Seminars not to miss in July and August 2003

2003-07-26 Thread Settec
Dear Clients,

Due to a technical problem with our web hosting, which allows only those connecting 
from the free number of starnet in Egypt 07770666 to view our web site, and due to the 
shortage of time, we are announcing in text mode the following three coming up 
seminars in July and August of 2003:

Seminar:Environmental Register (How to do it, The components, the 
measurements) as per requirements of law number 4 for the year 1994 
السجل البيئي (مكوناته ، قياساته وكيفية إعداده ) في ضوء اللائحة التنفيذية 
لقانون البيئة رقم 4 لسنة 1994 وطرق تقييم الإنبعاثات الغازية من المصادر الثابتة
Date:   July 29 - 30, 2003
City:   Alexandria
Venue:  Plaza Hotel
Web site:   http://www.settecltd.com/en/2003/jul2930.htm
http://www.settecltd.com/ar/2003/jul2930.htm


Seminar:The Egyptian Customs Law number 66 for the year 1963 and the latest 
amendments 
قانون الجمارك رقم 66 لسنة 1963 وفقا لاحدث التعديلات
Date:   July 29 - 30, 2003
City:   Cairo
Venue:  Meridien Heliopolis
Web site:   http://www.settecltd.com/en/2003/jul2930d.htm
http://www.settecltd.com/ar/2003/jul2930d.htm


Seminar:New Unified Labor Law # 12 for the year 2003 
قانون العمل الموحد الجديد رقم 12 لسنة 2003
Date:   August 18 - 19, 2003
City:   Cairo
Venue:  Meridien Heliopolis
Web site:   http://www.settecltd.com/en/2003/aug1819.htm
http://www.settecltd.com/ar/2003/jul2930d.htm

For full information on the seminars, prices, and available promotions, please contact 
Mr. Essam Mahmoud at the below numbers.



SETTEC

Address: Agooza Police Tower, Nawal St., Agooza, Giza, Egypt

Tel./Fax: +2 (02) 3387527 - 3362040 - 7614343
Mobile: +2 (012) 3228395
US Fax: +1 772 365 0405  
e-mail: [EMAIL PROTECTED]  
web page: www.settecltd.com

===

To unsubscribe from Settec Newsletter send a blank message to [EMAIL PROTECTED] with 
subject "Unsubscribe"
Your request will be performed within two business day 

===
 









-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


RE: Experimental modules

2003-07-26 Thread Alex Chen
The config file in src/modules/rlm_sqlcounter/configure does not
have the execution permission bit set in my system.

Is it set in the CVS system?

> -Original Message-
> From: [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED] Behalf Of Alex Chen
> Sent: Saturday, July 26, 2003 11:50 PM
> To: FreeRADIUS Users (E-mail)
> Subject: Experimental modules
> 
> 
> I was trying to use the rlm_sqlcounter module and followed the
> document 'rlm_sqlcounter' in the doc subdirectory.  I used the
> flag --with-experimental-modules but the result was quite surprising.
> 
> If I used 'configure' without any flags before running 'make' and
> 'make install', everything builds and works but the module 
> 'rlm_sqlcounter'
> was not built at all.
> 
> If I used 'configure --with-experimental-modules' before 
> running 'make' and
> 'make install', the /usr/local/lib  and /usr/local/bin
> contains only the following files:
> 
> [EMAIL PROTECTED] local]# ls /usr/local/lib
> libradius-0.9.0.la  libradius-0.9.0.so  libradius.a  libradius.la
> libradius.so
> 
> [EMAIL PROTECTED] local]# ls /usr/local/bin
> radclient  radlast  radrelay  radtest  radwho  radzap
> 
> In normal configuration, the /usr/local/bin contains
> radclient  radrelay  radwho  rlm_dbm_cat smbencrypt
> radlastradtest   radzap  rlm_dbm_parser
> 
> and /usr/local/lib contains not only libradius* libraries but 
> a lot of rlm_*
> dynamic
> modules.
> 
> 
> It seems like a bug in the configuration file?
> 
> 
> - 
> List info/subscribe/unsubscribe? See 
http://www.freeradius.org/list/users.html

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Experimental modules

2003-07-26 Thread Alex Chen
I was trying to use the rlm_sqlcounter module and followed the
document 'rlm_sqlcounter' in the doc subdirectory.  I used the
flag --with-experimental-modules but the result was quite surprising.

