Re: Rejecting realms based on calling client

2013-08-15 Thread David Aldwinckle
Hi Alan, Thanks for your response. Initially FreeRadius would not start and I did get an error indicating that the remote_secret_reject module failed to load. There was no reason given even with -XXX. I found since then that I was missing a brace. Now I can get FreeRadius to start. I still seem

Re: Rejecting realms based on calling client

2013-08-15 Thread David Aldwinckle
Sigh. I broke the cardinal rule of the list _again_. I'Ll grab a full debug log now. Sorry for the spam. Dave Aldwinckle On 2013-08-13 11:22 AM, Alan DeKok al...@deployingradius.com wrote: David Aldwinckle wrote: Is there a way that I can deny a specific realm when an access request is

Re: Rejecting realms based on calling client

2013-08-15 Thread Alan DeKok
David Aldwinckle wrote: Initially FreeRadius would not start and I did get an error indicating that the remote_secret_reject module failed to load. There was no reason given even with -XXX. I found since then that I was missing a brace. Now I can get FreeRadius to start. I still seem to be

Re: Rejecting realms based on calling client

2013-08-15 Thread A . L . M . Buxey
Hi, Initially FreeRadius would not start and I did get an error indicating that the remote_secret_reject module failed to load. There was no reason given even with -XXX. I found since then that I was missing a brace. Now I can get FreeRadius to start. I still seem to be missing something

Rejecting realms based on calling client

2013-08-13 Thread David Aldwinckle
Hello, I have two clients that proxy access requests to me. The realm varies, but the format is always userid@realm.whatevermailto:userid@realm.whatever Is there a way that I can deny a specific realm when an access request is received from a specific client? I tried adding something to

Re: Rejecting realms based on calling client

2013-08-13 Thread Alan DeKok
David Aldwinckle wrote: Is there a way that I can deny a specific realm when an access request is received from a specific client? Yes. I tried adding something to policy.conf but I couldn't get the syntax right: So... what happened? Did you get an error? Is it a secret? #Prevent