Dave Mussulman <[EMAIL PROTECTED]> wrote:
> Okay, I've done that.  My authorize section looks like:
> 
> authorize {
> 
>       preprocess
>       group {
>               files
>               #sql
>               mschap
>               chap
>       }
>       eap

  The "group" is pretty much meaningless, because you're not doing
anything with it.

> but either I'm not doing that right, or there's something more
> complicated with EAP calling mschap directly, because it's not working
> how I would like.  I would like it to check the local files (or sql)
> first, and fail back to mschap/AD if the login is not present.

  Outside, or inside of the TLS tunnel?

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to