Freeradius proxy - Fortigate - Cisco ACS

Alan DeKok aland at deployingradius.com
Mon Aug 29 15:57:28 CEST 2011


Ole Bobakke wrote:
> Cool :-)
> 
> Where you I put this script ?

  It's not a script.  It's the internal policy language.  See "man unlang"

>    "authorize" section, after "suffix" ?

  That's what I said...

>        if (Fortinet-Vdom-Name && (User-Name !~ /@%{Fortinet-Vdom-Name/)) {

  It's ... /@%{Fortinet-Vdom-Name}/

  The %{..} is a variable explansion.

>                reject
>        }
> 
> 
> 
> I got perl to run with freeradius, and enabled this modules, do I need
> to put this in perl script?

  No.  I didn't say to do that.

  Alan DeKok.



More information about the Freeradius-Users mailing list