huntgroups are failing auth - missing Chap Password

Ivan Kalik tnt at kalik.net
Fri May 9 15:43:03 CEST 2008


>I must be missing something here, likely due to my limited experience with
>FreeRADIUS. 

No, all you have to do is to be able to read. With care and understanding.

>After re-reading the instructions in the users file the only
>thing I can see that is relevant when using huntgroups is an entry for a
>user that has no User-Password attribute assigned which I assume means
>that the default Auth-Type System will kick in and look the password up in
>an other file someplace.  What I don't know is the location of this file
>and how to go about adding the password for my users.

Forget hungroups. That part is fine. Password attribute is the problem.
So you have re-read instructions in users file. Did you find
User-Password used in any of the examples? Or perhaps some other
password attribute? The one that debug suggests is missing?

>
>Is the use of a huntgroups file the best way for me to accomplish what I
>am trying to do? I want to limit user Bob so that he can only login from
>one specific access point.
>

For a single device NAS-IP-Address should be better (avoiding use of
huntgroups). For a groups of devices hungroups work well as long as the
(hunt)groups don't overlap.

Ivan Kalik
Kalik Informatika ISP




More information about the Freeradius-Users mailing list