Running FreeRADIUS 0.4 under Solaris 8/SPARC.
When I enabled Simultaneous-Use check for some user classes, I've got the same
problem as Mervyn Jack - invalid packets with fake Client-IP-Address. This is
such typical packet:
Fri Mar 22 14:49:03 2002
Acct-Status-Type = Stop
NAS-IP-Address = xx.xx.xx.xx
Acct-Delay-Time = 0
User-Name = "atuser"
NAS-Port = 20211
Acct-Session-Id = "74886441"
Service-Type = Framed-User
Framed-Protocol = PPP
Framed-IP-Address = xx.xx.xx.xx
Acct-Session-Time = 0
Acct-Input-Octets = 0
Acct-Output-Octets = 0
Acct-Input-Packets = 0
Acct-Output-Packets = 0
Client-IP-Address = 70.114.105.32 [FAKE !]
Hint = "ATPPP"
Service-Type = Framed-User
Framed-Protocol = PPP
Timestamp = 1016797743
Request-Authenticator = Verified
These packets arrived only when user with Simultaneuos-Use (atuser in this
case) tried to login and checkrad returned OK (this user already exists on
NAS).
NAS-es: Ascend MAX 6060, Cisco AS5800 (IOS 12.0(13)S).
Any suggestions ?
Thanks.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html