Hello Erik -

On Thu, 28 Oct 1999, Erik Meitner wrote:
> Am I correct in understanding that I cannot authenticate my users from my
> Unix password file and also have per-user reply items?  My current radius
> server can do this. The reason we bought Radiator was so that we could limit
> login hours and simultaneous sessions.  I do not relish the idea of
> maintaining two separate files with 10,000 records each.  Any suggesttions?
> 

No this is not quite correct. A single AuthBy UNIX will not allow you to have
per-user reply items (as there is nowhere to store them), however there are a
number of alternative approaches available to you.

Most people have a single set of reply items that they set for the majority of
their users and separate user entries for those few user entries that have
something special.

Something like this:

# Configure AuthBy UNIX with an Identifier of System

<AuthBy UNIX>
        Identifier System
        ....
</AuthBy>


# Configure AuthBy FILE for reply attributes

<Handler ...>

        <AuthBy FILE>
                Filename %D/per-user-reply-items
        </AuthBy>

</Handler>

# File for per-user-reply-items
# DEFAULT for the general case
# Use Auth-Type = System to refer to AuthBy UNIX for authentication

DEFAULT Auth-Type = System
        Service-Type = Framed-User,
        Framed-Protocol = PPP,
        .....

user1   Auth-Type = System
        ... other reply items ...

user2   Auth-Type = System
        ... some other reply items ...

.....

hth

Hugh


--
Radiator: the most portable, flexible and configurable RADIUS server
anywhere. SQL, proxy, DBM, files, LDAP, NIS+, password, NT, Emerald,
Platypus, Freeside, TACACS+, PAM, external, etc etc on Unix, Win95/8,
NT, Rhapsody

===
Archive at http://www.thesite.com.au/~radiator/
To unsubscribe, email '[EMAIL PROTECTED]' with
'unsubscribe radiator' in the body of the message.

Reply via email to