Re: Force Auth-Type

2008-01-26 Thread Alan DeKok
Markus Moeller wrote: if (%{ldap: stuff... } == bar) { ... I didn't know that is possible. Where is this documented ? I thought I read all FAQ and documentations. It's not really well documented, because it's not well tested. If it works, great. If not... The other questions I have is

Re: Force Auth-Type

2008-01-26 Thread Markus Moeller
OK I think I understand it now better. And I can do everything with unlang and ldap and no files module as I didn't find a way to use control AV pairs in the users file. I do now in sites-enabled/default the following: authorize { auth_log ldap if (control:User-Location

Re: Force Auth-Type

2008-01-25 Thread Markus Moeller
Alan DeKok [EMAIL PROTECTED] wrote in message news:[EMAIL PROTECTED] Markus Moeller wrote: That was the only way I could get it to work. If I use update control anybody can login, whereas in my setup only a user who exits in ldap get AUth-Type set to LDAP all other users have an empty value

Re: Force Auth-Type

2008-01-24 Thread Markus Moeller
Alan DeKok [EMAIL PROTECTED] wrote in message news:[EMAIL PROTECTED] Markus Moeller wrote: I am new to freeradius and try to authenticate users with pam and authorize with ldap groups. I try to find a minimal configuration but have some problems forcing the Auth-Type to be PAM. You are

Re: Force Auth-Type

2008-01-24 Thread Alan DeKok
Markus Moeller wrote: That was the only way I could get it to work. If I use update control anybody can login, whereas in my setup only a user who exits in ldap get AUth-Type set to LDAP all other users have an empty value and therefore can not authenticate. The LDAP module setting

Re: Force Auth-Type

2008-01-23 Thread Alan DeKok
Markus Moeller wrote: I am new to freeradius and try to authenticate users with pam and authorize with ldap groups. I try to find a minimal configuration but have some problems forcing the Auth-Type to be PAM. You are aware that this will make EAP and many other authentication methods

re-force auth

2005-04-30 Thread glanzel
hallo I have the same problem i would like to force the user to reauthenticate (i use radius vor 802.1x authenticatin in wlan with Linksys WRT54g as NAS) is that possible - how could i tell freeradius that every user should be forced to re-authenticat every houre for example greeting g# Hello,

re-force auth

2005-04-24 Thread avudz
Hello, is it possible force users re-authenticate to radius when its already connected ? or it base on NAS ? i've search in archive but still cant find how to kick online user. -- Best regards, ./avd - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html