Seminars not to miss in July and August 2003
Dear Clients, Due to a technical problem with our web hosting, which allows only those connecting from the free number of starnet in Egypt 07770666 to view our web site, and due to the shortage of time, we are announcing in text mode the following three coming up seminars in July and August of 2003: Seminar:Environmental Register (How to do it, The components, the measurements) as per requirements of law number 4 for the year 1994 السجل البيئي (مكوناته ، قياساته وكيفية إعداده ) في ضوء اللائحة التنفيذية لقانون البيئة رقم 4 لسنة 1994 وطرق تقييم الإنبعاثات الغازية من المصادر الثابتة Date: July 29 - 30, 2003 City: Alexandria Venue: Plaza Hotel Web site: http://www.settecltd.com/en/2003/jul2930.htm http://www.settecltd.com/ar/2003/jul2930.htm Seminar:The Egyptian Customs Law number 66 for the year 1963 and the latest amendments قانون الجمارك رقم 66 لسنة 1963 وفقا لاحدث التعديلات Date: July 29 - 30, 2003 City: Cairo Venue: Meridien Heliopolis Web site: http://www.settecltd.com/en/2003/jul2930d.htm http://www.settecltd.com/ar/2003/jul2930d.htm Seminar:New Unified Labor Law # 12 for the year 2003 قانون العمل الموحد الجديد رقم 12 لسنة 2003 Date: August 18 - 19, 2003 City: Cairo Venue: Meridien Heliopolis Web site: http://www.settecltd.com/en/2003/aug1819.htm http://www.settecltd.com/ar/2003/jul2930d.htm For full information on the seminars, prices, and available promotions, please contact Mr. Essam Mahmoud at the below numbers. SETTEC Address: Agooza Police Tower, Nawal St., Agooza, Giza, Egypt Tel./Fax: +2 (02) 3387527 - 3362040 - 7614343 Mobile: +2 (012) 3228395 US Fax: +1 772 365 0405 e-mail: [EMAIL PROTECTED] web page: www.settecltd.com === To unsubscribe from Settec Newsletter send a blank message to [EMAIL PROTECTED] with subject "Unsubscribe" Your request will be performed within two business day === - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
RE: Experimental modules
The config file in src/modules/rlm_sqlcounter/configure does not have the execution permission bit set in my system. Is it set in the CVS system? > -Original Message- > From: [EMAIL PROTECTED] > [mailto:[EMAIL PROTECTED] Behalf Of Alex Chen > Sent: Saturday, July 26, 2003 11:50 PM > To: FreeRADIUS Users (E-mail) > Subject: Experimental modules > > > I was trying to use the rlm_sqlcounter module and followed the > document 'rlm_sqlcounter' in the doc subdirectory. I used the > flag --with-experimental-modules but the result was quite surprising. > > If I used 'configure' without any flags before running 'make' and > 'make install', everything builds and works but the module > 'rlm_sqlcounter' > was not built at all. > > If I used 'configure --with-experimental-modules' before > running 'make' and > 'make install', the /usr/local/lib and /usr/local/bin > contains only the following files: > > [EMAIL PROTECTED] local]# ls /usr/local/lib > libradius-0.9.0.la libradius-0.9.0.so libradius.a libradius.la > libradius.so > > [EMAIL PROTECTED] local]# ls /usr/local/bin > radclient radlast radrelay radtest radwho radzap > > In normal configuration, the /usr/local/bin contains > radclient radrelay radwho rlm_dbm_cat smbencrypt > radlastradtest radzap rlm_dbm_parser > > and /usr/local/lib contains not only libradius* libraries but > a lot of rlm_* > dynamic > modules. > > > It seems like a bug in the configuration file? > > > - > List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Experimental modules
I was trying to use the rlm_sqlcounter module and followed the document 'rlm_sqlcounter' in the doc subdirectory. I used the flag --with-experimental-modules but the result was quite surprising. If I used 'configure' without any flags before running 'make' and 'make install', everything builds and works but the module 'rlm_sqlcounter' was not built at all. If I used 'configure --with-experimental-modules' before running 'make' and 'make install', the /usr/local/lib and /usr/local/bin contains only the following files: [EMAIL PROTECTED] local]# ls /usr/local/lib libradius-0.9.0.la libradius-0.9.0.so libradius.a libradius.la libradius.so [EMAIL PROTECTED] local]# ls /usr/local/bin radclient radlast radrelay radtest radwho radzap In normal configuration, the /usr/local/bin contains radclient radrelay radwho rlm_dbm_cat smbencrypt radlastradtest radzap rlm_dbm_parser and /usr/local/lib contains not only libradius* libraries but a lot of rlm_* dynamic modules. It seems like a bug in the configuration file? - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Reply message from the counter module
