How to add VAP based on LDAP group membership

Alan DeKok aland at deployingradius.com
Fri Feb 19 14:18:45 CET 2016


On Feb 19, 2016, at 7:45 AM, Thomas Stather <Thomas.Stather at mpimf-heidelberg.mpg.de> wrote:
> I tried
> 
> if ("%{redundant_ldap:///ou=hosts,dc=testdomain,dc=de?macAddress?sub?macAddress=%{Calling-Station-Id}}") {

  As another example:

grep -r ldap:// raddb/

raddb//sites-available/dynamic-clients:		if ("%{ldap:ldap:///OU=Elements,OU=Radius,DC=ACME,DC=COM?ou?sub?cn=%{Packet-Src-IP-Address}}") {
raddb//sites-available/dynamic-clients:				&FreeRADIUS-Client-Shortname = "%{ldap:ldap:///OU=Elements,OU=Radius,DC=ACME,DC=COM?l?sub?cn=%{Packet-Src-IP-Address}}"
raddb//sites-available/dynamic-clients:				&FreeRADIUS-Client-Secret = "%{ldap:ldap:///OU=Elements,OU=Radius,DC=ACME,DC=COM?ou?sub?cn=%{Packet-Src-IP-Address}}"

  Alan DeKok.




More information about the Freeradius-Users mailing list