Access Accept vs Tunneled reply

Alexander Clouter alex at digriz.org.uk
Fri Mar 11 19:33:33 CET 2011


David Peterson <davidp at wirelessconnections.net> wrote:
>
> I am wondering if it's a misconfiguration of a group reply.  I have 
> those attributes listed as a group-reply.  Would putting the 
> attributes in the normal vs the group reply put them in a different 
> portion of the response?
> 
As you have the User-Name/whatever-wimax utilises now movable from the 
inner-layer to the outer you can just do you policy on the outer layer 
instead.  Do authentication on the inner-tunnel, whilst authorisation 
keep to the outer layer...

Cheers

-- 
Alexander Clouter
.sigmonster says: Stay the curse.




More information about the Freeradius-Users mailing list