Chris Parker wrote:

At 12:27 PM 12/2/2003, Brian Clarkson wrote:

Accounting-Start packets are sent by the client ( which could be either the NAS or the end-user in the case of wireless auth, which is what i'm doing ).


No, it will be the NAS, it will not be the end-user.

that's what i thought ... but the 'client' definition almost makes it sound as any client though the chain of "clients" could send the packet.


If the NAS/AP doesn't send it, you don't get it.

is there some kind of way around this, like faking an Accounting-Start in the radgroupreply table ( in MySQL )?


Yes.  Look at the 'radzap' program.  It functions by sending a spoofed
'Stop' packet to the server.

i fail to understand how a spoofed 'stop' packet will actually start the accounting process.


but this hits another issue i was having. my test user sucessfully authenticated but hasn't been 'kicked off' the network -- even though i've restarted the radius server *and* rebooted the NAS. ( a Buffalo AP in this case ). would the user not be disconnected because of the lack of "stop" packet?

--b--


- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to