Community discussions

 
ners
Frequent Visitor
Frequent Visitor
Topic Author
Posts: 99
Joined: Tue Mar 12, 2013 4:30 pm

only-one is ignored when radius auth is used

Thu Nov 21, 2013 10:55 am

I am running a PPPoE server on a CCR-1036.

My /ppp profile is:

ros code

/ppp profile
add dns-server=192.168.2.2 local-address=192.168.255.1 name=my-pppoe only-one=yes use-compression=no use-encryption=no use-vj-compression=no
I use RADIUS for authentication. I see that the only-one parameter is ignored and one user can maintain multiple sessions from different hosts at the same time. This is totally unacceptable.

Why does it ignore the option? I cannot allow my users to share their accounts. Can I make the option "only-one" work when auth is done by RADIUS?
 
User avatar
rickfrey
Trainer
Trainer
Posts: 610
Joined: Sun Feb 14, 2010 11:41 pm
Location: Van, Texas
Contact:

Re: only-one is ignored when radius auth is used

Mon Feb 17, 2014 8:54 am

What ROS version are you using?
Launch your company forward with professional training!
http://rickfreyconsulting.com/product-c ... raining-2/
 
SurferTim
Forum Guru
Forum Guru
Posts: 4637
Joined: Mon Jan 07, 2008 10:31 pm
Location: Miramar Beach, Florida

Re: only-one is ignored when radius auth is used

Mon Feb 17, 2014 2:16 pm

I use FreeRADIUS with my hotspots, and it had the same challenge. It is a RADIUS function to stop simultaneous logins.

In FreeRADIUS, I enter "users simultaneous-use := 1" in the radgroupcheck table. You must be careful about stale sessions with this. If the user logout doesn't get through to the RADIUS server for any reason, the user will not be able to login again until you remove the stale session.

Who is online

Users browsing this forum: Google [Bot] and 58 guests