Re: Session-Timeout Monitoring from db.daily

2012-05-08 Thread Alan DeKok
yagizozen wrote:
> All the information of the users that connect and dc, is stored in the
> db.daily file I suppose. But I can not open the file with notepad and see
> which user had how many seconds of active sessions.

  That's not how computers work.  Do you open MP3s in Notepad to play them?

> I configured a user to
> use 1 hour per day. The user used 20 min of his 1 hour limit. Now where can
> I see that users remaining time to spent during that day?? I am not using
> regular accounting tables of the FR. I suppose that information is located
> that db.daily file but I can not see inside of it. 
> Can you help me?

  See the "rad_counter.pl" file which is distributed with the server.

  Alan DeKok.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re: Accessing radwho information or accounting request from rlm_perl

2012-05-08 Thread Alan DeKok
eluna wrote:
> As you can see the NAS-IP-Address attributes are different, and I need a
> method to get the value of the accounting request because when I need to for
> example deauthenticate a user, i need to know what access point is is
> actually associated to. Any solutions or hints are very much appreciated. 

  Use a database to store the data.  Find a common key, and look it up
in the DB.

  Alan DeKok.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Accessing attribute in control list

2012-05-08 Thread Mike

> 
> Hi guys,
> 
> I am setting an attribute in the auth section of my config . I am able to 
> access the attribute in the same section and preform unlang operations on 
> said attribute, however, i am unable to access the same from the pre-proxy 
> section of my config. The attribute just expands as blank.
> 
> Is this a limitation of the software or is there a way I can access this 
> attribute set in one section from another?
> 
> Small background, originally i wanted to use ldap-group for group checking 
> which turns out not to be possible due to the clients ldap not being 
> configured correctly for groups, they are unwilling to change. So i want to 
> be able to check against a different attribute set manually.
> 
> An example would be appreciated if it is possible.  
> 
> 
> 
> 
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Accessing radwho information or accounting request from rlm_perl

2012-05-08 Thread eluna
I need to get the NAS-IP-Address attribute from the Accounting request and
not from the Access request because because I am working with a WDS
environment. These are the access and accounting requests:

rad_recv: Access-Request packet from host 10.33.0.33 port 1645, id=36,
length=211
User-Name = "user"
Framed-MTU = 1400
Called-Station-Id = "00-19-56-B0-90-18"
Calling-Station-Id = "00-1B-77-89-00-15"
Cisco-AVPair = "ssid=SECURE"
Service-Type = Login-User
Message-Authenticator = 0x04664bdb23657848c1dfe846b6e162f6
EAP-Message =
0x020c002b190017030100208aa24d178243e49e8315219bac17f793f2b933eec5b
NAS-Port-Type = Wireless-802.11
NAS-Port = 10677114
NAS-Port-Id = "10677114"
State = 0xec6d109ee561091c536a9f8f173c1470
NAS-IP-Address = 10.33.0.33


rad_recv: Accounting-Request packet from host 10.33.11.33 port 1646, id=43,
length=231
Acct-Session-Id = "33C4"
Called-Station-Id = "00-16-47-93-68-E2"
Calling-Station-Id = "00-1B-77-89-00-15"
Cisco-AVPair = "ssid=SECURE"
Cisco-AVPair = "vlan-id=123"
Cisco-AVPair = "nas-location=unspecified"
User-Name = "user"
Cisco-AVPair = "connect-progress=Call Up"
Acct-Status-Type = Start
NAS-Port-Type = Wireless-802.11
Cisco-NAS-Port = "13454"
NAS-Port = 13454
Service-Type = Framed-User
NAS-IP-Address = 10.33.11.33
Acct-Delay-Time = 0

As you can see the NAS-IP-Address attributes are different, and I need a
method to get the value of the accounting request because when I need to for
example deauthenticate a user, i need to know what access point is is
actually associated to. Any solutions or hints are very much appreciated. 

--
View this message in context: 
http://freeradius.1045715.n5.nabble.com/Accessing-radwho-information-or-accounting-request-from-rlm-perl-tp5695393.html
Sent from the FreeRadius - User mailing list archive at Nabble.com.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re: mySQL user wifi authentication error on freeradius

2012-05-08 Thread Tobias Hachmer

On 08.05.2012 16:09, xadow20 wrote:

Hi! tanks for reply.

