(PM) dropping duplicate request for id (fwd)

MegaZone (megazone@livingston.com)
Sun, 11 Jan 1998 21:48:37 -0800 (PST)

Once upon a time Jim Moriartey shaped the electrons to say...
>We are using Radius 2.0 on BSDi 2.1

I'd use 2.0.1 BTW.

>The problem I am having is that I need to run two IP's
>on my servers for a while till we can retire the first class c

RADIUS *MUST* reply from the same IP the request was sent to - period.
That is part of the security of the standard. If a PM receives a reply
from a different IP that reply is completely ignored.

>206.75.189.10
>207.153.28.10
>Is to be the primary Radius Server
>If I add the 207.153.28.10 IP to the Interface for the BSDi box
>the Port Masters return the following error :
>dropping duplicate request for id
>and will not authentic the user

Sounds to me like when you add the second IP the RADIUS response packets
start coming from THAT IP. Which will be invalid.

-MZ

--
Lucent Remote Access Division - Chair, Department of Interstitial Affairs
Phone: 800-458-9966 510-737-2100 FAX: 510-737-2110 megazone@livingston.com
For support requests: support@livingston.com  <http://www.livingston.com/> 
Snail mail: 4464 Willow Road, Pleasanton, CA 94588
-
To unsubscribe, email 'majordomo@livingston.com' with
'unsubscribe portmaster-users' in the body of the message.