R: R: freeradius and IP pools

Arrigo Savio a.savio at bascom.it
Mon Dec 15 10:44:21 CET 2008


-----Messaggio originale-----
Da: freeradius-users-bounces+a.savio=bascom.it at lists.freeradius.org
[mailto:freeradius-users-bounces+a.savio=bascom.it at lists.freeradius.org] Per
conto di tnt at kalik.net
Inviato: venerdì 12 dicembre 2008 18.00
A: FreeRadius users mailing list
Oggetto: Re: R: freeradius and IP pools

>OK. I have in proxy.conf:
>realm with_ip {
>        authhost        = LOCAL
>        accthost        = LOCAL
>
>realm without_ip {
>        authhost        = LOCAL
>        accthost        = LOCAL
>
>Next I have mysql tables containing usernames:
>mysql> select * from radcheck;
>+----+----------+---------+--------------------+----+-------+
>| id | username | realm   | attribute          | op | value |
>+----+----------+---------+--------------------+----+-------+
>|  1 | user     | with_ip | Cleartext-Password | := | ip    |
>+----+----------+---------+--------------------+----+-------+
>mysql> select * from radgroupcheck;
>+----+-------------+-----------+----+----------+
>| id | groupname   | attribute | op | value    |
>+----+-------------+-----------+----+----------+
>|  1 | withipgroup | Pool-Name | := | ip_pool |
>+----+-------------+-----------+----+----------+
>mysql> select * from radippool;
>+----+-----------+-----------------+
>| id | pool_name | framedipaddress |
>+----+-----------+-----------------+
>|  1 | ip_pool   | 10.0.0.1        |
>|  2 | ip_pool   | 10.0.0.2        |
>+----+-----------+-----------------+
>mysql> select * from radusergroup;
>+----------+---------+-------------+----------+
>| username | realm   | groupname   | priority |
>+----------+---------+-------------+----------+
>| user     | with_ip | withipgroup |        1 |
>+----------+---------+-------------+----------+
>
>That's good for ip-provided users and it works. But I need to understand
how
>to configure the second user, the without-ip one.

Make just radcheck entry for that one.

Ivan Kalik
Kalik Informatika ISP


I configured user2 in radcheck table
+----+----------+------------+--------------------+----+-------+
| id | username | realm      | attribute          | op | value |
+----+----------+------------+--------------------+----+-------+
|  1 | user1    | with_ip    | Cleartext-Password | := | ip    |
|  2 | user2    | without_ip | Cleartext-Password | := | noip  |
+----+----------+------------+--------------------+----+-------+

without group membership for this user2. In radius.log I see this message:

Mon Dec 15 10:38:11 2008 : Info: No Pool-Name defined   (did  cli  port
user user2 at without_ip)

Tecnically the authentication works fine, I want only understand if I can
avoid this message.

Thanks, Arrigo.





More information about the Freeradius-Users mailing list