NAS ignoring Access-Accept
Wolfgang Rosenauer
wolfgang at rosenauer.org
Wed May 23 07:50:26 CEST 2007
Hi,
tnt at kalik.co.yu wrote:
> Check logging in your config. Debug information has lowest priority so
> requires highest level of logging (7).
got an output now:
May 23 07:42:25 dialin1 274: May 23 05:42:25: RADIUS: Received from id
214 1.1.1.1:1812, Access-Accept, len 20
May 23 07:42:25 dialin1 275: May 23 05:42:25: RADIUS: saved
authorization data for user 3DCB74 at 1F66F0
May 23 07:42:25 dialin1 276: May 23 05:42:25: RADIUS: no appropriate
authorization type for user.
So "no appropriate authorization type for user" seems to let the Cisco
ignore the reply.
And now I know the difference in the config. With the old server I had a
default group in radgroupreply:
Service-Type = Framed-User,
Framed-Protocol = PPP
What I don't have in the new server yet because I thought I wouldn't
need it (since the same attributes are in the request already).
Thanks for the hints,
Wolfgang
More information about the Freeradius-Users
mailing list