Radius, LDAP and Openvpn

Alan DeKok aland at deployingradius.com
Thu Oct 31 13:58:51 CET 2013


Andres Septer wrote:
> Now i would also like to add openvpn access and use different attribute
> for that.
> So far I understand that somewhere sholud go unlang stanza
> something like
> If calling station IP is openvpnserverIP and attribute enableOvpnAccess
> is true then send Access-Accepted? 

  See the OpenVPN documentation for which attributes it needs.

> Is this right direction to think?
> Whitch stanza it should go? Authorize?

  Randomly trying things won't help.

  You need to read the documentation, and *understand* how FreeRADIUS
works.  The alternative is random changes, confusion, upset users, and
*more* work and pain.

  Alan DeKok.


More information about the Freeradius-Users mailing list