Sandworm wrote:
However, this means that the LDAP group is unnecessarily checked
twice, once during each pass of the 'authorize' section. This is
inefficient and takes time. Is there a better way of assigning the
Class attribute so that it can be added to the attributes returned
by the ACE
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Hello
We assign VPN profiles based on LDAP group membership and the
devices that users enter from. The users are authenticated via an
ACE server that we proxy to and get replies from.
In an older version of FreeRadius (0.8.1), the following types of
2 matches
Mail list logo