Normalising the User-Name AVP in an Access-Accept

Alex Sharaz alex.sharaz at
Thu Apr 18 17:51:10 CEST 2013

What 'I'm doing at the moment. For our outward facing radius servers, with any inbound auth requests from york users elsewhere, I normalise the username in the Access-Accept packet to  have the realm appended if its not there
On 18 Apr 2013, at 16:43, Nick Lowe <nick.lowe at> wrote:

> I would default the behaviour to not send the User-Name attribute in
> the Access-Accept but give the ability to have it trivially enabled
> with a toggle.
> And where it is enabled, by default, send it in the normalised
> user at realm format unless configured otherwise. (That would be the
> general case as far as I can see.)
> -
> List info/subscribe/unsubscribe? See

More information about the Freeradius-Users mailing list