA-IPsec-Split-Tunneling-Policy 55 integer +ATTRIBUTE ASA-IPsec-Required-Client-Firewall-Capability 56 integer +ATTRIBUTE ASA-IPsec-Client-Firewall-Filter-Name 57 string +ATTRIBUTE ASA-IPsec-Client-Firewall-Filter-Optional 58 integer +ATTRIBUTE ASA-IPsec-Backup-Servers 59 integer +ATTRIBUTE ASA-IPsec-Backup-Server-List 60 string +ATTRIBUTE ASA-DHCP-Network-Scope 61 ipaddr +ATTRIBUTE ASA-Intercept-DHCP-Configure-Msg 62 integer +ATTRIBUTE ASA-MS-Client-Subnet-Mask 63 ipaddr +ATTRIBUTE ASA-Allow-Network-Extension-Mode 64 integer +ATTRIBUTE ASA-Authorization-Type 65 integer +ATTRIBUTE ASA-Authorization-Required 66 integer +ATTRIBUTE ASA-Authorization-DN-Field 67 string +ATTRIBUTE ASA-IKE-KeepAlive-Confidence-Interval 68 integer +ATTRIBUTE ASA-WebVPN-Content-Filter-Parameters 69 integer +ATTRIBUTE ASA-WebVPN-HTML-Filter 70 integer +ATTRIBUTE ASA-WebVPN-URL-List 71 string +ATTRIBUTE ASA-WebVPN-Port-Forwarding-List 72 string +ATTRIBUTE ASA-WebVPN-Access-List 73 string +ATTRIBUTE ASA-WebVPNACL 73 string +ATTRIBUTE ASA-WebVPN-HTTP-Proxy-IP-Address 74 string +ATTRIBUTE ASA-Cisco-LEAP-Bypass 75 integer +ATTRIBUTE ASA-WebVPN-Default-Homepage 76 string +ATTRIBUTE ASA-Client-Type-Version-Limiting 77 string +ATTRIBUTE ASA-WebVPN-Group-based-HTTP/HTTPS-Proxy-Exception-List 78 string +ATTRIBUTE ASA-WebVPN-Port-Forwarding-Name 79 string +ATTRIBUTE ASA-IE-Proxy-Server 80 string +ATTRIBUTE ASA-IE-Proxy-Server-Policy 81 integer +ATTRIBUTE ASA-IE-Proxy-Exception-List 82 string +ATTRIBUTE ASA-IE-Proxy-Bypass-Local 83 integer +ATTRIBUTE ASA-IKE-Keepalive-Retry-Interval 84 integer +ATTRIBUTE ASA-Tunnel-Group-Lock 85 string +ATTRIBUTE ASA-Access-List-Inbound 86 string +ATTRIBUTE ASA-Access-List-Outbound 87 string +ATTRIBUTE ASA-Perfect-Forward-Secrecy-Enable 88 integer +ATTRIBUTE ASA-NAC-Enable 89 integer +ATTRIBUTE ASA-NAC-Status-Query-Timer 90 integer +ATTRIBUTE ASA-NAC-Revalidation-Timer 91 integer +ATTRIBUTE ASA-NAC-Default-ACL 92 string +ATTRIBUTE ASA-WebVPN-URL-Entry-Enable 93 integer +ATTRIBUTE ASA-WebVPN-File-Access-Enable 94 integer +ATTRIBUTE ASA-WebVPN-File-Server-Entry-Enable 95 integer +ATTRIBUTE ASA-WebVPN-File-Server-Browsing-Enable 96 integer +ATTRIBUTE ASA-WebVPN-Port-Forwarding-Enable 97 integer +ATTRIBUTE ASA-WebVPN-Port-Forwarding-Exchange-Proxy-Enable 98 integer +ATTRIBUTE ASA-WebVPN-Port-Forwarding-HTTP-Proxy 99 integer +ATTRIBUTE ASA-WebVPN-Citrix-Metaframe-Enable 101 integer +ATTRIBUTE ASA-WebVPN-Apply-ACL 102 integer +ATTRIBUTE ASA-WebVPN-SSL-VPN-Client-Enable 103 integer +ATTRIBUTE ASA-WebVPN-SSL-VPN-Client-Required 104 integer +ATTRIBUTE ASA-WebVPN-SSL-VPN-Client-Keep-Installation 105 integer +ATTRIBUTE ASA-SVC-Keepalive 107 integer +ATTRIBUTE ASA-WebVPN-SVC-Keepalive-Frequency 107 integer +ATTRIBUTE ASA-SVC-DPD-Interval-Client 108 integer +ATTRIBUTE ASA-WebVPN-SVC-Client-DPD-Frequency 108 integer +ATTRIBUTE ASA-SVC-DPD-Interval-Gateway 109 integer +ATTRIBUTE ASA-WebVPN-SVC-Gateway-DPD-Frequency 109 integer +ATTRIBUTE ASA-SVC-Rekey-Time 110 integer +ATTRIBUTE ASA-WebVPN-SVC-Rekey-Time 110 integer +ATTRIBUTE ASA-WebVPN-SVC-Rekey-Method 111 integer +ATTRIBUTE ASA-WebVPN-SVC-Compression 112 integer +ATTRIBUTE ASA-WebVPN-Customization 113 string +ATTRIBUTE ASA-WebVPN-SSO-Server-Name 114 string +ATTRIBUTE ASA-WebVPN-Deny-Message 116 string +ATTRIBUTE ASA-WebVPN-HTTP-Compression 120 integer +ATTRIBUTE ASA-WebVPN-Keepalive-Ignore 121 integer +ATTRIBUTE ASA-Extended-Authentication-On-Rekey 122 integer +ATTRIBUTE ASA-SVC-DTLS 123 integer +ATTRIBUTE ASA-WebVPN-SVC-DTLS-Enable 123 integer +ATTRIBUTE ASA-WebVPN-Auto-HTTP-Signon 124 string +ATTRIBUTE ASA-SVC-MTU 125 integer +ATTRIBUTE ASA-WebVPN-SVC-DTLS-MTU 125 integer +ATTRIBUTE ASA-WebVPN-Hidden-Shares 126 integer +ATTRIBUTE ASA-SVC-Modules 127 string +ATTRIBUTE ASA-SVC-Profiles 128 string +ATTRIBUTE ASA-SVC-Ask 131 integer +ATTRIBUTE ASA-SVC-Ask-Timeout 132 integer +ATTRIBUTE ASA-IE-Proxy-PAC-URL 133 string +ATTRIBUTE ASA-Strip-Realm 135 integer +ATTRIBUTE ASA-Smart-Tunnel 136 string +ATTRIBUTE ASA-WebVPN-Smart-Tunnel 136 string +ATTRIBUTE ASA-WebVPN-ActiveX-Relay 137 integer +ATTRIBUTE ASA-Smart-Tunnel-Auto 138 integer +ATTRIBUTE ASA-WebVPN-Smart-Tunnel-Auto-Start 138 integer +ATTRIBUTE ASA-Smart-Tunnel-Auto-Signon-Enable 139 string +ATTRIBUTE ASA-WebVPN-Smart-Tunnel-Auto-Sign-On 139 string +ATTRIBUTE ASA-VLAN 140 integer +ATTRIBUTE ASA-NAC-Settings 141 string +ATTRIBUTE ASA-Member-Of 145 string +ATTRIBUTE ASA-TunnelGroupName 146 string +ATTRIBUTE ASA-WebVPN-Idle-Timeout-Alert-Interval 148 integer +ATTRIBUTE ASA-WebVPN-Session-Timeout-Alert-Interval 149 integer +ATTRIBUTE ASA-ClientType 150 integer +ATTRIBUTE ASA-SessionType 151 integer +ATTRIBUTE ASA-SessionSubtype 152 integer +ATTRIBUTE ASA-WebVPN-Download_Max-Size 157 integer +ATTRIBUTE ASA-WebVPN-Upload-Max-Size 158 integer +ATTRIBUTE ASA-WebVPN-Post-Max-Size 159 integer +ATTRIBUTE ASA-WebVPN-User-Storage 160 string +ATTRIBUTE ASA-WebVPN-Storage-Objects 161 string +ATTRIBUTE ASA-WebVPN-Storage-Key 162 string +ATTRIBUTE ASA-WebVPN-VDI 163 string +ATTRIBUTE ASA-Address-Pools 217 string +ATTRIBUTE ASA-IPv6-Address-Pools 218 string +ATTRIBUTE ASA-IPv6-VPN-Filter 219 string +ATTRIBUTE ASA-Privilege-Level 220 integer +ATTRIBUTE ASA-WebVPN-UNIX-User-ID 221 integer +ATTRIBUTE ASA-WebVPN-UNIX-Group-ID 222 integer +ATTRIBUTE ASA-WebVPN-Macro-Substitution-Value1 223 string +ATTRIBUTE ASA-WebVPN-Macro-Substitution-Value2 224 string +ATTRIBUTE ASA-WebVPNSmart-Card-Removal-Disconnect 225 integer +ATTRIBUTE ASA-WebVPN-Smart-Tunnel-Tunnel-Policy 227 string +ATTRIBUTE ASA-WebVPN-Home-Page-Use-Smart-Tunnel 228 integer + +VALUE ASA-Authorization-Required No 0 +VALUE ASA-Authorization-Required Yes 1 + +VALUE ASA-Authorization-Type None 0 +VALUE ASA-Authorization-Type Radius 1 +VALUE ASA-Authorization-Type LDAP 2 + +VALUE ASA-Cisco-IP-Phone-Bypass Disabled 0 +VALUE ASA-Cisco-IP-Phone-Bypass Enabled 1 + +VALUE ASA-Cisco-LEAP-Bypass Disabled 0 +VALUE ASA-Cisco-LEAP-Bypass Enabled 1 + +VALUE ASA-ClientType Cisco-VPN-Client-IKEv1 1 +VALUE ASA-ClientType AnyConnect-Client-SSL-VPN 2 +VALUE ASA-ClientType Clientless-SSL-VPN 3 +VALUE ASA-ClientType Cut-Through-Proxy 4 +VALUE ASA-ClientType L2TP/IPsec-SSL-VPN 5 +VALUE ASA-ClientType AnyConnect-Client-IPSec-VPN-IKEv2 6 + +VALUE ASA-Extended-Authentication-On-Rekey Disabled 0 +VALUE ASA-Extended-Authentication-On-Rekey Enabled 1 + +VALUE ASA-IE-Proxy-Bypass-Local