Bug 43421 - peap option copy_request_to_tunnel should be configurable
peap option copy_request_to_tunnel should be configurable
Status: CLOSED FIXED
Product: UCS@school
Classification: Unclassified
Component: Radius
UCS@school 4.1 R2
Other Linux
: P5 normal (vote)
: UCS@school 4.1 R2 v13
Assigned To: Sönke Schwardt-Krummrich
Florian Best
:
: 44579 (view as bug list)
Depends on:
Blocks: 44920
  Show dependency treegraph
 
Reported: 2017-01-25 13:38 CET by Jan Christoph Ebersbach
Modified: 2017-09-12 13:18 CEST (History)
2 users (show)

See Also:
What kind of report is it?: Feature Request
What type of bug is this?: ---
Who will be affected by this bug?: ---
How will those affected feel about the bug?: ---
User Pain:
Enterprise Customer affected?: Yes
School Customer affected?: Yes
ISV affected?:
Waiting Support:
Flags outvoted (downgraded) after PO Review:
Ticket number: 2017053121000228
Bug group (optional):
Max CVSS v3 score:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Jan Christoph Ebersbach univentionstaff 2017-01-25 13:38:50 CET
In file /etc/freeradius/eap.conf there is an option called copy_request_to_tunnel which is disabled by default.  It would be handy to be able to enable this option because it makes advance scenarios possible.  For example, it can be used to determine the VLAN a user should use depending on the ESSID (Called-Station-Id).

If copy_request_to_tunnel is not set, parameters like Called-Station-Id are not available within the tunnel.
Comment 1 Michel Smidt 2017-05-10 17:38:54 CEST
*** Bug 44579 has been marked as a duplicate of this bug. ***
Comment 2 Michel Smidt 2017-06-01 15:07:29 CEST
Of course this must be configurable for the RADIUS Config from App in Appcenter as well.
Comment 3 Sönke Schwardt-Krummrich univentionstaff 2017-07-11 13:27:31 CEST
ucs-school-radius-802.1x.yaml:
r81030 | Bug #43421, #44603, #44900, #44916, #44918: updated advisory

ucs-school-radius-802.1x (5.0.1-1):
r81032 | Bug #43421: register UCR variables
r80754 | Bug #43421: added new UCR variables for copy_request_to_tunnel

2 new UCR variables have been added
- freeradius/conf/auth-type/peap/copy_request_to_tunnel
- freeradius/conf/auth-type/ttls/copy_request_to_tunnel
that may be used to enable/disable copy_request_to_tunnel in ttls/peap section.
The variables should be set with a boolean value ("1", "yes", "no", ...)
Comment 4 Sönke Schwardt-Krummrich univentionstaff 2017-07-11 13:30:26 CEST
Package: ucs-school-radius-802.1x
Version: 5.0.1-1.17.201707111320
Branch: ucs_4.1-0
Scope: ucs-school-4.1r2
Comment 5 Florian Best univentionstaff 2017-07-19 16:11:55 CEST
OK: UCR variables are working
~OK: the variables don't have a description. But all other variables are missing one, too.
OK: YAML
Comment 6 Sönke Schwardt-Krummrich univentionstaff 2017-09-12 13:18:22 CEST
UCS@school 4.1 R2 v13 has been released.

http://docs.software-univention.de/changelog-ucsschool-4.1R2v13-de.html

If this error occurs again, please clone this bug.