freeradius cisco COA

2011-08-21 Thread Student University
Hi , anyone have like experience to share ,,, Thanks in advance ,,, Lily ,,, - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: freeradius cisco COA

2011-08-21 Thread Arran Cudbard-Bell
Wow ok a lot of CoA and DM questions lately. anyone have like experience to share ,,, Well it should be the same as any other CoA implementation, except IIRC its on port 1700 instead of 3779. I wrote a bunch of stuff for HP switches here:

Re: A little issue with disconnecting users

2011-08-21 Thread Arran Cudbard-Bell
Thanks Arran. Honestly, I don't have any idea about CoA and DM but I know that I can use SNMP on the server which runs Debian 6.0. This might be out of the RADIUS scope but I need a little bit more information on this to work it out. How should I send the PoD to SNMP? Will SNMP handle such

Re: freeradius cisco COA

2011-08-21 Thread James J J Hooper
On 21/08/2011 13:10, Arran Cudbard-Bell wrote: Wow ok a lot of CoA and DM questions lately. anyone have like experience to share ,,, Well it should be the same as any other CoA implementation, except IIRC its on port 1700 instead of 3779. Cisco wireless or wired? We're using Cisco

Re: freeradius cisco COA

2011-08-21 Thread Alan DeKok
James J J Hooper wrote:on port 1700 instead of 3779. Cisco wireless or wired? We're using Cisco WiSMs/WiSM2s [wireless]. You have to enable RFC3576 capability per radius server in the config. They use destination UDP/3799. The only gotcha we've had so far, is that the CoA packet has to come

radius + rlm_ldap: alter auth-type if server not reachable

2011-08-21 Thread Thomas Dupas
Hi, I'm currently using FreeRADIUS v2.1.7 with OpenLDAP v2.3.43 as back-end. After already reading numerous times that ldap failover doesn't work/isn't implemented in the rlm_ldap I had to find another way to provide HA. Currently I'm pointing towards 2 radius servers, each configured with a

RE: radius + rlm_ldap: alter auth-type if server not reachable

2011-08-21 Thread Thomas Dupas
Hi, I found a reference in the mailing list now (must have used the wrong search parameters before) with a hint: http://lists.cistron.nl/pipermail/freeradius-users/2011-April/msg00450.html But it still returns a REJECT - Using Post-Auth-Type Reject In the authorize section of