ssahani / rpms / freeradius

Forked from rpms/freeradius 6 years ago
Clone
17b7dcc
From edcb433824bea5f7f7832b3ce0a2d59228e7e513 Mon Sep 17 00:00:00 2001
29de2ea
From: Nikolai Kondrashov <Nikolai.Kondrashov@redhat.com>
29de2ea
Date: Mon, 8 Sep 2014 12:32:13 +0300
ac256b1
Subject: [PATCH] Adjust configuration to fit Red Hat specifics
29de2ea
29de2ea
---
29de2ea
 raddb/mods-available/eap | 4 ++--
29de2ea
 raddb/radiusd.conf.in    | 7 +++----
29de2ea
 2 files changed, 5 insertions(+), 6 deletions(-)
29de2ea
29de2ea
diff --git a/raddb/mods-available/eap b/raddb/mods-available/eap
17b7dcc
index 1b69550..8f38c47 100644
29de2ea
--- a/raddb/mods-available/eap
29de2ea
+++ b/raddb/mods-available/eap
17b7dcc
@@ -453,7 +453,7 @@ eap {
b70e156
 			#
b70e156
 			#  You should also delete all of the files
b70e156
 			#  in the directory when the server starts.
29de2ea
-	#		tmpdir = /tmp/radiusd
29de2ea
+	#		tmpdir = /var/run/radiusd/tmp
29de2ea
 
b70e156
 			#  The command used to verify the client cert.
b70e156
 			#  We recommend using the OpenSSL command-line
17b7dcc
@@ -467,7 +467,7 @@ eap {
b70e156
 			#  in PEM format.  This file is automatically
b70e156
 			#  deleted by the server when the command
b70e156
 			#  returns.
29de2ea
-	#		client = "/path/to/openssl verify -CApath ${..ca_path} %{TLS-Client-Cert-Filename}"
29de2ea
+	#		client = "/usr/bin/openssl verify -CApath ${..ca_path} %{TLS-Client-Cert-Filename}"
b70e156
 		}
29de2ea
 
b70e156
 		#
29de2ea
diff --git a/raddb/radiusd.conf.in b/raddb/radiusd.conf.in
ac256b1
index c62f4ff..625f434 100644
29de2ea
--- a/raddb/radiusd.conf.in
29de2ea
+++ b/raddb/radiusd.conf.in
29de2ea
@@ -70,8 +70,7 @@ certdir = ${confdir}/certs
e79fcfa
 cadir   = ${confdir}/certs
e79fcfa
 run_dir = ${localstatedir}/run/${name}
29de2ea
 
e79fcfa
-# Should likely be ${localstatedir}/lib/radiusd
e79fcfa
-db_dir = ${raddbdir}
e79fcfa
+db_dir = ${localstatedir}/lib/radiusd
29de2ea
 
e79fcfa
 #
e79fcfa
 # libdir: Where to find the rlm_* modules.
695a856
@@ -436,8 +435,8 @@ security {
7e11ad3
 	#  member.  This can allow for some finer-grained access
7e11ad3
 	#  controls.
7e11ad3
 	#
7e11ad3
-#	user = radius
7e11ad3
-#	group = radius
7e11ad3
+	user = radiusd
7e11ad3
+	group = radiusd
29de2ea
 
7e11ad3
 	#  Core dumps are a bad thing.  This should only be set to
7e11ad3
 	#  'yes' if you're debugging a problem with the server.
29de2ea
-- 
17b7dcc
2.8.0.rc3
29de2ea