None 0 +VALUE ASA-IE-Proxy-Bypass-Local Local 1 + +VALUE ASA-IE-Proxy-Server-Policy No-Modify 1 +VALUE ASA-IE-Proxy-Server-Policy No-Proxy 2 +VALUE ASA-IE-Proxy-Server-Policy Auto-detect 3 +VALUE ASA-IE-Proxy-Server-Policy Use-Concentrator-Setting 4 + +VALUE ASA-IKE-Keep-Alives Disabled 0 +VALUE ASA-IKE-Keep-Alives Enabled 1 + +VALUE ASA-Allow-Network-Extension-Mode Disabled 0 +VALUE ASA-Allow-Network-Extension-Mode Enabled 1 + +VALUE ASA-Intercept-DHCP-Configure-Msg Disabled 0 +VALUE ASA-Intercept-DHCP-Configure-Msg Enabled 1 + +VALUE ASA-IPsec-Allow-Passwd-Store Disabled 0 +VALUE ASA-IPsec-Allow-Passwd-Store Enabled 1 + +VALUE ASA-IPsec-Authentication None 0 +VALUE ASA-IPsec-Authentication RADIUS 1 +VALUE ASA-IPsec-Authentication LDAP-Authorization-only 2 +VALUE ASA-IPsec-Authentication NT-Domain 3 +VALUE ASA-IPsec-Authentication SDI 4 +VALUE ASA-IPsec-Authentication Internal 5 +VALUE ASA-IPsec-Authentication RADIUS-with-Expiry 6 +VALUE ASA-IPsec-Authentication Kerberos/Active-Directory 7 + +VALUE ASA-IPsec-Auth-On-Rekey Disabled 0 +VALUE ASA-IPsec-Auth-On-Rekey Enabled 1 + +VALUE ASA-IPsec-Backup-Servers Use-Client-Configured-List 1 +VALUE ASA-IPsec-Backup-Servers Disable-and-clear-client-list 2 +VALUE ASA-IPsec-Backup-Servers Use-Backup-Server-List 3 + +VALUE ASA-IPsec-Client-Firewall-Filter-Optional Required 0 +VALUE ASA-IPsec-Client-Firewall-Filter-Optional Optional 1 + +VALUE ASA-IPsec-IKE-Peer-ID-Check Required 1 +VALUE ASA-IPsec-IKE-Peer-ID-Check If-Supported-By-Peer-Certificate 2 +VALUE ASA-IPsec-IKE-Peer-ID-Check Do-Not-Check 3 + +VALUE ASA-IPsec-IP-Compression Disabled 0 +VALUE ASA-IPsec-IP-Compression Enabled 1 + +VALUE ASA-IPsec-Mode-Config Disabled 0 +VALUE ASA-IPsec-Mode-Config Enabled 1 + +VALUE ASA-IPsec-Over-UDP Disabled 0 +VALUE ASA-IPsec-Over-UDP Enabled 1 + +VALUE ASA-IPsec-Required-Client-Firewall-Capability None 0 +VALUE ASA-IPsec-Required-Client-Firewall-Capability Policy-Remotely-Defined 1 +VALUE ASA-IPsec-Required-Client-Firewall-Capability Policy-Pushed 2 +VALUE ASA-IPsec-Required-Client-Firewall-Capability Policy-from-Server 4 + +VALUE ASA-IPsec-Split-Tunneling-Policy No-Split-Tunneling 0 +VALUE ASA-IPsec-Split-Tunneling-Policy Split-Tunneling 1 +VALUE ASA-IPsec-Split-Tunneling-Policy Local-LAN-Permitted 2 + +VALUE ASA-IPsec-Tunnel-Type LAN-to-LAN 1 +VALUE ASA-IPsec-Tunnel-Type Remote-Access 2 + +VALUE ASA-L2TP-MPPC-Compression Disabled 0 +VALUE ASA-L2TP-MPPC-Compression Enabled 1 + +VALUE ASA-NAC-Enable No 0 +VALUE ASA-NAC-Enable Yes 1 + +VALUE ASA-Perfect-Forward-Secrecy-Enable No 0 +VALUE ASA-Perfect-Forward-Secrecy-Enable Yes 1 + +VALUE ASA-PPTP-MPPC-Compression Disabled 0 +VALUE ASA-PPTP-MPPC-Compression Enabled 1 + +VALUE ASA-Required-Client-Firewall-Vendor-Code Cisco-CIC 1 +VALUE ASA-Required-Client-Firewall-Vendor-Code Zone-Labs 2 +VALUE ASA-Required-Client-Firewall-Vendor-Code NetworkICE 3 +VALUE ASA-Required-Client-Firewall-Vendor-Code Sygate 4 +VALUE ASA-Required-Client-Firewall-Vendor-Code Cisco-IPSA 5 + +VALUE ASA-Required-Individual-User-Auth Disabled 0 +VALUE ASA-Required-Individual-User-Auth Enabled 1 + +VALUE ASA-Require-HW-Client-Auth Disabled 0 +VALUE ASA-Require-HW-Client-Auth Enabled 1 + +VALUE