Thank you Alan<br><br><div><div>I updated to 2.0.0-pre2. But now I have some errors and I can' tcheck again:)<br>Now when my NAS sends the Accounting request or I try to run 'radtest' tool, the verification fails.
<br>I didn't change anything in the configuration and in the database. I have the same NAS configuration.<br>I get the following error in the debug mode:<br><br>Ignoring request to authentication address * 1812 from unknown client
<a href="http://127.0.0.1">127.0.0.1</a> port 37391<br><br>Please point me what do I missed:)<br><br>Best regards<br>tomasz<br></div><br><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">
Tomasz Zieleniewski wrote:<br>> I am using radius version 2.0.0-pre0.<br>> I have the following problem that when I receive the Accounting-Request<br>> with the username whose domain part is not checked with any of my realm
<br>> defined in the proxy.conf file. The username is not stripped.<br>> I use the suffix rule for domain: 'username@domain" in my realm module<br>> and I inoke it in preacct in radiusd.conf.<br>> I have the DEFAULT realm defined and it doesn't have the nostrip option
<br>> activated.<br>> So I think when there is no domain match the username should also be<br>> stripped??<br><br> Likely, yes. What does debug mode say?<br><br> You could also try running CVS head, which has a number of fixes over
<br>2.0-pre0.<br><br> Alan DeKok.<br><br><br>------------------------------<br><br>Message: 10<br>Date: Fri, 12 Oct 2007 10:16:43 -0300<br>From: "Sergio Belkin" <<a href="mailto:sebelk@gmail.com">sebelk@gmail.com
</a>><br>Subject: Re: TLS fatal access_denied<br>To: "FreeRadius users mailing list"<br> <<a href="mailto:freeradius-users@lists.freeradius.org">freeradius-users@lists.freeradius.org</a>><br>Message-ID:
<br> <<a href="mailto:8c6f7f450710120616t48014e18g8c02184fdaef6b97@mail.gmail.com">8c6f7f450710120616t48014e18g8c02184fdaef6b97@mail.gmail.com</a>><br>Content-Type: text/plain; charset=ISO-8859-1<br><br>2007/10/11,
<a href="mailto:tnt@kalik.co.yu">tnt@kalik.co.yu</a> <<a href="mailto:tnt@kalik.co.yu">tnt@kalik.co.yu</a>>:<br>> How sure are you that you are using EAP-TTLS?<br>><br>> > rlm_eap: EAP NAK<br>> > rlm_eap: EAP-NAK asked for EAP-Type/peap <==
<br>><br>> Ivan Kalik<br>> Kalik Informatika ISP<br>><br>> -<br>> List info/subscribe/unsubscribe? See <a href="http://www.freeradius.org/list/users.html">http://www.freeradius.org/list/users.html</a><br>
><br><br>I am pretty sure because I has default_eap_type = ttls. I've just<br>fixed, it was a problem of certificates...<br><br>thanks-<br><br>--<br>--<br>Sergio Belkin -<br><br><br>------------------------------<br>
<br>-<br>List info/subscribe/unsubscribe? See <a href="http://www.freeradius.org/list/users.html">http://www.freeradius.org/list/users.html</a><br><br><br>End of Freeradius-Users Digest, Vol 30, Issue 49<br>************************************************
<br></blockquote></div><br>