If I understand you correctly, it means it is only possible to have ONE radius server which does EAP SIM/EAP AKA authentication in the entire chain of connections ? It's not possible for one proxy radius to send request to different EAP SIM/EAP AKA radius server (based on certain criteria) ? How about Linux LVS ? Will it able to split the EAP-SIM/EAP-AKA request to different (final) server based on certain criteria ?
________________________________ From: Muhammad Nadeem <mnadeem8...@gmail.com> To: Ming-Ching Tiew <mct...@yahoo.com>; FreeRadius users mailing list <freeradius-users@lists.freeradius.org> Sent: Monday, July 1, 2013 3:10 PM Subject: Re: Using freeradius as proxy for EAP-SIM/EAP-AKA ------>I am wondering if it is possible to proxy EAP-SIM/EAP-AKA authentication using FreeRadius ? yes it is possible , but you have to make sure that all requests of an EAP session are being entertain by the same server, ( as proxy can have multipile freeradius servers), Read proxy.config, it have some methods for proxy, some of these are for chap and one or two or of EAP. similarly you can use some other methods like (Linux Virtual Server LVS) to accomplish this task. On Mon, Jul 1, 2013 at 10:48 AM, Ming-Ching Tiew <mct...@yahoo.com> wrote: > >Hi > >I am wondering if it is possible to proxy EAP-SIM/EAP-AKA authentication using >FreeRadius ? > >Assuming brand X radius server has support for EAP-SIM/EAP-AKA, but it's >located at the final end of the food chain, and in-between the brand X radius >server and the Access point, there are 2 (or more) radius servers which are >doing proxying ( and some other non-EAP SIM/EAP AKA work ). > >Will it work ? >- >List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html > -- Best Regards Muhammad Nadeem Muhammad Ali Jinnah University
- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html