RADIUS authentication on dialout

David Ackerman (ack@forte.com)
Fri, 3 Nov 95 12:11:11 PST

Has anyone been able to use RADIUS authentication on dialout? We have a
PM2E which we use for a number of things: character-based dialin, PPP
dialin, and character-based dialout. For the first two we are using RADIUS,
with the minor mod of radiusd which allows you to have "foo" and "Pfoo"
both authenticate to Unix user "foo", but get different profiles (we use
"foo" for character-based dialin and "Pfoo" for PPP dialin). I wanted to
use "Dfoo" to do the same thing with dialout, and discovered that Livingston
does not support using RADIUS to authenticate dialout users, only dialin
users.

I have no problem adding another prefix to our modified radiusd, but that
is moot if the PM can't use it. I have already asked Livingston support
about this, and they have said it's not supported and pointed me here. So,
has anyone figured out a way to do RADIUS authentication on dialout, or at
least some type of user accounting? Having each user configured into the
PM userlist itself will not work for us. At the moment I am using a generic
account which is of course in the PM userlist, but I have no way of keeping
an audit trail or restricting access on a user-by-user basis.

Any tips or pointers to info would be greatly appreciated!

=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
/ David Ackerman | 1800 Harrison Street, 15th Floor \
| Systems & Network Administrator | Oakland, CA 94612 |
| Forte Software, Inc. | (510) 869-3433 (voice) |
| ack@forte.com | (510) 834-1508 (fax) |
|-------------------------------------------------------------------------|
\ Time flies like an arrow. Fruit flies like a banana. /
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=