Here is the debug.


Please stop posting your posts three times!!

Regards,
Tobias Hachmer
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re: mySQL user wifi authentication error on freeradius

2012-05-08 Thread Tobias Hachmer

On 08.05.2012 16:06, xadow20 wrote:

Hi! tanks for reply.

Here is the debug.


I took it for granted to send the whole debug output including the 
radius request and processing and not only the freeradius instantiating 
output.

My fault ;-)

Please start radiusd -X, or freeradius -X , then start an 
authentication test with radtest, radclient or your real nas with the 
user you defined in sql.

Afterwards post the whole debug output.

Regards,
Tobias Hachmer
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re: mySQL user wifi authentication error on freeradius

2012-05-08 Thread xadow20
Hi! tanks for reply.

Here is the debug.

FreeRADIUS Version 2.1.8, for host i486-pc-linux-gnu, built on Jan  5 2010
at 02:49:11
Copyright (C) 1999-2009 The FreeRADIUS server project and contributors. 
There is NO warranty; not even for MERCHANTABILITY or FITNESS FOR A 
PARTICULAR PURPOSE. 
You may redistribute copies of FreeRADIUS under the terms of the 
GNU General Public License v2. 
Starting - reading configuration files ...
including configuration file /etc/freeradius/radiusd.conf
including configuration file /etc/freeradius/proxy.conf
including configuration file /etc/freeradius/clients.conf
including files in directory /etc/freeradius/modules/
including configuration file /etc/freeradius/modules/linelog
including configuration file /etc/freeradius/modules/acct_unique
including configuration file /etc/freeradius/modules/ntlm_auth
including configuration file /etc/freeradius/modules/logintime
including configuration file /etc/freeradius/modules/detail
including configuration file /etc/freeradius/modules/mac2ip
including configuration file /etc/freeradius/modules/smbpasswd
including configuration file /etc/freeradius/modules/expiration
including configuration file /etc/freeradius/modules/chap
including configuration file /etc/freeradius/modules/etc_group
including configuration file /etc/freeradius/modules/wimax
including configuration file /etc/freeradius/modules/preprocess
including configuration file /etc/freeradius/modules/mschap
including configuration file /etc/freeradius/modules/realm
including configuration file /etc/freeradius/modules/attr_rewrite
including configuration file /etc/freeradius/modules/cui
including configuration file /etc/freeradius/modules/sradutmp
including configuration file /etc/freeradius/modules/expr
including configuration file /etc/freeradius/modules/files
including configuration file /etc/freeradius/modules/inner-eap
including configuration file /etc/freeradius/modules/counter
including configuration file /etc/freeradius/modules/always
including configuration file /etc/freeradius/modules/detail.log
including configuration file /etc/freeradius/modules/detail.example.com
including configuration file /etc/freeradius/modules/digest
including configuration file /etc/freeradius/modules/ldap
including configuration file /etc/freeradius/modules/exec
including configuration file /etc/freeradius/modules/policy
including configuration file /etc/freeradius/modules/radutmp
including configuration file /etc/freeradius/modules/pam
including configuration file /etc/freeradius/modules/pap
including configuration file /etc/freeradius/modules/smsotp
including configuration file /etc/freeradius/modules/unix
including configuration file /etc/freeradius/modules/krb5
including configuration file
/etc/freeradius/modules/sqlcounter_expire_on_login
including configuration file /etc/freeradius/modules/passwd
including configuration file /etc/freeradius/modules/mac2vlan
including configuration file /etc/freeradius/modules/attr_filter
including configuration file /etc/freeradius/modules/checkval
including configuration file /etc/freeradius/modules/sql_log
including configuration file /etc/freeradius/modules/ippool
including configuration file /etc/freeradius/modules/echo
including configuration file /etc/freeradius/modules/otp
including configuration file /etc/freeradius/modules/perl
including configuration file /etc/freeradius/eap.conf
including configuration file /etc/freeradius/sql.conf
including configuration file /etc/freeradius/sql/mysql/dialup.conf
including configuration file /etc/freeradius/policy.conf
including files in directory /etc/freeradius/sites-enabled/
including configuration file /etc/freeradius/sites-enabled/default.backup
including configuration file /etc/freeradius/sites-enabled/default
including configuration file /etc/freeradius/sites-enabled/inner-tunnel
including configuration file /etc/freeradius/sites-enabled/default.semsql
main {
user = "freerad"
group = "freerad"
allow_core_dumps = no
}
including dictionary file /etc/freeradius/dictionary
main {
prefix = "/usr"
localstatedir = "/var"
logdir = "/var/log/freeradius"
libdir = "/usr/lib/freeradius"
radacctdir = "/var/log/freeradius/radacct"
hostname_lookups = no
max_request_time = 30
cleanup_delay = 5
max_requests = 1024
pidfile = "/var/run/freeradius/freeradius.pid"
checkrad = "/usr/sbin/checkrad"
debug_level = 0
proxy_requests = yes
 log {
stripped_names = no
auth = no
auth_badpass = no
auth_goodpass = no
 }
 security {
max_attributes = 200
reject_delay = 1
status_server = yes
 }
}
radiusd:  Loading Realms and Home Servers 
 proxy server {
retry_delay = 5
retry_count = 3
default_fallback = no
dead_time = 120
wake_all_if_all_dead = no
 }
 home_server localhost {
ipaddr = 127.0.0.1
 

