5 Commits
Author SHA1 Message Date
gitea_admin da15f6ee51 fix(radius): allow OpenVPN TLS re-authentication for existing sessions
- exclude the current Acct-Session-Id from simultaneous-use checks
- prevent TLS renegotiation from being rejected as a second login
- keep Simultaneous-Use limited to fresh concurrent OpenVPN connections
- preserve the existing RADIUS accounting session during TLS re-authentication
2026-09-21 20:04:27 +02:00
gitea_admin a656e83473 fix(freeradius): add post-auth reason to PostgreSQL queries
- include reason in radpostauth INSERT columns
- store Reply-Message as the authentication reason
2026-09-08 10:31:28 +02:00
gitea_admin 20b260a795 feat(freeradius): add PostgreSQL support and release 2.0.0
- add separate MySQL and PostgreSQL query configurations
- fix radpostauth INSERT query for PostgreSQL
- remove obsolete pass column from post-auth query
- update ConfigMap and Deployment templates
- bump chart version to 2.0.0
2026-09-08 10:04:31 +02:00
gitea_admin 064bda9e20 feat(freeradius): log Reply-Message in radpostauth instead of only packet type
- Store Reply-Message when available, fallback to Packet-Type otherwise
- Improves visibility of authentication failures (e.g. "already logged in")
2026-04-21 12:51:12 +02:00
gitea_admin 35e0f2f419 feat(freeradius): add radius.conf and queries.conf ConfigMaps and bump chart version
- Move FreeRADIUS SQL and radius.conf into ConfigMaps
- Add /etc/freeradius/mods-config/sql/main/mysql/queries.conf and /etc/freeradius/radius.conf templates for Helm deployment
- Update SQL post-auth query formatting
- Enable suppress_secrets in radius.conf
- Bump Helm chart version to 1.0.10
- Adjust GitLab CI and Deployment to use new config structure
2026-02-03 15:33:08 +01:00