At 01:55 PM 3/27/2002 -0800, Justin Ainsworth wrote:
> >
> > Also, are you sure it is proxying based on your 'prefix'
> > definition, and not your suffix definition?
>
>Well, I know that it is proxying to the "IPASS" radius server that is
>defined in the proxy.conf.  And if I enter just the "[EMAIL PROTECTED]" it
>proxies correctly to the correct radius server, and strips it correctly.

You have the same server listed as the target for both.

> > I'll bet what you are seeing is that it is finding the
> > 'suffix' first, stripping it, and fowarding it.
> >
> > What do your 'realm' stanzas look like, and what order do
> > they appear in your 'authorization' stanza?
>
>This is there current definitions.  I have tried switching them, and it
>still does the same thing.  I have also tried using a completely
>different domain, and it still gets proxied to the IPASS server, but the
>domain is stripped.
>
>modules {
>         ...
>         realm sunset.net {
>                 format = suffix
>                 delimiter = "@"
>         }
>
>         realm IPASS {
>                 format = prefix
>                 delimiter = "/"
>         }
>         ...
>}

This part looks fine, though I'd recommend not using the actual realm
names for the module instances.

>authorize {
>         preprocess
>         sunset.net
>         IPASS

And this tells it to look for 'sunset.net' first, which it does, and
strips it and proxies it.  Reverse the order here and you'll get the
behaviour you are looking for.

-Chris

--
    \\\|||///  \          StarNet Inc.      \        Chris Parker
    \ ~   ~ /   \       WX *is* Wireless!    \   Director, Engineering
    | @   @ |    \   http://www.starnetwx.net \      (847) 963-0116
oOo---(_)---oOo--\------------------------------------------------------
                   \ Wholesale Internet Services - http://www.megapop.net



- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to