Hello,

I am using freeRadius version 1.0.0-pre3 and I found that if the
User-Name is not matching with Type-Data field in EAP-Identity/Response
then Access Reject is being sent and following error is being displayed.

"Identity does not match User-Name, setting from EAP Identity."

In RFC 3579, it mentioned that copying the Type-Data field of
EAP-Identily/Response into User-Name attribute as a MUST requirement but
is it also MUST that those values should be same?

In some cases, Domain Name is stripped from User-Name and sent to Radius
Server. In that case, User-Name would not match with Type-Data field of
EAP-Identity/Response.

Regards,
Anj

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to