Miguel Diez <[EMAIL PROTECTED]> wrote:
> 1) When we receive an Access-Request from a client with incorrect
> password/invalid user, freeradius proxy sends it to the final radius and
> the final answer an Access-Reject very quick, but the freeradius proxy
> delays the answer to the client 16 seconds.

  It's a bug.  To work around it, set "reject_delay = 0"

> Mmmm, ok, I think the final radius should also discard the packet with
> an INCORRECT shared secret. Is that correct? 

  No.  RADIUS has few provisions for discovering an incorrect shared
secret.

  Alan DeKok.


- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to