Re: Re: Ip pool doesn't works properly

2005-06-07 Thread Simone Giovanardi
> Hi,
>
>  How can I configure FreeRADIUS to assign IP address dinamically with Ip
>  Pool when there is a successful authentication from Cisco 7200 access
>  server with FreeRADIUS 1.0.0?
>
> Like this it works sending out only 2 ip address...always the same...

Is your Cisco sending a unique nasport/nasip for each client?  Ip pool
uses the nasip/nasport to identify the user.

YES

FROM LOGS SHOWED BELOW, IT SENDS OUT THE SAME TWO ADDRESS AND

DOESN'T KEEP ANYONE ENTRY IN YOUR DATABASE .IPPOOL (VIEWED WITH rlm_ippool_tool 
-a ...)

run radiusd -X and have several users establish a connection.  Post the
output here if you can't decifer it.

rad_recv: Access-Request packet from host 83.216.176.254:21661, id=219, 
length=95
Framed-Protocol = PPP
User-Name = "font0001@"
CHAP-Password = 0x01af73ef6670b0a4a65130cb133a902c2f
NAS-Port-Type = Virtual
NAS-Port = 0
Service-Type = Framed-User
NAS-IP-Address = 83.216.176.254
rad_lowerpair:  User-Name now 'font0001@'
  Processing the authorize section of radiusd.conf
modcall: entering group authorize for request 13
  modcall[authorize]: module "preprocess" returns ok for request 13
radius_xlat:  
'/freerad100/var/log/radius/radacct/83.216.176.254/auth-detail-20050607'
rlm_detail: 
/freerad100/var/log/radius/radacct/%{Client-IP-Address}/auth-detail-%Y%m%d 
expands to /freera
d100/var/log/radius/radacct/83.216.176.254/auth-detail-20050607
  modcall[authorize]: module "auth_log" returns ok for request 13
  rlm_chap: Setting 'Auth-Type := CHAP'
  modcall[authorize]: module "chap" returns ok for request 13
  modcall[authorize]: module "mschap" returns noop for request 13
rlm_realm: No '/' in User-Name = "font0001@", looking up realm NULL
rlm_realm: No such realm "NULL"
  modcall[authorize]: module "IPASS" returns noop for request 13
rlm_realm: Looking up realm "@" for User-Name = "font0001@"
rlm_realm: No such realm "@"
  modcall[authorize]: module "suffix" returns noop for request 13
  rlm_eap: No EAP-Message, not doing EAP
  modcall[authorize]: module "eap" returns noop for request 13
  modcall[authorize]: module "files" returns notfound for request 13
radius_xlat:  'font0001@'
rlm_sql (sql): sql_set_user escaped user --> 'font0001@'
radius_xlat:  'SELECT id,UserName,Attribute,Value,op FROM radcheck WHERE 
Username = '[EMAIL PROTECTED]
m.it' ORDER BY id'
rlm_sql (sql): Reserving sql socket id: 4
radius_xlat:  'SELECT 
radgroupcheck.id,radgroupcheck.GroupName,radgroupcheck.Attribute,radgroupcheck.Valu
e,radgroupcheck.op  FROM radgroupcheck,usergroup WHERE usergroup.Username = 
'font0001@' AN
D usergroup.GroupName = radgroupcheck.GroupName ORDER BY radgroupcheck.id'
radius_xlat:  'SELECT id,UserName,Attribute,Value,op FROM radreply WHERE 
Username = '[EMAIL PROTECTED]
m.it' ORDER BY id'
radius_xlat:  'SELECT 
radgroupreply.id,radgroupreply.GroupName,radgroupreply.Attribute,radgroupreply.Valu
e,radgroupreply.op  FROM radgroupreply,usergroup WHERE usergroup.Username = 
'font0001@' AN
D usergroup.GroupName = radgroupreply.GroupName ORDER BY radgroupreply.id'
rlm_sql (sql): Released sql socket id: 4
  modcall[authorize]: module "sql" returns ok for request 13
modcall: group authorize returns ok for request 13
  rad_check_password:  Found Auth-Type Local
auth: type Local
auth: user supplied CHAP-Password matches local User-Password
Login OK: [font0001@/] (from client Telecom-BRAS1-3 port 0)
  Processing the post-auth section of radiusd.conf
modcall: entering group post-auth for request 13
  modcall[post-auth]: module "main_pool" returns noop for request 13
rlm_ippool: Searching for an entry for nas/port: 83.216.176.254/0
rlm_ippool: Found a stale entry for ip/port: 83.216.178.213/0
rlm_ippool: num: 0
rlm_ippool: Searching for an entry for nas/port: 83.216.176.254/0
rlm_ippool: Allocating ip to nas/port: 83.216.176.254/0
rlm_ippool: num: 1
rlm_ippool: Allocated ip 83.216.178.190 to client on nas 83.216.176.254,port 0
  modcall[post-auth]: module "whsitt_pool" returns ok for request 13
radius_xlat:  
'/freerad100/var/log/radius/radacct/83.216.176.254/reply-detail-20050607'
rlm_detail: 
/freerad100/var/log/radius/radacct/%{Client-IP-Address}/reply-detail-%Y%m%d 
expands to /freer
ad100/var/log/radius/radacct/83.216.176.254/reply-detail-20050607
  modcall[post-auth]: module "reply_log" returns ok for request 13
rlm_sql (sql): Processing sql_postauth
radius_xlat:  'font0001@'
rlm_sql (sql): sql_set_user escaped user --> 'font0001@'
radius_xlat:  'INSERT into radpostauth (id, user, pass, reply, date) values 
('', '[EMAIL PROTECTED]
t', 'Chap-Password', 'Access-Accept', NOW())'
rlm_sql (sql) in sql_postauth: query is INSERT into radpostauth (id, user, 
pass, reply, date) values ('',
 'font0001@', 'Chap-Password', 'Access-Accept', NOW())
rlm_sql (sql): Reserving sql socket id: 3
rlm_sql (sql): Released sql socket id: 3
  modcall[post-auth]: module "sql" returns ok for request 13
modcall: group post-auth returns ok f