I finally get the counter module to work but there is a small question about the reply message issued by the counter when the accumulated time exceeds the value of the 'check-name' attribute. I set the 'reset' to 'never' and when the limit, say, 60 seconds, is reached, the reply message says: Reply-Message = "Your maximum never usage time has been reached" It is not a problem but does not sound normal. May I suggest, in the next release, that you make the reply message a user configurable item in the counter module, e.g. counter { filename = ${raddbdir}/counterdb key = User-Name count-attribute = Acct-Session-Time reset = never reply-message = "Your maximum access time has been reached" } - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
RE: counter module
Thanks for the information. As long as it works, I do not care whether it is my problem or a bug that was fixed. > -Original Message- > From: [EMAIL PROTECTED] > [mailto:[EMAIL PROTECTED] Behalf Of > Alexander M. Pravking > Sent: Friday, July 25, 2003 11:56 PM > To: [EMAIL PROTECTED] > Subject: Re: counter module > > > On Fri, Jul 25, 2003 at 10:20:13PM -0700, Alex Chen wrote: > > The counter module as a configuration element > > 'check-name'. In the example shown in radiusd.conf > > it is set to Max-Daily-Session. The comment indicates > > that this 'Max-Daily-Session' can be specified in > > DEFAULT stanza. > > > > I am pretty sure when I tried to set > > DEFAULT Max-Daily-Session := 20 > > in 'users', the radiusd complained that it > > could not find such attribute and bailed out. > > Did you see something like 'rlm_files: matched DEFAULT at > NNN' in debug > output? If not, your DEFAULT entry did not match. > > > That's the reason I tried to use 'Session-Timeout'. > > But when I tested it again with freeradius 0.9, the server too it. > > I do not know if it was my typo previously or something changed > > in the server. > > What version was it? The 0.9 release of FreeRADIUS has a lot of bug > fixes from 0.8.1. > > > Anyway, I cannot find an attribute name called 'Max-Daily-Session' > > in the dictionary. How does the server know this? > > I thought only an attribute can be specified in the 'users' file, > > or can we just use anything we want? > > > > Other than 'Max-Daily-Session' what else can be used? > > This attribute is not in dictionary, it's dynamic. You can > use whatever > you want attribute name in check-name, the counter module > will register > this attribute during initialization. > > > -- > Fduch M. Pravking > > - > List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
ip_clear_pool: Script to remove unused ip address in rlm_ippool
Hello All. Here is a little script you can use to remove unused ip address from session and index files of ip pools. The script basically performs a radwho and a ippool -a , then compares and eliminates the differences. We do asume you have ippool installed and also asume radwho is working. I hope this helps. this script can be added to the main freeradius distribution. As new things appear this script will be modified and probably traslated to C. Best Regards Gustavo -- Gustavo A. Lozano Noldata Corporation [EMAIL PROTECTED] Calle 46 No. 40-19 CTO Bogota D.C. Colombia Noldata Corporation http://noldata.com I know not with what weapons World War III will be fought, but World War IV will be fought with sticks and stones. Albert Einstein #!/bin/bash # ip_clear_pool 0.9 # Bash Script to clear ippool entries in db files. # Purpose: Free IP addresses not being used by clients but reported not available by rlm_ippool # # This program/script can be run from a CRONTAB, in that way you will not waste time clearing things. # Author: Gustavo A. Lozano <[EMAIL PROTECTED]> Noldata Corp. # # Released under the terms of the GNU License # # # Configurable Stuff: # radiusdprefix: Where you installed the FreeRadius Server. radiusdprefix=/opt/noldata/radiusd # tmpdir: place where you can/want place temporary files tmpdir=/tmp #iptool: your iptool executable iptool='/opt/noldata/radiusd/bin/iptool' # ipsession: rlm_ippool session file ipsession=/opt/noldata/radiusd/etc/raddb/db.pool.session # ipindex: rlm_ippool index file ipindex=/opt/noldata/radiusd/etc/raddb/db.pool.index # END OF CONFIGURABLE STUFF $radiusprefix/bin/radwho | cut -f12 -d" "| sort > $tmpdir/who $iptool -a $ipsession $ipindex | sort > $tmpdir/ipt for ipaddress in `sdiff $tmpdir/who $tmpdir/ipt | grep ">" | cut -f2 -d">"` do $iptool -r $ipsession $ipindex $ipaddress echo "Cleared $ipaddress" done
Re: Logging - how to specify what to log?
