Default entry to allow all

Godfrey Peart grpeart at googlemail.com
Tue Feb 2 23:52:35 CET 2010


At present my setup uses peap/ms-chapV2  to authenticate users
is it possible to have an entry in the users file that will allow users
to connect regardless of the username/password combo they input
at the login box
.
I did try *DEFAULT Auth-Type := Accept*, but it didn't work

rad_recv: Access-Request packet from host 10.10.3.29 port 1645, id=208,
length=154
        User-Name = "anything"
        Framed-MTU = 1400
        Called-Station-Id = "0021.55ac.f2d0"
        Calling-Station-Id = "0013.0229.bf35"
        Cisco-AVPair = "ssid=swordfish"
        Service-Type = Login-User
        Message-Authenticator = 0x02152f851db652adcceccf557c2c9b5f
        EAP-Message = 0x0202000b01747972757275
        NAS-Port-Type = Wireless-802.11
        NAS-Port = 13008
        NAS-Port-Id = "13008"
        NAS-IP-Address = 10.107.3.29
        NAS-Identifier = "THEO"
+- entering group authorize {...}
++[preprocess] returns ok
++[chap] returns noop
++[mschap] returns noop
[suffix] No '@' in User-Name = "anything", looking up realm NULL
[suffix] No such realm "NULL"
++[suffix] returns noop
[eap] EAP packet type response id 2 length 11
[eap] No EAP Start, assuming it's an on-going EAP conversation
++[eap] returns updated
++[unix] returns notfound
[files] users: Matched entry DEFAULT at line 207
++[files] returns ok
++[expiration] returns noop
++[logintime] returns noop
[pap] Found existing Auth-Type, not changing it.
++[pap] returns noop
Found Auth-Type = Accept
Auth-Type = Accept, accepting the user
+- entering group post-auth {...}
++[exec] returns noop
Sending Access-Accept of id 208 to 10.10.3.29 port 1645
Finished request 0.


Version: FR-2.1.8
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20100202/569021d9/attachment.html>


More information about the Freeradius-Users mailing list