Re: RSA security server token authetication
Probably I didn't phrase my question right earlier. As we now know that Freeradius server can act as a middle man to the authentication from the rsa security server, has some one implied this scenario before. If you have done so, how would I set it up in clients file after enabling the proxy server setup? Thank you all for all your helpful input. Choudary. [EMAIL PROTECTED] wrote: Send Freeradius-Users mailing list submissions to [EMAIL PROTECTED] To subscribe or unsubscribe via the World Wide Web, visit http://lists.cistron.nl/mailman/listinfo/freeradius-users or, via email, send a message with subject or body 'help' to [EMAIL PROTECTED] You can reach the person managing the list at [EMAIL PROTECTED] When replying, please edit your Subject line so it is more specific than "Re: Contents of Freeradius-Users digest..." Today's Topics: 1. Re: RSA security server token authentication (" Today's Topics: 1. Re: RSA security server token authentication ([EMAIL PROTECTED]) 2. Oracle database failover (Sally Fetouh) 3. Re: Auth-type=Accept (Simon White) 4. Check Users File (Norbert Wegener) 5. Radiusd Problems (Srinivasa Rao Mannava) 6. Re: Auth-type=Accept (leaobicalho) 7. Re:RSA security server token authentication (leaobicalho) 8. Re: Regexp in huntgroups file (Alexander M. Pravking) 9. ?? (giorgio) 10. bind to ldap server only (no search) (David De Maeyer) 11. Re: bind to ldap server only (no search) (Kostas Kalevras) 12. control (or garbage) characters in username (Alexis C. Villalon) --__--__-- Message: 1 To: [EMAIL PROTECTED] Subject: Re: RSA security server token authentication From: [EMAIL PROTECTED] Date: Wed, 22 Jan 2003 00:16:13 -0600 Reply-To: [EMAIL PROTECTED] Actually, that you _can_ do. I personally detest the radius server that is built into ACE and refuse to use it in any manner, either as the target of a proxy or as the direct client target. But there's no reason why you _couldn't_ do exactly what you describe with FR and and an ACE server. Vincent Giovannone Network Infrastructure Group Information Services Division Rush - Presbyterian St. Luke's Medical Center "So for the IT Manager Role, you want someone who's absolute crap, looks reasonable on paper, and won't cause too much trouble. ... Well I don't have any MCSEs on my books at the moment, but I could call around."-- Simon Travaglia Choudary Asad Mumtaz [EMAIL PROTECTED] Sent by: [EMAIL PROTECTED] 01/21/03 09:35 PM Please respond to freeradius-users To: [EMAIL PROTECTED] cc: Subject:Re: RSA security server token authentication Hi Vincent and Alan, Thank you very much for your quick response. I was under the impression that by turning on the proxy requests feature, it could send requests to the rsa security server. As freeradius doesn't has this feature, does someone has another free solution to the problem :). Thank you. Choudary. --__--__-- Message: 2 Date: Wed, 22 Jan 2003 11:21:42 +0400 From: Sally Fetouh [EMAIL PROTECTED] Subject: Oracle database failover To: [EMAIL PROTECTED] Reply-To: [EMAIL PROTECTED] Hi, We're currently using an Oracle database with freeradius. We had a concern with database failover and redundancy issues. One issue was if the database was down freeradius should be directed to another one - bearing in mind that freeradius and the database are on different machines. This was done succesfully through the sql.conf file and is working fine. The other issue we had was if the network connection between the freeradius server machine and the database machine is down, freeradius should still be redirected to an alternative database. Has anyone found a way of doing this, again through freeradius configuration files? thanks in advance, Sally Fetouh --__--__-- Message: 3 Date: Wed, 22 Jan 2003 09:21:51 + From: Simon White [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject: Re: Auth-type=Accept Reply-To: [EMAIL PROTECTED] 21-Jan-03 at 16:57, leaobicalho ([EMAIL PROTECTED]) wrote : When I use Auth-type=Accept, i dont need say password, authentic only by login. But always radius client send `login` in format STRING and not encrypted. I think that Password are encypted. Then, How i authentic only by Password? Read up about possible authentication methods that your NAS supports, and work out which one will encrypt passwords. If you authenticate only by password, how do you track users?
