Hello, I use version:0.5 together with a Cisco AAA server. We authenticate users with the system password file on the radius. This works fine. We want to have all users in the system but we want some to have special restrictions.
The problem is that everyone can enter each-others groups. We need some type of group lock function like the attribute 25. I have tried to bind user's names in the system password file to different groups in the users file. For example, user "adam" with password ***** is present in the system password file. In the users file I have tried to bind "adam" to a group but that he still is authenticated to the system password file. This has not worked so I am wondering if this is the right way to tackle the problem?? My second question is: What do I need to do for the radius server to return Cisco's radius attribute to the Cisco server??? Best regards, Tobias - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
