Re: Post Proxy Authorize

2005-03-07 Thread Nicolas Baradakis
Sandworm wrote: However, this means that the LDAP group is unnecessarily checked twice, once during each pass of the 'authorize' section. This is inefficient and takes time. Is there a better way of assigning the Class attribute so that it can be added to the attributes returned by the ACE

Post Proxy Authorize

2005-03-03 Thread Sandworm
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hello We assign VPN profiles based on LDAP group membership and the devices that users enter from. The users are authenticated via an ACE server that we proxy to and get replies from. In an older version of FreeRadius (0.8.1), the following types of