RE: Only the first Vendor specific attribute is sent

2003-10-13 Thread Burkhard Weeber
Title: Nachricht



You have to add 
subsequent attribute of the same id with "+=" .

like:
 Vendor-Specific = " 
mysubattr_category1:mysubattr1=myvalue1", 
 Vendor-Specific += " 
mysubattrcategory1:mysubattr2=myvalue2", 
 Vendor-Specific += " 
mysubattrcategory2:mysubattr3=myvalue3" 


Burkhard

  
  -Original Message-From: 
  [EMAIL PROTECTED] 
  [mailto:[EMAIL PROTECTED] On Behalf Of Assi 
  AbramovitzSent: Monday, October 13, 2003 2:52 PMTo: 
  '[EMAIL PROTECTED]'Subject: Only the first Vendor 
  specific attribute is sent
  I am trying to use freeradius 0.9.1 which I have 
  downloaded today. I am using a users file 
  with many users. Most of them have vendor-specific attribute, which 
  belong to us and we simply want to get them 
  as they are (we don't need the server to chop them up, nor do we care about using an alias for them) Here is an example (somewhat hidden, but that's all I can 
  show) of a user: 
  username Auth-Type = Local, Password == 
  "password"  Service-Type = Framed, 
   Framed-Protocol = PPP, 
   Filter-Id = "out permit 10.0.1.249 255.255.255.255", 
   Vendor-Specific = " 
  mysubattr_category1:mysubattr1=myvalue1", 
   Vendor-Specific = " 
  mysubattrcategory1:mysubattr2=myvalue2", 
   Vendor-Specific = " 
  mysubattrcategory2:mysubattr3=myvalue3" 
  The problem is that the radius server stops reading 
  the user's definition after the first vendor specific attribute 
  line.
  So it sends to the client only this part: 
  
  username Auth-Type = Local, Password == 
  "password"  Service-Type = Framed, 
   Framed-Protocol = PPP, 
   Filter-Id = "out permit 10.0.1.249 255.255.255.255", 
   Vendor-Specific = " 
  mysubattr_category1:mysubattr1=myvalue1" The debug mode log shows no warnings or errors. Does anyone know why it's happening? Or how to solve 
  it? Thanks, Assi mailto:[EMAIL PROTECTED] 
  


RE: Only the first Vendor specific attribute is sent

2003-10-13 Thread Burkhard Weeber
Title: Nachricht



See 
the changes log and the manual.
It 
should have ever been like that but since 0.8.1 the operators really work as 
expected.

Thanks 
to Alan.

Burkhard

  
  -Original Message-From: 
  [EMAIL PROTECTED] 
  [mailto:[EMAIL PROTECTED] On Behalf Of Assi 
  AbramovitzSent: Monday, October 13, 2003 3:50 PMTo: 
  '[EMAIL PROTECTED]'Subject: RE: Only the first 
  Vendor specific attribute is sent
  Good 
  answer, man!
  It 
  works.
  Now 
  let's get greedy...
  Is 
  there a way to disable the need for this "+=" mechanism?
  How 
  come I never had to add += on version 0.7.1?
  You 
  see, now I might have to edit a huge users file...
  
  Thanks for the answer, anyway,
  Assi.
  
-Original Message-From: Burkhard Weeber 
[mailto:[EMAIL PROTECTED]Sent: Monday, October 13, 2003 3:39 
PMTo: [EMAIL PROTECTED]Subject: RE: 
Only the first Vendor specific attribute is sent
You have to 
add subsequent attribute of the same id with "+=" .

like:
 Vendor-Specific = " 
mysubattr_category1:mysubattr1=myvalue1", 
 Vendor-Specific += " 
mysubattrcategory1:mysubattr2=myvalue2", 
 Vendor-Specific += " 
mysubattrcategory2:mysubattr3=myvalue3" 


Burkhard

  
  -Original Message-From: 
  [EMAIL PROTECTED] 
  [mailto:[EMAIL PROTECTED] On Behalf Of Assi 
  AbramovitzSent: Monday, October 13, 2003 2:52 PMTo: 
  '[EMAIL PROTECTED]'Subject: Only the first 
  Vendor specific attribute is sent
  I am trying to use freeradius 0.9.1 which I 
  have downloaded today. I am using a 
  users file with many users. Most of them have vendor-specific attribute, 
  which belong to us and we simply want 
  to get them as they are (we don't need the server to chop them up, 
  nor do we care about using an alias for 
  them) Here is an example (somewhat 
  hidden, but that's all I can show) of a user: 
  username Auth-Type = Local, 
  Password == "password" 
   Service-Type = Framed, 
   Framed-Protocol = PPP, 
   Filter-Id = "out permit 10.0.1.249 255.255.255.255", 
   Vendor-Specific = " 
  mysubattr_category1:mysubattr1=myvalue1", 
   Vendor-Specific = " 
  mysubattrcategory1:mysubattr2=myvalue2", 
   Vendor-Specific = " 
  mysubattrcategory2:mysubattr3=myvalue3" 
  The problem is that the radius server stops 
  reading the user's definition after the first vendor specific attribute 
  line.
  So it sends to the client only this 
  part: 
  username Auth-Type = Local, 
  Password == "password" 
   Service-Type = Framed, 
   Framed-Protocol = PPP, 
   Filter-Id = "out permit 10.0.1.249 255.255.255.255", 
   Vendor-Specific = " 
  mysubattr_category1:mysubattr1=myvalue1" The debug mode log shows no warnings or errors. Does anyone know why it's happening? Or how to solve 
  it? Thanks, Assi mailto:[EMAIL PROTECTED] 
  


RE: vs static route download on Cisco AS53xx

2003-08-01 Thread Burkhard Weeber
Try using += instead of =.
There may be an RTFM from Alan.

