ECS4110-28T_Management Guide

Table Of Contents
C
HAPTER
40
| Multicast Filtering Commands
IGMP Filtering and Throttling
– 1254
If the port leaves the group and subsequently rejoins the same group,
the join report needs to again be authenticated.
When receiving an IGMP v3 report message, the switch will send the
access request to the RADIUS server only when the record type is
either IS_EX or TO_EX, and the source list is empty. Other types of
packets will not initiate RADIUS authentication.
IS_EX (MODE_IS_EXCLUDE) - Indicates that the interface’s filter mode
is EXCLUDE for the specified multicast address. The Source Address
fields in this Group Record contain the interface's source list for the
specified multicast address, if not empty.
TO_EX (CHANGE_TO_EXCLUDE_MODE) - Indicates that the interface
has changed to EXCLUDE filter mode for the specified multicast
address. The Source Address fields in this Group Record contain the
interface's new source list for the specified multicast address, if not
empty.
When a report is received for the first time and is being authenticated,
whether authentication succeeds or fails, the report will still be sent to
the multicast-router port.
The following table shows the RADIUS server Attribute Value Pairs used
for authentication:
EXAMPLE
This example shows how to enable IGMP Authentication on all of the
switch’s Ethernet interfaces.
Console(config)#interface ethernet 1/1-28
Console(config-if)#ip igmp authentication
Console#
RELATED COMMANDS
show ip igmp authentication
Table 170: IGMP Authentication RADIUS Attribute Value Pairs
Attribute Name AVP Type Entry
USER_NAME 1 User MAC address
USER_PASSWORD 2 User MAC address
NAS_IP_ADDRESS 4 Switch IP address
NAS_PORT 5 User Port Number
FRAMED_IP_ADDRESS 8 Multicast Group ID