"Justin Ainsworth" <[EMAIL PROTECTED]> wrote:
>       Freeradius receives the following username
> "[EMAIL PROTECTED]"
> 
>       It proxies it to the correct proxy server, but this is what it
> receives:
> 
>       "IPASS/test"

  You've configured two realms, and received a username which COULD BE
sent to either of the two realms.  And you're surprised that it
doesn't do what you want?

  Which realm should it pick?  Odds are you've got both 'prefix' and
'suffix' realms in radiusd.conf, and the 'prefix' is listed in
'authorize' before 'suffix'.  So the server is doing exactly what
you're telling it to do.

  The only reason that it's only proxied to one realm is that the
request to proxy to the second (suffix) realm is being ignored.


  To fix it, you've got to update the config in the 'authorize'
section so that the 'suffix' realm is matched ONLY if the 'prefix'
returns no match.

  See 'doc/configurable_failover'


  If this is a common occurance, then the default 'radiusd.conf'
should be set up this way.

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to