HiH

Burkhard Weeber
viastore systems GmbH
P/O Box 300668
D-70446 Stuttgart
Tel: +49-711-9818-0
Email: [EMAIL PROTECTED]

Disclaimer:
The opinions expressed herein are my personal points of view and do not
represent those of my employer.

Windows95: win-doz-nin-te-fiv n.
32 bit extensions and a graphical shell for a 16 bit patch to an 8 bit
operating system originally coded for a 4 bit microprocessor, written by
a 2 bit company, that can't stand 1 bit of competition.


-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Arne Larsen
Sent: Friday, August 01, 2003 10:23 AM
To: [EMAIL PROTECTED]
Subject: vs static route download on Cisco AS53xx


Hi.

Is there someone that can help me ??. I'm trying to get the router to fetch
is route's from the radius-server.
Whatever I'm doing I end up with only one route on each request.
Here is the last thing I tried.

abdigtest-1 Auth-type := Local, User-Password == cisco, Service-Type =
Outbound-User
Cisco-Avpair = ip:route=170.170.0.16 255.255.255.255 Dialer1 220
name pel,
Cisco-Avpair = ip:route=170.170.0.10 255.255.255.255 Dialer1 220
name fl02,


abdigtest-2 Auth-type:=Local, User-Password == cisco, Service-Type =
Outbound-User,
Cisco-Avpair = ip:route=170.170.0.10 255.255.255.255 Dialer1 220
name fl02,
Cisco-AVPair = ip:route=170.170.236.57 255.255.255.255 Dialer1 220
name fl06,
Cisco-AVPair = ip:route=170.170.174.249 255.255.255.255 Dialer1 220
name fl04,
Cisco-AVPair = ip:route=170.170.39.94 255.255.255.255 Dialer1 220
name fl00,
Cisco-AVPair = ip:route=170.170.20.21 255.255.255.255 Dialer1 220
name fl005100,

Regards
Arne Larsen
Tele Denmark
[EMAIL PROTECTED] / [EMAIL PROTECTED]


-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


RE: RedHat 9 revisited

2003-07-02 Thread Burkhard Weeber
Not so weird.
Freeradius doesn't like shared libraries and threads on AIX either.

Burkhard

 -Original Message-
 From: [EMAIL PROTECTED] 
 [mailto:[EMAIL PROTECTED] On Behalf Of 
 [EMAIL PROTECTED]
 Sent: Wednesday, July 02, 2003 2:17 PM
 To: [EMAIL PROTECTED]
 Subject: Re: RedHat 9 revisited
 
 
 hi,
 
 on a suspicion and a whim, i configured FreeRADIUS with 
 --disable-shared
 as a FLAG option (added to ./configure command line for others info)
 and it works!!!  so, RedHat 9 shared libraries and FreeRADIUS 
 arent happy with each other...
 weird
 
 alan
 
 
 - 
 List info/subscribe/unsubscribe? See 
 http://www.freeradius.org/list/users.html
 


- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


RE: Tickets arrived

2003-07-01 Thread Burkhard Weeber
Depends on the SpamAssasin version you use.
That messages was identified as spam on my installation, see below:

This mail is probably spam.  The original message has been attached
along with this report, so you can recognize or block similar unwanted
mail in future.  See http://spamassassin.org/tag/ for more details.

Content preview:  Make your balls and penĂ­s larger and get more
  satisfaction. URI:http://www.cheaponnet1.com/mka/m2c.php?man=bnkj4s
  Learn about it here URI:http://WWW.cheAPONnET1.coM/%76r.%67if
  URI:http://Www.cHEapONNET1.COm/%62%65%6b/ Remove me from the list [...] 