If I used 'configure' without any flags before running 'make' and
'make install', everything builds and works but the module 'rlm_sqlcounter'
was not built at all.

If I used 'configure --with-experimental-modules' before running 'make' and
'make install', the /usr/local/lib  and /usr/local/bin
contains only the following files:

[EMAIL PROTECTED] local]# ls /usr/local/lib
libradius-0.9.0.la  libradius-0.9.0.so  libradius.a  libradius.la
libradius.so

[EMAIL PROTECTED] local]# ls /usr/local/bin
radclient  radlast  radrelay  radtest  radwho  radzap

In normal configuration, the /usr/local/bin contains
radclient  radrelay  radwho  rlm_dbm_cat smbencrypt
radlastradtest   radzap  rlm_dbm_parser

and /usr/local/lib contains not only libradius* libraries but a lot of rlm_*
dynamic
modules.


It seems like a bug in the configuration file?


- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Reply message from the counter module

2003-07-26 Thread Alex Chen
I finally get the counter module to work but there is a small question
about the reply message issued by the counter when the accumulated time
exceeds
the value of the 'check-name' attribute.  I set the 'reset' to 'never' and
when the limit, say, 60 seconds, is reached, the reply message says:

 Reply-Message = "Your maximum never usage time has been reached"

It is not a problem  but does not sound normal.

May I suggest, in the next release, that you make the reply message a
user configurable item in the counter module, e.g.

counter {
filename = ${raddbdir}/counterdb
key = User-Name
count-attribute = Acct-Session-Time
reset = never
reply-message = "Your maximum access time has been reached"

}



- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


RE: counter module

2003-07-26 Thread Alex Chen
Thanks for the information.  As long as it works, I do not care
whether it is my problem or a bug that was fixed.

> -Original Message-
> From: [EMAIL PROTECTED] 
> [mailto:[EMAIL PROTECTED] Behalf Of 
> Alexander M. Pravking
> Sent: Friday, July 25, 2003 11:56 PM
> To: [EMAIL PROTECTED]
> Subject: Re: counter module
> 
> 
> On Fri, Jul 25, 2003 at 10:20:13PM -0700, Alex Chen wrote:
> > The counter module as a configuration element
> > 'check-name'.  In the example shown in radiusd.conf
> > it is set to Max-Daily-Session.  The comment indicates
> > that this 'Max-Daily-Session' can be specified in
> > DEFAULT stanza.
> > 
> > I am pretty sure when I tried to set
> > DEFAULT Max-Daily-Session := 20
> > in 'users', the radiusd complained that it
> > could not find such attribute and bailed out. 
> 
> Did you see something like 'rlm_files: matched DEFAULT at 
> NNN' in debug
> output? If not, your DEFAULT entry did not match.
> 
> > That's the reason I tried to use 'Session-Timeout'.
> > But when I tested it again with freeradius 0.9, the server too it.
> > I do not know if it was my typo previously or something changed
> > in the server.
> 
> What version was it? The 0.9 release of FreeRADIUS has a lot of bug
> fixes from 0.8.1.
> 
> > Anyway, I cannot find an attribute name called 'Max-Daily-Session'
> > in the dictionary.  How does the server know this?
> > I thought only an attribute can be specified in the 'users' file,
> > or can we just use anything we want?
> > 
> > Other than 'Max-Daily-Session' what else can be used?
> 
> This attribute is not in dictionary, it's dynamic. You can 
> use whatever
> you want attribute name in check-name, the counter module 
> will register
> this attribute during initialization.
> 
> 
> -- 
> Fduch M. Pravking
> 
> - 
> List info/subscribe/unsubscribe? See 
http://www.freeradius.org/list/users.html

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


ip_clear_pool: Script to remove unused ip address in rlm_ippool

2003-07-26 Thread Gustavo Lozano
Hello All.

