(RADIATOR) SQL logging and User-Name

Wyman Miles wm63 at cornell.edu
Tue May 22 09:46:32 CDT 2007


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

I'm trying to get a clean username logged out of accounting records, but 
having a little trouble.  We've got a variety of NAS contributing to this 
- -- 3Com ARC, Cisco ASA5500, and Siemens HiPath.

Pertinent config looks like:

<AuthBy SQL>
	Identifier SQLAccounting
	AuthSelect
	DBSource ...	
	DBUsername ...
	DBAuth ...
	HandleAcctStatusTypes Start,Stop
	AcctFailedLogFileName %L/sqlacct.misfires
	AccountingTable radacct
	AcctColumnDef USERNAME,User-Name
	AcctColumnDef REALM,%W
	...
</AuthBy>

In the above config, I'll get "wm63 at CIT.VPN"

I've been through various flavors of "%u" "%U" and "%w".  For some 
combination of NAS and User-Name sent, I'll get empty values in the table.

What's the magic syntax to get the username as sent in the initial packet, 
minus the realm, reliably?

Thanks!


Wyman Miles
Senior Security Engineer
Cornell University, Ithaca, NY
(607) 255-8421
-----BEGIN PGP SIGNATURE-----
Version: Mulberry PGP Plugin v3.0
Comment: processed by Mulberry PGP Plugin

iQA/AwUBRlMCSMRE6QfTb3V0EQKoNQCfYN/c9YQzULdSd+4Es+Zo09evN9IAn1C9
KVBvvd9fEcMvW3OyhWwKwLSC
=WYGW
-----END PGP SIGNATURE-----

--
Archive at http://www.open.com.au/archives/radiator/
Announcements on radiator-announce at open.com.au
To unsubscribe, email 'majordomo at open.com.au' with
'unsubscribe radiator' in the body of the message.


More information about the radiator mailing list