Re: mySQL user wifi authentication error on freeradius

2012-05-08 Thread xadow20
Hi! tanks for reply.

Here is the debug.

FreeRADIUS Version 2.1.8, for host i486-pc-linux-gnu, built on Jan  5 2010
at 02:49:11
Copyright (C) 1999-2009 The FreeRADIUS server project and contributors. 
There is NO warranty; not even for MERCHANTABILITY or FITNESS FOR A 
PARTICULAR PURPOSE. 
You may redistribute copies of FreeRADIUS under the terms of the 
GNU General Public License v2. 
Starting - reading configuration files ...
including configuration file /etc/freeradius/radiusd.conf
including configuration file /etc/freeradius/proxy.conf
including configuration file /etc/freeradius/clients.conf
including files in directory /etc/freeradius/modules/
including configuration file /etc/freeradius/modules/linelog
including configuration file /etc/freeradius/modules/acct_unique
including configuration file /etc/freeradius/modules/ntlm_auth
including configuration file /etc/freeradius/modules/logintime
including configuration file /etc/freeradius/modules/detail
including configuration file /etc/freeradius/modules/mac2ip
including configuration file /etc/freeradius/modules/smbpasswd
including configuration file /etc/freeradius/modules/expiration
including configuration file /etc/freeradius/modules/chap
including configuration file /etc/freeradius/modules/etc_group
including configuration file /etc/freeradius/modules/wimax
including configuration file /etc/freeradius/modules/preprocess
including configuration file /etc/freeradius/modules/mschap
including configuration file /etc/freeradius/modules/realm
including configuration file /etc/freeradius/modules/attr_rewrite
including configuration file /etc/freeradius/modules/cui
including configuration file /etc/freeradius/modules/sradutmp
including configuration file /etc/freeradius/modules/expr
including configuration file /etc/freeradius/modules/files
including configuration file /etc/freeradius/modules/inner-eap
including configuration file /etc/freeradius/modules/counter
including configuration file /etc/freeradius/modules/always
including configuration file /etc/freeradius/modules/detail.log
including configuration file /etc/freeradius/modules/detail.example.com
including configuration file /etc/freeradius/modules/digest
including configuration file /etc/freeradius/modules/ldap
including configuration file /etc/freeradius/modules/exec
including configuration file /etc/freeradius/modules/policy
including configuration file /etc/freeradius/modules/radutmp
including configuration file /etc/freeradius/modules/pam
including configuration file /etc/freeradius/modules/pap
including configuration file /etc/freeradius/modules/smsotp
including configuration file /etc/freeradius/modules/unix
including configuration file /etc/freeradius/modules/krb5
including configuration file
/etc/freeradius/modules/sqlcounter_expire_on_login
including configuration file /etc/freeradius/modules/passwd
including configuration file /etc/freeradius/modules/mac2vlan
including configuration file /etc/freeradius/modules/attr_filter
including configuration file /etc/freeradius/modules/checkval
including configuration file /etc/freeradius/modules/sql_log
including configuration file /etc/freeradius/modules/ippool
including configuration file /etc/freeradius/modules/echo
including configuration file /etc/freeradius/modules/otp
including configuration file /etc/freeradius/modules/perl
including configuration file /etc/freeradius/eap.conf
including configuration file /etc/freeradius/sql.conf
including configuration file /etc/freeradius/sql/mysql/dialup.conf
including configuration file /etc/freeradius/policy.conf
including files in directory /etc/freeradius/sites-enabled/
including configuration file /etc/freeradius/sites-enabled/default.backup
including configuration file /etc/freeradius/sites-enabled/default
including configuration file /etc/freeradius/sites-enabled/inner-tunnel
including configuration file /etc/freeradius/sites-enabled/default.semsql
main {
user = "freerad"
group = "freerad"
allow_core_dumps = no
}
including dictionary file /etc/freeradius/dictionary
main {
prefix = "/usr"
localstatedir = "/var"
logdir = "/var/log/freeradius"
libdir = "/usr/lib/freeradius"
radacctdir = "/var/log/freeradius/radacct"
hostname_lookups = no
max_request_time = 30
cleanup_delay = 5
max_requests = 1024
pidfile = "/var/run/freeradius/freeradius.pid"
checkrad = "/usr/sbin/checkrad"
debug_level = 0
proxy_requests = yes
 log {
stripped_names = no
auth = no
auth_badpass = no
auth_goodpass = no
 }
 security {
max_attributes = 200
reject_delay = 1
status_server = yes
 }
}
radiusd:  Loading Realms and Home Servers 
 proxy server {
retry_delay = 5
retry_count = 3
default_fallback = no
dead_time = 120
wake_all_if_all_dead = no
 }
 home_server localhost {
ipaddr = 127.0.0.1
 

