LinuxQuestions.org
Visit Jeremy's Blog.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 02-05-2006, 04:33 AM   #1
dkierans
LQ Newbie
 
Registered: Feb 2006
Posts: 1

Rep: Reputation: 0
Question Login redirect RADIUS directed suggestions.


Hello All. I am looking for ideas/experiences that members may have on the following problem.

I have an end user who authenticates their PPP session via a RADIUS (Radiator - Linux talking to a Cisco LNS). I have complete control over their user profiles in RADIUS. Normally when then Auth ok their session will be established and off the go. Now, say the user has not paid their bill for love nor money and I just cannot contact them. I'd like to suspend the account but should they try to login again some time later have them redirected to a web page that says "Hey, where have you been? I'v been trying to contact you etc., please call me.". All they can do is browse there and nowhere else. I'd like this ability so selectively point users to pages as I see fit. As I have no way to control what they type into their browser I think I'll have to make do with the default page on whatever webserver I use?

One solution I am considering is to return a special limited pair of Primary/Secondrary DNS attributes from RADIUS which point to a specially comissioned Name Server. Each resolve would yield the same IP address, the web server I want them to get to. I've read this suggestion elsewhere.

A second idea is to do something with my default routes but that is as far as I have thought that one thus far.

Has anyone done anything similar or have any suggestions on any of this. Apologies is this is the wrong formum as well. Pleas feel free to rell me where to go, in any sense of the phrase.

Many thanks in advance.
Dave.
 
Old 02-06-2006, 02:13 PM   #2
pk21
Member
 
Registered: Jun 2002
Location: Netherlands - Amsterdam
Distribution: RedHat 9
Posts: 549

Rep: Reputation: 30
You probably give the users a specific ip address when they authenticate with radius.
Just give the users you want to block a special ip address and redirect that ip with some firewall rules to a specific server where you have those "Hey, where have you been? I'v been trying to contact you etc., please call me." webpages.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
RADIUS and Others wwnexc Linux - Networking 4 10-31-2005 01:30 PM
gprof - annotate source, profile directed compiling iansworld Linux - Software 0 03-25-2005 12:33 PM
RADIUS Suggestions kemplej Linux - Software 1 11-05-2004 01:05 PM
Enabling subnet directed broadcast on Linux Router yrraja Linux - Networking 3 07-01-2004 12:27 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 08:26 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration