different NAS_ip_address

2012-01-27 Thread sekchel lee
freeradius 2.1.9

mysql
select nasipaddress from radacct;

NAS_1  ==> 111.111.111.1
NAS 2   ==> 222.222.222.2

I want unification
NAS_1 ==> 127.0.0.1
NAS_2 ==> 127.0.0.1

Thank you Everybody
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Dear Expert(Need assistance with Freeradius + openvpn consulting)

2012-01-06 Thread sekchel lee
The expenses will be paid by US dollar.
Current states and My Requirements

Computer 1 (Freeradius server action) mysql db
CentOS-6.0-x86_64 ssh port ready

nas1 (openvpn server action ) ssh port ready
CentOS-6.0-x86_64

openvpn user
(mysql/ userid/password  ==> Authentication ,Authorization,Accounting) action
But
UserDrop(disconnect) Function is no action

My Requirements

radius user drop Function (For openvpn user)
F1) Max-All-Session(Time Limit (secs))
F2) Expiration (User Expiration Date )

I want radius user drop function (for openvpn user)
F1) only
F2) only
F1) + F2) both ==> F1(O) F2(X) --> drop  F1(X) F2(O) --> drop
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Dear Expert (Installation Request)

2011-09-29 Thread sekchel lee
Dear Expert(Installation Request)

Cent5 (server)
Freeradius

cent5(NAS1)
pptp,oepnvpn

The expenses will be paid by US dollar

mailto:sekc...@gmail.com 

My current status
--
cent5 install
yum update
yum install net-snmp net-snmp-devel mysql-devel libtool-ltdl-devel php-mysql

#Because of dialup 
# wget freeradius2-2.1.7-7.el5.src.rpm
# cp freeradius2-2.1.7-7.el5.src.rpm/dialup_admin  /usr/local

yum search freeradius*
yum install freeradius2-mysql
yum instal freeradius2-utils

show variables like 'have_innodb';  check ok

create database radius;
vi /etc/raddb/sql/ndb/admin.sql (radiusid/test1234)
mysql -u root -p mysql < /etc/raddb/sql/ndb/admin.sql
mysql -u root -p radius < /etc/raddb/sql/ndb/schema.sql
mysql -u root -p radius < /etc/raddb/sql/mysql/cui.sql
mysql -u root -p radius < /etc/raddb/sql/mysql/ippool.sql
mysql -u root -p radius < /etc/raddb/sql/mysql/nas.sql
mysql -u root -p radius < /etc/raddb/sql/mysql/wimax.sql
vi /etc/raddb/sql.conf
login = "radiusid"
password = "test1234"

vi /etc/raddb/radiusd.conf
proxy_requests  = no
$INCLUDE sql.conf  #remove
$INCLUDE sql/mysql/counter.conf  #remove
$INCLUDE sqlippool.conf  #remove

vi /etc/raddb/sqlippool.conf
$INCLUDE sql/mysql/ippool.conf  <==  edit

vi /etc/raddb/client.conf
client xx0.x7.1xx.xx4 {
ipaddr = xx0.x7.1xx.xx4
secret  = test1234
require_message_authenticator = no
nastype = other # localhost isn't usually a NAS...
}


ln -s /usr/local/dialup_admin/htdocs /var/www/html/dialup


AuthName "Restricted Area"
AuthType Basic
AuthUserFile /var/www/.htpasswd
require valid-user


htpasswd -cm /var/www/.htpasswd administrator
mysql -u root -p radius < /usr/local/dialup_admin/sql/mysql/badusers.sql
mysql -u root -p radius < /usr/local/dialup_admin/sql/mysql/mtotacct.sql
mysql -u root -p radius < /usr/local/dialup_admin/sql/mysql/totacct.sql
mysql -u root -p radius < /usr/local/dialup_admin/sql/mysql/userinfo.sql (
id int(10) NOT NULL auto_increment,)

vi /etc/httpd/conf.d/php.conf
#AddType application/x-httpd-php-source .phps
#LoadModule php4_module libexec/libphp4.so
#AddModule mod_php4.c
AddType application/x-httpd-php .php
AddType application/x-httpd-php .php3
vi /usr/local/dialup_admin/conf/admin.conf
general_radiusd_base_dir: /usr/sbin  Edit
general_strip_realms: yes  # remove
sql_username: radiusid
sql_password: test1234
#sql_debug: true