Re: mySQL user wifi authentication error on freeradius

2012-05-08 Thread xadow20
Hi! tanks for reply.

Here is the debug.

FreeRADIUS Version 2.1.8, for host i486-pc-linux-gnu, built on Jan  5 2010
at 02:49:11
Copyright (C) 1999-2009 The FreeRADIUS server project and contributors. 
There is NO warranty; not even for MERCHANTABILITY or FITNESS FOR A 
PARTICULAR PURPOSE. 
You may redistribute copies of FreeRADIUS under the terms of the 
GNU General Public License v2. 
Starting - reading configuration files ...
including configuration file /etc/freeradius/radiusd.conf
including configuration file /etc/freeradius/proxy.conf
including configuration file /etc/freeradius/clients.conf
including files in directory /etc/freeradius/modules/
including configuration file /etc/freeradius/modules/linelog
including configuration file /etc/freeradius/modules/acct_unique
including configuration file /etc/freeradius/modules/ntlm_auth
including configuration file /etc/freeradius/modules/logintime
including configuration file /etc/freeradius/modules/detail
including configuration file /etc/freeradius/modules/mac2ip
including configuration file /etc/freeradius/modules/smbpasswd
including configuration file /etc/freeradius/modules/expiration
including configuration file /etc/freeradius/modules/chap
including configuration file /etc/freeradius/modules/etc_group
including configuration file /etc/freeradius/modules/wimax
including configuration file /etc/freeradius/modules/preprocess
including configuration file /etc/freeradius/modules/mschap
including configuration file /etc/freeradius/modules/realm
including configuration file /etc/freeradius/modules/attr_rewrite
including configuration file /etc/freeradius/modules/cui
including configuration file /etc/freeradius/modules/sradutmp
including configuration file /etc/freeradius/modules/expr
including configuration file /etc/freeradius/modules/files
including configuration file /etc/freeradius/modules/inner-eap
including configuration file /etc/freeradius/modules/counter
including configuration file /etc/freeradius/modules/always
including configuration file /etc/freeradius/modules/detail.log
including configuration file /etc/freeradius/modules/detail.example.com
including configuration file /etc/freeradius/modules/digest
including configuration file /etc/freeradius/modules/ldap
including configuration file /etc/freeradius/modules/exec
including configuration file /etc/freeradius/modules/policy
including configuration file /etc/freeradius/modules/radutmp
including configuration file /etc/freeradius/modules/pam
including configuration file /etc/freeradius/modules/pap
including configuration file /etc/freeradius/modules/smsotp
including configuration file /etc/freeradius/modules/unix
including configuration file /etc/freeradius/modules/krb5
including configuration file
/etc/freeradius/modules/sqlcounter_expire_on_login
including configuration file /etc/freeradius/modules/passwd
including configuration file /etc/freeradius/modules/mac2vlan
including configuration file /etc/freeradius/modules/attr_filter
including configuration file /etc/freeradius/modules/checkval
including configuration file /etc/freeradius/modules/sql_log
including configuration file /etc/freeradius/modules/ippool
including configuration file /etc/freeradius/modules/echo
including configuration file /etc/freeradius/modules/otp
including configuration file /etc/freeradius/modules/perl
including configuration file /etc/freeradius/eap.conf
