rlm_files(5) | FreeRADIUS Module | rlm_files(5) |
rlm_files - FreeRADIUS Module
The rlm_files module uses the 'users' file for accessing authorization information for users. Additionally, it supports a 'users' file syntax to be applied to the accounting and pre-proxy sections.
The main configuration items to be aware of are:
If you want to use groups as a key, see the rlm_passwd, which will create a real attribute that contains the group name.
This configuration entry enables you to have configurations that perform per-group checks, and return per-group attributes, where the group membership is dynamically defined by a previous module. It also lets you do things like key off of attributes in the reply, and express policies like "when I send replies containing attribute FOO with value BAR, do more checks, and maybe send additional attributes".
modules { ... stuff here ... files { usersfile = %{confdir}/users acctusersfile = %{confdir}/acct_users preproxy_usersfile = %{confdir}/preproxy_users compat = no key = %{%{Stripped-User-Name}:-%{User-Name}} } ... stuff here ...
}
authorization, accounting, pre_proxy
/etc/freeradius/3.0/radiusd.conf, /etc/freeradius/3.0/users, /etc/freeradius/3.0/acct_users, /etc/freeradius/3.0/preproxy_users
radiusd(8), radiusd.conf(5), users(5)
Chris Parker, cparker@segv.org
5 February 2004 |