users file matching rules

theSnail arjuna.scagnetto at
Tue Jan 29 11:41:22 CET 2008


i have a problem with the users file rules.

I can use "NAS-IP-Address", "User-Name", "NAS-Port-Type" field in order to
filter the packet and make different type of authentication inside users

for example

DEFAULT NAS-Port-Type == Wireless-802.11 , Autz-Type := wireless , Auth-Type
:= wireless 

this rule matches the packet and start wireless auth-type etc etc...

but if i use 

DEFAULT Called-Station-Id == "0A-11-22-33-44-55:ssid" , Autz-Type :=
wireless , Auth-Type := wireless

with or without double quotes this rule doesn't match the packet.

I'm using EAP-TTLS+pap , maybe there's a problem with the session inside the
tunnel and the one outside the tunnel? the simple question is, why if i see
that field i 'm not able to use it? where's my misconfiguration? 

of course radiusd -X gives 

rad_recv: Access-Request packet from host, id=69,
        User-Name = "testuser"
        NAS-IP-Address =
        NAS-Port = 1
        Called-Station-Id = "0A-11-22-33-44-55:ssid"
        Calling-Station-Id = "00-00-11-11-11-55"
        Framed-MTU = 1400
        NAS-Port-Type = Wireless-802.11
        Connect-Info = "CONNECT 54Mbps 802.11g"

(i didn't send the whole radiusd -X output because i thought it was useless)

View this message in context:
Sent from the FreeRadius - User mailing list archive at

More information about the Freeradius-Users mailing list