Here is a little script you can use to remove unused ip address from
session and index files of ip pools.

The script basically performs a radwho and a ippool -a , then compares
and eliminates the differences.

We do asume you have ippool installed and also asume radwho is working.

I hope this helps.
this script can be added to the main freeradius distribution.

As new things appear this script will be modified and probably traslated
to C.


Best Regards

Gustavo

-- 
Gustavo A. Lozano Noldata Corporation
[EMAIL PROTECTED]   Calle 46 No. 40-19
CTO   Bogota D.C. Colombia
Noldata Corporation   http://noldata.com

I know not with what weapons World War III will be fought,
   but World War IV will be fought with sticks and stones.
   Albert Einstein


#!/bin/bash
# ip_clear_pool 0.9
# Bash Script to clear ippool entries in db files.
# Purpose: Free IP addresses not being used by clients but reported not available by rlm_ippool
#
# This program/script can be run from a CRONTAB, in that way you will not waste time clearing things.
# Author: Gustavo A. Lozano <[EMAIL PROTECTED]> Noldata Corp.
# 
# Released under the terms of the GNU License
#
#  
# Configurable Stuff:
# radiusdprefix: Where you installed the FreeRadius Server.

radiusdprefix=/opt/noldata/radiusd

# tmpdir: place where you can/want place temporary files
tmpdir=/tmp

#iptool: your iptool executable
iptool='/opt/noldata/radiusd/bin/iptool'

# ipsession: rlm_ippool session file
ipsession=/opt/noldata/radiusd/etc/raddb/db.pool.session

# ipindex: rlm_ippool index file
ipindex=/opt/noldata/radiusd/etc/raddb/db.pool.index

# END OF CONFIGURABLE STUFF



$radiusprefix/bin/radwho | cut -f12 -d" "| sort > $tmpdir/who
$iptool -a $ipsession $ipindex | sort > $tmpdir/ipt

for ipaddress in `sdiff  $tmpdir/who $tmpdir/ipt | grep ">" | cut -f2 -d">"`
do
  $iptool -r $ipsession $ipindex $ipaddress
  echo "Cleared $ipaddress"
done




Re: Logging - how to specify what to log?

2003-07-26 Thread Alan DeKok
James Green <[EMAIL PROTECTED]> wrote:
> I've been asked as a matter of urgency to ensure that the logs we get 
> from RADIUS include the CLI (Caller-ID), that is, the telephone number 
> of the person making the call. This should prove they called us.
...
> I can see a slew of attributes being logged to the detail-* files, 
> except this attribute.
> 
> Maybe FreeRADIUS doesn't get this attribute?

  Exactly.  Make the NAS send the attribute, and FreeRADIUS will log
it.

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Logging - how to specify what to log?

2003-07-26 Thread James Green
Hi there,

I've been asked as a matter of urgency to ensure that the logs we get 
from RADIUS include the CLI (Caller-ID), that is, the telephone number 
of the person making the call. This should prove they called us.

I believe I need to log the %{Calling-Station-Id} attribute.

Problem: I have no idea what file to edit.

I can see a slew of attributes being logged to the detail-* files, 
except this attribute.

Maybe FreeRADIUS doesn't get this attribute? It's a Cisco AS5350 talking 
to it, with a couple of E1 ISDN-30s plugged in. I can't find much about 
this on Cisco's website or the freeradius mailing list. Indeed, apart 
from a mention as part of a list of attributes, the Oreilly RADIUS book 
doesn't cover it.

