[RADIATOR] Calling-Station-Id problem

2011-07-11 Thread Fabio Ciampi
Hello, I have in my radius.cfg file: Identifier eduroam-isti-log Filename %L/%Y%m%d-isti-auth.log LogSuccess 1 LogFailure 1 SuccessFormat %d/%m/%Y -- %H:%M:%S -- DOMAIN: %R :AUTHENTICATION %r \ ssid = "eduroam" %r \ user = "%n" %r \ NAS = "%N"

Re: [RADIATOR] Multiple user groups for tacacs authorization possible

2011-07-11 Thread Heikki Vatiainen
On 07/11/2011 11:13 AM, Alexander Hartmaier wrote: > How would one implement AuthorizeGroups per device groups? The AuthorizeGroupAttr option might be the solution here. With AuthorizeGroupAttr you can return rules in AuthorizeGroup format. In other words, instead of returning the name of the gro

Re: [RADIATOR] Multiple user groups for tacacs authorization possible

2011-07-11 Thread Alexander Hartmaier
Hi Heikki and Mike, @Mike: that sounds like what I'm currently doing and what I also wrote to the list some month ago. @Heikki: yes, i've also thought about that. A first match logic would be the easiest to implement like a firewall ruleset. So if the user is member of two groups and there is no A