Hello, I use version:0.5 together with a Cisco AAA server.
We authenticate users with the system password file on the radius. This 
works fine.
We want to have all users in the system but we want some to have special 
restrictions.

The problem is that everyone can enter each-others groups.
We need some type of group lock function like the attribute 25.
I have tried to bind user's names in the system password file to different 
groups in the users file.
For example, user "adam" with password ***** is present in the system 
password file. In the users file I have tried
to bind "adam" to a group but that he still is authenticated to the system 
password file. This has not worked so I am wondering
if this is the right way to tackle the problem??

My second question is:
What do I need to do for the radius server to return Cisco's radius 
attribute to the Cisco server???

Best regards, Tobias



- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to