order of realm processing

green green gggreen4 at gmail.com
Sat Dec 19 00:57:32 CET 2009


Under proxy.conf

realm domain1 {
       type             = radius
       nostrip
       authhost        = 11.11.11.11:1812
       accthost        = 11.11.11.11:1813
       secret          = secret1
}

realm NULL {
      type = auth
       authhost        = 22.22.22.22:1812
       accthost        = 22.22.22.22:1813
       secret          = secret1
}

There is no "<http://11.11.11.11:1812>" or
"<http://11.11.11.11:1813<http://11.11.11.11:1812/>>".
It is just the format that is include when post from gmai. It is just
authhost = 11.11.11.11:1812 and accthost = 11.11.11.11:1813. It is just
authhost = 22.22.22.22:1812 and 22.22.22.22:1813.

See *http://wiki.freeradius.org/Proxy.conf. *type = radius is valid. I did
not get any error when i compiled it using radiusd -X.


See earlier email for my question:
i have user2 (without domain) and this get rejected, i want it to send to
radius2 server (22.22.22.22) as defined in the NULL domain as defined in the
proxy.conf.


Can anyone advise and thanks.

On Sat, Dec 19, 2009 at 4:26 AM, Alan Buxey <A.L.M.Buxey at lboro.ac.uk> wrote:

> Hi,
>
> > Under proxy.conf
> >
> > realm domain1 {
> >        type             = radius
> >        nostrip
> >        authhost        = 11.11.11.11:1812<http://11.11.11.11:1812>
> >        accthost        = 11.11.11.11:1813<http://11.11.11.11:1813>
> >        secret          = secret1
> > }
> >
> > realm NULL {
> >       type = auth
> >        authhost        = 22.22.22.22:1812<http://22.22.22.22:1812>
> >        accthost        = 22.22.22.22:1813<http://22.22.22.22:1813>
> >        secret          = secret1
> > }
>
>
> <snip>
>
> let me give you the info from proxy.conf
>
>        #  Allowed values are:
>        #       auth      - Handles Access-Request packets
>        #       acct      - Handles Accounting-Request packets
>        #       auth+acct - Handles Access-Request packets at "port",
>        #                   and Accounting-Request packets at "port + 1"
>        #       coa       - Handles CoA-Request and Disconnect-Request
> packets.
>        #                   See also raddb/sites-available/originate-coa
>        type = auth
>
> type = radius  ?
>
> hmmm. thats not valid at all.
>
> also, whats all that <http://22.22.22.22:1812> stuff after the address?
> just have the address:port  nothing else.  did you copy a config from
> some web page?
>
> alan
> -
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20091219/e2a16932/attachment.html>


More information about the Freeradius-Users mailing list