RE: Only the first Vendor specific attribute is sent
Title: Nachricht You have to add subsequent attribute of the same id with "+=" . like: Vendor-Specific = " mysubattr_category1:mysubattr1=myvalue1", Vendor-Specific += " mysubattrcategory1:mysubattr2=myvalue2", Vendor-Specific += " mysubattrcategory2:mysubattr3=myvalue3" Burkhard -Original Message-From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Assi AbramovitzSent: Monday, October 13, 2003 2:52 PMTo: '[EMAIL PROTECTED]'Subject: Only the first Vendor specific attribute is sent I am trying to use freeradius 0.9.1 which I have downloaded today. I am using a users file with many users. Most of them have vendor-specific attribute, which belong to us and we simply want to get them as they are (we don't need the server to chop them up, nor do we care about using an alias for them) Here is an example (somewhat hidden, but that's all I can show) of a user: username Auth-Type = Local, Password == "password" Service-Type = Framed, Framed-Protocol = PPP, Filter-Id = "out permit 10.0.1.249 255.255.255.255", Vendor-Specific = " mysubattr_category1:mysubattr1=myvalue1", Vendor-Specific = " mysubattrcategory1:mysubattr2=myvalue2", Vendor-Specific = " mysubattrcategory2:mysubattr3=myvalue3" The problem is that the radius server stops reading the user's definition after the first vendor specific attribute line. So it sends to the client only this part: username Auth-Type = Local, Password == "password" Service-Type = Framed, Framed-Protocol = PPP, Filter-Id = "out permit 10.0.1.249 255.255.255.255", Vendor-Specific = " mysubattr_category1:mysubattr1=myvalue1" The debug mode log shows no warnings or errors. Does anyone know why it's happening? Or how to solve it? Thanks, Assi mailto:[EMAIL PROTECTED]
RE: Only the first Vendor specific attribute is sent
Title: Nachricht See the changes log and the manual. It should have ever been like that but since 0.8.1 the operators really work as expected. Thanks to Alan. Burkhard -Original Message-From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Assi AbramovitzSent: Monday, October 13, 2003 3:50 PMTo: '[EMAIL PROTECTED]'Subject: RE: Only the first Vendor specific attribute is sent Good answer, man! It works. Now let's get greedy... Is there a way to disable the need for this "+=" mechanism? How come I never had to add += on version 0.7.1? You see, now I might have to edit a huge users file... Thanks for the answer, anyway, Assi. -Original Message-From: Burkhard Weeber [mailto:[EMAIL PROTECTED]Sent: Monday, October 13, 2003 3:39 PMTo: [EMAIL PROTECTED]Subject: RE: Only the first Vendor specific attribute is sent You have to add subsequent attribute of the same id with "+=" . like: Vendor-Specific = " mysubattr_category1:mysubattr1=myvalue1", Vendor-Specific += " mysubattrcategory1:mysubattr2=myvalue2", Vendor-Specific += " mysubattrcategory2:mysubattr3=myvalue3" Burkhard -Original Message-From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Assi AbramovitzSent: Monday, October 13, 2003 2:52 PMTo: '[EMAIL PROTECTED]'Subject: Only the first Vendor specific attribute is sent I am trying to use freeradius 0.9.1 which I have downloaded today. I am using a users file with many users. Most of them have vendor-specific attribute, which belong to us and we simply want to get them as they are (we don't need the server to chop them up, nor do we care about using an alias for them) Here is an example (somewhat hidden, but that's all I can show) of a user: username Auth-Type = Local, Password == "password" Service-Type = Framed, Framed-Protocol = PPP, Filter-Id = "out permit 10.0.1.249 255.255.255.255", Vendor-Specific = " mysubattr_category1:mysubattr1=myvalue1", Vendor-Specific = " mysubattrcategory1:mysubattr2=myvalue2", Vendor-Specific = " mysubattrcategory2:mysubattr3=myvalue3" The problem is that the radius server stops reading the user's definition after the first vendor specific attribute line. So it sends to the client only this part: username Auth-Type = Local, Password == "password" Service-Type = Framed, Framed-Protocol = PPP, Filter-Id = "out permit 10.0.1.249 255.255.255.255", Vendor-Specific = " mysubattr_category1:mysubattr1=myvalue1" The debug mode log shows no warnings or errors. Does anyone know why it's happening? Or how to solve it? Thanks, Assi mailto:[EMAIL PROTECTED]
