Any interoperability issues with Aruba and Freeradius
Alex Sharaz
alex.sharaz at york.ac.uk
Sun Feb 10 14:33:51 CET 2013
Thanks for this one Alan, fixes one of my outstanding issues
Rgds
Alex
Sent from my iPhone
On 8 Feb 2013, at 17:59, A.L.M.Buxey at lboro.ac.uk wrote:
> Hi,
>
>> * there is one problem that FreeRADIUS doesn't return the inner ID into the outer one when using EAP-TTLS (but does when using EAP-PEAP), but this is nothing Aruba-specific and probably a configuration error in FreeRADIUS on our part.
>
> stick something like this into your 'inner-tunnel" authorize section:
>
>
> # Workaround for EAP-TTLS MsCHAPv2, not adding outer.reply attributes
> # If we use both methods we get duplicate User-Name attributes.
> #
> if(("%{outer.request:EAP-Type}" == 'EAP-TTLS') && ("%{control:Auth-Type}" == 'MSCHAP')) {
> update reply {
> User-Name := "%{User-Name}"
> }
> }
>
>
> alan
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
More information about the Freeradius-Users
mailing list