Re: User Account Configuration

2013-08-20 Thread Alan Buxey
Think about the login time ... If you create an account for the future then if it has a start validity date. .. alan - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: FR3.0/Policy.D

2013-08-20 Thread ultaman khoo
Thanks alan, i alreaady on it right now, anything from the RFC that you aware of can challenge the back the changes of NAS ip is wrong? Thanks On Fri, Aug 16, 2013 at 10:41 AM, Alan DeKok al...@deployingradius.comwrote: ultaman khoo wrote: btw the nas ip changes is due to NAS system

rlm_python

2013-08-20 Thread stefan.paetow
Hello all, I'm currently attempting to use rlm_python to query LDAP (with python-ldap) and then return an XML string in a VSA (SAML-AAA-Assertion). However, when I try to load it, I get the dreaded undefined symbol: PyExc_SystemError error. This is on Ubuntu 12 with, I know, I know, FreeRADIUS

Re: FR3.0/Policy.D

2013-08-20 Thread Alan DeKok
ultaman khoo wrote: Thanks alan, i alreaady on it right now, anything from the RFC that you aware of can challenge the back the changes of NAS ip is wrong? Thanks All of the RADIUS RFCs assume that a client has one IP, and only one IP. Alan DeKok. - List info/subscribe/unsubscribe? See

Re: rlm_python

2013-08-20 Thread Alan DeKok
stefan.pae...@diamond.ac.uk wrote: Hello all, I'm currently attempting to use rlm_python to query LDAP (with python-ldap) and then return an XML string in a VSA (SAML-AAA-Assertion). However, when I try to load it, I get the dreaded undefined symbol: PyExc_SystemError error. This is on

NEW NAS Password Doesn't Authenticate

2013-08-20 Thread mr. s
From the logs I interpret, the error is incorrect password for the user. Is this correct interpretation? I believe we have added in the NAS correctly to the clients file. Also the username and password, we are testing, authenticates both locally and from another NAS, without issue. Here is an

Re: NEW NAS Password Doesn't Authenticate

2013-08-20 Thread Alan DeKok
mr. s wrote: From the logs I interpret, the error is incorrect password for the user. Is this correct interpretation? No. [pap] Using clear text password **-User-Not-Allowed-To-Use-This-NAS-** This is not in the default configuration. You're supposed to understand the configuration

Re: NEW NAS Password Doesn't Authenticate

2013-08-20 Thread mr. s
Understood, however I am not the one who set this up or created the non-default configuration. Any other guidance is greatly appreciated. Thanks- On Tue, Aug 20, 2013 at 8:30 PM, Alan DeKok al...@deployingradius.comwrote: mr. s wrote: From the logs I interpret, the error is incorrect

Re: NEW NAS Password Doesn't Authenticate

2013-08-20 Thread Alan DeKok
mr. s wrote: Understood, however I am not the one who set this up or created the non-default configuration. Any other guidance is greatly appreciated. Ask the people who created this configuration. We didn't create it, and we don't have access to your system to debug it. The data is in

Re: NEW NAS Password Doesn't Authenticate

2013-08-20 Thread mr. s
And thats the rub, thanks very very much. It is a stored query in our sql. Easy once you know where its at. On Tue, Aug 20, 2013 at 9:54 PM, Alan DeKok al...@deployingradius.comwrote: mr. s wrote: Understood, however I am not the one who set this up or created the non-default

ntlm_auth not respected

2013-08-20 Thread Chris Parker
It seems that I have ntlm_auth configured to talk to Samba correctly. As it positively works when run from the CLI and FR even shows a positive login, but that positive login never seems to be sent to the authentication stage. More food for thought once I tackle this, is that when I try to link