On Fri, 20 Sep 2002, Brandon Lehmann wrote:
> The only reason that this would happen is because our proxy server is
> NOT sending back a Proxy-State [33] attribute. How can I make sure that
> FreeRadius sends this attr back? If I can't get it to do this, can
> someone please advise a software package that can do this?

If the Proxy-State attribute is getting lost somewhere, it's most
likely being stripped off by the VopRADIUS server, which, of course, it
shouldn't be doing.

I can confirm that the FreeRADIUS CVS snapshot dated 08/16/2002 does
receive Proxy-State attributes from QWest NAS correctly, does proxy them
correctly (to, in my case, a Radiator server *shudder*), and does return
them to the QWest client correctly. It has been behaving exactly as it
should according to the RFC through various releases and CVS iterations
for about a year.

Does your FreeRADIUS server show a successful authentication, but then the
actual session fails to come up, or does the FreeRADIUS server show a
failed authentication? On a QWest-specific note, unless your
realm is already in production, Proxy-State shouldn't preclude a
successful connection at the NAS end.

Franklin

--
Franklin Trumpy, NFA, MNGS, GSc | Say not, "I have found the truth,"
Sr. UNIX Systems Administrator  | but rather, "I have found a truth."
Lighthouse Communications       | 
[EMAIL PROTECTED]                 | Say not, "I have found the path of the soul."
(515)244-1115                   | Say rather, "I have met the soul walking
(888)953-3278                   |   upon my path."
http://www.lh.net               |
                                |         -Kahlil Gibran, _The Prophet_, 1923



- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to