Ip pool doesn't works properly

2005-06-06 Thread Simone Giovanardi
Hi,

 How can I configure FreeRADIUS to assign IP address dinamically with Ip Pool 
when there is a 
 successful authentication from Cisco 7200 access server with FreeRADIUS 1.0.0?

This is my ip pool config section on radiusd.conf:

ippool main_pool {
#  range-start,range-stop: The start and end ip
#  addresses for the ip pool
range-start = 83.216.175.129
range-stop = 83.216.175.253
#  netmask: The network mask used for the ip's
netmask = 255.255.255.0
#  cache-size: The gdbm cache size for the db
#  files. Should be equal to the number of ip's
#  available in the ip pool
cache-size = 127
# session-db: The main db file used to allocate ip's to clients
session-db = ${raddbdir}/db-satc.ippool
# ip-index: Helper db index file used in multilink
ip-index = ${raddbdir}/db-satc.ipindex
# override: Will this ippool override a Framed-IP-Address 
already set
override = no
# maximum-timeout: If not zero specifies the maximum time in 
seconds an
# entry may be active. Default: 0
maximum-timeout = 86400
}

Like this it works sending out only 2 ip address...always the same...

Bye

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re: ADSL access server, freeradius and MULTI IP assignement

2005-06-06 Thread Simone Giovanardi
Hi Dario,

I have the same cisco 7200 Access server.

try to set at 255.255.255.255 the framed ipo netmask parameter...
In my configuration works.

I have a question for you:

i've tried to configure ip pool for releasing of dynamic IP range address but 
doesn' work well and i don't understand why it gives out always the same 2 
address in the range that i have configured!!

How have you configured your radiusd.conf file?

Thank a lot
Simon

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


more ippools in the same groups

2004-08-23 Thread Simone Giovanardi
is it possible manage more different small ippools for the same user groups using 
mysql database?

I need this because i want to manage more efficiently the ip (few) avaiable.

Thanks a lot

>  -Messaggio originale-
> Da:   Simone Giovanardi  
> Inviato:  lunedì 23 agosto 2004 12.11
> A:'[EMAIL PROTECTED]'
> Oggetto:  manage more ip pools with mysql tables
> 
> Thanks to doris.
> 
> How can i modify sql tables to enable ippools function with only connection to mysql 
> db and radiusd.conf file??
> 
> Thanks a lot
> 
>  -----Messaggio originale-
> Da:   Simone Giovanardi  
> Inviato:  venerdì 20 agosto 2004 16.21
> A:'[EMAIL PROTECTED]'
> Oggetto:  manage more ip pools
> 
> Is it possible manage more thn one ippool in radiusd.conf??
> 
> I' ve tried to make this but doesn't work properly
> 
> Is there an example of radiusd.conf and users file to consulting?
> 
> Thanks a lot
> 

-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


manage more ip pools with mysql tables

2004-08-23 Thread Simone Giovanardi
Thanks to doris.

How can i modify sql tables to enable ippools function with only connection to mysql 
db and radiusd.conf file??

Thanks a lot

>  -Messaggio originale-
> Da:   Simone Giovanardi  
> Inviato:  venerdì 20 agosto 2004 16.21
> A:'[EMAIL PROTECTED]'
> Oggetto:  manage more ip pools
> 
> Is it possible manage more thn one ippool in radiusd.conf??
> 
> I' ve tried to make this but doesn't work properly
> 
> Is there an example of radiusd.conf and users file to consulting?
> 
> Thanks a lot
> 

-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


manage more ip pools

2004-08-20 Thread Simone Giovanardi
Is it possible manage more thn one ippool in radiusd.conf??

I' ve tried to make this but doesn't work properly

Is there an example of radiusd.conf and users file to consulting?

Thanks a lot


-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html