Project

General

Profile

Actions

Bug #6609

closed

OpenVPN Radius auth doesn't send NAS attributes and is not consistent with how strongSwan does it

Added by Kacper Boström about 8 years ago. Updated over 7 years ago.

Status:
Resolved
Priority:
Normal
Assignee:
-
Category:
OpenVPN
Target version:
Start date:
07/13/2016
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Affected Version:
All
Affected Architecture:

Description

OpenVPN Radius auth doesn't send NAS Port-Type (which should be "Virtual") and NAS Port (which preferably should be the port the client connected on). The NAS Identifier attribute should be "openVPN" and not the pfSense hostname (to be consistent with strongSwan).

This should simplify Radius authentication and allow for fine grained control over who can authenticate on each openVPN server instance.

Actions

Also available in: Atom PDF