Re: FreeRADIUS without Universal Password

2009-02-04 Thread Alan DeKok
Jason C Brown wrote: > Do you by chance know if every RADIUS server acts the same way? For > instance would Steel Belted RADIUS require the use of UP as well? Please read this explanation again: >> The Novell password is not stored as an attribute unless Universal >> password is enabled. It ex

Re: FreeRADIUS without Universal Password

2009-02-04 Thread SDamron
You could just use BorderManager or whatever the new iteration of it is called. On Wed, Feb 4, 2009 at 8:33 PM, Danner, Mearl wrote: > I have no idea. You'll need to ask them. > > Mearl > >> -Original Message- >> From: freeradius-users- >> bounces+jmdanner=samford@lists.freeradius.org

RE: FreeRADIUS without Universal Password

2009-02-04 Thread Danner, Mearl
I have no idea. You'll need to ask them. Mearl > -Original Message- > From: freeradius-users- > bounces+jmdanner=samford@lists.freeradius.org [mailto:freeradius- > users-bounces+jmdanner=samford@lists.freeradius.org] On Behalf Of > Jason C Brown > Sent: Wednesday, February 04, 200

Re: FreeRADIUS without Universal Password

2009-02-04 Thread Jason C Brown
Do you by chance know if every RADIUS server acts the same way? For instance would Steel Belted RADIUS require the use of UP as well? Thanks Jason Brown - RHCT, Security+, Linux+, Network+ Systems Administrator Enterprise Technology Services Ferris State University (231) 591-2687 On Feb 4, 20

RE: FreeRADIUS without Universal Password

2009-02-04 Thread Danner, Mearl
In a word no. The Novell password is not stored as an attribute unless Universal password is enabled. It exists in eDirectory, can be created/modified by ldap as userpassword but cannot be returned in an ldap search. Otherwise you'd have to create an attribute and store the password in it as an n

FreeRADIUS without Universal Password

2009-02-04 Thread Jason C Brown
Is there a way to integrate FreeRADIUS without having to use the universal password in Novell? Jason Brown - RHCT, Security+, Linux+, Network+ Systems Administrator Enterprise Technology Services Ferris State University (231) 591-2687 - List info/subscribe/unsubscribe? See http://www.freeradiu

Re: Affect Static IP by Freeradius/ASA5510

2009-02-04 Thread tnt
>> Can perl overwrite the value from users file? From debug he did give the >> new address for $RAD_REPLY but it did not overwrite the previous value >> (from users file). > > The perl module is supposed to *replace* the reply attributes with >whatever it has. So a "lingering" IP address is stran

Re: Affect Static IP by Freeradius/ASA5510

2009-02-04 Thread Alan DeKok
t...@kalik.net wrote: > Can perl overwrite the value from users file? From debug he did give the > new address for $RAD_REPLY but it did not overwrite the previous value > (from users file). The perl module is supposed to *replace* the reply attributes with whatever it has. So a "lingering" IP

Re: Affect Static IP by Freeradius/ASA5510

2009-02-04 Thread tnt
>> >>> I see "Framed-IP-Address = 10.218.3.41" but at the end of the logs he have: >>> >>> "Sending Access-Accept of id 32 to 10.218.7.243 port 1025 >>>Framed-IP-Address = 255.255.255.254" >>> >>> Why he sending 255.255.255.254 . >>> >> >> Some part of the configuration *you* added does t

Re: Affect Static IP by Freeradius/ASA5510

2009-02-04 Thread Phibee Network Operation Center
Alan DeKok a écrit : Phibee Network Operation Center wrote: I see "Framed-IP-Address = 10.218.3.41" but at the end of the logs he have: "Sending Access-Accept of id 32 to 10.218.7.243 port 1025 Framed-IP-Address = 255.255.255.254" Why he sending 255.255.255.254 . Some part o

