Re: Radius Attribute -- Authenticator IP Adress

2010-04-22 Thread Alan DeKok
_Stefan_H wrote: Hi, I thought that my Access-Point is able to handle VLAN-Attributes like my Switch but I was wrong. I don't want to tell the whole story. Is there an attribute which returns the authenticator IP-Address? Packet-Src-IP-Address I looked at this site:

Re: Radius Attribute -- Authenticator IP Adress

2010-04-22 Thread _Stefan_H
Alan DeKok-2 wrote: _Stefan_H wrote: Hi, I thought that my Access-Point is able to handle VLAN-Attributes like my Switch but I was wrong. I don't want to tell the whole story. Is there an attribute which returns the authenticator IP-Address? Packet-Src-IP-Address Thanks

RE: Radius Attribute -- Authenticator IP Adress

2010-04-21 Thread Nathan McDavit-Van Fleet
What are you trying to do? For our implementation we have this in the inner-tunnel inside authorize. It enables that LDAP query only when the NAS (in your case that is your AP if it contacts FR directly) is of the IP address of 127.0.0.1. if (outer.NAS-IP-Address == 127.0.0.1) {

RE: Radius Attribute -- Authenticator IP Adress

2010-04-21 Thread _Stefan_H
I configured 2 SSIDs on my AccessPoint one for normal members and one for administrators each is on a different VLAN. Now to the problem, i have 2 DEFAULT rules in my users-file , for the administrators i use the ldap-group thing that no normal member will be put in the administrator VLAN but