Hi , I want to configure for pre-paid billing system in free radius , please let me what are necessary module need to configure. Regards, Sachidananda Sahoo
________________________________ From: "freeradius-users-requ...@lists.freeradius.org" <freeradius-users-requ...@lists.freeradius.org> To: freeradius-users@lists.freeradius.org Sent: Monday, May 18, 2009 7:16:30 PM Subject: Freeradius-Users Digest, Vol 49, Issue 75 Send Freeradius-Users mailing list submissions to freeradius-users@lists.freeradius.org To subscribe or unsubscribe via the World Wide Web, visit http://lists.freeradius.org/mailman/listinfo/freeradius-users or, via email, send a message with subject or body 'help' to freeradius-users-requ...@lists.freeradius.org You can reach the person managing the list at freeradius-users-ow...@lists.freeradius.org When replying, please edit your Subject line so it is more specific than "Re: Contents of Freeradius-Users digest..." Today's Topics: 1. Free radius configure as pre-paid billing system (Sachidananda Sahoo) ---------------------------------------------------------------------- Message: 1 Date: Mon, 18 May 2009 06:46:21 -0700 (PDT) From: Sachidananda Sahoo <sahoo_sa...@yahoo.com> Subject: Free radius configure as pre-paid billing system To: freeradius-users@lists.freeradius.org Message-ID: <858597.78562...@web31915.mail.mud.yahoo.com> Content-Type: text/plain; charset="iso-8859-1" Hi , Send Freeradius-Users mailing list submissions to ??? freeradius-users@lists.freeradius.org To subscribe or unsubscribe via the World Wide Web, visit ??? http://lists.freeradius.org/mailman/listinfo/freeradius-users or, via email, send a message with subject or body 'help' to ??? freeradius-users-requ...@lists.freeradius.org You can reach the person managing the list at ??? freeradius-users-ow...@lists.freeradius.org When replying, please edit your Subject line so it is more specific than "Re: Contents of Freeradius-Users digest..." Today's Topics: ? 1. Re: question about windows users (Alan DeKok) ? 2. Re: Wimax + Freeradius (Alan DeKok) ? 3. Re: Module-Success-Message / Module-Failure-Message (Alan DeKok) ? 4. Re: current RHEL/CentOS pre-built packages (Was: freeRADIUS) ? ? ? (Alan DeKok) ? 5. Re[2]: Wimax + Freeradius (Maxim Vinnichenko) ? 6. Re: Wimax + Freeradius (Alan DeKok) ? 7. FreeRADIUS Server Version 2.1.6 has been released (Alan DeKok) ? 8. RE: Module-Success-Message / Module-Failure-Message ? ? ? (Laar van de, Johan, TNF) ? 9. duplicate Identity received, freeradius behaviour? ? ? ? (Jean F. Mousinho) ---------------------------------------------------------------------- Message: 1 Date: Mon, 18 May 2009 12:57:38 +0200 From: Alan DeKok <al...@deployingradius.com> Subject: Re: question about windows users To: FreeRadius users mailing list ??? <freeradius-users@lists.freeradius.org> Message-ID: <4a113f22.8060...@deployingradius.com> Content-Type: text/plain; charset=ISO-8859-1 Bartosz Chodzinski wrote: > /etc/freeradius/certs/README ? I've never understood why people think it's useful to post documentation from the server on this list.? Do you think we haven't seen it? > and something happend: > ( I think key information is? ? > TLS_accept:error in SSLv3 read client certificate A > rlm_eap: SSL error error:00000000:lib(0):func(0):reason(0) > but uncle google find as many diferent answers as peple having this problem) ? It means that you're running a server that is YEARS out of date.? Why not use a more recent version? > log freeradius -X: > Sending Access-Challenge of id 115 to 192.168.5.206 port 1812 >? ? ? ? EAP-Message = > 0x010b00350d800000002b1403010001011603010020735b6dedb59fdb27811198c86a86bb2fdf2e96ce8f59031cc76f36b80bf1d04c >? ? ? ? Message-Authenticator = 0x00000000000000000000000000000000 >? ? ? ? State = 0x9f4e794b784914b1f67ff19696408712 > Finished request 9 > Going to the next request > Waking up in 5 seconds... > --- Walking the entire request list --- > Cleaning up request 5 ID 111 with timestamp 416c8b35 ? This is in the FAQ.? Go read it. ? Alan DeKok. ------------------------------ Message: 2 Date: Mon, 18 May 2009 13:03:42 +0200 From: Alan DeKok <al...