ASA-SessionSubtype None 0 +VALUE ASA-SessionSubtype Clientless 1 +VALUE ASA-SessionSubtype Client 2 +VALUE ASA-SessionSubtype Client-Only 3 + +VALUE ASA-SessionType None 0 +VALUE ASA-SessionType AnyConnect-Client-SSL-VPN 1 +VALUE ASA-SessionType AnyConnect-Client-IPSec-VPN/IKEv2 2 +VALUE ASA-SessionType Clientless-SSL-VPN 3 +VALUE ASA-SessionType Clientless-Email-Proxy 4 +VALUE ASA-SessionType Cisco-VPN-Client/IKEv1 5 +VALUE ASA-SessionType IKEv1-LAN-to-LAN 6 +VALUE ASA-SessionType IKEv2-LAN-to-LAN 7 +VALUE ASA-SessionType VPN-Load-Balancing 8 + +VALUE ASA-Smart-Tunnel-Auto Disabled 0 +VALUE ASA-Smart-Tunnel-Auto Enabled 1 +VALUE ASA-Smart-Tunnel-Auto AutoStart 2 + +VALUE ASA-Strip-Realm Disabled 0 +VALUE ASA-Strip-Realm Enabled 1 + +VALUE ASA-SVC-Ask Disabled 0 +VALUE ASA-SVC-Ask Enabled 1 +VALUE ASA-SVC-Ask Enable-Default-Service 3 +VALUE ASA-SVC-Ask Enable-Default-Clientless 5 + +VALUE ASA-SVC-DTLS FALSE 0 +VALUE ASA-SVC-DTLS TRUE 1 + +VALUE ASA-Use-Client-Address Disabled 0 +VALUE ASA-Use-Client-Address Enabled 1 + +VALUE ASA-WebVPN-Apply-ACL Disabled 0 +VALUE ASA-WebVPN-Apply-ACL Enabled 1 + +VALUE ASA-WebVPN-Citrix-Metaframe-Enable Disabled 0 +VALUE ASA-WebVPN-Citrix-Metaframe-Enable Enabled 1 + +VALUE ASA-WebVPN-File-Access-Enable Disabled 0 +VALUE ASA-WebVPN-File-Access-Enable Enabled 1 + +VALUE ASA-WebVPN-File-Server-Browsing-Enable Disabled 0 +VALUE ASA-WebVPN-File-Server-Browsing-Enable Enabled 1 + +VALUE ASA-WebVPN-File-Server-Entry-Enable Disabled 0 +VALUE ASA-WebVPN-File-Server-Entry-Enable Enabled 1 + +VALUE ASA-WebVPN-Hidden-Shares None 0 +VALUE ASA-WebVPN-Hidden-Shares Visible 1 + +VALUE ASA-WebVPN-HTTP-Compression Off 0 +VALUE ASA-WebVPN-HTTP-Compression Deflate-Compression 1 + +VALUE ASA-WebVPN-Port-Forwarding-Enable Disabled 0 +VALUE ASA-WebVPN-Port-Forwarding-Enable Enabled 1 + +VALUE ASA-WebVPN-Port-Forwarding-Exchange-Proxy-Enable Disabled 0 +VALUE ASA-WebVPN-Port-Forwarding-Exchange-Proxy-Enable Enabled 1 + +VALUE ASA-WebVPN-Port-Forwarding-HTTP-Proxy Disabled 0 +VALUE ASA-WebVPN-Port-Forwarding-HTTP-Proxy Enabled 1 + +VALUE ASA-WebVPNSmart-Card-Removal-Disconnect Disabled 0 +VALUE ASA-WebVPNSmart-Card-Removal-Disconnect Enabled 1 + +VALUE ASA-WebVPN-Smart-Tunnel-Auto-Start Disabled 0 +VALUE ASA-WebVPN-Smart-Tunnel-Auto-Start Enabled 1 +VALUE ASA-WebVPN-Smart-Tunnel-Auto-Start AutoStart 2 + +VALUE ASA-WebVPN-SSL-VPN-Client-Enable Disabled 0 +VALUE ASA-WebVPN-SSL-VPN-Client-Enable Enabled 1 + +VALUE ASA-WebVPN-SSL-VPN-Client-Keep-Installation Disabled 0 +VALUE ASA-WebVPN-SSL-VPN-Client-Keep-Installation Enabled 1 + +VALUE ASA-WebVPN-SSL-VPN-Client-Required Disabled 0 +VALUE ASA-WebVPN-SSL-VPN-Client-Required Enabled 1 + +VALUE ASA-WebVPN-SVC-DTLS-Enable Disabled 0 +VALUE ASA-WebVPN-SVC-DTLS-Enable Enabled 1 + +VALUE ASA-WebVPN-SVC-Rekey-Method Off 0 +VALUE ASA-WebVPN-SVC-Rekey-Method SSL 1 +VALUE ASA-WebVPN-SVC-Rekey-Method New-Tunnel 2 + +VALUE ASA-WebVPN-SVC-Compression Off 0 +VALUE ASA-WebVPN-SVC-Compression Deflate-Compression 1 + +VALUE ASA-WebVPN-URL-Entry-Enable Disabled 0 +VALUE ASA-WebVPN-URL-Entry-Enable Enabled 1 + +END-VENDOR Cisco-ASA diff --git a/share/dictionary.cisco.bbsm b/share/dictionary.cisco.bbsm