"Bartschies, Thomas" <[EMAIL PROTECTED]> wrote:
> I'm running a newly configured freeradius-0.4 here. The only client
> is a cisco 4000 with IOS 12.1. On every PPP logout I get this message
> Error: Accounting: logout: login entry for NAS CVK_NAS port 20003 not found
> but before that there is also the corresponding login entry
> Login OK: [bar] (from nas CVK_FW port 20003 cli 5219719188)

  That's an authentication log message, not an accounting log message.

  The accounting logout usually needs an accounting login to
initialize the logging for that user.
 
> As for now, I suspect that the following happens: The client address
> for the login request is taken from the request packet itself.

  It's taken from the IP source address of the packet.  That's the
'Client-IP-Address' attribute, added by rlm_preprocess.  The attribute
inside the packet (NAS-IP-Address) is not necessarily the source IP
address.

> My guess is, that the problem lies here. Is there a possibility to
> tell the radius server that one client can have more than one
> IP-Address? May be that's the solution.

  No.  You've got to convince the NAS to send an accounting start
message.

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to