@deployingradius.com> Subject: Re: Wimax + Freeradius To: ma...@babilon-t.tj,??? FreeRadius users mailing list ??? <freeradius-users@lists.freeradius.org> Message-ID: <4a11408e.6060...@deployingradius.com> Content-Type: text/plain; charset=UTF-8 Maxim Vinnichenko wrote: > Thank you for you answer. I've changed test user and now the server > sends access-accept but CPE still doesn't connect. ? Some NAS equipment will ignore Access-Accept if it doesn't contain the right magic.? The exact definition of this magic is usually found buried in a footnote on page 400 out of 800 of the vendor documentation. ? Go look at the NAS logs, and see if there is any useful messages.? If not, call the NAS vendor, and tell them that their product is defective. ? FreeRADIUS works with WiMAX equipment from Nokia, Cisco and Motorola. (That I've seen.)? Other vendors known to have problems include Alvarion.? They don't seem to care that their equipment doesn't work, and they haven't answered any of my messages about it. ? The only solution is to point out publicly that Alvarion is *not* following the WiMAX specs, and therefore people should buy *real* WiMAX equipment. ? Alan DeKok. ------------------------------ Message: 3 Date: Mon, 18 May 2009 13:04:35 +0200 From: Alan DeKok <al...@deployingradius.com> Subject: Re: Module-Success-Message / Module-Failure-Message To: FreeRadius users mailing list ??? <freeradius-users@lists.freeradius.org> Message-ID: <4a1140c3.5070...@deployingradius.com> Content-Type: text/plain; charset=ISO-8859-1 Laar van de, Johan, TNF wrote: > My Question is, if this is relatively easy, how can I achieve this? ? The log messages can be changed via source code edits. ? This *could* be made configurable, but that also requires source code edits. ? Alan DeKok. ------------------------------ Message: 4 Date: Mon, 18 May 2009 13:06:22 +0200 From: Alan DeKok <al...@deployingradius.com> Subject: Re: current RHEL/CentOS pre-built packages (Was: freeRADIUS) To: FreeRadius users mailing list ??? <freeradius-users@lists.freeradius.org> Message-ID: <4a11412e.1030...@deployingradius.com> Content-Type: text/plain; charset=ISO-8859-1 John Dennis wrote: > It is critical to note for RHEL customers the updated RPMS are > considered "tech preview" and do not come with any official RHEL > support. ? If they want support for *any* version of the server, it's available. See http://networkradius.com ? But that's specific to FreeRADIUS, and not to the entire RHEL package. ? Alan DeKok. ------------------------------ Message: 5 Date: Mon, 18 May 2009 16:25:23 +0500 From: Maxim Vinnichenko <ma...@babilon-t.tj> Subject: Re[2]: Wimax + Freeradius To: Alan DeKok <al...@deployingradius.com> Cc: FreeRadius users mailing list ??? <freeradius-users@lists.freeradius.org> Message-ID: <471893738.20090518162...@babilon-t.tj> Content-Type: text/plain; charset=utf-8 Hello Alan, Monday, May 18, 2009, 4:03:42 PM, you wrote: > Maxim Vinnichenko wrote: >> Thank you for you answer. I've changed test user and now the server >> sends access-accept but CPE still doesn't connect. >? Some NAS equipment will ignore Access-Accept if it doesn't contain the > right magic.? The exact definition of this magic is usually found buried > in a footnote on page 400 out of 800 of the vendor documentation. >? Go look at the NAS logs, and see if there is any useful messages. If > not, call the NAS vendor, and tell them that their product is defective. >? FreeRADIUS works with WiMAX equipment from Nokia, Cisco and Motorola. >? (That I've seen.)