James Green <[EMAIL PROTECTED]> wrote: > I've been asked as a matter of urgency to ensure that the logs we get > from RADIUS include the CLI (Caller-ID), that is, the telephone number > of the person making the call. This should prove they called us. ... > I can see a slew of attributes being logged to the detail-* files, > except this attribute. > > Maybe FreeRADIUS doesn't get this attribute? Exactly. Make the NAS send the attribute, and FreeRADIUS will log it. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Logging - how to specify what to log?
Hi there, I've been asked as a matter of urgency to ensure that the logs we get from RADIUS include the CLI (Caller-ID), that is, the telephone number of the person making the call. This should prove they called us. I believe I need to log the %{Calling-Station-Id} attribute. Problem: I have no idea what file to edit. I can see a slew of attributes being logged to the detail-* files, except this attribute. Maybe FreeRADIUS doesn't get this attribute? It's a Cisco AS5350 talking to it, with a couple of E1 ISDN-30s plugged in. I can't find much about this on Cisco's website or the freeradius mailing list. Indeed, apart from a mention as part of a list of attributes, the Oreilly RADIUS book doesn't cover it. Help! :-) Thanks a lot. James Green - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
freeradius and billing tool
Hi! I'm want to use freeradius as my small billing system and i have few questions. for example i write some trigger that modify user cash on update radacct table. And for example i have sqlcounter. It's counter check that user cash >0. Does it system will work? How often doing update radacct table and check sqlcounter? Pls. advise me something... (i'm don't using radius before :-) - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
radius_xlat or parsing bug?
Let a user entry in raddb/users DEFAULT Auth-Type := Accept Reply-Message := `%{sql:SELECT 'before %{User-Name:-default value} after'}` Debug output: Sat Jul 26 22:43:12 2003 : Debug: Thread 1 handling request 0, (1 handled so far) User-Name = "[EMAIL PROTECTED]" User-Password = "*" NAS-IP-Address = 255.255.255.255 NAS-Port = 1 Sat Jul 26 22:43:12 2003 : Debug: modcall: entering group authorize Sat Jul 26 22:43:12 2003 : Debug: modcall[authorize]: module "preprocess" returns ok Sat Jul 26 22:43:12 2003 : Debug: users: Matched DEFAULT at 220 Sat Jul 26 22:43:12 2003 : Debug: radius_xlat: Running registered xlat function of module sql for string 'SELECT 'before %{User-Name' It looks like ":-" was assosiated with the outer brace instead of inner. Not sure I'm able to make a patch... -- Fduch M. Pravking - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Re: Unprintable characters in the password
Yasser Ahmed Hosny <[EMAIL PROTECTED]> wrote: > I am sure of the secret key between the NAS and the Freeradius are the > same. Even I've tried to use NTRadping test utility to test the Radius > server, but still same results. Then the server isn't doing the right thing on your 64-bit platform. Try the latest CVS snapshot. It has a *lot* of fixes over 0.8.1. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
RE: rlm_sql escapes coma
> From: EUZENOT hubert > Sent: Friday, 25 July 2003 12:51 AM > Radius version 0.8.1.x , 0.9.0 ( I haven't made test on previous version. > When using the attribute's value containing a coma, rlm_sql escapes the > coma in a strange =2C within the String . 0x2c is the ASCII code for a comma. :-) > This looks like a bug, doesn't it ? It's not a bug, it's a feature. If you're curious, have a look at the archives of the freeradius-devel list, where this (and a possible change) were being discussed last weekend (or so). -- = Paul "TBBle" Hampson Bubblesworth Pty Ltd (ABN: 51 095 284 361) [EMAIL PROTECTED] This is a one line proof...if we start sufficiently far to the left. -- Cambridge University Math Department - Random signature generator 3.0 by Paul "TBBle" Hampson = - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Unprintable characters in the password
Dear All, I'm working with Freeradius ver 0.8.1 and I've compiled it on 64-bit architecture on Sun Solaris 8. While trying to test the RADIUS server with the radclient program (compiled on 64-bit), it worked fine, but while to test the Radius server with an older compiled version of Radclient (32-bit), it gives me the following error: WARNING: Unprintable characters in the password. ? Double-check the shared secret on the server and the NAS! I am sure of the secret key between the NAS and the Freeradius are the same. Even I've tried to use NTRadping test utility to test the Radius server, but still same results. Does this mean that I need to change my entire NAS servers to send a 64-bit request or something similar? I have almost 60 NAS servers in my life setup with different brands, which means that I cannot do that? Appreciate your help, it is urgent. Regards --- Yasser Ahmed Hosny - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html