new file mode 100644 index 0000000..4efbca6 --- /dev/null +++ b/share/dictionary.cisco.bbsm @@ -0,0 +1,15 @@ +# -*- text -*- +# Copyright (C) 2019 The FreeRADIUS Server project and contributors +# This work is licensed under CC-BY version 4.0 https://creativecommons.org/licenses/by/4.0 +# +# Cisco Building Broadband Service Manager Dictionary +# +# http://www.cisco.com/univercd/cc/td/doc/product/access/acs_soft/csacs4nt/csnt30/user/ad.htm +# +# $Id$ +# +VENDOR Cisco-BBSM 5263 + +BEGIN-VENDOR Cisco-BBSM +ATTRIBUTE CBBSM-Bandwidth 1 integer +END-VENDOR Cisco-BBSM diff --git a/share/dictionary.cisco.vpn3000 b/share/dictionary.cisco.vpn3000 new file mode 100644 index 0000000..cc9d09f --- /dev/null +++ b/share/dictionary.cisco.vpn3000 @@ -0,0 +1,243 @@ +# -*- text -*- +# Copyright (C) 2019 The FreeRADIUS Server project and contributors +# This work is licensed under CC-BY version 4.0 https://creativecommons.org/licenses/by/4.0 +# +# Cisco VPN 3000 Concentrator Dictionary +# +# http://www.cisco.com/univercd/cc/td/doc/product/access/acs_soft/csacs4nt/csnt30/user/ad.htm +# http://www.cisco.com/univercd/cc/td/doc/product/access/acs_soft/csacs4nt/acs31/acsuser/ad.htm +# +# http://www.cisco.com/en/US/docs/security/asa/asa80/configuration/guide/extsvr.html#wp1661512 +# +# $Id$ +# +VENDOR Cisco-VPN3000 3076 + +BEGIN-VENDOR Cisco-VPN3000 +ATTRIBUTE CVPN3000-Access-Hours 1 string +ATTRIBUTE CVPN3000-Simultaneous-Logins 2 integer +ATTRIBUTE CVPN3000-Min-Password-Length 3 integer +ATTRIBUTE CVPN3000-Allow-Alpha-Only-Passwords 4 integer +ATTRIBUTE CVPN3000-Primary-DNS 5 ipaddr +ATTRIBUTE CVPN3000-Secondary-DNS 6 ipaddr +ATTRIBUTE CVPN3000-Primary-WINS 7 ipaddr +ATTRIBUTE CVPN3000-Secondary-WINS 8 ipaddr +ATTRIBUTE CVPN3000-SEP-Card-Assignment 9 integer +ATTRIBUTE CVPN3000-Priority-On-SEP 10 integer +ATTRIBUTE CVPN3000-Tunneling-Protocols 11 integer +ATTRIBUTE CVPN3000-IPSec-Sec-Association 12 string +ATTRIBUTE CVPN3000-IPSec-Authentication 13 integer +ATTRIBUTE CVPN3000-IPSec-Banner1 15 string +ATTRIBUTE CVPN3000-IPSec-Allow-Passwd-Store 16 integer +ATTRIBUTE CVPN3000-Use-Client-Address 17 integer +ATTRIBUTE CVPN3000-PPTP-Min-Auth-Protocol 18 integer +ATTRIBUTE CVPN3000-L2TP-Min-Auth-Protocol 19 integer +ATTRIBUTE CVPN3000-PPTP-Encryption 20 integer +ATTRIBUTE CVPN3000-L2TP-Encryption 21 integer +ATTRIBUTE CVPN3000-Auth-Server-Type 22 integer +ATTRIBUTE CVPN3000-Auth-Server-Password 23 string +ATTRIBUTE CVPN3000-Request-Auth-Vector 24 string +ATTRIBUTE CVPN3000-IPSec-LTL-Keepalives 25 integer +ATTRIBUTE CVPN3000-IPSec-Group-Name 26 string +ATTRIBUTE CVPN3000-IPSec-Split-Tunnel-List 27 string +ATTRIBUTE CVPN3000-IPSec-Default-Domain 28 string +ATTRIBUTE CVPN3000-IPSec-Split-DNS-Names 29 string +ATTRIBUTE CVPN3000-IPSec-Tunnel-Type 30 integer +ATTRIBUTE CVPN3000-IPSec-Mode-Config 31 integer +ATTRIBUTE CVPN3000-Auth-Server-Priority 32 integer +ATTRIBUTE CVPN3000-IPSec-User-Group-Lock 33 integer +ATTRIBUTE CVPN3000-IPSec-Over-UDP 34 integer +ATTRIBUTE CVPN3000-IPSec-Over-UDP-Port 35 integer +ATTRIBUTE CVPN3000-IPSec-Banner2 36 string +ATTRIBUTE CVPN3000-PPTP-MPPC-Compression 37 integer +ATTRIBUTE CVPN3000-L2TP-MPPC-Compression 38 integer +ATTRIBUTE CVPN3000-IPSec-IP-Compression 