Problem with Cisco-AVPair

Sergio Sagliocco sergio.sagliocco at csp.it
Thu Apr 6 11:39:53 CEST 2006


Hi
I think you have to try in this way (for example):
TEST4 Cisco-AVPair == "ssid=SSID1" , Auth-Type := EAP
          Tunnel-Medium-Type = IEEE-802,
          Tunnel-Private-Group-Id = 2,
          Tunnel-Type = VLAN
DEFAULT Auth-Type := Reject

if uou want a password:
TEST4 Cisco-AVPair == "ssid=SSID1" ,User-Password="XXXX", Auth-Type := EAP
          Tunnel-Medium-Type = IEEE-802,
          Tunnel-Private-Group-Id = 2,
          Tunnel-Type = VLAN
DEFAULT Auth-Type := Reject

Regards
sergio

Antonio Matera wrote:
> My goal is to have authenticate user only if the SSID is right!
> You know how can I do it?
>
> Thanks
> Antonio
>
> on 05/04/2006 17.33 Sergio Sagliocco said the following:
>> Hello
>> your goal is authenticate users only if the SSID is rght or to have
>> different EAP Authentication method based on SSID?
>>
>> regards
>> sergio
>>
>>
>> Antonio Matera wrote:
>>   
>>> Hallo,
>>> thanks for the answer.
>>>
>>> With your solution my radius don't authenticate my users....
>>> Is my configuration correct or I need other change in my radius files?
>>>
>>> Thanks bye
>>>
>>> on 05/04/2006 15.27 Sergio Sagliocco said the following:
>>>     
>>>> Hi
>>>> I think you have to use == instead of :=
>>>> For example:
>>>>
>>>> DEFAULT Cisco-AVPair == "ssid=testLEAP"  ,  EAP-Type := Cisco-LEAP
>>>>
>>>> Regards
>>>>
>>>>   
>>>>       
>>> - List info/subscribe/unsubscribe? See
>>> http://www.freeradius.org/list/users.html
>>>
>>>
>>>     
>>
>>   
> ------------------------------------------------------------------------
>
> - 
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

-- 
Sergio SAGLIOCCO
SecureLAB - http://www.securelab.it
CSP s.c. a r.l. - http://www.csp.it
______________________________________________
Villa Gualino
Viale Settimo Severo, 63 - 10133 Torino [IT]
tel. +39 011 481 5140 - Mobile +39 348 6024078 
fax  +39 011 481 5001 
______________________________________________





More information about the Freeradius-Users mailing list