Benedikt Panzer <[EMAIL PROTECTED]> wrote:
> Is "local" or "system" the correct value to forward requests by
> using realm NULL?

  Neither.

> And this is still strange to me: when my users file contains only 
> "DEFAULT Auth-Type := Reject"
> then all requests are rejected and FR doesn't forward any requests, ok 
> so far.

  That's what you told it to do.

> But when I change my users file to
> DEFAULT Auth-Type := LDAP
> DEFAULT Auth-Type := Reject
> then FR forwards all requests to the other radius server even if 'module 
> "ldap" returns ok'.

  Again, that's what you told it to do.  Read the debug logs to see why.

> But -as far as I understood- it shouldn't unless there was "Fall-Through 
> = yes". Am I wrong?

  No.  The "Fall-Though" applies only to entires in the "users" file.

  And Auth-Type means "remember to do this type of authentication".
It doesn't mean "do it now".

  Alan DeKok.


- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to