Na WiFi AP (Ubuntu Linux) mam WPA2 Enterprise, kazdy ma tedy sve jmeno a heslo a certifikat CA.
O WPA se stara hostapd:
Kód: Vybrat vše
interface=wlan0
driver=nl80211
wpa=2
wpa_key_mgmt=WPA-EAP
wpa_pairwise=CCMP
hw_mode=g
channel=13
ssid=TEST
ieee8021x=1
eap_server=0
own_ip_addr=127.0.0.1
auth_server_addr=127.0.0.1
auth_server_port=1812
auth_server_shared_secret=testing123
eapol_key_index_workaround=1
wme_enabled=1
ieee80211n=1
ht_capab=[HT40-][SHORT-GI-40][DSSS_CCK-40]
Overuje se proti FreeRADIUS serveru. Pro zaznam typu:
Kód: Vybrat vše
jmeno Cleartext-Password := "heslo"
uzivatel dostane IP od DHCP serveru z daneho rozsahu.
To vse funguje.
Ja ale potrebuji uzivateli priradit pevnou IP adresu.
Kdyz chci ve FreeRADIUSu pouzit Framed-IP-Address, musim mit pppoe server?
Protoze uzivateli:
Kód: Vybrat vše
jmeno Cleartext-Password := "heslo"
Service-Type = Framed-User,
Framed-Protocol = PPP,
Framed-MTU = 1400,
Framed-IP-Address = 192.168.10.123,
Framed-IP-Netmask = 255.255.255.0,
Framed-Routing = Broadcast-Listen,
Framed-Compression = Van-Jacobsen-TCP-IP
se prideli IP normalne z DHCP.
Pritom RADIUS atributy posila:
Kód: Vybrat vše
# echo 'User-Name="abc",User-Password="abc",NAS-IP-Address=127.0.0.1' | radclient 127.0.0.1 auth testing123 -x
Sending Access-Request of id 245 to 127.0.0.1 port 1812
User-Name = "abc"
User-Password = "abc"
NAS-IP-Address = 127.0.0.1
rad_recv: Access-Accept packet from host 127.0.0.1 port 1812, id=245, length=62
Service-Type = Framed-User
Framed-Protocol = PPP
Framed-MTU = 1400
Framed-IP-Address = 192.168.10.123
Framed-IP-Netmask = 255.255.255.0
Framed-Routing = Broadcast-Listen
Framed-Compression = Van-Jacobson-TCP-IP
#
Zkusil jsem podle navodu nainstalovat pppoe server, ale na uzivatele to nema zadny vliv a dal dostava adresu z DHCP.
Nevite nekdo, jak to nejlepe vyresit? Je nutne pouziv pppoe?