Re: inner/outer authentication problem in 2.0.2

2008-06-17 Thread Gopinath Reddy N
Thanks Alan. This works. On Thu, Jun 12, 2008 at 11:02 AM, Alan DeKok [EMAIL PROTECTED] wrote: Gopinath Reddy N wrote: But by way of hack if user knows some other valid user name in the system he can use that as outer identity and get the policy setting of that user. So to avoid that Iam

inner/outer authentication problem in 2.0.2

2008-06-11 Thread Gopinath Reddy N
Hello all, Iam using freeradius 2.0.2 version with TTLS/MSCHAPv2 I have two users in configuration tmpuser - tmpgroup emp1 - employee Iam using tmpuser in outer authentication and emp1 in inner authentication. I have eap.conf file configured with ttls {

Re: inner/outer authentication problem in 2.0.2

2008-06-11 Thread Ivan Kalik
Why do you apply any policies to the outer identity? Ivan Kalik Kalik Informatika ISP Dana 11/6/2008, Gopinath Reddy N [EMAIL PROTECTED] piše: Hello all, Iam using freeradius 2.0.2 version with TTLS/MSCHAPv2 I have two users in configuration tmpuser - tmpgroup emp1 - employee Iam using

Re: inner/outer authentication problem in 2.0.2

2008-06-11 Thread Gopinath Reddy N
Hi, Iam planning to send some Vendor Specific attributes to the user based on inner authentication. But by way of hack if user knows some other valid user name in the system he can use that as outer identity and get the policy setting of that user. So to avoid that Iam just thinking is there a

Re: inner/outer authentication problem in 2.0.2

2008-06-11 Thread Alan DeKok
Gopinath Reddy N wrote: But by way of hack if user knows some other valid user name in the system he can use that as outer identity and get the policy setting of that user. So to avoid that Iam just thinking is there a way I can come out of this situation in freeradius Yes. That's why the