Tomasz Zieleniewski wrote:
> I am using radius version 2.0.0-pre0.
> I have the following problem that when I receive the Accounting-Request
> with the username whose domain part is not checked with any of my realm
> defined in the proxy.conf file. The username is not stripped.
> I use the suffix rule for domain: 'username@domain" in my realm module
> and I inoke it in preacct in radiusd.conf.
> I have the DEFAULT realm defined and it doesn't have the nostrip option
> activated.
> So I think when there is no domain match the username should also be
> stripped??
Likely, yes. What does debug mode say?
You could also try running CVS head, which has a number of fixes over
2.0-pre0.
Alan DeKok.
------------------------------
Message: 10
Date: Fri, 12 Oct 2007 10:16:43 -0300
From: "Sergio Belkin" <sebelk@gmail.com >
Subject: Re: TLS fatal access_denied
To: "FreeRadius users mailing list"
<freeradius-users@lists.freeradius.org>
Message-ID:
<8c6f7f450710120616t48014e18g8c02184fdaef6b97@mail.gmail.com">8c6f7f450710120616t48014e18g8c02184fdaef6b97@mail.gmail.com>
Content-Type: text/plain; charset=ISO-8859-1
2007/10/11, tnt@kalik.co.yu <tnt@kalik.co.yu>:
> How sure are you that you are using EAP-TTLS?
>
> > rlm_eap: EAP NAK
> > rlm_eap: EAP-NAK asked for EAP-Type/peap <==
>
> Ivan Kalik
> Kalik Informatika ISP
>
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
>
I am pretty sure because I has default_eap_type = ttls. I've just
fixed, it was a problem of certificates...
thanks-
--
--
Sergio Belkin -
------------------------------
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
End of Freeradius-Users Digest, Vol 30, Issue 49
************************************************