联合购买网电子E刊! 第十期

2002-03-05 Thread citygarden
Title: ÁªºÏ¹ºÂòÍøe¿¯ Óû§×¢²á|¶©µ¥²éѯ|ÓʼþÁбí|ÎÒµÄCobuy ¶þ¡ð¡ð¶þÄêµÚÊ®ÆÚ COBUYÖÁ×ðÉÏÍø¿¨ÍøÉÏÖÁ×ðÐР ³¢ÊÔÖйúµÚ¶þ»¥ÁªÍø£¨Internet2£©¹¤³Ì  2.5

gethostbyname_r compiling problem

2002-03-05 Thread magmike
Hi! I can't compile last snapshot with errors: misc.c:57: too few arguments to function `gethostbyaddr_r' misc.c:90: too few arguments to function `gethostbyname_r' in src/lib/misc.c:57 hp = gethostbyname_r(host, &result, buffer, sizeof(buffer), &error); gethostbyname_r have a 5 arguments. i

NAS & IP

2002-03-05 Thread Maxim
Good day! I have one question... How can I use MySql database for that : every NAS port correspond  unique IP address.   Help me, please :(  

"SQL" modules aren't allowed ...

2002-03-05 Thread Michael Vasilenko
Hello On fresh CVS I 've got rlm_sql: Driver rlm_sql_mysql loaded and linked rlm_sql: Attempting to connect to radius@localhost:/radius rlm_sql: Connected new DB handle, #0 rlm_sql: Connected new DB handle, #1 rlm_sql: Connected new DB handle, #2 rlm_sql: Connected new DB handle, #3 rlm_sql

Attribute type error in dictionary.erx

2002-03-05 Thread ju bin
ATTRIBUTE   ERX-Atm-Service-Category  14 string   ERXATTRIBUTE   ERX-Atm-PCR   15 string   ERXATTRIBUTE   ERX-Atm-SCR   16 string   ERXATTRIBUTE   ERX-Atm-MBS   17 string   ERX These four attr

how to do auth use callingstationid

2002-03-05 Thread ju bin
Hi,   Can I bind a user to a fixed callingstationid? I mean, the user provide the correct username and password, but I also want that user can just be accepted in a fixed callingstationid, how can I do it?   Thanks.     binju

Re: Recent CERT Advisory CA-2002-06

2002-03-05 Thread Alan DeKok
joe <[EMAIL PROTECTED]> wrote: > Does anyone know if this effects the client implementations of > mod_auth_radius for apache and pam_radius_auth? Neither are vulnerable. VU#589523 : Both clients calculate the digest using multiple calls to MD5, instead of permitting a bugger overflow. VU#

Re: how to do auth use callingstationid

2002-03-05 Thread Chris Parker
At 09:36 PM 3/5/2002 +0800, ju bin wrote: >Hi, > >Can I bind a user to a fixed callingstationid? I mean, the user provide >the correct username and password, but I also want that user can just be >accepted in a fixed callingstationid, how can I do it? Use a 'Check-Item' in the users file: jane

Upgradeing from .1 -> .4

2002-03-05 Thread Mitchell Henderson
Hi, Due to the CERT advisory i thought i'd go ahead and update to 0.4. My configuration works just fine in .1 but it errors out with """ /export/radius/etc/raddb/users[44]: Parse error (check) for entry 00022c-0814a8:Errors reading /export/radius/etc/raddb/users radiusd

Re: "SQL" modules aren't allowed ...

