At 07:10 AM 9/30/2001 +0200, Robert Divko wrote:
>Has somebody an idea why users of an ascend max 4030
>don't receive the DNS Information by PPP with freeradius,
>while using "radius-livingston 2.1-30" or "radius-1.16-ascend"
>with (almost) identical settings in the users file
>everything works fine.
>
>This is the configuration in freeradius users file (syntax):
>
>DEFAULT Auth-Type := System
>         Fall-Through = 1
>#
>DEFAULT Service-Type == Framed-User, Framed-Protocol == PPP
>         Service-Type = Framed-User,
>         Framed-Protocol = PPP,
>         Ascend-Assign-IP-Pool = 1,
>         Ascend-Client-Primary-DNS = 62.180.107.2,
>         Ascend-Client-Secondary-DNS = 212.72.80.131,
>         Ascend-Idle-Limit = 600,
>         Fall-Through = Yes

Check the dictionary you are using as well as the configuration of
the MAX.

The MAX will have three settings for attributes "compat mode":

    OLD - This is the old unecapsulated attributes ( non-vsa )
    VSA - This is the RFC-Compliant standart 8 big VSA mode, what
          most people think when they say VSA.
    16-Bit VSA - This is an Ascend specific 16 bit VSA format that
          is not currently supported by FreeRADIUS.

Freeradius has two settings, depending on the dictionary specified
and the attributes you use.

          Ascend-Client-Primary-DNS   -  This is VSA format
I'm using the above format for all radiuses
          X-Ascend-Cleint-Primary-DNS -  This is OLD format

In order for it to work properly, you'll need to have FreeRADIUS
and your MAX set to use both the same style of attributes.  I'd
recommend putting the MAX in VSA mode.

Note that auth and accounting both allow you specify the attribute
style used.  You'll want to make sure you change both to the same
format on your MAXes.

>BTW: Using local authentication on the ascend also
>doesn't give the clients a valid DNS server
>(Where can one configure this?).

I believe you can set this under:

    Ethernet->Mod Config->DNS
That's  for the ascend itself not for the clients. I found entries in the ascend
connection profile for client DNS (which wasn't nessecary using the
older radiuses).

( at least, that is where it is on MAX 6000 TAOS 9.1 ).

-Chris
--
    \\\|||///  \  Chris Parker    -    Manager, Development Engineering
    \ ~   ~ /   \       WX *is* Wireless!    \   [EMAIL PROTECTED]
    | @   @ |    \   http://www.starnetwx.net \      (847) 963-0116
oOo---(_)---oOo--\------------------------------------------------------
                   \ Without C we would have 'obol', 'basi', and 'pasal'


--
----------------------------------------------------
Dr. Robert Divko, Kiem-Pauli-Weg 15, 83052 Bruckmühl
tel: 08062/79700, 0172/8337394, fax: 08062/79701
[EMAIL PROTECTED], [EMAIL PROTECTED]
  - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to