Re: Auth-Type :- Reject in users file matches inner tunnel request but sends Access-Accept

2012-06-13 Thread Matthew Newton
On Tue, Jun 12, 2012 at 03:21:22PM -0700, Michael Gorven wrote: On 12/06/2012 14:08 PDT, Alan DeKok wrote: Note that everything BUT the Reply-Message belongs on the first line with the DEFAULT. The Reply-Message belongs on the second line. *sigh*, moving the Auth-Type :- Reject to the

Auth-Type :- Reject in users file matches inner tunnel request but sends Access-Accept

2012-06-12 Thread Michael Gorven
Hi I have setup WPA2-EAP authentication using FreeRADIUS 2.1.8 on Ubuntu 10.04.4 with an OpenLDAP backend, and can successfully authenticate using PEAP/MSCHAPv2, TTLS/MSCHAPv2 and TTLS/PAP (both via the AP and using eapol_test). I am now trying to restrict access to specific SSIDs based on the

Re: Auth-Type :- Reject in users file matches inner tunnel request but sends Access-Accept

2012-06-12 Thread Alan DeKok
Michael Gorven wrote: I have setup WPA2-EAP authentication using FreeRADIUS 2.1.8 on Ubuntu 10.04.4 with an OpenLDAP backend, and can successfully authenticate using PEAP/MSCHAPv2, TTLS/MSCHAPv2 and TTLS/PAP (both via the AP and using eapol_test). I am now trying to restrict access to specific

Re: Auth-Type :- Reject in users file matches inner tunnel request but sends Access-Accept

2012-06-12 Thread Michael Gorven
On 12/06/2012 14:08 PDT, Alan DeKok wrote: Note that everything BUT the Reply-Message belongs on the first line with the DEFAULT. The Reply-Message belongs on the second line. *sigh*, moving the Auth-Type :- Reject to the first line fixed this. I thought that Auth-Type was a reply item and