Re: Multiple incoming requests from unknown clients

2012-08-14 Thread Diego Matute
; > Am 14.08.2012 16:06, schrieb Diego Matute: > > I could use NAS, but that would require the client to declare their IP >> address. >> > From a FreeRADIUS server point of view the NAS is the _client_! > Could it be that you meant the supplicant (the user or machine which

Re: Multiple incoming requests from unknown clients

2012-08-14 Thread Diego Matute
Ok I've re-read the docs. I'm going to require the client IP. It doesn't look like this know-nothing approach will work. Thanks Alan and Fajar. On Tue, Aug 14, 2012 at 10:37 AM, Diego Matute wrote: > The attributes I've mentioned are either server domain or IP address. &

Re: Multiple incoming requests from unknown clients

2012-08-14 Thread Diego Matute
The attributes I've mentioned are either server domain or IP address. On Tue, Aug 14, 2012 at 10:17 AM, Alan DeKok wrote: > Diego Matute wrote: > > "different authentication methods" I really mean different user data > > stores and different methods like an opti

Re: Multiple incoming requests from unknown clients

2012-08-14 Thread Diego Matute
clients to connect to a single server and be served off of different user stores. On Tue, Aug 14, 2012 at 10:16 AM, Alan DeKok wrote: > Diego Matute wrote: > > The only attributes passed to the server config are related to the > > source IP address, which is not enough information to d

Re: Multiple incoming requests from unknown clients

2012-08-14 Thread Diego Matute
client to declare their IP address. I was hoping for a solution where the client IP is not known and the right thing is done based on some attributes not cumbersome for a client to supply. On Tue, Aug 14, 2012 at 9:58 AM, Fajar A. Nugraha wrote: > On Tue, Aug 14, 2012 at 8:40 PM, Diego Ma

Re: Multiple incoming requests from unknown clients

2012-08-14 Thread Diego Matute
s approach. Diego On Tue, Aug 14, 2012 at 2:52 AM, Alan DeKok wrote: > Diego Matute wrote: > > What is the best practice for handling incoming requests which require > > different policies (i.e. secret keys) whereby the client IP is unknown? > > If the client IP is unknown, then

Multiple incoming requests from unknown clients

2012-08-13 Thread Diego Matute
Looked at the docs and am still unclear here. What is the best practice for handling incoming requests which require different policies (i.e. secret keys) whereby the client IP is unknown? Was thinking there may be a to setup virtual servers which listen on different server IPs somehow? Few thou

Re: rlm_perl module not executing authenticate

2012-06-15 Thread Diego Matute
Got it. Thanks. On Wed, Jun 13, 2012 at 1:57 AM, Alan DeKok wrote: > Diego Matute wrote: > > What is the best practice for this? Should the Auth-Type be set in > > /etc/raddb/users, within the module, /etc/raddb/sites-available/*? > > It should be set wherever you

Re: rlm_perl module not executing authenticate

2012-06-15 Thread Diego Matute
l"; $RAD_CHECK{'Fall-Through'} = "yes"; return RLM_MODULE_OK; } Cheers and thanks! Diego On Tue, Jun 12, 2012 at 10:16 PM, Fajar A. Nugraha wrote: > On Wed, Jun 13, 2012 at 6:01 AM, Diego Matute > wrote: > > >> > 2/ How does Auth-T

Re: rlm_perl module not executing authenticate

2012-06-12 Thread Diego Matute
Thanks for the quick response. Inline. On Tue, Jun 12, 2012 at 10:44 AM, Alan DeKok wrote: > Diego Matute wrote: > > I've installed freeradius and other packages on a vanilla amazon ec2 > > instance and am trying to get the rlm_perl module working. Ultimately > > the au