* Try to respond just to the list and not me personally.  I don't enjoy wading 
through duplicate messages.  Thanks!

On Thursday 09 November 2006 11:34, Andrew Long wrote:
> also ran
>
> SELECT
> `usergroup`.`UserName`,
> `usergroup`.`creationdate`,
> `usergroup`.`GroupName`
> from usergroup
> where username = '4aroma70370';
>
> and that also comes up null...
>
> Does it make sense that radius is not recognizing the usernames as
> belonging to the group 'aroma', thus not assigning the group-reply?

Yes, because the radius server does what you configure it to do.  You should 
have control over the usergroup table, so it shouldn't be difficult to add 
the missing records.

If you're still stuck, try sending relevant output from all of your sql 
tables.  The actual row data should be good enough, unless you've mangled the 
table structure to suit local needs.

> This is my current thought on this, but I'm not sure why it would
> still authorize the request, unless it's not necessary that users be
> part of group.

It isn't necessary.  The cleartext password needed for CHAP was provided by a 
module (users, sql, ??), so the access request was accepted.

Kevin Bonner

Attachment: pgp5lBMh78e4T.pgp
Description: PGP signature

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to