Help! :-)

Thanks a lot.

James Green



- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


freeradius and billing tool

2003-07-26 Thread Sergey Ledenev
Hi! I'm want to use freeradius as my small billing system and i have few
questions. for example i write some trigger that modify user cash on
update radacct table. And for example i have sqlcounter. It's counter
check that user cash >0. Does it system will work? How often doing update
radacct table and check sqlcounter? Pls. advise me something... (i'm don't
using radius before :-)

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


radius_xlat or parsing bug?

2003-07-26 Thread Alexander M. Pravking
Let a user entry in raddb/users
DEFAULT Auth-Type := Accept
Reply-Message := `%{sql:SELECT 'before %{User-Name:-default value} after'}`

Debug output:
Sat Jul 26 22:43:12 2003 : Debug: Thread 1 handling request 0, (1 handled so far)
User-Name = "[EMAIL PROTECTED]"
User-Password = "*"
NAS-IP-Address = 255.255.255.255
NAS-Port = 1
Sat Jul 26 22:43:12 2003 : Debug: modcall: entering group authorize
Sat Jul 26 22:43:12 2003 : Debug:   modcall[authorize]: module "preprocess" returns ok
Sat Jul 26 22:43:12 2003 : Debug: users: Matched DEFAULT at 220
Sat Jul 26 22:43:12 2003 : Debug: radius_xlat: Running registered xlat function of 
module sql for string 'SELECT 'before %{User-Name'

It looks like ":-" was assosiated with the outer brace instead of inner.

Not sure I'm able to make a patch...


-- 
Fduch M. Pravking

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re: Unprintable characters in the password

2003-07-26 Thread Alan DeKok
Yasser Ahmed Hosny <[EMAIL PROTECTED]> wrote:
> I am sure of the secret key between the NAS and the Freeradius are the
> same. Even I've tried to use NTRadping test utility to test the Radius
> server, but still same results.

  Then the server isn't doing the right thing on your 64-bit
platform.  Try the latest CVS snapshot.  It has a *lot* of fixes over
0.8.1.

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


RE: rlm_sql escapes coma

2003-07-26 Thread Paul Hampson
> From: EUZENOT hubert
> Sent: Friday, 25 July 2003 12:51 AM

> Radius version 0.8.1.x , 0.9.0  ( I  haven't  made test on previous version.
> When  using the attribute's value containing a coma, rlm_sql escapes the 
> coma in  a strange =2C within the String .

0x2c is the ASCII code for a comma. :-)

> This looks like a bug, doesn't it  ?

It's not a bug, it's a feature. If you're curious, have a look at the
archives of the freeradius-devel list, where this (and a possible change)
were being discussed last weekend (or so).

--
=
Paul "TBBle" Hampson
Bubblesworth Pty Ltd (ABN: 51 095 284 361)
[EMAIL PROTECTED]

This is a one line proof...if we start
sufficiently far to the left.
-- Cambridge University Math Department
-
Random signature generator 3.0 by Paul "TBBle" Hampson
=


- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Unprintable characters in the password

2003-07-26 Thread Yasser Ahmed Hosny

Dear All,
I'm working with Freeradius ver 0.8.1 and I've compiled it on 64-bit
architecture on Sun Solaris 8. While trying to test the RADIUS server
with the radclient program (compiled on 64-bit), it worked fine, but
while to test the Radius server with an older compiled version of
Radclient (32-bit), it gives me the following error:

WARNING: Unprintable characters in the password. ?  Double-check the
shared secret on the server and the NAS!

I am sure of the secret key between the NAS and the Freeradius are the
same. Even I've tried to use NTRadping test utility to test the Radius
server, but still same results.

Does this mean that I need to change my entire NAS servers to send a
64-bit request or something similar? I have almost 60 NAS servers in my
life setup with different brands, which means that I cannot do that?

Appreciate your help, it is urgent.

Regards

---
Yasser Ahmed Hosny


- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html