Re: Affect Static IP by Freeradius/ASA5510

2009-02-04 Thread Alan DeKok
Phibee Network Operation Center wrote: > I see "Framed-IP-Address = 10.218.3.41" but at the end of the logs he have: > > "Sending Access-Accept of id 32 to 10.218.7.243 port 1025 >Framed-IP-Address = 255.255.255.254" > > Why he sending 255.255.255.254 . Some part of the configuration *

Affect Static IP by Freeradius/ASA5510

2009-02-04 Thread Phibee Network Operation Center
Hi Sorry to restart the same subject, but actually i am search .. i am search but i don't see any solution ... I use: FreeRadius with a Perl Script A Cisco ASA5510 IOS 8.0 In debug i have: When a user don't have IP, use "Pool" :

dialup admin config

2009-02-04 Thread Mr Little Crazzy
Hi users i have installed diualup admin i like it! I am traying to configure but my problem are that not list online users conected ,failed loging , and etc. I have been installed the net-snmp. I could create an user an conect but not the other thing like i said in the up lines. what is wrong ??

RE: mschav2 can't get connected

2009-02-04 Thread saman saman
Hi Ivan,Thanks for your quick response.I'm using D Link DWA 510 PCI adaptor to connect to SmartBridge sB3210 AP (bridging). Is it the device problem or the Windows XP itself?what is the device in the market that you would recommend would solve such a problem?> To: freeradius-users@lists.freerad

Re: Query on Acct-Status-Type

2009-02-04 Thread ramesh p
Thanks alot. On Tue, Feb 3, 2009 at 9:29 PM, wrote: > >>You are aware that this will disable Simultaneous-Use? > >could you explain me more. > > > > If you don't record Start packets you won't be able to detect double > (or multiple) logins by the same user. Potentially, one user can pay you > a

Re: Query on Acct-Status-Type

2009-02-04 Thread tnt
>whats the difference between Accounting stop and AcctStatusType=stop? It's the same thing. >Accounting stop and AcctStatusType=tunnel-stop > Big. One is for accounting user sessions and the other for tunnel (which carries user sessions) sessions. >If i send accounting stop packets and Acct

Re: Problem with udpfromto in version 2.1.1 - please help

2009-02-04 Thread Alan DeKok
Will D. Spann wrote: > I see; thanks for the clarification. This is a departure from how > FreeRADIUS 1.0 was configured, where the authenticate and authorize > sections resided in the radiusd.conf file. Yes... and the comments in the file you edited document this. > However, I noticed a new "

Re: accounting only client?

2009-02-04 Thread Alan DeKok
ST Wong (ITSC) wrote: > Can I setup clients.conf so that some clients are allowed to send > accounting packet only ? I'm using 2.1.3. No. You can set up a "listen" section dso that it only accepts accounting packets. You then add clients to that "listen" section. This is documented. Se

accounting only client?

2009-02-04 Thread ST Wong (ITSC)
Hi all, Can I setup clients.conf so that some clients are allowed to send accounting packet only ? I'm using 2.1.3. Thanks a lot. /ST Wong - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Problem with only some users. Monowall - Freeradius

2009-02-04 Thread rgreiner
t...@kalik.net wrote: >> I executed freeradius on debug mode, then I used the radtest command. >> >> The message is almost the same, >> > > Almost is the key word here. > > >> but the proxy (@dialup,usp.br - another >> radius server in another city) returns OK. >> >> Why using radtest it re

Re: NAS has wrong ID?

2009-02-04 Thread Alan DeKok
qrt wrote: > could someone pleas help me with this: > > my log file has lots of entries like this one: > >> /Error: rlm_radutmp: Logout entry for NAS Cisco WLC4402 port 29 has >> wrong ID/ > > What can I do to get this straight? Fix the NAS so that it doesn't send different sets of informatio

NAS has wrong ID?

2009-02-04 Thread qrt
hi, could someone pleas help me with this: my log file has lots of entries like this one: Error: rlm_radutmp: Logout entry for NAS Cisco WLC4402 port 29 has wrong ID What can I do to get this straight? Thanks Qrt- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.h