FreeRadius MAC address authorization (no authentication)

A.L.M.Buxey at A.L.M.Buxey at
Fri Aug 8 09:13:06 CEST 2008


> Hi, I'm trying  to implement FreeRadius to authenticate Wireless
> CLient based on MAC address only, unfortunately all my wireless client
> using EAP/TLS (Windows XP SP2) . I found that tutorials and doc are
> not leading me to the right direction. Besides, I will not burden my
> Windows XP SP2 client to search hotfix for EAP/TLS compatibility with
> FreeRadius.

there is no hotfix for EAP/TLS compatability.  there ARE 2 important
windows hotfixes for wireless supplicant bahaviour etc.

> is enough to verified valid MAC address from Wireless Client. But my
> question is how can I use only Authorization where Authentication will
> always return Access-Accept.

you cant. if you're trying to use PEAP than you must follow all
the specifications and return the correct stuff when and as needed.
you cant just throw back an accept. if you want a noddy poor wireless
infrastructure then just go for WPa-PSK or even a MAC-based captive 


More information about the Freeradius-Users mailing list