39 integer +ATTRIBUTE CVPN3000-IPSec-IKE-Peer-ID-Check 40 integer +ATTRIBUTE CVPN3000-IKE-Keep-Alives 41 integer +ATTRIBUTE CVPN3000-IPSec-Auth-On-Rekey 42 integer +ATTRIBUTE CVPN3000-Reqrd-Client-Fw-Vendor-Code 45 integer +ATTRIBUTE CVPN3000-Reqrd-Client-Fw-Product-Code 46 integer +ATTRIBUTE CVPN3000-Reqrd-Client-Fw-Description 47 string +ATTRIBUTE CVPN3000-Require-HW-Client-Auth 48 integer +ATTRIBUTE CVPN3000-Require-Individual-User-Auth 49 integer +ATTRIBUTE CVPN3000-Authd-User-Idle-Timeout 50 integer +ATTRIBUTE CVPN3000-Cisco-IP-Phone-Bypass 51 integer +ATTRIBUTE CVPN3000-User-Auth-Server-Name 52 string +ATTRIBUTE CVPN3000-User-Auth-Server-Port 53 integer +ATTRIBUTE CVPN3000-User-Auth-Server-Secret 54 string +ATTRIBUTE CVPN3000-IPSec-Split-Tunneling-Policy 55 integer +ATTRIBUTE CVPN3000-IPSec-Reqrd-Client-Fw-Cap 56 integer +ATTRIBUTE CVPN3000-IPSec-Client-Fw-Filter-Name 57 string +ATTRIBUTE CVPN3000-IPSec-Client-Fw-Filter-Opt 58 integer +ATTRIBUTE CVPN3000-IPSec-Backup-Servers 59 integer +ATTRIBUTE CVPN3000-IPSec-Backup-Server-List 60 string +ATTRIBUTE CVPN3000-DHCP-Network-Scope 61 ipaddr +ATTRIBUTE CVPN3000-MS-Client-Icpt-DHCP-Conf-Msg 62 integer +ATTRIBUTE CVPN3000-MS-Client-Subnet-Mask 63 ipaddr +ATTRIBUTE CVPN3000-Allow-Network-Extension-Mode 64 integer +ATTRIBUTE CVPN3000-IPSec-Authorization-Type 65 integer +ATTRIBUTE CVPN3000-IPSec-Authorization-Required 66 integer +ATTRIBUTE CVPN3000-IPSec-DN-Field 67 string +ATTRIBUTE CVPN3000-IPSec-Confidence-Level 68 integer +ATTRIBUTE CVPN3000-WebVPN-Content-Filter 69 integer +ATTRIBUTE CVPN3000-WebVPN-Enable-functions 70 integer +ATTRIBUTE CVPN3000-WebVPN-Exchange-Addr 74 string +ATTRIBUTE CVPN3000-LEAP-Bypass 75 integer +ATTRIBUTE CVPN3000-WebVPN-Exchange-NETBIOS-name 78 string +ATTRIBUTE CVPN3000-Port-Forwarding-Name 79 string +ATTRIBUTE CVPN3000-IE-Proxy-Server 80 string +ATTRIBUTE CVPN3000-IE-Proxy-Server-Policy 81 integer +ATTRIBUTE CVPN3000-IE-Proxy-Exception-List 82 string +ATTRIBUTE CVPN3000-IE-Proxy-Bypass-Local 83 integer +ATTRIBUTE CVPN3000-IKE-Keepalive-Retry-Interval 84 integer +ATTRIBUTE CVPN3000-Tunnel-Group-Lock 85 string +ATTRIBUTE Cisco-VPN3000-Access-List-Inbound 86 string +ATTRIBUTE Cisco-VPN3000-Access-List-Outbound 87 string +ATTRIBUTE Cisco-VPN3000-Perfect-Forward-Secrecy-Enable 88 integer +ATTRIBUTE Cisco-VPN3000-NAC-Enable 89 integer +ATTRIBUTE Cisco-VPN3000-NAC-Status-Query-Timer 90 integer +ATTRIBUTE Cisco-VPN3000-NAC-Revalidation-Timer 91 integer +ATTRIBUTE Cisco-VPN3000-NAC-Default-ACL 92 integer +ATTRIBUTE Cisco-VPN3000-WebVPN-URL-Entry-Enable 93 integer +ATTRIBUTE Cisco-VPN3000-WebVPN-File-Access-Enable 94 integer +ATTRIBUTE Cisco-VPN3000-WebVPN-File-Server-Entry-Enable 95 integer +ATTRIBUTE Cisco-VPN3000-WebVPN-File-Server-Browsing-Enable 96 integer +ATTRIBUTE Cisco-VPN3000-WebVPN-Port-Forwarding-Enable 97 integer +ATTRIBUTE Cisco-VPN3000-WebVPN-Outlook-Exchange-Proxy-Enable 98 integer +ATTRIBUTE Cisco-VPN3000-WebVPN-HTTP-Proxy-Enable 99 integer +ATTRIBUTE Cisco-VPN3000-WebVPN-Auto-Applet-Download-Enable 100 integer +ATTRIBUTE Cisco-VPN3000-WebVPN-Citrix-MetaFrame-Enable 101 integer +ATTRIBUTE Cisco-VPN3000-WebVPN-Apply-ACL 102 integer +ATTRIBUTE