Access Accept vs Tunneled reply

Alexander Clouter alex at
Fri Mar 11 19:33:33 CET 2011

David Peterson <davidp at> wrote:
> I am wondering if it's a misconfiguration of a group reply.  I have 
> those attributes listed as a group-reply.  Would putting the 
> attributes in the normal vs the group reply put them in a different 
> portion of the response?
As you have the User-Name/whatever-wimax utilises now movable from the 
inner-layer to the outer you can just do you policy on the outer layer 
instead.  Do authentication on the inner-tunnel, whilst authorisation 
keep to the outer layer...


Alexander Clouter
.sigmonster says: Stay the curse.

More information about the Freeradius-Users mailing list