Hola Antonio,

Antonio Navarro Navarro wrote:
> 
> The problem is that if I assign an IP address to the user in the PreAuthHook (using 
>a control file with the status of the IP addresses of the pool) and the user is not 
>accepted by the Auth procedure of radiator, the user will be rejected but the IP 
>address will remain in the control file.
> 

No if the NAS sends "STOP-without-previous-START" records for
authentication/authorization errors. Your code can free the IP address when this
"STOP-without-previous-START" record arrives. There are many NAS with this
behaviour.

For Cisco users: it was introduced as default in 12.0( < 6 )T. In 12.0( => 6 )T
the default is to not send the stop record, but it's posible to configure it
with "aaa accounting stop-record authentication failure".

I think to remember that the 3com NAS that your are using has this behaviour.

F�lix

______________________________________________________________________
DATAGRAMA SERVICIOS GLOBALES IP
C/ Acer 30                                       Pho: +34 93 223 00 98
08038 Barcelona ( SPAIN )                        Fax: +34 93 223 12 66
mailto:[EMAIL PROTECTED]               http://www.datagrama.net
______________________________________________________________________

�
Archive at http://www.thesite.com.au/~radiator/
To unsubscribe, email '[EMAIL PROTECTED]' with
'unsubscribe radiator' in the body of the message.

Reply via email to