Cisco-VPN3000-WebVPN-SSL-VPN-Client-Enable 103 integer +ATTRIBUTE Cisco-VPN3000-WebVPN-SSL-VPN-Client-Required 104 integer +ATTRIBUTE Cisco-VPN3000-WebVPN-SSL-VPN-Client-Keep-Installation 105 integer + +ATTRIBUTE CVPN3000-Partition-Primary-DHCP 128 ipaddr +ATTRIBUTE CVPN3000-Partition-Secondary-DHCP 129 ipaddr +ATTRIBUTE CVPN3000-Partition-Premise-Router 131 ipaddr +ATTRIBUTE CVPN3000-Partition-Max-Sessions 132 integer +ATTRIBUTE CVPN3000-Partition-Mobile-IP-Key 133 string +ATTRIBUTE CVPN3000-Partition-Mobile-IP-Address 134 ipaddr +ATTRIBUTE CVPN3000-Partition-Mobile-IP-SPI 135 integer +ATTRIBUTE CVPN3000-Strip-Realm 136 integer +ATTRIBUTE CVPN3000-Group-Name 137 integer +ATTRIBUTE CVPN3000-Smart-Tunnel-Auto 138 integer +ATTRIBUTE CVPN3000-VLAN 140 integer +ATTRIBUTE CVPN3000-NAC-Settings 141 string +ATTRIBUTE CVPN3000-Member-Of 145 string +ATTRIBUTE CVPN3000-Address-Pools 217 string +ATTRIBUTE CVPN3000-IPv6-Address-Pools 218 string +ATTRIBUTE CVPN3000-IPv6-VPN-Filter 219 string +ATTRIBUTE CVPN3000-Privilege-Level 220 integer +ATTRIBUTE CVPN3000-WebVPN-Macro-Value1 223 string +ATTRIBUTE CVPN3000-WebVPN-Macro-Value2 224 string + +VALUE CVPN3000-Allow-Alpha-Only-Passwords Disallow 0 +VALUE CVPN3000-Allow-Alpha-Only-Passwords Allow 1 + +VALUE CVPN3000-SEP-Card-Assignment SEP1 1 +VALUE CVPN3000-SEP-Card-Assignment SEP2 2 +VALUE CVPN3000-SEP-Card-Assignment SEP3 4 +VALUE CVPN3000-SEP-Card-Assignment SEP4 8 +VALUE CVPN3000-SEP-Card-Assignment Any-SEP 15 + +VALUE CVPN3000-Priority-On-SEP High 1 +VALUE CVPN3000-Priority-On-SEP Med-High 2 +VALUE CVPN3000-Priority-On-SEP Medium 3 +VALUE CVPN3000-Priority-On-SEP Med-Low 4 +VALUE CVPN3000-Priority-On-SEP Low 5 + +VALUE CVPN3000-Tunneling-Protocols PPTP 1 +VALUE CVPN3000-Tunneling-Protocols L2TP 2 +VALUE CVPN3000-Tunneling-Protocols IPSec 4 +VALUE CVPN3000-Tunneling-Protocols PPTP-and-IPSec 5 +VALUE CVPN3000-Tunneling-Protocols L2TP/IPSec 8 +VALUE CVPN3000-Tunneling-Protocols All 15 + +VALUE CVPN3000-IPSec-Authentication None 0 +VALUE CVPN3000-IPSec-Authentication RADIUS 1 +VALUE CVPN3000-IPSec-Authentication LDAP 2 +VALUE CVPN3000-IPSec-Authentication NTDomain 3 +VALUE CVPN3000-IPSec-Authentication SDI 4 +VALUE CVPN3000-IPSec-Authentication Internal 5 + +VALUE CVPN3000-IPSec-Allow-Passwd-Store Disallow 0 +VALUE CVPN3000-IPSec-Allow-Passwd-Store Allow 1 + +VALUE CVPN3000-Use-Client-Address Disallow 0 +VALUE CVPN3000-Use-Client-Address Allow 1 + +VALUE CVPN3000-PPTP-Min-Auth-Protocol PAP 1 +VALUE CVPN3000-PPTP-Min-Auth-Protocol CHAP 2 +VALUE CVPN3000-PPTP-Min-Auth-Protocol EAP-MD5 4 +VALUE CVPN3000-PPTP-Min-Auth-Protocol EAP-GTC 8 +VALUE CVPN3000-PPTP-Min-Auth-Protocol EAP-TLS 16 +VALUE CVPN3000-PPTP-Min-Auth-Protocol MSCHAPv1 32 +VALUE CVPN3000-PPTP-Min-Auth-Protocol MSCHAPv2 64 +VALUE CVPN3000-PPTP-Min-Auth-Protocol Default 102 + +VALUE CVPN3000-L2TP-Min-Auth-Protocol PAP 1 +VALUE CVPN3000-L2TP-Min-Auth-Protocol CHAP 2 +VALUE CVPN3000-L2TP-Min-Auth-Protocol EAP-MD5 4 +VALUE CVPN3000-L2TP-Min-Auth-Protocol EAP-GTC 8 +VALUE CVPN3000-L2TP-Min-Auth-Protocol EAP-TLS 16 +VALUE CVPN3000-L2TP-Min-Auth-Protocol MSCHAPv1 32 +VALUE CVPN3000-L2TP-Min-Auth-Protocol MSCHAPv2 64 +VALUE CVPN3000-L2TP-Min-Auth-Protocol