rlm_perl authentication override

Henry henka at cityweb.co.za
Wed Dec 17 13:08:17 CET 2008


Quoting tnt at kalik.net:
>> Is there a way to change the reply from Access-Reject, to Access-Accept?
>>
>
> There is a way to change the packet type but it is a bad idea. Placing
> unauthorized users in something like a guest VLAN should be the part of
> your NAS functionality, rather than (deliberately) breaking
> authentication on the radius server.

Thanks for the response, Ivan.

We don't have access to the NAS servers (we merely auth) and this is  
the only way we can do this cleanly (without physically unlocking the  
user, managing that process, etc).

Can you provide pointers on how to change the reply?

Thanks
Henry




More information about the Freeradius-Users mailing list