NAS1  ==> client xx0.x7.1xx.xx4
pptpd-1.3.4.tar.gz  freeradius-client-1.1.6.tar.gz
openvpn-2.2.1.tar.gz radiusplugin_v2.1a_beta1.tar.gz
openvpn-gui  http://www.openvpn.se/files/install_packages_source/
Dependent(tap0901,auth-user-pass auth-user-pass.txt)

nas1 ip_range xx0.x7.1xx.xx5-60 (public ip)
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


[mschap] FAILED: MS-CHAP2-Response is incorrect

2011-09-28 Thread sekchel lee
mysql> select * from radcheck;
+++---+++
| id | username   | attribute | op | value
|
+++---+++
|  1 | testuser | User-Password | := | $1$vQGXHdnO$7DjKbeUeAadrsfGg8thE2. |

FreeRADIUS Version 2.1.7, for host i686-redhat-linux-gnu, built on Mar
31 2010 at 00:25:31
Copyright (C) 1999-2009 The FreeRADIUS server project and contributors.
There is NO warranty; not even for MERCHANTABILITY or FITNESS FOR A
PARTICULAR PURPOSE.
You may redistribute copies of FreeRADIUS under the terms of the
GNU General Public License v2.
Starting - reading configuration files ...
including configuration file /etc/raddb/radiusd.conf
including configuration file /etc/raddb/proxy.conf
including configuration file /etc/raddb/clients.conf
including files in directory /etc/raddb/modules/
including configuration file /etc/raddb/modules/otp
including configuration file /etc/raddb/modules/detail.example.com
including configuration file /etc/raddb/modules/files
including configuration file /etc/raddb/modules/sql_log
including configuration file /etc/raddb/modules/attr_filter
including configuration file /etc/raddb/modules/wimax
including configuration file /etc/raddb/modules/preprocess
including configuration file /etc/raddb/modules/mac2vlan
including configuration file /etc/raddb/modules/detail
including configuration file /etc/raddb/modules/expiration
including configuration file /etc/raddb/modules/inner-eap
including configuration file /etc/raddb/modules/policy
including configuration file /etc/raddb/modules/realm
including configuration file /etc/raddb/modules/attr_rewrite
including configuration file /etc/raddb/modules/linelog
including configuration file /etc/raddb/modules/cui
including configuration file /etc/raddb/modules/smbpasswd
including configuration file /etc/raddb/modules/smsotp
including configuration file /etc/raddb/modules/always
including configuration file /etc/raddb/modules/sradutmp
including configuration file /etc/raddb/modules/digest
including configuration file /etc/raddb/modules/expr
including configuration file /etc/raddb/modules/pam
including configuration file /etc/raddb/modules/checkval
including configuration file /etc/raddb/modules/exec
including configuration file /etc/raddb/modules/mac2ip
including configuration file /etc/raddb/modules/perl
including configuration file /etc/raddb/modules/radutmp
including configuration file /etc/raddb/modules/mschap
including configuration file /etc/raddb/modules/unix
including configuration file /etc/raddb/modules/logintime
including configuration file /etc/raddb/modules/ippool
including configuration file /etc/raddb/modules/etc_group
including configuration file /etc/raddb/modules/pap
including configuration file /etc/raddb/modules/echo
including configuration file /etc/raddb/modules/passwd
including configuration file /etc/raddb/modules/chap
including configuration file /etc/raddb/modules/acct_unique
including configuration file /etc/raddb/modules/sqlcounter_expire_on_login
including configuration file /etc/raddb/modules/detail.log
including configuration file /etc/raddb/modules/counter
including configuration file /etc/raddb/eap.conf
including configuration file /etc/raddb/sql.conf
including configuration file /etc/raddb/sql/mysql/dialup.conf
including configuration file /etc/raddb/sql/mysql/counter.conf
including configuration file /etc/raddb/sqlippool.conf
including configuration file /etc/raddb/sql/mysql/ippool.conf
including configuration file /etc/raddb/policy.conf
including files in directory /etc/raddb/sites-enabled/
including configuration file /etc/raddb/sites-enabled/inner-tunnel
including configuration file /etc/raddb/sites-enabled/control-socket
including configuration file /etc/raddb/sites-enabled/default
group = radiusd
user = radiusd
including dictionary file /etc/raddb/dictionary
main {
prefix = "/usr"
localstatedir = "/var"
logdir = "/var/log/radius"
libdir = "/usr/lib/freeradius"
radacctdir = "/var/log/radius/radacct"
hostname_lookups = no
max_request_time = 30
cleanup_delay = 5
max_requests = 1024
allow_core_dumps = no
pidfile = "/var/run/radiusd/radiusd.pid"
checkrad = "/usr/sbin/checkrad"
debug_level = 0
proxy_requests = no
 log {
stripped_names = no
auth = no
auth_badpass = no
auth_goodpass = no
 }
 security {
max_attributes = 200
reject_delay = 1
status_server = yes
 }
}
radiusd:  Loading Realms and Home Servers 
 proxy server {
retry_delay = 5
retry_count = 3
default_fallback = no
dead_time = 120
wake_all_if_all_dead = no
 }
 home_server localhost {
ipaddr = 127.0.0.1
port = 1812
type = "auth"
secret = "testing123"
response_window = 20
max_outstandi