including configuration file /etc/freeradius/sql.conf
including configuration file /etc/freeradius/sql/mysql/dialup.conf
including configuration file /etc/freeradius/policy.conf
including files in directory /etc/freeradius/sites-enabled/
including configuration file /etc/freeradius/sites-enabled/default.backup
including configuration file /etc/freeradius/sites-enabled/default
including configuration file /etc/freeradius/sites-enabled/inner-tunnel
including configuration file /etc/freeradius/sites-enabled/default.semsql
main {
user = "freerad"
group = "freerad"
allow_core_dumps = no
}
including dictionary file /etc/freeradius/dictionary
main {
prefix = "/usr"
localstatedir = "/var"
logdir = "/var/log/freeradius"
libdir = "/usr/lib/freeradius"
radacctdir = "/var/log/freeradius/radacct"
hostname_lookups = no
max_request_time = 30
cleanup_delay = 5
max_requests = 1024
pidfile = "/var/run/freeradius/freeradius.pid"
checkrad = "/usr/sbin/checkrad"
debug_level = 0
proxy_requests = yes
 log {
stripped_names = no
auth = no
auth_badpass = no
auth_goodpass = no
 }
 security {
max_attributes = 200
reject_delay = 1
status_server = yes
 }
}
radiusd:  Loading Realms and Home Servers 
 proxy server {
retry_delay = 5
retry_count = 3
default_fallback = no
dead_time = 120
wake_all_if_all_dead = no
 }
 home_server localhost {
ipaddr = 127.0.0.1
 

Re: logintime attribute - most specific time

2012-05-08 Thread alan buxey
Hi,

> But there is a problem, my Radius server doesn't look at "login-time"
> attribute."Login-Time" is enabled in Authorization section also in the
> instantiate section. 

needs to be a radcheck item, not a radreply item

alan
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


RE: Translate characters

2012-05-08 Thread Xbert_badstuber
Now everything works just fine! I guess i had some missunderstanding with
REGEX. After a long time reading it finaly works precisely as i want.

Thanks for your answers!

Regards your friend,
Badstuber Stubblebine.

--
View this message in context: 
http://freeradius.1045715.n5.nabble.com/Translate-characters-tp5685645p5694151.html
Sent from the FreeRadius - User mailing list archive at Nabble.com.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re: logintime attribute - most specific time

2012-05-08 Thread jomajo
Hello Alan.

Few weeks ago simple authentication with "login-time" attributes was
working. 

Now I wan't to use just few tables in my MySQL radius database.

These tables:

http://freeradius.1045715.n5.nabble.com/file/n5693637/1.png 
http://freeradius.1045715.n5.nabble.com/file/n5693637/2.png 

But there is a problem, my Radius server doesn't look at "login-time"
attribute."Login-Time" is enabled in Authorization section also in the
instantiate section. 

User authenticates successfully at any time!

++[checkval] returns notfound ?
++[expiration] returns noop ?
++[logintime] returns noop  ?

Could you please take a look ?  

Freeradius - X : http://www.text-upload.com/read.php?id=362100&c=5808807

Freeradius -X , when user tries to log in:
http://www.text-upload.com/read.php?id=362102&c=9548423

--
View this message in context: 
http://freeradius.1045715.n5.nabble.com/logintime-attribute-most-specific-time-tp5645721p5693637.html
Sent from the FreeRadius - User mailing list archive at Nabble.com.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


mySQL user wifi authentication error on freeradius

2012-05-08 Thread xadow20
Hi!

