I'm testing a radius client module in order to allow other services
(www, ftp, etc) to use only one centralized user database.

It works just fine but for some users where I have check-items (like
NAS-Port-Type=Async) the authentication fails because I'm not including
this information in the Access-Request.

I can solve my problem having a similar database without check-items in
the users entries, but I would prefer not to go this way.

I tried to use as "Service-Type" in the Access-Request
"Authenticate-Only" with no result.
The Radius RFC has the following information regarding
"Authenticate-Only"

Authenticate-Only -  Only Authentication is requested, and no
authorization information needs to be returned
in the Access-Accept (typically used by proxy servers rather than the
NAS itself).

My understanding is that if I send an Access-Request with "Authenticate
Only" the only check-item used to validate the user should be the
password. If the password is ok Radiator should reply with an
Access-Accept with no reply items; if the password is not ok Radiator
should reply with an Access-Rejected.

Apparently Radiator is ignoring the "Authenticate-Only" when I include
it in the Access-Request.

Any suggestions to solve my problem ?


Many thanks in advance,
---
Rui Cohen

===
Archive at http://www.thesite.com.au/~radiator/
To unsubscribe, email '[EMAIL PROTECTED]' with
'unsubscribe radiator' in the body of the message.

Reply via email to