From: Alan T. DeKok Date: Tue, 17 Apr 2018 19:30:25 +0000 (-0400) Subject: no longer look at client->network. X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=9b4ea53bc34ae044c2475198a98d00d9038ce76d;p=thirdparty%2Ffreeradius-server.git no longer look at client->network. It's only used for proto_radius, and should never have been here. --- diff --git a/src/main/client.c b/src/main/client.c index df95e8277f5..e3667bf6cdf 100644 --- a/src/main/client.c +++ b/src/main/client.c @@ -1005,33 +1005,6 @@ RADCLIENT *client_afrom_request(TALLOC_CTX *ctx, REQUEST *request) return NULL; } - /* - * Do some basic sanity checks. - */ - if (request->client->network.af != c->ipaddr.af) { - fr_strerror_printf("Client IP address %pV IP version does not match the source network %pV of the packet.", - fr_box_ipaddr(c->ipaddr), fr_box_ipaddr(request->client->network)); - goto error; - } - - /* - * Network prefix is more restrictive than the one given - * by the client... that's bad. - */ - if (request->client->network.prefix > c->ipaddr.prefix) { - fr_strerror_printf("Client IP address %pV is not within the prefix with the defined network %pV", - fr_box_ipaddr(c->ipaddr), fr_box_ipaddr(request->client->network)); - goto error; - } - - ipaddr = c->ipaddr; - fr_ipaddr_mask(&ipaddr, request->client->network.prefix); - if (fr_ipaddr_cmp(&ipaddr, &request->client->network) != 0) { - fr_strerror_printf("Client IP address %pV is not within the defined network %pV.", - fr_box_ipaddr(c->ipaddr), fr_box_ipaddr(request->client->network)); - goto error; - } - return c; }