Content analysis details:   (9.40 points, 5 required)
HTML_50_60 (0.1 points)  BODY: Message is 50% to 60% HTML
BAYES_30   (-1.6 points) BODY: Bayesian classifier says spam
probability is 30 to 40%
   [score: 0.3843]
HTML_IMAGE_ONLY_02 (1.5 points)  BODY: HTML has images with 0-200 bytes of
words
HTTP_EXCESSIVE_ESCAPES (2.1 points)  URI: Completely unnecessary %-escapes
inside a URL
RCVD_IN_NJABL  (1.2 points)  RBL: Received via a relay in
dnsbl.njabl.org
   [RBL check: found 95.76.154.211.dnsbl.njabl.org.,]
   [type: 127.0.0.9]
RCVD_IN_RFCI   (1.2 points)  RBL: Received via a relay in
ipwhois.rfc-ignorant.org
   [RBL check: found
95.76.154.211.ipwhois.rfc-ignorant.org., type: 127.0.0.6]
RCVD_IN_OSIRUSOFT_COM (0.5 points)  RBL: Received via a relay in
relays.osirusoft.com
   [RBL check: found 95.76.154.211.relays.osirusoft.com.,
type: 127.0.0.9]
RCVD_IN_DSBL   (4.3 points)  RBL: Received via a relay in list.dsbl.org
   [RBL check: found 95.76.154.211.list.dsbl.org.]
MIME_HTML_ONLY (0.1 points)  Message only has text/html MIME parts

The original message did not contain plain text, and may be unsafe to
open with some email clients; in particular, it may contain a virus,
or confirm that your address can receive spam.  If you wish to view
it, it may be safer to save it to a file and open it with an editor.

Kind regards

Burkhard Weeber
viastore systems GmbH
P/O Box 300668
D-70446 Stuttgart
Tel: +49-711-9818-0
Email: [EMAIL PROTECTED]

Disclaimer:
The opinions expressed herein are my personal points of view and do not
represent those of my employer.

Windows95: win-doz-nin-te-fiv n.
32 bit extensions and a graphical shell for a 16 bit patch to an 8 bit
operating system originally coded for a 4 bit microprocessor, written by
a 2 bit company, that can't stand 1 bit of competition.



 -Original Message-
 From: [EMAIL PROTECTED] 
 [mailto:[EMAIL PROTECTED] On Behalf Of 
 Miquel van Smoorenburg
 Sent: Tuesday, July 01, 2003 11:01 AM
 To: [EMAIL PROTECTED]
 Subject: Re: Tickets arrived
 
 
 In article [EMAIL PROTECTED],
 Alex Chen [EMAIL PROTECTED] wrote:
 Can some remove this guy from the list?  This kind of advertisement,
 actually any kind of advertisement, does not
 belong to a technical discussion group.  This is a shameless 
 misuse of
 goodwill public trust.
 
 This is just spam, and it wasn't send by someone on the list.
 Usually spamassassin catches most spam right away, but it
 doesn't appear to reckognize these  more satisfaction spams,
 I get 10-20 *a day*.
 
 If freeradius-users is now on this spammer's list, it will
 become a problem. Sigh. I *really* do not want to make the list
 closed (subscriber-only).
 
 Let's see if upgrading spamassassin (again) helps ..
 
 Mike.
 
 
 - 
 List info/subscribe/unsubscribe? See 
 http://www.freeradius.org/list/users.html
 


-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


RE: User attributes

2003-06-04 Thread Burkhard Weeber
Using Ascend gear here is what works at our site:

Service-Type = Framed-User,
Framed-Protocol = PPP,
Ascend-Bridge = Bridge-Yes,
Ascend-DHCP-Reply = DHCP-Reply-Yes,
Ascend-DHCP-Pool-Number = 3,
Ascend-Assign-IP-Pool = 3,
Framed-Netmask = 255.255.255.255,
Ascend-Link-Compression = Link-Comp-Stac,
Framed-Compression = Van-Jacobsen-TCP-IP,
Ascend-Client-Primary-DNS = gate.way.ip.addr,
Ascend-Client-Assign-DNS = DNS-Assign-Yes,
Framed-Routing = None,
Ascend-Route-IP = Route-IP-Yes,
Ascend-MTU = 576,
Ascend-Idle-Limit = 240,
Ascend-Preempt-Limit = 35,
Ascend-Metric = 2

HiH

Burkhard Weeber
viastore systems GmbH
P/O Box 300668
D-70446 Stuttgart
Tel: +49-711-9818-0
Email: [EMAIL PROTECTED]

Disclaimer:
The opinions expressed herein are my personal points of view and do not
represent those of my employer.

Windows95: win-doz-nin-te-fiv n.
32 bit extensions and a graphical shell for a 16 bit patch to an 8 bit
operating system originally coded for a 4 bit microprocessor, written by
a 2 bit company, that can't stand 1 bit of competition.



 -Original Message-
 From: [EMAIL PROTECTED] 
 [mailto:[EMAIL PROTECTED] On Behalf Of Mauro
 Sent: Tuesday, June 03, 2003 5:15 PM
 To: [EMAIL PROTECTED]
 Subject: User attributes
 
 
 Having this basic user configuration
 linus Auth-Type = Local, Password = 'password'
 Service-Type = Framed-User,
 Framed-Protocol = PPP,
 Framed-IP-Address = 192.168.28.152,
 Framed-IP-Netmask = 255.255.255.255,
 Framed-Routing = Broadcast-Listen,
 Framed-MTU = 1500,
 Framed-Compression = Van-Jacobson-TCP-IP
 I'd like to know how is possible to pass it the dns value as 
 weel as the
 gateway to let the remote user let into the local lan.
 Cheers
 
 
 - 
 List info/subscribe/unsubscribe? See 
 http://www.freeradius.org/list/users.html
 


- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html