there is ME60 used as Bras "access control gateway"
when the incoming access request from subscriber is reached to ME60
for authenication then the ME60 send to raduis access request for autheniaction
and start accounting packet for accounting after that the raduis send to ME60 to accept the user or reject the user.
and there are more than 1000 users send thier access requests to ME60 to access the internet.
but the problem all the PPPOE users can't login into the internet.
authenication failure message as appear in the attached file "alarming window"
1-make test to check the problem in Raduis or ME60 by enable the local authenication on ME60 without using Raduis server
then finding that no problem in ME60.
2- enable the remote authenication and accounting using the raduis server again and capture the packets from the ME60
to the raduis server.
3-check with Raduis server team the arrived packet from ME60 to raduis server.
4-after checking the captured packet then finding that the raduis server receiving Huawei proprietary attributes which
are unknown for raduis as shown in the captured authenication and captured packet from ME60 to the raduis so the
raduis server doesn't reply on ME60 then the user can't login because the ME60 doesn't reply on his access request.
5- after that solving the problem as follow
-checking the unknown attributes numbers and disable this attributes as follow:
radius-server source interface LoopBack0
radius-server group qtel_radius
radius-server authentication 188.8.131.52 1645 weight 0
radius-server accounting 184.108.40.206 1646 weight 0
radius-server attribute translate
radius-server user-name original
radius-attribute disable Input-Peak-Rate send
radius-attribute disable Input-Average-Rate send
radius-attribute disable Output-Average-Rate send
radius-attribute disable Priority send
radius-attribute disable Connect-ID send
radius-attribute disable Domain-name send
radius-attribute disable Ip-Host-Addr send
radius-attribute disable Output-Peak-Rate send
radius-attribute disable Version send
radius-attribute disable Product-ID send
radius-attribute disable Acct_Tunnel_Packets_Lost send
the raduis server receives huawei proprietary attributes which are unknown for the raduis.
so when the raduis receives the authenication request and start accounting request from ME60
the raduis doesn't reply on ME60 then ME60 rejects the user request.
please refer to the captured authenication and accounting packet attached below.