? Other vendors known to have problems include > Alvarion.? They don't seem to care that their equipment doesn't work, > and they haven't answered any of my messages about it. >? The only solution is to point out publicly that Alvarion is *not* > following the WiMAX specs, and therefore people should buy *real* WiMAX > equipment. >? Alan DeKok. Thank You very much. Vendor forces us to buy theirs "unique" TRIAS server aka radius. :) That costs several hundred thousands. Anyway thanks to all of you for help. -- ?????????? ?????? ????? IP ????????? __________________ ??? "Babilon - T", ???????????, ?. ???????, ?-?? ?????? 8. ????:? ? ? (992 44) 600 00 83 ?????????:? (992 918) 62 37 22 ??. ?????:? ma...@babilon-t.tj ------------------------------ Message: 6 Date: Mon, 18 May 2009 13:42:46 +0200 From: Alan DeKok <al...@deployingradius.com> Subject: Re: Wimax + Freeradius To: ma...@babilon-t.tj,??? FreeRadius users mailing list ??? <freeradius-users@lists.freeradius.org> Message-ID: <4a1149b6.2090...@deployingradius.com> Content-Type: text/plain; charset=UTF-8 Maxim Vinnichenko wrote: > Thank You very much. Vendor forces us to buy theirs "unique" TRIAS > server aka radius. :) That costs several hundred thousands. ? Dollars? ? Odds are that their product is less functional than FreeRADIUS.? It would likely be cheaper to figure out what the problem is, and to make FreeRADIUS inter-operate with the vendor. ? And what the vendor *really* meant is that they do *not* implement the standards, and they don't care.? Why not buy equipment from a vendor that is interested in making *useful* products? ? Alan DeKok. ------------------------------ Message: 7 Date: Mon, 18 May 2009 13:59:07 +0200 From: Alan DeKok <al...@deployingradius.com> Subject: FreeRADIUS Server Version 2.1.6 has been released To: FreeRadius users mailing list ??? <freeradius-users@lists.freeradius.org> Message-ID: <4a114d8b.3090...@deployingradius.com> Content-Type: text/plain; charset=ISO-8859-1 ? The following is the change log.? Thanks to everyone for testing the pre releases. FreeRADIUS 2.1.6 Mon May 18 10:00:00 CEST 2009;? , urgency=medium ??? Feature improvements ??? * radclient exits with 0 on successful (accept / ack), and 1 ??? ? otherwise (no response / reject) ??? * Added support for %{sql:UPDATE ..}, and insert/delete ??? ? Patch from Arran Cudbard-Bell ??? * Added sample "do not respond" policy.? See raddb/policy.conf ??? ? and raddb/sites-available/do_not_respond ??? * Cleanups to Suse spec file from Norbert Wegener ??? * New VSAs for Juniper from Bjorn Mork ??? * Include more RFC dictionaries in the default install ??? * More documentation for the WiMAX module ??? * Added "chase_referrals" and "rebind" configuration to ??? ??? ? rlm_ldap. ??? ? This helps with Active Directory.? See raddb/modules/ldap ??? * Don't load pre/post-proxy if proxying is disabled. ??? * Added %{md5:...}, which returns MD5 hash in hex. ??? * Added configurable "retry_interval" and "poll_interval" ??? ? for "detail" listeners. ??? * Added "delete_mppe_keys" configuration option to rlm_wimax. ??? ? Apparently some WiMAX clients misbehave when they see those ??? ? keys. ??? * Added experimental rlm_ruby from ??? ? http://github.com/Antti/freeradius-server/tree/master ??? * Add Tunnel attributes to ldap.attrmap ??? * Enable virtual servers to be reloaded on HUP.? For now, only ??? ? the "authorize", "authenticate", etc. processing sections are ??? ? reloaded.? Clients and "listen" sections are NOT reloaded. ??? * Updated "radwatch" script to be more robust.? See ??? ? scripts/radwatch ??? * Added certificate compatibility notes in raddb/certs/README, ??? ? for compatibility with different operating systems. (i.e. ??? ? Windows) ??? Bug fixes ??? * Minor changes to allow building without VQP. ??? * Minor fixes from John Center ??? * Fixed raddebug example ??? * Don't crash when deleting attributes via unlang ??? * Be friendlier to very fast clients ??? * Updated the "detail" listener so that it only polls once, ??? ? and not many times in a row, leaking memory each time... ??? * Update comparison for Packet-Src-IP-Address (etc.) so that ??? ? the operators other than '==' work. ??? * Did autoconf magic to work around weird libtool bug ??? * Make rlm_perl keep tags for tagged attributes in more ??? ? situations ??? * Update UID checking for radmin ??? * Added "include_length" field for TTLS.? It's needed for RFC ??? ? compliance, but not (apparently) for interoperability. ------------------------------ Message: 8 Date: Mon, 18 May 2009 14:38:06 +0200 From: "Laar van de, Johan, TNF" <johan.van.de.l...