David Peterson <dav...@wirelessconnections.net> wrote: > > I am wondering if it's a misconfiguration of a group reply. I have > those attributes listed as a group-reply. Would putting the > attributes in the normal vs the group reply put them in a different > portion of the response? > As you have the User-Name/whatever-wimax utilises now movable from the inner-layer to the outer you can just do you policy on the outer layer instead. Do authentication on the inner-tunnel, whilst authorisation keep to the outer layer...
Cheers -- Alexander Clouter .sigmonster says: Stay the curse. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html