Integration with CISCO Router for PEAP requests

Phil Mayers p.mayers at imperial.ac.uk
Thu Aug 30 14:47:56 CEST 2012


On 30/08/12 11:12, Andras Ionut wrote:
> Thanks a lot for the quick answer Arran.
>
> That is exactly wahat I need - sending an Access-Accept and maybe
> EAP-Success if possible. I don't care if the device will not connect.
> I only need Access-Accept in order for the CISCO router to assign an
> IP to the client and redirect it to portal using L4_Redirect.

You're not understanding what Arran said.

This is an FAQ:

http://wiki.freeradius.org/FAQ#How-do-I-permit-access-to-any-user-regardless-of-password%3F

In short: many (most?) devices will drop the connection if auth fails, 
including a missing or invalid final response in the inner 
challenge-response auth.

So, forcing an accept might work for the router. But the client will 
probably disconnect.

>
> Can this be done? If yes, can you please be more explicit on how to do
> this in freeradius?

See the FAQ entry above.


More information about the Freeradius-Users mailing list