----------  Forwarded Message  ----------

Subject: BOUNCE [EMAIL PROTECTED]:    Non-member submission from 
[<[EMAIL PROTECTED]>]
Date: Wed, 10 Jul 2002 23:57:13 -0500
From: [EMAIL PROTECTED]
To: [EMAIL PROTECTED]

>From [EMAIL PROTECTED] Wed Jul 10 23:57:12 2002
Received: from inboxmaster.g4.net (inboxmaster.g4.Net [216.177.0.27])
        by server1.open.com.au (8.11.0/8.11.0) with SMTP id g6B4vC322928
        for <[EMAIL PROTECTED]>; Wed, 10 Jul 2002 23:57:12 -0500
Received: from Boston.G4.NET (216.177.0.15 [216.177.0.15])
                    by INBOXMASTER (inboxmaster.g4.net [216.177.0.27])
                    for <[EMAIL PROTECTED]> from <[EMAIL PROTECTED]> ;Thu, 11 Jul
 2002 00:56:10 -0500 X-InboxMaster: Accepted Message - Recipient Not
 Configured For Protection Date: Thu, 11 Jul 2002 00:56:43 -0400 (EDT)
From: <[EMAIL PROTECTED]>
X-X-Sender:  <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Subject: AuthBy RADIUS and Session Database
Message-ID: <[EMAIL PROTECTED]>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII

Hi,
I am running Radiator-2.18.4 on two boxes that are talking to a centrally
located mySQL server that contains our Session Database. We are using
ClientType TotalControlSNMP and AscendSNMP to query our NAS boxes.

We are using these radius boxes as proxy servers for our Wholesales Dialup
service offering, so we have many realms communicating back to many
<AuthBy RADIUS> clauses. We are enforcing a DefaultSimultaneous 1 in the
<AuthBy RADIUS> clause. Responses coming back from the Proxied Radius
Servers do not include a Simultaneous-Use=1 statement. There is a
Port-Limit=4 statement.

Having said that, it is my belief that a user that is logged in, and shown
in the session database, should not be permitted to log in. This is not
the case here. The user recieves an access accept.

A level 4 trace showed me that we do not do a SELECT against the Session
Database or a SNMPGET to the NASes to see if the user is online. Is this
the behavior of <AuthBy RADIUS>?

Is there a way to fix this so simultaneous use will be enforced?
Suggestions?

Thanks,
Tom Daly

--
Tom Daly
Network Operations / Systems Administrator
G4 Communications Corp.
V: 603.296.4413 / F: 603.647.7576
E: [EMAIL PROTECTED] / W3: www.g4.net

-------------------------------------------------------

-- 
Mike McCauley                               [EMAIL PROTECTED]
Open System Consultants Pty. Ltd            Unix, Perl, Motif, C++, WWW
24 Bateman St Hampton, VIC 3188 Australia   http://www.open.com.au
Phone +61 3 9598-0985                       Fax   +61 3 9598-0955

Radiator: the most portable, flexible and configurable RADIUS server 
anywhere. SQL, proxy, DBM, files, LDAP, NIS+, password, NT, Emerald, 
Platypus, Freeside, TACACS+, PAM, external, Active Directory etc etc 
on Unix, Win95/8, 2000, NT, MacOS 9, MacOS X etc etc

===
Archive at http://www.open.com.au/archives/radiator/
Announcements on [EMAIL PROTECTED]
To unsubscribe, email '[EMAIL PROTECTED]' with
'unsubscribe radiator' in the body of the message.

Reply via email to