login from cisco access server

Marwan Helou (mhelou@inco.com.lb)
Tue, 17 Dec 1996 09:54:54 +0200

Hi guys

My setup is as follows:
I have two portmasters pm2er, and radius 1.6 running on a sun station.
Also I have a cisco 2511 access server connected to the network. Users
dialing to the cisco access server get authenticated by the radius.
I have defined on the portmaster a set of filters to limit the access of
some users to only ftp. Then I set the radius user file properly.

The problem is that when a user login through the Livingston portmaster
the filter works and the user access is limited to ftp, however when
this same user login through the cisco access server the filter is
bypassed and the user is granted full access to the internet.

Does anyone have an idea how to handle this problem?

Than you

Marwan