EAP-TTLS outer identity & accounting

Sam Schultz segfault90 at hushmail.com
Wed Mar 14 19:03:21 CET 2007



On Wed, 14 Mar 2007 11:25:20 -0500 Thibault Le Meur 
<Thibault.LeMeur at supelec.fr> wrote:
>> -----Message d'origine-----
>> De : 
>> freeradius-users-bounces+thibault.lemeur=supelec.fr at lists.free
>> radius.org 
>> [mailto:freeradius-users-bounces+thibault.lemeur=supelec.fr at li
>> sts.freeradius.org] De la part de Sam Schultz
>> Envoyé : mercredi 14 mars 2007 17:13
>> À : freeradius-users at lists.freeradius.org
>> Objet : Re: EAP-TTLS outer identity & accounting
>> 
>> 
>> 
>> 
>> On Tue, 13 Mar 2007 13:15:52 -0500 Alan DeKok 
>> <aland at deployingradius.com> wrote:
>> >Sam Schultz wrote:
>> >>
>> >> This should be solvable by adding something like
>> >> 'User-Name = %{User-Name}' to the DEFAULT entries in the 
>users 
>> >file,
>> >> correct?
>> >
>> >  Yes.
>> 
>> One of my users file DEFAULT entries look like this:
>> 
>> DEFAULT         Realm == "test", Autz-Type := sql-test, User-
>Name = 
>> "%u"
>> 
>> However, FreeRADIUS tells me this:
>> 
>> Error: Invalid operator for item User-Name: reverting to '=='
>> 
>> I assume I'm not supposed to forcibly change User-Name, so what 
>> attribute would I set to return the correct username to the NAS? 
>
>> I know there is a run-time variable %(reply:User-Name}, would I 
>> need to somehow update it with the correct value for User-Name 
>> instead?
>
>Yes, by simply adding the User-Name = XXX to the reply items (that 
>is to say
>not on the first line). Try something like this:

This didn't make much sense at first, but I think I understand it 
now.
What you're saying is that the first line is only for check items,
which is why I couldn't set User-Name there. The second line and 
beyond
then are for, what? Reply items ONLY, or check & reply items? Is 
this
documented anywhere? I just did a quick check through the freeradius
doc directory, and only found a rlm_fastusers document which didn't
have anything to say about format restrictions.

>
>DEFAULT         Realm == "test", Autz-Type := sql-test
>	User-Name=`%{User-Name}`
>
>HTH,
>Thibault
>
>
>
>- 
>List info/subscribe/unsubscribe? See 
>http://www.freeradius.org/list/users.html

--
Click for free info on online degrees and make $150K/ year
http://tagline.hushmail.com/fc/CAaCXv1S7YfNF4AEzCH38YxSm8GfpqO2/




More information about the Freeradius-Users mailing list