Unencrypted username in radacct/radpostauth for ttls tunnel authenticated user

2011-10-26 Thread James T. Mugauri
Hi, I have managed to auth a Greenpacket WiMAX MS via an eap ttls tunnel. Thanks to Alan's direction earlier, I can also send the service flow definitions correctly. I have now found that subsequent db writes (and logging) associated with accounting and postauth functions are the encrypted

Re: Unencrypted username in radacct/radpostauth for ttls tunnel authenticated user

2011-10-26 Thread Alan DeKok
James T. Mugauri wrote: I have managed to auth a Greenpacket WiMAX MS via an eap ttls tunnel. Thanks to Alan's direction earlier, I can also send the service flow definitions correctly. That's good. I have now found that subsequent db writes (and logging) associated with accounting and

Re: Unencrypted username in radacct/radpostauth for ttls tunnel authenticated user

2011-10-26 Thread James T. Mugauri
On 10/26/2011 02:49 PM, freeradius-users-requ...@lists.freeradius.org wrote: On Access-Accept, store the unencrypted User-Name in the DB, along with a Class attribute. When you receive an accounting packet, look up the Class attribute to find the unencrypted User-Name. Thanks I notice

Re: Unencrypted username in radacct/radpostauth for ttls tunnel authenticated user

2011-10-26 Thread Alan DeKok
James T. Mugauri wrote: On 10/26/2011 02:49 PM, freeradius-users-requ...@lists.freeradius.org wrote: On Access-Accept, store the unencrypted User-Name in the DB, along with a Class attribute. When you receive an accounting packet, look up the Class attribute to find the unencrypted