Using Attributes to differentiate between different EAP types

Ivan Kalik tnt at kalik.net
Mon Sep 14 23:05:07 CEST 2009


> So I�m pretty sure the simplest fix is to just have a if operator and for
> something like
>
>
>
> If(rlm_eap_type == �EAP/TTLS�)
>
> { ldap_myconfig}
>

Check that you haven't enabled access attribute in ldap configuration.
That will reject users not in ldap.

>
>
> The only problem is that I have not seen any such attribute for
> freeradius. I figure there should very well be something akin to that as a
> run time variable correct?

Have a look in dictionary.freeradius.internal.

Ivan Kalik
Kalik Informatika ISP




More information about the Freeradius-Users mailing list