Example Moonshot Policies

Arran Cudbard-Bell a.cudbardb at freeradius.org
Wed Jul 23 19:34:34 CEST 2014


On 23 Jul 2014, at 13:05, Sam Hartman <hartmans at mit.edu> wrote:

>>>>>> "Arran" == Arran Cudbard-Bell <a.cudbardb at freeradius.org> writes:
> 
>>> Should we contribute a sample database module to demonstrate the
>>> database we're using Or would you rather us put that in the trust
>>> router package?
> 
>    Arran> Feel free. It should go in mods-config/sql/<db
>    Arran> flavour>/moonshot or whatever the framework/protocol will be
>    Arran> eventually known as.
> 
> So, that doesn't seem to make sense with the current layout.  We don't
> have a queries.conf and the schema lives in the trust router package.
> What we have is a database module definition for a sqlite (currently all
> the trust router supports) database.  We access this with xlats from two
> places.  First, from the psk_query section in a tls listener.  Secondly,
> from a policy in authorize to reject the request very early if
> constraints aren't matched.
> 
> i'll contribute a mods-available entry, but if you want to create
> something for this under mods-config feel free.  It just doesn't seem to
> fit under there today.

If you're only using SQL xlat, then there's mo requirement for additional
files under mods-config.

Arran Cudbard-Bell <a.cudbardb at freeradius.org>
FreeRADIUS development team

FD31 3077 42EC 7FCD 32FE 5EE2 56CF 27F9 30A8 CAA2

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 881 bytes
Desc: Message signed with OpenPGP using GPGMail
URL: <http://lists.freeradius.org/pipermail/freeradius-devel/attachments/20140723/b4c5ce55/attachment.pgp>


More information about the Freeradius-Devel mailing list