New checkItem from LDAP

Alan DeKok aland at
Tue Aug 30 17:51:25 CEST 2005

Joe H <jharlan at> wrote:
> Correct me if I'm wrong but that should mean, if the SNS-Enable attribute 
> does not equal 1, assign the USR-Framed_IP_Address_Pool_Name and 
> Idle-Timeout.  I have SNS-Enable as a checkItem mapped to radiusSNSEnable 
> in the ldap.attrmap.

  That should be OK.

> Does anyone have a solution for this?  Could it be a processing order 
> problem that I'm seeing?  Does it process the users file and then LDAP so 
> it's not checking or assigning the variable properly?

  It's probably a processing order.  To change the order, see the
"authorize" section of "radiusd.conf".

  This information is also printed out in debugging mode.

  Alan DeKok.

More information about the Freeradius-Users mailing list