<html><body bgcolor="#FFFFFF"><div>If they just want it for this meeting I would vote that we proxy and skip the additional SSID. Less headache in my opinion. </div><div><br></div><div>Alice aka Rob<br><br>Sent from my iPhone</div><div><br>On Jul 8, 2010, at 11:44 AM, Chris Elliott <<a href="mailto:chelliot@pobox.com">chelliot@pobox.com</a>> wrote:<br><br></div><div></div><blockquote type="cite"><div>If we use another SSID then we won't need to proxy the requests. Not that I'm a fan of additional ssid's either.<br><br><div class="gmail_quote">On Thu, Jul 8, 2010 at 11:38 AM, Rob Nagy <span dir="ltr"><<a href="mailto:rob@deepdivenetworking.com"><a href="mailto:rob@deepdivenetworking.com">rob@deepdivenetworking.com</a></a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex;">I agree as a nice to do. We should be able to radius proxy by realm for people who want to use eduroam credentials. The issue we couldn't probably port to Beijing is that I don't believe we could limit devices per user with a radius proxy realm(have to double check). But for this meeting it should be a fairly easy endeavor, time allowing.<br>
<br>
I will do additional research in how we could do it with freeradius.<br>
<br>
Rob<br>
<br>
Sent from my iPhone<br>
<div><div></div><div class="h5"><br>
On Jul 8, 2010, at 11:19 AM, joel jaeggli <<a href="mailto:joelja@bogus.com"><a href="mailto:joelja@bogus.com">joelja@bogus.com</a></a>> wrote:<br>
<br>
> This sort of dovetails with my observation about using open-id auth as<br>
> an option for the portal...<br>
><br>
> personally I'm adverse to simply creating more ssids, but not adverse to<br>
> the idea of enabling authentication against additional systems.<br>
><br>
> On 2010-07-08 08:06, Jim Martin wrote:<br>
>><br>
>> On Jul 8, 2010, at 10:59 AM, Geert Jan de Groot wrote:<br>
>><br>
>>> It's not my call to make, I'm not sure if the 1252's<br>
>>> can handle the additional config (but should, yes?),<br>
>>> and I promised I'd forward the request to the list to see what you think?<br>
>><br>
>><br>
>> I'd like to put this on the "Nice to do" list....<br>
>><br>
>> That is, if we have cycles and find that we can do it (logistically and technically), then it's a good thing to do.<br>
>><br>
>> However, if we're slammed or it hits any snags, it will be delayed or dropped.<br>
>><br>
>> Paul, are you ok with that?<br>
>><br>
>> On the technical side, would we have a separate (offsite) radius server configured for that one SSID, or would we relay the request (based upon realm or something) from our radius server to theirs?<br>
>><br>
>> - Jim<br>
>><br>
>><br>
>><br>
>><br>
>> _______________________________________________<br>
>> ietf78-tech mailing list<br>
>> <a href="mailto:ietf78-tech@daedelus.com"><a href="mailto:ietf78-tech@daedelus.com">ietf78-tech@daedelus.com</a></a><br>
>> <a href="http://www.daedelus.com/mailman/listinfo/ietf78-tech" target="_blank"><a href="http://www.daedelus.com/mailman/listinfo/ietf78-tech">http://www.daedelus.com/mailman/listinfo/ietf78-tech</a></a><br>
><br>
> _______________________________________________<br>
> ietf78-tech mailing list<br>
> <a href="mailto:ietf78-tech@daedelus.com"><a href="mailto:ietf78-tech@daedelus.com">ietf78-tech@daedelus.com</a></a><br>
> <a href="http://www.daedelus.com/mailman/listinfo/ietf78-tech" target="_blank"><a href="http://www.daedelus.com/mailman/listinfo/ietf78-tech">http://www.daedelus.com/mailman/listinfo/ietf78-tech</a></a><br>
_______________________________________________<br>
ietf78-tech mailing list<br>
<a href="mailto:ietf78-tech@daedelus.com"><a href="mailto:ietf78-tech@daedelus.com">ietf78-tech@daedelus.com</a></a><br>
<a href="http://www.daedelus.com/mailman/listinfo/ietf78-tech" target="_blank"><a href="http://www.daedelus.com/mailman/listinfo/ietf78-tech">http://www.daedelus.com/mailman/listinfo/ietf78-tech</a></a><br>
</div></div></blockquote></div><br><br clear="all"><br>-- <br>Chris Elliott<br><a href="mailto:chelliot@pobox.com"><a href="mailto:chelliot@pobox.com">chelliot@pobox.com</a></a><br><br>
</div></blockquote></body></html>