On Sun, 25 Jan 2004 09:39:22 -0500
"Alan DeKok" <[EMAIL PROTECTED]> wrote:

[big snip]

>   That's not the correct syntax.  See "doc/variables.txt"
> 
> > WARNING: Unknown variable '%e': See 'doc/variables.txt'
> > radius_xlat:  '{%exec:/usr/local/scripts/realmgrep}'
> 
>   Exactly.

Yep. It works like a charm now :-) I followed the instructions in the
Autz-Type doc file and it works perfectly well.

But I just noticed one thing and I think it might not be normal
behaviour: when using "radauth" http://www.hick.org/code/skape/radauth/
I login to the FR server:

radauth -u [EMAIL PROTECTED] -p password -r radius.utr.lucassen.org -s
good-FR-credentials -t 10 -v

the FR calls the LDAP server and the user gets "access granted". But
when I call the FR with wrong server credentials:

radauth -u [EMAIL PROTECTED] -p password -r radius.utr.lucassen.org -s
WRONG-FR-credentials -t 10 -v

I see that FR is still contacting the LDAP, the LDAP returns a "user
authenticated", and finally FR gives an "access denied". AFAIUI FR
contacts the LDAP server unnecessarily. Is that ok?

R.




-- 
___________________________________________________________________
Recursion: see recursion

+------------------------------------------------------------------+
| Richard Lucassen, Utrecht                                        |
| Public key and email address:                                    |
| http://www.lucassen.org/mail-pubkey.html                         |
+------------------------------------------------------------------+

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to