Default 102 + +VALUE CVPN3000-PPTP-Encryption PPTP-40bit 2 +VALUE CVPN3000-PPTP-Encryption PPTP-40-Encryption-Req 3 +VALUE CVPN3000-PPTP-Encryption PPTP-128 4 +VALUE CVPN3000-PPTP-Encryption PPTP-128-Encryption-Req 5 +VALUE CVPN3000-PPTP-Encryption PPTP-40-or-128 6 +VALUE CVPN3000-PPTP-Encryption PPTP-40-or-128-Encry-Req 7 +VALUE CVPN3000-PPTP-Encryption PPTP-40-Stateless-Req 10 +VALUE CVPN3000-PPTP-Encryption PPTP-40-Enc/Stateless-Req 11 +VALUE CVPN3000-PPTP-Encryption PPTP-128-Stateless-Req 12 +VALUE CVPN3000-PPTP-Encryption PPTP-128-Enc/Stateless-Req 13 +VALUE CVPN3000-PPTP-Encryption PPTP-40/128-Stateless-Req 14 +VALUE CVPN3000-PPTP-Encryption PPTP-40/128-Enc/Statls-Req 15 + +VALUE CVPN3000-L2TP-Encryption L2TP-40bit 2 +VALUE CVPN3000-L2TP-Encryption L2TP-40-Encryption-Req 3 +VALUE CVPN3000-L2TP-Encryption L2TP-128 4 +VALUE CVPN3000-L2TP-Encryption L2TP-128-Encryption-Req 5 +VALUE CVPN3000-L2TP-Encryption L2TP-40-or-128 6 +VALUE CVPN3000-L2TP-Encryption L2TP-40-or-128-Encry-Req 7 +VALUE CVPN3000-L2TP-Encryption L2TP-40-Stateless-Req 10 +VALUE CVPN3000-L2TP-Encryption L2TP-40-Enc/Stateless-Req 11 +VALUE CVPN3000-L2TP-Encryption L2TP-128-Stateless-Req 12 +VALUE CVPN3000-L2TP-Encryption L2TP-128-Enc/Stateless-Req 13 +VALUE CVPN3000-L2TP-Encryption L2TP-40/128-Stateless-Req 14 +VALUE CVPN3000-L2TP-Encryption L2TP-40/128-Enc/Statls-Req 15 + +VALUE CVPN3000-Auth-Server-Type First-Active-Server 0 +VALUE CVPN3000-Auth-Server-Type RADIUS 1 +VALUE CVPN3000-Auth-Server-Type LDAP 2 +VALUE CVPN3000-Auth-Server-Type NT 3 +VALUE CVPN3000-Auth-Server-Type SDI 4 +VALUE CVPN3000-Auth-Server-Type Internal 5 + +VALUE CVPN3000-IPSec-LTL-Keepalives OFF 0 +VALUE CVPN3000-IPSec-LTL-Keepalives ON 1 + +VALUE CVPN3000-IPSec-Tunnel-Type LAN-to-LAN 1 +VALUE CVPN3000-IPSec-Tunnel-Type Remote-Access 2 + +VALUE CVPN3000-IPSec-Mode-Config ON 1 +VALUE CVPN3000-IPSec-Mode-Config OFF 0 + +VALUE CVPN3000-IPSec-User-Group-Lock OFF 0 +VALUE CVPN3000-IPSec-User-Group-Lock ON 1 + +VALUE CVPN3000-IPSec-Over-UDP OFF 0 +VALUE CVPN3000-IPSec-Over-UDP ON 1 + +VALUE CVPN3000-Strip-Realm FALSE 0 +VALUE CVPN3000-Strip-Realm TRUE 1 + +VALUE CVPN3000-Smart-Tunnel-Auto Disabled 0 +VALUE CVPN3000-Smart-Tunnel-Auto Enabled 1 +VALUE CVPN3000-Smart-Tunnel-Auto Auto 2 + +END-VENDOR Cisco-VPN3000 diff --git a/share/dictionary.cisco.vpn5000 b/share/dictionary.cisco.vpn5000 new file mode 100644 index 0000000..70906ed --- /dev/null +++ b/share/dictionary.cisco.vpn5000 @@ -0,0 +1,21 @@ +# -*- text -*- +# Copyright (C) 2019 The FreeRADIUS Server project and contributors +# This work is licensed under CC-BY version 4.0 https://creativecommons.org/licenses/by/4.0 +# +# Cisco VPN 5000 Concentrator Dictionary +# +# http://www.cisco.com/univercd/cc/td/doc/product/access/acs_soft/csacs4nt/csnt30/user/ad.htm +# +# $Id$ +# +VENDOR Cisco-VPN5000 255 + +BEGIN-VENDOR Cisco-VPN5000 +ATTRIBUTE CVPN5000-Tunnel-Throughput 1 integer +ATTRIBUTE CVPN5000-Client-Assigned-IP 2 string +ATTRIBUTE CVPN5000-Client-Real-IP 3 string +ATTRIBUTE CVPN5000-VPN-GroupInfo 4 string +ATTRIBUTE CVPN5000-VPN-Password 5 string +ATTRIBUTE CVPN5000-Echo 6 integer +ATTRIBUTE CVPN5000-Client-Assigned-IPX 7 integer +END-VENDOR Cisco-VPN5000 |