Alan DeKok wrote:

>>Note that this conversation (the one between the Linux box running
>>pam_radius) and the Radius servers is being mediated with a firewall
>>that has an application-level proxy. 
> 
>   That's the problem.  UDP is stateless, so there's little or nothing
> an appliction-level proxy can do.

I believe all the proxy does, in effect, is forward packets.  I don't
think it has a notion of stateful conversations for UDP.  I'll have to
check on this.

-- 

Richard L. Goerwitz III            Email: [EMAIL PROTECTED]
Phone: +1 507 646 5526                             Fax: +1 507 646 4537
PGP key fingerprint: 4471 B6D3 57CC B2DC A0CF  82D3 0B7D EA19 F425 B0E0


- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to