Chris Parker <[EMAIL PROTECTED]> wrote:
At 11:13 AM 1/15/2003 +0200, Shmulenson, Eli (Eli) wrote:
> >After some investigation I found out that the switch complains that the 
> >Tunnel-Private-Group-Id packet that received is bad. In sniffer traces I 
> >saw that when the radius server is sending the Tunnel-Private-Group-Id 
> >attribute to the switch the TAG field is missing.

  The RFC's explicitely allow this behaviour, and most boxes I'm aware
of which use Tunnel attributes behave in the same way as FreeRADIUS
does.  I believe that your switch is broken.

   http://www.freeradius.org/rfc/rfc2868.html#Tunnel-Private-Group-ID

> Just for kicks, have you tried setting the tag to a non-zero value?  Such
> as Tunnel-Private-Group-Id:1?  If you set all your tunnel attributes to
> the same tag, it should work.

  Yup.

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to