This file is indexed.

/etc/freeradius/3.0/mods-config/attr_filter/access_reject is in freeradius-config 3.0.12+dfsg-5+deb9u1.

This file is owned by root:root, with mode 0o644.

The actual contents of the file can be viewed below.

 1
 2
 3
 4
 5
 6
 7
 8
 9
10
11
12
13
14
15
16
17
18
19
20
#
#	Configuration file for the rlm_attr_filter module.
#	Please see rlm_attr_filter(5) manpage for more information.
#
#	$Id: afd89473dc50e4ff62389e35e5cb73b512e9d352 $
#
#	This configuration file is used to remove almost all of the attributes
#	From an Access-Reject message.  The RFCs say that an Access-Reject
#	packet can contain only a few attributes.  We enforce that here.
#
DEFAULT
	EAP-Message =* ANY,
	State =* ANY,
	Message-Authenticator =* ANY,
	Error-Cause =* ANY,
	Reply-Message =* ANY,
	MS-CHAP-Error =* ANY,
	Proxy-State =* ANY,
	FreeRADIUS-Response-Delay =* ANY,
	FreeRADIUS-Response-Delay-USec =* ANY