FR 3.0.7 RADIUS Client Schema error

Michael Ströder michael at
Thu Apr 30 19:14:01 CEST 2015

Alan DeKok wrote:
> On Apr 30, 2015, at 10:43 AM, Ben Humpert <ben at> wrote:
>> in the schema file the entry for require message authenticator is listed as
>> olcAttributeTypes: ( NAME
>> 'radiusClientRequireMa' SINGLE-VALUE DESC 'Require Message
>> Authenticator' EQUALITY booleanMatch SYNTAX
>> '' )
>> thus one has to enter TRUE or FALSE in LDAP - everything else (I tried
>> it with true, Yes, yes, YES and 1) throws an LDAP error. But now, with
>> TRUE FR won't start anymore. Below is the debug log
>    I've pushed a fix to v3.0.x.  It will now allow true / false for booleans.
Just in case:
Please note that LDAP syntax Boolean requires upper-case TRUE / FALSE.

I saw LDAP client and server implementations which do not care about that 
leading to interop problems.

Ciao, Michael.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4272 bytes
Desc: S/MIME Cryptographic Signature
URL: <>

More information about the Freeradius-Users mailing list