(RADIATOR) Copying inner username to Access-Accept for correct accounting

Mike McCauley mikem at open.com.au
Thu Jul 5 19:24:35 CDT 2007


Hello Rok,

Thanks for your contribution. It has been added to the goodies directory for 
the next release.

Thanks again.

Cheers.

On Friday 06 July 2007 00:59, Rok Papez wrote:
> Hello dear Radiator users!
>
> Some EAP protocols use outer identity only to locate a home RADIUS server
> and thus users use anonymous outer identity (anonymous at domain.tld or just
> @domain.tld as recommended by the RFC 4282)
>
> Attached script copies the inner username to the Access-Accept User-Name
> field so a NAS (Access Point) can provide accounting information with
> correct (inner) User-Name.
>
> This, new version of the script also handles the RFC 4282 @domain.tld outer
> identities correctly.
>
> Example configuration:
>
> <Handler Realm=domain.tld>
>         RewriteUsername s/^([^@]+).*/$1/
>         AuthBy static_users
>         PostProcessingHook file:"/home/radius/etc/eap_acct_username.pl"
> </Handler>

-- 
Mike McCauley                               mikem at open.com.au
Open System Consultants Pty. Ltd            Unix, Perl, Motif, C++, WWW
9 Bulbul Place Currumbin Waters QLD 4223 Australia   http://www.open.com.au
Phone +61 7 5598-7474                       Fax   +61 7 5598-7070

Radiator: the most portable, flexible and configurable RADIUS server 
anywhere. SQL, proxy, DBM, files, LDAP, NIS+, password, NT, Emerald, 
Platypus, Freeside, TACACS+, PAM, external, Active Directory, EAP, TLS, 
TTLS, PEAP etc on Unix, Windows, MacOS, NetWare etc.

--
Archive at http://www.open.com.au/archives/radiator/
Announcements on radiator-announce at open.com.au
To unsubscribe, email 'majordomo at open.com.au' with
'unsubscribe radiator' in the body of the message.


More information about the radiator mailing list