"David C. Troy" <[EMAIL PROTECTED]> wrote:
> Actually I should clarify.  If I understand you correctly, I would need to
> put in an entry for each client NAS box, rather than just each client
> PROXY box.

  No, no, no, no.

> I don't know all the NAS IP's and they could change.

  Exactly.

>  Can I do this based on the Proxy IP only?

  Yes.  The Client-IP-Address is the address of the RADIUS client,
whether it's a proxy or a NAS.  It's added to the request internally,
by rlm_preprocess.

  The NAS-IP-Address is an attribute inside of the RADIUS packet.
Treat it with suspicion, as the NAS can lie.

>  Use Regexp's to classify them by their 'short-name' when definining
> which default profile to use?

  Huntgroups should work, as Frank pointed out.  Define 'Huntgroup-A',
etc. in the huntgroup file, and then key on that in the 'users' file.

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to