Thank you Alan, your help was precious and (I hope) needful.<br>In the next days I will send my (hopefully) configuration, if you consider it appropriate.<br><br>Thanks.<br><br>Rosario L.<br><br><br><div class="gmail_quote">
2010/3/3 Alan Buxey <span dir="ltr"><<a href="mailto:A.L.M.Buxey@lboro.ac.uk">A.L.M.Buxey@lboro.ac.uk</a>></span><br><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">
Hi,<br>
<div class="im"><br>
> I'm tryng to use Freeradius 2.x for managing a complex architecture. I use the 802.1x standard for wireless authentication.<br>
> I need to authenticate users that have passwords in different authentication server whit different protocol (TTLS/PAP or PEAP/MSCHAPv2) and i'd want to proxy the requests tryng to authenticate in first auth server and more if the auth fails.<br>
> Can I get this feature simply listing home servers in home_server_pool module in proxy.conf file?<br>
<br>
</div>not easily or at all if you use proxying - as all you'll get back is a reject/fail and<br>
that'll be it.<br>
<br>
ideally what you want to do is configure the FreeRADIUS server to talk to both of the<br>
authentication servers....and if the first one fails then dont care and continue onto<br>
the second one...etc etc. you need to check the fail-over section of the WIKI<br>
<br>
<a href="http://wiki.freeradius.org/Fail-over" target="_blank">http://wiki.freeradius.org/Fail-over</a><br>
<br>
particularly the 'More Complex Configurations' section.<br>
<br>
<br>
we actually use this to talk to 2 AD systems and 2 Kerberos systems - because<br>
people are in one or the other...each system has different credentials and<br>
different DOMAIN etc...but the mschap and krb5 sections of FreeRADIUS are very flexible<br>
(we took the modules and have a mschap-new and mschap-old etc with correct parts in).<br>
<br>
works great! PEAP, TTLS etc - we dont care. we just deal with it.<br>
<br>
alan<br>
-<br>
List info/subscribe/unsubscribe? See <a href="http://www.freeradius.org/list/users.html" target="_blank">http://www.freeradius.org/list/users.html</a><br>
</blockquote></div><br><br clear="all"><br>-- <br>Rosario L. <br>