Freeradius, Cisco SSC, eDirectory, EAP/(T)TLS Problem

Sven 'Darkman' Michels sven at darkman.de
Wed Mar 26 00:09:28 CET 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi,

A.L.M.Buxey at lboro.ac.uk wrote:
>> Beside that, i noticed that when using a wrong ssl cert and user+pw
>> (to get vlan300) freeradius *first* checks the edirectory, and THEN
>> the eap/ttls stuff - shouldn't this be exactly the other way around?
> 
> err, no, because you have told it to behave like this.  change
> the order of the modules in authorize and athenticate
> sections of your config if you want it any other way!

erm? so, the sections are used from down to top? *scratches head*

Regards,
Sven
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFH6YYnQoCguWUBzBwRAuovAKCRUH7RZPg+0MSooVilGLZ+dfGj7QCfe2Y+
iu/uSPlXZN//NppDESm5jkw=
=gTzR
-----END PGP SIGNATURE-----



More information about the Freeradius-Users mailing list