Re: Rules in policy.conf

2009-01-28 Thread tnt
>the idea is to authenticate users with LDAP, but once authenticated >check your Calling-Station-Id, and depends on the mac is due to a >specified VLAN >- Why don't you do this in authorize section where this is normally done? Why do you want to do it in post-auth? You don't need policy.conf; unla

Re: Rules in policy.conf

2009-01-28 Thread Martin Silvero
for example in the policy file type: permit_only_eap { if (Calling-Station-Id==001f.3c22.674a) { ... here, depending on the mac, is due to the user a VLAN } this would be after the auntenticacion for PEAP-MSCHAPv2 with us

Re: Rules in policy.conf

2009-01-27 Thread tnt
>I want to know if I can handle VLAN's on file policies and create a >conditions with Calling-Station-Id > Can you explain in more detail. Give some examples. Ivan Kalik Kalik Informatika ISP - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Rules in policy.conf

2009-01-27 Thread Martin Silvero
Hi list. I want to know if I can handle VLAN's on file policies and create a conditions with Calling-Station-Id this should be make after the authentication with user and pass. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html