Authentication Responses during error conditions

Alan DeKok aland at ox.org
Fri Jul 29 02:09:44 CEST 2005


Doug Hardie <bc979 at lafn.org> wrote:
> I am a bit confused now.  I understood that if a module returns  
> RLM_MODULE_FAIL that radiusd would not return an authorization  
> reject.  However, it appears that it still does.

  RADIUS servers are supposed to return Access-Reject's for
Access-Accepts, rather than just dropping the packets.

> modcall: group authorize returns fail for request 0
> There was no response configured: rejecting request 0

  That's what the server does.

  If the server *requires* a back-end DB, and that DB is down, then
arguable the server can pretend it's down, too.

  Alan DeKok.



More information about the Freeradius-Users mailing list