RE: vs static route download on Cisco AS53xx
Try using += instead of =. There may be an RTFM from Alan. HiH Burkhard Weeber viastore systems GmbH P/O Box 300668 D-70446 Stuttgart Tel: +49-711-9818-0 Email: [EMAIL PROTECTED] Disclaimer: The opinions expressed herein are my personal points of view and do not represent those of my employer. Windows95: win-doz-nin-te-fiv n. 32 bit extensions and a graphical shell for a 16 bit patch to an 8 bit operating system originally coded for a 4 bit microprocessor, written by a 2 bit company, that can't stand 1 bit of competition. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Arne Larsen Sent: Friday, August 01, 2003 10:23 AM To: [EMAIL PROTECTED] Subject: vs static route download on Cisco AS53xx Hi. Is there someone that can help me ??. I'm trying to get the router to fetch is route's from the radius-server. Whatever I'm doing I end up with only one route on each request. Here is the last thing I tried. abdigtest-1 Auth-type := Local, User-Password == cisco, Service-Type = Outbound-User Cisco-Avpair = ip:route=170.170.0.16 255.255.255.255 Dialer1 220 name pel, Cisco-Avpair = ip:route=170.170.0.10 255.255.255.255 Dialer1 220 name fl02, abdigtest-2 Auth-type:=Local, User-Password == cisco, Service-Type = Outbound-User, Cisco-Avpair = ip:route=170.170.0.10 255.255.255.255 Dialer1 220 name fl02, Cisco-AVPair = ip:route=170.170.236.57 255.255.255.255 Dialer1 220 name fl06, Cisco-AVPair = ip:route=170.170.174.249 255.255.255.255 Dialer1 220 name fl04, Cisco-AVPair = ip:route=170.170.39.94 255.255.255.255 Dialer1 220 name fl00, Cisco-AVPair = ip:route=170.170.20.21 255.255.255.255 Dialer1 220 name fl005100, Regards Arne Larsen Tele Denmark [EMAIL PROTECTED] / [EMAIL PROTECTED] - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
RE: RedHat 9 revisited
Not so weird. Freeradius doesn't like shared libraries and threads on AIX either. Burkhard -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of [EMAIL PROTECTED] Sent: Wednesday, July 02, 2003 2:17 PM To: [EMAIL PROTECTED] Subject: Re: RedHat 9 revisited hi, on a suspicion and a whim, i configured FreeRADIUS with --disable-shared as a FLAG option (added to ./configure command line for others info) and it works!!! so, RedHat 9 shared libraries and FreeRADIUS arent happy with each other... weird alan - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
RE: Tickets arrived
Depends on the SpamAssasin version you use. That messages was identified as spam on my installation, see below: This mail is probably spam. The original message has been attached along with this report, so you can recognize or block similar unwanted mail in future. See http://spamassassin.org/tag/ for more details. Content preview: Make your balls and penĂs larger and get more satisfaction. URI:http://www.cheaponnet1.com/mka/m2c.php?man=bnkj4s Learn about it here URI:http://WWW.cheAPONnET1.coM/%76r.