On Fri, 20 Sep 2002, Brandon Lehmann wrote: > The only reason that this would happen is because our proxy server is > NOT sending back a Proxy-State [33] attribute. How can I make sure that > FreeRadius sends this attr back? If I can't get it to do this, can > someone please advise a software package that can do this?
If the Proxy-State attribute is getting lost somewhere, it's most likely being stripped off by the VopRADIUS server, which, of course, it shouldn't be doing. I can confirm that the FreeRADIUS CVS snapshot dated 08/16/2002 does receive Proxy-State attributes from QWest NAS correctly, does proxy them correctly (to, in my case, a Radiator server *shudder*), and does return them to the QWest client correctly. It has been behaving exactly as it should according to the RFC through various releases and CVS iterations for about a year. Does your FreeRADIUS server show a successful authentication, but then the actual session fails to come up, or does the FreeRADIUS server show a failed authentication? On a QWest-specific note, unless your realm is already in production, Proxy-State shouldn't preclude a successful connection at the NAS end. Franklin -- Franklin Trumpy, NFA, MNGS, GSc | Say not, "I have found the truth," Sr. UNIX Systems Administrator | but rather, "I have found a truth." Lighthouse Communications | [EMAIL PROTECTED] | Say not, "I have found the path of the soul." (515)244-1115 | Say rather, "I have met the soul walking (888)953-3278 | upon my path." http://www.lh.net | | -Kahlil Gibran, _The Prophet_, 1923 - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
