Using a different passwd/shadow file?

2001-09-30 Thread Robert Divko
How can I use a different passwd/shadow file combo than the system file for User Authentication in freeradius-02? Ciao, Robert Divko Dr. Robert Divko, Kiem-Pauli-Weg 15, 83052 Bruckmühl tel: 08062/79700, 0172/8337394, fax: 08062/79701 [EMAIL P

Re: no appropriate authorization type for user

2001-09-30 Thread Andrei Koulik
You should provide correct Service-Type in order to have access to cisco To allow PPP (and only PPP) to any user you may use: DEFAULT Auth-type:= Accept Service-Type = Framed-User, Framed-Protocol = PPP Monday, October 01, 2001, 8:52:21 AM, you wrote: SJA> I'm

importing shadow data into mysql

2001-09-30 Thread Robert Divko
How can I import data of the unix shadow file into mysql to validate users over "Auth-Type := Sql"? I tried, but had to insert data explicitly with 'encode ( "password" )' Ciao, Robert Divko -- Dr. Robert Divko, Kiem-Pauli-Weg 15, 83052 Bruc

RLM_LDAP and CHAP

2001-09-30 Thread Yildiray Ozen
Probably because you need the PLAIN TEXT password to be able to use chap. I guess you're using cryptpass in ldap, which is why chap won't work. I'm using Plain Text passwords on LDAP server. If you're using LDAP in the 'authorize' section, you can just have it add the plain-text password to

no appropriate authorization type for user

2001-09-30 Thread Salah Jalal Abdulla
I'm having a problem. I added a NAS in the naslist file and in users file I put DEFAULT Auth-type:= Accept. When trying to dial, I got "no appropriate authorization type for user" in a cisco router while in the radius log it showed that "Auth: Login OK" and I was disconnected. Any advise pl

Re: Login-Time Question:

2001-09-30 Thread Bogdan
We try to set the Session-Timeout to the diffference Login-Time = "Wk1200-1700" and if user connects at 1600 then set the Session-Timeout = 3600 Should this work? it seems like it does not Bogdan - Original Message - From: <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Friday, Se

new pretender/questions

2001-09-30 Thread Luiz Felipe Ceglia
Hi Folks, I am currently running cistron 1.6.4 on my ISP, and I want to implement a sort of prepaid access. I found that the Exec-Program attributes only work when the user is starting a session. I would like to know if freeradius can execute programs when the user disconnects, as that is the

RE: Group authentication

2001-09-30 Thread John McKinney
Dan, I am trying to get freeradius setup. We are currently using Livingston Radius. They both allow for this as a check item. Something like: DEFAULT Auth-Type = System, Group = "login" DEFAULT Auth-Type = System, Group = "mailusers" Make sure you have a group 'login' and also 'mailuse

Group authentication

2001-09-30 Thread Dan Houtz
Greetings, Is it possible to configure FreeRadius to only authenticate system accounts that belong to a specific group? I'd like it to only accounts that belong to group "pppusers" while rejecting accounts belonging to other groups such as "emailusers". Thanks Dan Houtz - List info/subscribe/

Re: Ascend-Client-Primary-DNS does't work!?!

2001-09-30 Thread aland
Robert Divko <[EMAIL PROTECTED]> wrote: > Has somebody an idea why users of an ascend max 4030 > don't receive the DNS Information by PPP with freeradius, > while using "radius-livingston 2.1-30" or "radius-1.16-ascend" > with (almost) identical settings in the users file > everything works fine.

Re: Authentication

2001-09-30 Thread Bauchi
Guten Tag Dan Houtz, Am Sonntag, 30. September 2001 um 08:14 schrieben Sie: DH> I'm currently testing FreeRadius for a new ISP that I'm currently settings up. This is my first time running one with linux. I've always used NT so this is all new for me. Anyway, I'm DH> authenticating against the

Re: Authentication

2001-09-30 Thread Jorge Minassian
Dan, Hi,   Did you try to add  "bin/false" to   /etc/shells ?.   I also use /bin/false to avoid telnet (actually I do not longer use telenet ... :-), and use radius valoidation against system and everything wokrs fine.   At least using Cistron, I Suppouse it should be ok with freeradius also