VLAN assigment and Alcatel Omniswitch 7800

Oxiel Contreras oxielc at yahoo.it
Thu Feb 8 21:02:02 CET 2007


Hello Alan.

Thank you, as you adviced i've changed users file, now it's :

"MYDOMAIN\\jose"
         Tunnel-Type += VLAN,
         Tunnel-Medium-Type += IEEE-802,
         Tunnel-Private-Group-Id += 3

The Access-Accept part of radiusd -X is now sending the switch the correct 
information:

modcall[authenticate]: module "eap" returns ok for request 8
modcall: leaving group authenticate (returns ok) for request 8
Sending Access-Accept of id 1 to 192.168.10.20 port 1068
        Tunnel-Type:0 += VLAN
        Tunnel-Medium-Type:0 += IEEE-802
        Tunnel-Private-Group-Id:0 += "3"
        MS-MPPE-Recv-Key = 
0x2c003c698c883936e741aeed8974f40eb012d38af20400bdd0815dac46dc2e0b
        MS-MPPE-Send-Key = 
0x92807250a6760157aa6a39f9a05239c3d28bce8c5b7dc3563bd2ddc7cae2893e
        EAP-Message = 0x030a0004
        Message-Authenticator = 0x00000000000000000000000000000000
        User-Name = "MYDOMAIN\\jose"
Finished request 8

But still the VLAN is not assigned, what else can it be ?

Best regards.

Oxiel

>   Don't set Auth-Type.  Ever.
>
> >         Tunnel-Type += VLAN,
> >         Tunnel-Medium-Type += IEEE-802,
> >         Tunnel-Private-Group-Id += 3
> >
> > But the port is never assigned to VLAN 3 for the user "jose".
>
>   Because that information isn't being sent back to the NAS.
>
> > Is it possible to assign VLAN's with Alcatel ?
>
>   I presume so.  See the Alacatel documentation.
>
> > It seems to me, that the VLAN parameters are never returned to the
>
> switch in
>
> > the Access-Accept parth of this the result from radiusd -X.
>
>   Yes.  The username in the request is "MYDOMAIN\\jose", not "jose".
Chiacchiera con i tuoi amici in tempo reale! 
 http://it.yahoo.com/mail_it/foot/*http://it.messenger.yahoo.com 



More information about the Freeradius-Users mailing list