[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [Technical Errata Reported] RFC5176 (2012)



> There are just too many unknowns around NAS behavior to over-load
> Access-Accept.

I don't think anyone has suggested over-loading Access-Accept.  If use as
originally intended, to provision service, it works just fine, at least if
the service is described in the Service-Type attribute.

After all, RADIUS is not about answering authorization questions from NASes,
it's about identifying users and *telling* them what service they get, based
on their identity, and contextual hints from the NAS.



--
to unsubscribe send a message to radiusext-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.
archive: <http://psg.com/lists/radiusext/>