Different reply items out of LDAP depending on the NAS

Peter Lambrechtsen plambrechtsen at gmail.com
Fri Aug 28 11:55:12 CEST 2009


I am trying to have a granular based reply items depending on the NAS they
connected to all driven using attributes in LDAP without needing to use
realms.

IE User A passes just User&Password to NAS A. and gets reply attr
"Service-Type=admin", and the admin comes from an LDAP Attribute "nasA"
attribute in LDAP
Same user logs into NAS B and gets back a "Service-Type=user" and the value
user comes from an attribute "nasB".

Looking through the ldap.attrmap it seems to be a static mapping for
Service-Type to be staticly set to a single value from LDAP, but what
happens if I want that value to be different depending on which NAS I have
connected from.

Have searched around and havn't found any documents talking about how to
have this grainular level of configuration.

Any suggestions?
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20090828/c9809c1e/attachment.html>


More information about the Freeradius-Users mailing list