same pool_key

2011-09-23 Thread sekchel lee
freeradius 1.7

nas1 - localhost

nas2 - 222.x21.xxx.2

sqlippool

nas1-user-1  pool_key 1
nas1-user-2  pool_key 2
..
..
nas2-user-1 pool_key 7
 nas2-user-2 pool_key 9
..
..

sometimes and randomly

nas1-user-5  login  Be assigning ==> pool_key 9
(nas2-user the same pool_key)

nas2-user-6  login  Be assigning ==> pool_key 2
(nas1-user the same pool_key)
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


same pool key randomly

2011-09-20 Thread sekchel lee
nas1 ==>  localhost
nas2 ==>  200.300.xxx.1

sqlippool
UserName NASIPAddress CallingStationID   pool_key
user1 127.0.0.1 111.111.111.225
 user2 127.0.0.1 222.222.222.224
 user3 127.0.0.1 333.333.333.227

user4 login ...
user3 NASIPAddress CallingStationID   => blank
user3 pool_key ==> 0
user4  pool_key  ==> 7
sqlippool
 UserName NASIPAddress CallingStationID   pool_key
user1 127.0.0.1 111.111.111.225
 user2 127.0.0.1 222.222.222.224
 user3  0
 user4 127.0.0.1 444.444.444.227
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Freeradius Performance

2011-09-19 Thread sekchel lee
Freeradius Performance
My computer
Intel(R) Pentium(R) Dual  CPU  E2220  @ 2.40GHz
RAM 2GB
CentOS 5.5

NAS Client pptp and openvpn

each NAS  user 100 ~ 300

How many NAS Client ?

The ? NAS

How much bandwidth?
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


sqlippool problem 2 NAS

2011-09-19 Thread sekchel lee
--no Problem--
nas1 (localhost)
Only one NAS login and logout No problem



--Problem--
nas1 (localhost)
nas2(remote)

Username  NASIPAddress  CalledStationIdCallingStationID
expiry_timepool_key
  user1  127.0.0.1   1xx.2xx.3xx.1
2011-09-19 20:00:00  0
  user2
127.0.0.1   1xx.3xx.3xx.22011-09-29
20:21:13 10
  user3  127.0.0.1
1xx.4xx.3xx.32011-09-29 20:21:13  9
  user4  127.0.0.1
1xx.5xx.3xx.42011-09-29 20:21:13  4

Now time is 2011-09-19 20:00:00
user5 login...

