David Peterson <dav...@wirelessconnections.net> wrote:
>
> I am wondering if it's a misconfiguration of a group reply.  I have 
> those attributes listed as a group-reply.  Would putting the 
> attributes in the normal vs the group reply put them in a different 
> portion of the response?
> 
As you have the User-Name/whatever-wimax utilises now movable from the 
inner-layer to the outer you can just do you policy on the outer layer 
instead.  Do authentication on the inner-tunnel, whilst authorisation 
keep to the outer layer...

Cheers

-- 
Alexander Clouter
.sigmonster says: Stay the curse.

-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to