Benedikt Panzer <[EMAIL PROTECTED]> wrote: > Is "local" or "system" the correct value to forward requests by > using realm NULL?
Neither. > And this is still strange to me: when my users file contains only > "DEFAULT Auth-Type := Reject" > then all requests are rejected and FR doesn't forward any requests, ok > so far. That's what you told it to do. > But when I change my users file to > DEFAULT Auth-Type := LDAP > DEFAULT Auth-Type := Reject > then FR forwards all requests to the other radius server even if 'module > "ldap" returns ok'. Again, that's what you told it to do. Read the debug logs to see why. > But -as far as I understood- it shouldn't unless there was "Fall-Through > = yes". Am I wrong? No. The "Fall-Though" applies only to entires in the "users" file. And Auth-Type means "remember to do this type of authentication". It doesn't mean "do it now". Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html