Chris Bradshaw wrote:
> Thanx for the reply. I do have 'use_tunneled_reply = yes' in eap.conf,
> but I am still seeing the outer identity showing up when I use radwho.

  As I said, you also have to send the inner tunnel name back in the
Access-Accept.
...
> Sending Access-Accept of id 7 to 10.11.2.91:1645
...
>         User-Name = "anonymous"

  See?  You're telling the NAS to use "anonymous" for the accounting
logs.  Set the User-Name in the reply for the inner tunnel session, and
it will be used in the outer session, too.

  Alan DeKok.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to