@tnf.nl> Subject: RE: Module-Success-Message / Module-Failure-Message To: FreeRadius users mailing list ??? <freeradius-users@lists.freeradius.org> Message-ID: ??? <1389360d6f590c44a15a626176b599a21069f...@sr-exc-006-son.internal.tnf.nl> ??? Content-Type: text/plain; charset="us-ascii" Ok, but there is no other variable available which can be used within a sql query in the Post-Auth section? Thanks. Johan van de Laar -----Oorspronkelijk bericht----- Van: freeradius-users-bounces+johan.van.de.laar=tnf...@lists.freeradius.org [mailto:freeradius-users-bounces+johan.van.de.laar=tnf...@lists.freeradius.org] Namens Alan DeKok Verzonden: maandag 18 mei 2009 13:05 Aan: FreeRadius users mailing list Onderwerp: Re: Module-Success-Message / Module-Failure-Message Laar van de, Johan, TNF wrote: > My Question is, if this is relatively easy, how can I achieve this? ? The log messages can be changed via source code edits. ? This *could* be made configurable, but that also requires source code edits. ? Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html ------------------------------ Message: 9 Date: Mon, 18 May 2009 14:21:03 +0100 From: "Jean F. Mousinho" <jean.mousi...@ist.utl.pt> Subject: duplicate Identity received, freeradius behaviour? To: FreeRadius users mailing list ??? <freeradius-users@lists.freeradius.org> Message-ID: <1242652863.1410.26.ca...@jemos-workd.ist.utl.pt> Content-Type: text/plain Hi, I've noticed that on our radius server logs lots of "EAP state variable not found", after some packet dump analysis (also -Xf) I've noticed that one of the cases that this happened was when some EAP Identity packets are duplicated during parallel authentications (I mean, when at least one session already began from the same client, and we're receiving duplicate ). I've noticed that these duplicate packets come with just a little difference which is the Proxy-State, the duplicate packets then, in my opinion could be caused by some bad proxying implementation (client EAP Identity passing through 2 or more proxies?), or even bad load balancing. Also, we did an upgrade of one of the two proxies connected to our home radius server and somehow noticed that the amount of EAP state errors was lower in the old version (1.1.7) than in the newer (2.1.3) (although its hard to confirm that). I've tried to compare the code from 1.1.7 and 2.1.3 and didn't come to a clear conclusion if its there any special treatment to duplicate proxied packets between 1.1.7 and 2.1.3 (while proxying). Thanks for your time. Jean F. Mousinho ------------------------------ - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html End of Freeradius-Users Digest, Vol 49, Issue 74 ************************************************ I want to configure for pre-paid billing system in free radius , please let me what are necessary module need to configure. ?Regards, Sachidananda Sahoo ________________________________ From: "freeradius-users-requ...@lists.freeradius.org" <freeradius-users-requ...@lists.freeradius.org> To: freeradius-users@lists.freeradius.org Sent: Monday, May 18, 2009 6:55:29 PM Subject: Freeradius-Users Digest, Vol 49, Issue 74 -------------- next part -------------- An HTML attachment was scrubbed... URL: <https://lists.freeradius.org/pipermail/freeradius-users/attachments/20090518/9d91823f/attachment.html> ------------------------------ - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html End of Freeradius-Users Digest, Vol 49, Issue 75 ************************************************
- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html