question about session resumption and reply attributes

Arran Cudbard-Bell a.cudbard-bell at sussex.ac.uk
Thu May 21 10:01:00 CEST 2009


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Anatoli Logvinski wrote:
> Hi
>
> We are using dynamic VLAN assignment with freeradius 2.1.6 and
> tried to test session resumption. It looks like that freeradius
> doesn't cache all reply attributes and upon session resumption the
> VLAN assignment attributes don't get send. Is there any way to
> cache these attributes? The attributes are generated by rlm_perl in
> post-auth section of inner-tunnel virtual server - List
> info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html
No. You should be running through your authorisation policies on
session resumption. All policies should be moved to the post-auth
section of the outer server.

Arran


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.9 (Darwin)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iEUEARECAAYFAkoVCjwACgkQcaklux5oVKJvDwCYvPokdzA/pfBPJEJnfjaQLGSm
4gCfd17/hCU6qQUjoPu1yP+0hcSSV9Q=
=p9OV
-----END PGP SIGNATURE-----




More information about the Freeradius-Users mailing list