Hello, and a (hopefully) simple question

Vlad Sedov stereomind at gmail.com
Fri Jan 25 18:36:41 CET 2008


Well, what I'm trying to do is accept the session whether the password
is correct or not, but if it's not correct, assign Framed-IP-Address
from a different IP pool, so our firewall downstream from the NAS can
redirect their HTTP traffic to a payment site.


Vlad


On Jan 25, 2008 11:27 AM, JB <list.freeradius at mac.com> wrote:
> If it's just a message you want to display, you could use the Reply-
> Message attribute.
> Of course, your access controler would have to know how handle this
> attribute.
>
> JB
>
>
> Marinko Tarlac wrote:
>
> > radius will reply whatever you need but you need to tell him what do
> > you want.
> >
> > For example, if you're using mysql, when user account expires you
> > can add him to specific group and group attributes you can set in
> > radgroupreply table. (ip pool, tx, rx limit etc.)
> >
> > On Jan 25, 2008 6:18 PM, Vlad Sedov <stereomind at gmail.com> wrote:
> >> Hey folks.
> >>
> >> Right now, we use freeradius to authenticate simple pap/chap PPP
> >> clients. When a username/password is rejected, radius simply send
> >> back
> >> a reject message to the NAS.
> >>
> >> Is it possible to change this behavior so that a failed auth attempt
> >> gets accepted with an alternate IP pool instead of being rejected?
> >>
> >> the idea is to force suspended users through a web proxy that tells
> >> them that they have a billing issue, instead of rejecting their
> >> connection altogether.
> >>
> >>
> >> Any help would be appreciated....
> >>
> >>
> >> Vlad
>
>
>
> JB
>
>
>
>
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
>



More information about the Freeradius-Users mailing list