I'm new to freeradius.
My Setup is:
Ubuntu Server 10.04
Freeradius 2.1.8
daloRADIUS 0.9-9

When I try to authenticate on AP wireless with a user on
/etc/freeradius/users it succedd well.
But When I create a user on daloradius it gives the output above, can anyone
tell me what i'm doing wrong? Thanks 


[peap] eaptls_verify returned 7
[peap] Done initial handshake
[peap] eaptls_process returned 7
[peap] EAPTLS_OK
[peap] Session established.  Decoding tunneled attributes.
[peap] Identity - user
[peap] Got tunneled request
EAP-Message = 0x02070008016e736f
server  {
  PEAP: Got tunneled identity of user
  PEAP: Setting default EAP type for tunneled EAP session.
  PEAP: Setting User-Name to user
Sending tunneled request
EAP-Message = 0x02070008016e736f
FreeRADIUS-Proxied-To = 127.0.0.1
User-Name = "user"
server inner-tunnel {
+- entering group authorize {...}
++[chap] returns noop
++[mschap] returns noop
++[unix] returns notfound
[suffix] No '@' in User-Name = "user", looking up realm NULL
[suffix] No such realm "NULL"
++[suffix] returns noop
++[control] returns noop
[eap] EAP packet type response id 7 length 8
[eap] No EAP Start, assuming it's an on-going EAP conversation
++[eap] returns updated
++[files] returns noop
[sql]   expand: %{User-Name} -> u

--
View this message in context: 
http://freeradius.1045715.n5.nabble.com/mySQL-user-wifi-authentication-error-on-freeradius-tp5693631.html
Sent from the FreeRadius - User mailing list archive at Nabble.com.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re: mySQL user wifi authentication error on freeradius

2012-05-08 Thread Tobias Hachmer

On 08.05.2012 13:36, xadow20 wrote:

I'm new to freeradius.
My Setup is:
Ubuntu Server 10.04
Freeradius 2.1.8
daloRADIUS 0.9-9

When I try to authenticate on AP wireless with a user on
/etc/freeradius/users it succedd well.
But When I create a user on daloradius it gives the output above, can 
anyone

tell me what i'm doing wrong? Thanks


First, send the whole radiusd -X output. The relevant sql output is 
missing in your snippet.


Regards,
Tobias Hachmer
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


mySQL user wifi authentication error on freeradius

2012-05-08 Thread xadow20
Hi!

I'm new to freeradius.
My Setup is:
Ubuntu Server 10.04
Freeradius 2.1.8
daloRADIUS 0.9-9

When I try to authenticate on AP wireless with a user on
/etc/freeradius/users it succedd well.
But When I create a user on daloradius it gives the output above, can anyone
tell me what i'm doing wrong? Thanks 


[peap] eaptls_verify returned 7
[peap] Done initial handshake
[peap] eaptls_process returned 7
[peap] EAPTLS_OK
[peap] Session established.  Decoding tunneled attributes.
[peap] Identity - user
[peap] Got tunneled request
EAP-Message = 0x02070008016e736f
server  {
  PEAP: Got tunneled identity of user
  PEAP: Setting default EAP type for tunneled EAP session.
  PEAP: Setting User-Name to user
Sending tunneled request
EAP-Message = 0x02070008016e736f
FreeRADIUS-Proxied-To = 127.0.0.1
User-Name = "user"
server inner-tunnel {
+- entering group authorize {...}
++[chap] returns noop
++[mschap] returns noop
++[unix] returns notfound
[suffix] No '@' in User-Name = "user", looking up realm NULL
[suffix] No such realm "NULL"
++[suffix] returns noop
++[control] returns noop
[eap] EAP packet type response id 7 length 8
[eap] No EAP Start, assuming it's an on-going EAP conversation
++[eap] returns updated
++[files] returns noop
[sql]   expand: %{User-Name} -> u

--
View this message in context: 
http://freeradius.1045715.n5.nabble.com/mySQL-user-wifi-authentication-error-on-freeradius-tp5693432.html
Sent from the FreeRadius - User mailing list archive at Nabble.com.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


mySQL user wifi authentication error on freeradius

2012-05-08 Thread xadow20
Hi!

