Multiple Radius Group Name

Alan DeKok aland at deployingradius.com
Mon Apr 23 18:58:46 CEST 2018


On Apr 23, 2018, at 12:20 PM, Angel Elena <craem at craem.net> wrote:
> 
> I have a freeradius 2.2.5 in a debian 8 box with an OpenLdap database.

  You should really upgrade to 2.2.10 at least.  It takes about 10 minutes.

> A simple query:
> 
> angel.elena at bulma:/etc/freeradius$ radtest angel.elena password localhost:1812 0 testing123

  We don't need to see the output of radclient.

  http://wiki.freeradius.org/list-help

> Mikrotik group is a mapped attribute in a ldap.attrmap file and works fine:
> 
> replyItem       Mikrotik-Group                  radiusGroupName\

  See the comments at the top of that file.  If the comments aren't there, someone probably deleted them.

  Or, install 2.2.10, and look at the comments at the top of ldap.attrmap in the source file.

> Is possible specify two radiusGroupName in a simple reply or any idea to set this setup ?

  Yes.  It's documented in that file.  You need to set the operator to "+="

  Alan DeKok.




More information about the Freeradius-Users mailing list