%67if URI:http://Www.cHEapONNET1.COm/%62%65%6b/ Remove me from the list [...] Content analysis details: (9.40 points, 5 required) HTML_50_60 (0.1 points) BODY: Message is 50% to 60% HTML BAYES_30 (-1.6 points) BODY: Bayesian classifier says spam probability is 30 to 40% [score: 0.3843] HTML_IMAGE_ONLY_02 (1.5 points) BODY: HTML has images with 0-200 bytes of words HTTP_EXCESSIVE_ESCAPES (2.1 points) URI: Completely unnecessary %-escapes inside a URL RCVD_IN_NJABL (1.2 points) RBL: Received via a relay in dnsbl.njabl.org [RBL check: found 95.76.154.211.dnsbl.njabl.org.,] [type: 127.0.0.9] RCVD_IN_RFCI (1.2 points) RBL: Received via a relay in ipwhois.rfc-ignorant.org [RBL check: found 95.76.154.211.ipwhois.rfc-ignorant.org., type: 127.0.0.6] RCVD_IN_OSIRUSOFT_COM (0.5 points) RBL: Received via a relay in relays.osirusoft.com [RBL check: found 95.76.154.211.relays.osirusoft.com., type: 127.0.0.9] RCVD_IN_DSBL (4.3 points) RBL: Received via a relay in list.dsbl.org [RBL check: found 95.76.154.211.list.dsbl.org.] MIME_HTML_ONLY (0.1 points) Message only has text/html MIME parts The original message did not contain plain text, and may be unsafe to open with some email clients; in particular, it may contain a virus, or confirm that your address can receive spam. If you wish to view it, it may be safer to save it to a file and open it with an editor. Kind regards Burkhard Weeber viastore systems GmbH P/O Box 300668 D-70446 Stuttgart Tel: +49-711-9818-0 Email: [EMAIL PROTECTED] Disclaimer: The opinions expressed herein are my personal points of view and do not represent those of my employer. Windows95: win-doz-nin-te-fiv n. 32 bit extensions and a graphical shell for a 16 bit patch to an 8 bit operating system originally coded for a 4 bit microprocessor, written by a 2 bit company, that can't stand 1 bit of competition. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Miquel van Smoorenburg Sent: Tuesday, July 01, 2003 11:01 AM To: [EMAIL PROTECTED] Subject: Re: Tickets arrived In article [EMAIL PROTECTED], Alex Chen [EMAIL PROTECTED] wrote: Can some remove this guy from the list? This kind of advertisement, actually any kind of advertisement, does not belong to a technical discussion group. This is a shameless misuse of goodwill public trust. This is just spam, and it wasn't send by someone on the list. Usually spamassassin catches most spam right away, but it doesn't appear to reckognize these more satisfaction spams, I get 10-20 *a day*. If freeradius-users is now on this spammer's list, it will become a problem. Sigh. I *really* do not want to make the list closed (subscriber-only). Let's see if upgrading spamassassin (again) helps .. Mike. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
RE: User attributes
Using Ascend gear here is what works at our site: Service-Type = Framed-User, Framed-Protocol = PPP, Ascend-Bridge = Bridge-Yes, Ascend-DHCP-Reply = DHCP-Reply-Yes, Ascend-DHCP-Pool-Number = 3, Ascend-Assign-IP-Pool = 3, Framed-Netmask = 255.255.255.255, Ascend-Link-Compression = Link-Comp-Stac, Framed-Compression = Van-Jacobsen-TCP-IP, Ascend-Client-Primary-DNS = gate.way.ip.addr, Ascend-Client-Assign-DNS = DNS-Assign-Yes, Framed-Routing = None, Ascend-Route-IP = Route-IP-Yes, Ascend-MTU = 576, Ascend-Idle-Limit = 240, Ascend-Preempt-Limit = 35, Ascend-Metric = 2 HiH Burkhard Weeber viastore systems GmbH P/O Box 300668 D-70446 Stuttgart Tel: +49-711-9818-0 Email: [EMAIL PROTECTED] Disclaimer: The opinions expressed herein are my personal points of view and do not represent those of my employer. Windows95: win-doz-nin-te-fiv n. 32 bit extensions and a graphical shell for a 16 bit patch to an 8 bit operating system originally coded for a 4 bit microprocessor, written by a 2 bit company, that can't stand 1 bit of competition. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Mauro Sent: Tuesday, June 03, 2003 5:15 PM To: [EMAIL PROTECTED] Subject: User attributes Having this basic user configuration linus Auth-Type = Local, Password = 'password' Service-Type = Framed-User, Framed-Protocol = PPP, Framed-IP-Address = 192.168.28.152, Framed-IP-Netmask = 255.255.255.255, Framed-Routing = Broadcast-Listen, Framed-MTU = 1500, Framed-Compression = Van-Jacobson-TCP-IP I'd like to know how is possible to pass it the dns value as weel as the gateway to let the remote user let into the local lan. Cheers - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html