2002-03-05 Thread Alan DeKok
Michael Vasilenko <[EMAIL PROTECTED]> wrote: > Module: Instantiated sql (sql) > radiusd.conf: "SQL" modules aren't allowed in 'authenticate' sections -- > they have no such method. > > What is that means? Remove 'sql' from 'authenticate'? There has been a change in the latest CVS, so that t

Re: Attribute type error in dictionary.erx

2002-03-05 Thread Alan DeKok
"ju bin" <[EMAIL PROTECTED]> wrote: > This is a multi-part message in MIME format. Arg... Please, NO mime on the list, and NO HTML. > ATTRIBUTE ERX-Atm-Service-Category 14 string ERX > ATTRIBUTE ERX-Atm-PCR 15 string ERX > ATTRIBUTE ERX-Atm-

Re: Compile failing on redhat 7.2

2002-03-05 Thread Alan DeKok
"Vector" <[EMAIL PROTECTED]> wrote: > I'm running redhat 7.2 and I am unable to compile the latest snapshots. This has been discussed, I think. Grab the latest version from anonymous CVS (NOT the snapshot), I've added a temporary work-around. Alan DeKok. - List info/subscribe/unsubscr

Re: Disable PAP

2002-03-05 Thread Alan DeKok
Pat Crean <[EMAIL PROTECTED]> wrote: > Why not compromise and set up a vpn between your NAS and radius > server so even PAP is encrypted? PAP passwords are already encrypted when sent over the network via RADIUS. Please don't say otherwise, it just confuses people. Alan DeKok. - List in

Re: freeradius vs gnu radius

2002-03-05 Thread Alan DeKok
Steve Langasek <[EMAIL PROTECTED]> wrote: > FreeRADIUS is one of the most modular and featureful RADIUS servers > available today. It has been written by a team of developers who have > more than a decade of collective experience in implementing and > deploying RADIUS software, in software engine

Help needed for defining radius groups

2002-03-05 Thread Pierre Strazza
Hi there !! I'm desesperately trying to define groups of users in radius according to groups referenced in an LDAP directory. What I plan is to pass specific informations to the NAS according to the group the user belong. So I need to define groups of users, instead of users themselves in the rad

Re: freeradius vs gnu radius

2002-03-05 Thread Joe Maimon
What about openradius? Alan DeKok wrote: > Steve Langasek <[EMAIL PROTECTED]> wrote: > > FreeRADIUS is one of the most modular and featureful RADIUS servers > > available today. It has been written by a team of developers who have > > more than a decade of collective experience in implementing

Re: freeradius vs gnu radius

2002-03-05 Thread Alan DeKok
Joe Maimon <[EMAIL PROTECTED]> wrote: > What about openradius? It looks nice and configurable. Whether it's fast and efficient is something I don't know. If I needed weird functionality that FreeRADIUS doesn't support, I might choose OpenRADIUS. For basic simple functionality that 75% of

Re: freeradius vs gnu radius

2002-03-05 Thread Steve Langasek
On Tue, Mar 05, 2002 at 10:54:31AM -0500, Alan DeKok wrote: > Steve Langasek <[EMAIL PROTECTED]> wrote: > > FreeRADIUS is one of the most modular and featureful RADIUS servers > > available today. It has been written by a team of developers who have > > more than a decade of collective experience

Re: freeradius vs gnu radius

2002-03-05 Thread Alan DeKok
Steve Langasek <[EMAIL PROTECTED]> wrote: > > Excellent propaganda! I've added that text to the main web page. > > Hmm, that wasn't so over-the-top as to induce vomiting? I'll have to > try harder next time... maybe by talking about 'paradigms' as well as > 'synergy'. ;) Yes, well, it wasn

need help on MSCHAP module

2002-03-05 Thread carol
NatureHi, I got freeradius-0.4 installed on linux. And tried to make pptp user login authenticate by the radius server. When using chap protocol, everything works great, execept mschap failed. So I wrote a test program sending MS-CHAP or MS-CHAPv2 request to radius server. It looks like I miss so

Re: Disable PAP

2002-03-05 Thread Frank Cusack
On Tue, Mar 05, 2002 at 10:38:58AM -0500, Alan DeKok wrote: > Pat Crean <[EMAIL PROTECTED]> wrote: > > Why not compromise and set up a vpn between your NAS and radius > > server so even PAP is encrypted? > > PAP passwords are already encrypted when sent over the network via > RADIUS. But not b

