Any interoperability issues with Aruba and Freeradius

Alex Sharaz alex.sharaz at york.ac.uk
Sun Feb 10 14:33:51 CET 2013


Thanks for this one Alan, fixes one of my outstanding issues
Rgds 
Alex

Sent from my iPhone

On 8 Feb 2013, at 17:59, A.L.M.Buxey at lboro.ac.uk wrote:

> Hi,
> 
>> * there is one problem that FreeRADIUS doesn't return the inner ID into the outer one when using EAP-TTLS (but does when using EAP-PEAP), but this is nothing Aruba-specific and probably a configuration error in FreeRADIUS on our part.
> 
> stick something like this into your 'inner-tunnel" authorize section:
> 
> 
>    #       Workaround for EAP-TTLS MsCHAPv2, not adding outer.reply attributes
>    #       If we use both methods we get duplicate User-Name attributes.
>    #
>    if(("%{outer.request:EAP-Type}" == 'EAP-TTLS') && ("%{control:Auth-Type}" == 'MSCHAP')) {
>            update reply {
>                    User-Name := "%{User-Name}"
>            }
>    }
> 
> 
> alan
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


More information about the Freeradius-Users mailing list