   Username  NASIPAddress  CalledStationIdCallingStationID
expiry_timepool_key
   user1
  2011-09-19
20:00:00  0
  user2
127.0.0.1   1xx.3xx.3xx.22011-09-29
20:21:13 10
  user3  127.0.0.1
1xx.4xx.3xx.32011-09-29 20:21:13  9
  user4  127.0.0.1
1xx.5xx.3xx.42011-09-29 20:21:13  4
  user5  127.0.0.1
1xx.6xx.3xx.52011-09-29 20:21:13  0


NASIPAddress,CallingStationID,pool_key  is random
over time
nas1 10 user  connect
nas2 8 user  connect

but sqlippool is

Username  NASIPAddress  CalledStationIdCallingStationID
expiry_timepool_key
  user1
  2011-09-19
20:00:00  0
  user2
127.0.0.1   1xx.3xx.3xx.22011-09-29
20:21:13 10
  user3  127.0.0.1
1xx.4xx.3xx.32011-09-29 20:21:13  9
  user4  127.0.0.1
1xx.5xx.3xx.42011-09-29 20:21:13  4
  user5  127.0.0.1
1xx.6xx.3xx.52011-09-29 20:21:13  0

user6
 2011-09-19
20:00:00  0

user7
2011-09-19 20:00:00  0

user8
 2011-09-19
20:00:00  0
  user5  127.0.0.1
1xx.9xx.3xx.92011-09-29 20:21:13  20
  ..
  ..

 nas1(localhost) no problem
 nas1(localhost) + nas2(remote) ==> This problem
 Help me.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


TWO NAS but NASIPAddress is 127.0.0.1 ?

2011-09-19 Thread sekchel lee
client 127.0.0.1
{
secret = test123
shortname = localhost
nastype = other
}

client 175.222.xxx.xx
{
secret = test111
shortname = 175.222.xxx.xx
}

NAS localhost user
select * from radippool where UserName='nas1user';
NASIPAddress=127.0.0.1

NAS 175.222.xxx.xx user
select * from radippool where UserName='nas2user';
 NASIPAddress=127.0.0.1
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Why nas1 and nas2 same NASIPAddress ( freeradius clients.conf and radiusclient.conf)

2011-09-15 Thread sekchel lee
clients.conf

client 127.0.0.1 {
   secret  =   test1234
   shortname   = localhost
   nastype = other
}

 client 111.222.333.253
   {
   secret  =   test
   shortname   = 111.222.333.253
   nastype = other
}
-

nas1

radiusclient.conf
...
...
authserver localhost
acctserver localhost
...
...

 nas2

radiusclient.conf
...
...
authserver  111.222.333.253
acctserver  111.222.333.253
...
...

-

user-nas1

id  | pool_name | FramedIPAddress | NASIPAddress | CalledStationId |
CallingStationID | expiry_time | username | pool_key
+-+---+-+--+-+--+-+--+--
| 560 | ns1_pool   | 172.16.6.22 | 127.0.0.1| |
111.222.333.444 | 2011-10-01 09:06:50 | user-nas1   | 7

 user-nas2

id  | pool_name | FramedIPAddress | NASIPAddress | CalledStationId |
CallingStationID | expiry_time | username | pool_key
+-+---+-+--+-+--+-+--+--
| 614 | ns2_pool   | 172.16.10.22 | 127.0.0.1| |
555.666.777.888 | 2011-10-01 09:30:10 | user-nas2   | 15
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Multiple Databases

2010-09-24 Thread sekchel lee
I want Multiple databases

group1  ==>  databases1

group2 ==>  databases 2

..
..

Please Help me
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Hello "one radius server and multiple database and multiple dialupadmin"

2010-09-23 Thread sekchel lee
Hello all
one radius ==> freeradius-1.1.7
one mysql server
create db ==> db1, db2 , db3, db4 .

I want multiple dialupadmin

dialupadmin1 use   ==>  db1
dialupadmin2 use  ==>   db2
dialupadmin3 use  ==>   db3
dialupadmin4 use  ==>   db4
..
..

Would it be possible?

Please Help me
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html