RSA security server token authentication
Hi All, Does freeradius support token authentication from rsa security server? Your help will be greatly appreciated. Thank you. Choudary. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Re: RSA security server token authentication
Hi Vincent and Alan, Thank you very much for your quick response. I was under the impression that by turning on the proxy requests feature, it could send requests to the rsa security server. As freeradius doesn't has this feature, does someone has another free solution to the problem :). Thank you. Choudary. [EMAIL PROTECTED] wrote: Send Freeradius-Users mailing list submissions to [EMAIL PROTECTED] To subscribe or unsubscribe via the World Wide Web, visit http://lists.cistron.nl/mailman/listinfo/freeradius-users or, via email, send a message with subject or body 'help' to [EMAIL PROTECTED] You can reach the person managing the list at [EMAIL PROTECTED] When replying, please edit your Subject line so it is more specific than "Re: Contents of Freeradius-Users digest..." Today's Topics: 1. Re: Compile freeradius on RH8 (Amiri ( IranData.com )) 2. Re: FreeRADIUS under Cygwin (Amiri ( IranData.com )) 3. Re: FreeRADIUS under Cygwin (Simon White) 4. Re: proxy cancelled (Alan DeKok) 5. Auth-type=Accept (leaobicalho) 6. open auth (Duane Barnes) 7. Re: Dynamic Ipaddress using rlm_ippool (Norbert Wegener) 8. Re: open auth (Robert Canary) 9. Re: open auth (Alan DeKok) 10. =?iso-8859-1?Q?CURSOS_FORMACI=D3N_INFORM=C1TICA_ESF?= (Formacion ESF) 11. RE: open auth (Duane Barnes) 12. Re: open auth (Alan DeKok) 13. Re: Dynamic Ipaddress using rlm_ippool (Kostas Kalevras) 14. RSA security server token authentication (Choudary Asad Mumtaz) 15. Re: RSA security server token authentication ([EMAIL PROTECTED]) 16. Re: RSA security server token authentication (Alan DeKok) --__--__-- Message: 1 Date: Tue, 21 Jan 2003 09:04:56 -0800 (PST) From: "Amiri \( IranData.com \)" [EMAIL PROTECTED] Subject: Re: Compile freeradius on RH8 To: [EMAIL PROTECTED] Reply-To: [EMAIL PROTECTED] RedHat 8.0 does not work well with Dialup_admin too. ( RedHat 8 has Apache 2 ) I ported the radius server to RedHat 8 via a rpm package that I had mad in a redhat7.2 box. I have found a bug on making rpm package in freeradius 8.1. The paths in spec file seems to not been updated for the .1 of 0.8.1. If you make the tar.gz file your self by removing the .1, every thing works fine. Regard MAK IranData --- Joo_S [EMAIL PROTECTED] wrote: Hi, I'm trying to compile FreeRadius 0.8.1 on a clean Red Hat 8 Install but it seems to be some problems. First, it returns an error related with DBM. I changed the line RLM_LIBS on the file src/modules/rlm_dbm/Makefile to RLM_LIBS= -lgdbm ant it worked. After that I needed Postgresql-devel package. But now I get this error --- gcc -g -O2 -D_REENTRANT -D_POSIX_PTHREAD_SEMANTICS -Wall -D_GNU_SOURCE -DNDEBUG -I../include -c radiusd.c radiusd.c:103: parse error before "RADIUSD_VERSION" --- I'm compiling with gcc version 3.2 20020903 (Red Hat Linux 8.0 3.2-7) I'm waiting you help tips. Thanks In Advance, Joao Sa - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html __ Do you Yahoo!? Yahoo! Mail Plus - Powerful. Affordable. Sign up now. http://mailplus.yahoo.com --__--__-- Message: 2 Date: Tue, 21 Jan 2003 09:07:49 -0800 (PST) From: "Amiri \( IranData.com \)" [EMAIL PROTECTED] Subject: Re: FreeRADIUS under Cygwin To: [EMAIL PROTECTED] Reply-To: [EMAIL PROTECTED] Does any one know how is the performance of the cygwin version of freeradius? Does it work well? MAK IranData --- Chris Parker [EMAIL PROTECTED] wrote: At 04:44 PM 1/21/2003 +0300, 3APA3A wrote: Dear leaobicalho, Last time I've tried I was able to complile FreeRADIUS with minor patches (already included in latest releases, so it should compile OK), but I was not able to run it due to DLL things. You can try to compile it static. If you configure it with --disable-shared it should work for you. For grins I built it under cygwin on a win2k box here: [(OSMIUM) ~/radiusd/src/main ]$ uname -a CYGWIN_NT-5.0 OSMIUM 1.3.6(0.47/3/2) 2001-12-08 17:02 i686 unknown [(OSMIUM) ~/radiusd/src/main ]$ ./radiusd -v lt-radiusd.exe: FreeRADIUS Version 0.9-pre, for host i686-pc-cygwin, built on Jan 9 2003 at 10:51:13 -Chris -- \\\|||/// \ StarNet Inc. \ Chris Parker \ ~ ~ / \ WX *is* Wireless!\ Director, Engineering | @ @ |\ http://www.starnetwx.net \ (847) 963-0116 oOo---(_)---oOo--\-- \ Wholesale Internet Services - http://www.megapop.net - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html __ Do you Yahoo!? Yahoo! Mail Plus - Powerful. Affordable. Sign up now. http://mailplus.yahoo.com --__--__-- Message: 3 Date: Tue, 21 Jan 2003 17:12:02 + From: Simon White [EMAIL