Re: Disable PAP

2002-03-05 Thread Eric Dean
I agree which is why the VPN NAS-Radius is not of value. In addition, if you don't diable PAP on the client or NAS, they'll still send it in clear text yet merely fail on your radius server...until they stop doing that. On Tue, 5 Mar 2002, Frank Cusack wrote: > On Tue, Mar 05, 2002 at 10:38:58

Re: Help needed for defining radius groups

2002-03-05 Thread Kostas Kalevras
On Tue, 5 Mar 2002, Pierre Strazza wrote: > Hi there !! > > I'm desesperately trying to define groups of users in radius according to > groups referenced in an LDAP directory. > What I plan is to pass specific informations to the NAS according to the > group the user belong. So I need to define g

[ANNOUNCE] EAP/TLS authentication HOWTO

2002-03-05 Thread Adam
FreeRADIUS and XSupplicant finally talk to each other! Thus bringing to reality first open source 802.1x authentication Here's the HOWTO which is the crowning of the work on having the two to talk to each other: http://www.missl.cs.umd.edu/~adam/802/ http://www.eax.com/802/ en

Workaround for Solaris NIS/YP w/shadow passwords

2002-03-05 Thread Roy Hooper
FreeRadius-0.4 breaks compatibility with Solaris running YP in compatibility mode, by changing the when shadow password lookups are performed using the system call getspnam(). I have attached two patches. The first attached patch adds a bunch of debugging to rlm_unix's shadow password section (ab

Fw: Workaround for Solaris NIS/YP w/shadow passwords

2002-03-05 Thread Roy Hooper
AARGH. First post and I hit the wrong keys and send the email before I'm ready. Grumble. Stupid fingers. FreeRadius-0.4 breaks compatibility with Solaris running YP in compatibility mode, by changing the when shadow password lookups are performed using the system call getspnam(). I have attac

Re: how to do auth use callingstationid

2002-03-05 Thread ju bin
Thank you, Chris. I use sql module for authentication and authorize, and I aleady add a row to table radcheck with username = 'jb@adsl', Attribute = 'Calling-Station-Id', value = '#SZ_ERX1400_LQF#A51#11#226', op = '=', but that user still accept from other callingstationid, in the log file, I fou

Compilation failed on Solaris

2002-03-05 Thread Aqeel Anwar
Hi all I downloaded freeradius 0.4 from freeradius website. ./configure command runs fine. But when I run make command, it gives error on ld. Please help me where the problem lies. I have Solaris 7, gcc 2.95.x gnu make,mysql and perl installed on my system. Thanks for your time. Aqeel ___

Testing validity of users files.

2002-03-05 Thread Andrew Tait
Hi All, We recently changed to FreeRadius from Cistron a few weeks ago for our main authentication server. We have our main users file which is essentially static, and then several more files, (eg, users.chap) included which change constantly. With Cistron, if there was an error in the users.ch

Re: Testing validity of users files.

2002-03-05 Thread Andrew Tait
Doh, read the FAQ properly Andrew!! Andrew Tait System Administrator Country NetLink Pty, Ltd E-Mail: [EMAIL PROTECTED] WWW: http://www.cnl.com.au 30 Bank St Cobram, VIC 3644, Australia Ph: +61 (03) 58 711 000 Fax: +61 (03) 58 711 874 "It's the smell! If there is such a thing." Agent Smith - The

Bug ni FreeRADIUS 0.4

2002-03-05 Thread Gary E. Miller
Yo All! Found a bug in FreeRADIUS Ver 0.4. The problem is in rlm_unix.c. You can only specify a shadow password file when password caching is on. When cacheing is off it will fail. Here is the patch to fix it: *** rlm_unix.c.dist Tue Mar 5 22:30:26 2002 --- rlm_unix.c.gem Tue Mar