Reply-message and supplicant

Arran Cudbard-Bell a.cudbard-bell at sussex.ac.uk
Sun Jun 7 23:04:34 CEST 2009


Alan DeKok wrote:
> Arran Cudbard-Bell wrote:
>   
>> There's no reason why you couldn't tunnel IPv4 so long as the packets
>> had a valid EAP header prepended to them. Send your EAP start, send the
>> identity response... then you can pretty much do whatever you like, so
>> long as it has a valid EAP header and the end server is in on the trick.
>>     
>
>   Most AP's will hang up on the EAP session after 40-50 packets.
>
>   
Aww; and it seemed like such a nice concept. Most include a
'quiet-period' before they'll allow the supplicant to reattempt
authentication.

This isn't actually mandated anywhere though is it? This is just random
vendor specific behaviour ?

Arran

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 257 bytes
Desc: OpenPGP digital signature
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20090607/91d62dbd/attachment.pgp>


More information about the Freeradius-Users mailing list