I'm new to freeradius.
My Setup is:
Ubuntu Server 10.04
Freeradius 2.1.8
daloRADIUS 0.9-9

When I try to authenticate on AP wireless with a user on
/etc/freeradius/users it succedd well.
But When I create a user on daloradius it gives the output above, can anyone
tell me what i'm doing wrong? Thanks 


[peap] eaptls_verify returned 7
[peap] Done initial handshake
[peap] eaptls_process returned 7
[peap] EAPTLS_OK
[peap] Session established.  Decoding tunneled attributes.
[peap] Identity - user
[peap] Got tunneled request
EAP-Message = 0x02070008016e736f
server  {
  PEAP: Got tunneled identity of user
  PEAP: Setting default EAP type for tunneled EAP session.
  PEAP: Setting User-Name to user
Sending tunneled request
EAP-Message = 0x02070008016e736f
FreeRADIUS-Proxied-To = 127.0.0.1
User-Name = "user"
server inner-tunnel {
+- entering group authorize {...}
++[chap] returns noop
++[mschap] returns noop
++[unix] returns notfound
[suffix] No '@' in User-Name = "user", looking up realm NULL
[suffix] No such realm "NULL"
++[suffix] returns noop
++[control] returns noop
[eap] EAP packet type response id 7 length 8
[eap] No EAP Start, assuming it's an on-going EAP conversation
++[eap] returns updated
++[files] returns noop
[sql]   expand: %{User-Name} -> u

--
View this message in context: 
http://freeradius.1045715.n5.nabble.com/mySQL-user-wifi-authentication-error-on-freeradius-tp5693411.html
Sent from the FreeRadius - User mailing list archive at Nabble.com.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


problem about ldap-group attribute without users file

2012-05-08 Thread Mohsen Saeedi

Hi

I read more and more about my problem. but i didn't find any useful answer.

I have freeradius-2.1.10 and i configured it with Active Directory. I 
know about openldap and radius profile and good attributes is exist 
under openldap for radius purpose.


Now i'm able to find ldap-group with rlm_file module and with correct 
ldap module configuration. but i want to move our configuration from 
users to sql. i set everything  on sql. such as nas configuration or 
profile definition. i defined some profile with needed attribute such as 
attribute is suitable for hotspot(coovachilli for example). but i'm not 
able to query ldap-group when i'm using rlm_sql and not rlm_file.


how can i configure radius to get ldap-group query from AD to map AD 
group to sql profile?


I know about unlang too. is it possible to write some unlang query for 
map ldap-group to sql profile?


It's urget for me. please explain everything you know.

I'm waiting for your answer man.

Thanks


-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Session-Timeout Monitoring from db.daily

2012-05-08 Thread yagizozen
Hello guys,

I am using counter module as follows:

counter daily { 
filename = ${raddbdir}/db.daily 
key = User-Name 
count-attribute = Acct-Session-Time 
reset = daily 
counter-name = Daily-Session-Time 
check-name = Max-Daily-Session 
reply-name = Session-Timeout 
cache-size = 5000 
} 

All the information of the users that connect and dc, is stored in the
db.daily file I suppose. But I can not open the file with notepad and see
which user had how many seconds of active sessions. I configured a user to
use 1 hour per day. The user used 20 min of his 1 hour limit. Now where can
I see that users remaining time to spent during that day?? I am not using
regular accounting tables of the FR. I suppose that information is located
that db.daily file but I can not see inside of it. 
Can you help me?

Thank you very much

--
View this message in context: 
http://freeradius.1045715.n5.nabble.com/Session-Timeout-Monitoring-from-db-daily-tp5693089.html
Sent from the FreeRadius - User mailing list archive at Nabble.com.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re: freeraduis LDAP error

2012-05-08 Thread NdK
Il 04/05/2012 09:35, dhanushka ranasinghe ha scritto:

>   User-Name = "dhanush...@wso2.com"
>   User-Password = "dcn05c4-1282"
I hope you realize you've sent your credentials to a public mailing list...

BYtE!
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html