Authentication Responses during error conditions 
    Alan DeKok 
    aland at ox.org
       
    Fri Jul 29 02:09:44 CEST 2005
    
    
  
Doug Hardie <bc979 at lafn.org> wrote:
> I am a bit confused now.  I understood that if a module returns  
> RLM_MODULE_FAIL that radiusd would not return an authorization  
> reject.  However, it appears that it still does.
  RADIUS servers are supposed to return Access-Reject's for
Access-Accepts, rather than just dropping the packets.
> modcall: group authorize returns fail for request 0
> There was no response configured: rejecting request 0
  That's what the server does.
  If the server *requires* a back-end DB, and that DB is down, then
arguable the server can pretend it's down, too.
  Alan DeKok.
    
    
More information about the Freeradius-Users
mailing list