Title: Re: EAP + proxying

Very late ;) , but i confirm that with freeradius-snapshot-20021003
works with :

* EAP-TLS proxying between an Orinoco AP2000 to a Microsoft IAS server.

Laurent.

Raghu wrote:

> > Laurent Butti wrote:
> >
> > Hello,
> >
> > Does FreeRadius support (or will support) proxying for EAP
> > authentication methods (MD5/TLS), with a kind of user@realm in EAP
> > Response Identity which should be used in order to delegate
> > authentication to a 3rd party AAA ?
> >
> EAP Proxying is supported if the
> 1. User-Name attribute is present in the Access-Request.
> 2. User-Name attribute is not present then
>         if eap is present as in the authorize block
>    as one of the first modules.
>    ie
>    authorize {
>     eap
>     ... all other modules.
>    }
>    What this does is User-Name attribute is created
>    from EAP-Identity response, if it is not present.
>    The other modules should take care of proxying.
>
> -Raghu
>
> -
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html

--
Laurent BUTTI
& france telecom / FTR&D / DTL / SSR
Research Engineer - Internet/Intranet Security
38-40 Rue du G�n�ral LECLERC
92794 Issy les Moulineaux Cedex 9 - FRANCE
Tel : ( + 33 ) 1 45 29 68 99
Fax : ( + 33 ) 1 45 29 65 19
Email : [EMAIL PROTECTED]

Reply via email to