users file matching rules

theSnail arjuna.scagnetto at gmail.com
Tue Jan 29 11:41:22 CET 2008


hi,

i have a problem with the users file rules.

I can use "NAS-IP-Address", "User-Name", "NAS-Port-Type" field in order to
filter the packet and make different type of authentication inside users
file.

for example

DEFAULT NAS-Port-Type == Wireless-802.11 , Autz-Type := wireless , Auth-Type
:= wireless 

this rule matches the packet and start wireless auth-type etc etc...

but if i use 

DEFAULT Called-Station-Id == "0A-11-22-33-44-55:ssid" , Autz-Type :=
wireless , Auth-Type := wireless

with or without double quotes this rule doesn't match the packet.

I'm using EAP-TTLS+pap , maybe there's a problem with the session inside the
tunnel and the one outside the tunnel? the simple question is, why if i see
that field i 'm not able to use it? where's my misconfiguration? 

of course radiusd -X gives 

rad_recv: Access-Request packet from host 192.168.123.251.:1365, id=69,
length=744
        User-Name = "testuser"
        NAS-IP-Address = 127.0.0.1
        NAS-Port = 1
        Called-Station-Id = "0A-11-22-33-44-55:ssid"
        Calling-Station-Id = "00-00-11-11-11-55"
        Framed-MTU = 1400
        NAS-Port-Type = Wireless-802.11
        Connect-Info = "CONNECT 54Mbps 802.11g"

(i didn't send the whole radiusd -X output because i thought it was useless)

arjuna
-- 
View this message in context: http://www.nabble.com/users-file-matching-rules-tp15156740p15156740.html
Sent from the FreeRadius - User mailing list archive at Nabble.com.




More information about the Freeradius-Users mailing list