Difference between last and radlast?

2002-10-02 Thread Krishna
Hi, The last and radlast creates lots of confusion. This is what last shows syashpal ttyS0000:P.0.160 Wed Oct 2 17:35 - 19:44 (02:08) syashpal ttyS0000:P.0.160 Wed Oct 2 17:35 - 17:35 (00:00) roland ttyS1001:P.0.161 Wed Oct 2 17:26 - 18:11 (0

Dialup Admin - Help!

2002-10-02 Thread Andrew Hardman
This is pretty much a follow up to a previous listing. http://lists.cistron.nl/pipermail/freeradius-users/2002-June/008022.html   I have the same problem. I can see the users online but cannot create or administer current users in the database.   sql_type: mysqlsql_server: localhost sql_port:

MYSQL Database Support

2002-10-02 Thread Scott Harris
Hi everyone, Using Freeradius 0.7 and mySQL 3.23.47. Have spent the last few days configuring the radius server, mysql database and the php dialup_admin. I have created a user with password using the dialup_admin webpage - successful. Password is encrypted. I then test the user using dialup_admin

RE: Binary file?

2002-10-02 Thread Chi Dang
Thanks Darren. The info on gcc-3.2 says "It was compiled to use the SUN assembler and loader usually in /usr/ccs/bin if the SUNW developer packages are installed." I don't have the developer packages so I guess I cannot use it, can I? -Chi -Original Message- From: Darren Nay [mailto:[

User Response.

2002-10-02 Thread Nick Marino
I was curious is there a way for the disconnect reason to be displayed on a users machine when they are rejected from radius. Like normally if you dial in out side your allowed time limit dialup networking just responds with the message that you had an invalid user name or password. I found som

Re: Binary file?

2002-10-02 Thread Darren Nay
Go to: http://www.sunfreeware.com ..and download the latest version of gcc for Solaris 8. Darren Nay - Original Message - From: "Chi Dang" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Wednesday, October 02, 2002 4:49 PM Subject: Binary file? I have a Sun Fire V100 with Solaris 8,

Binary file?

2002-10-02 Thread Chi Dang
I have a Sun Fire V100 with Solaris 8, but no compiler. Does anyone has a binary for Solaris 8 that I can use? Thanks, Chi Dang Director of Ops and QA Televoke Inc. 415-908-4463 office - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: clients.conf question

2002-10-02 Thread Chris Fanini
Did you try *.*.*.* ? maybe that will do it -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of Max Malzkuhn Sent: Wednesday, October 02, 2002 5:21 PM To: '[EMAIL PROTECTED]' Subject: clients.conf question I have freeradius installed and everything is worki

clients.conf question

2002-10-02 Thread Max Malzkuhn
I have freeradius installed and everything is working properly. I have gotten a request though to check into opening up the clients.conf file to allow any IP address. I tried using 0.0.0.0/0 but freeradius squawked at the 0 netmask during startup. Is there any way to accomplish this? TIA, Ma

How about multiple interfaces on NAS's

2002-10-02 Thread Mike Denka
I've just gone into production with freeradius 0.7.1 and a few Cisco AS5400's. We migrated from the old Livingston radius and Lucent gear. I'm using multiple interfaces on my Cisco AS5400's for redundancy. So both interfaces are reporting accounting information to freeradius. In my radius.log

new Freeradius & Conectiva 7

2002-10-02 Thread Marcelo da Silva
I have one problem in version 0.7 of freeradius and Conectiva7. The problem is not update register in radacct. Create 2 register in table radacct, one when user conect other when user disconnect. +---+-+-+ | UserName | AcctSt

Freeradius & Conectiva 7

2002-10-02 Thread Marcelo da Silva
I have one problem in version 0.7 of freeradius and Conectiva7. The problem is not update register in radacct. Create 2 register in table radacct, one when user conect other when user disconnect. +---+-+-+ | UserName | AcctStart

Re: Freeradius/*SQL question

2002-10-02 Thread Alan DeKok
Rens Houben <[EMAIL PROTECTED]> wrote: > I've been using freeradius as authentication server for quite some time > now, and so far it has worked very well. However, now one of my > colleagues has asked me to set up a second radius server for local > dialup accounts which will be administered

Re: Counter Module ignoring Accounting Packets

2002-10-02 Thread Aaron Webb
Well Mr. Webb, If you had any brains you might notice the 'allowed-servicetype = Framed-User' line in your conf file and make the association between that and a chunk of code that checks to ensure that the service-type of the accounting packet is 'Framed-User'. But you don't appear to be the

Counter Module ignoring Accounting Packets

2002-10-02 Thread Aaron Webb
FreeRADIUS Version 0.7.1, for host i686-pc-linux-gnu. Using MySQL for authentication and accounting. I got the counter module set up and the proper entry in the radcheck table of the database, and started sending accounting packets to my RADIUS server. I noticed the following message from the

Re: question about EAP dynamic keys generation

2002-10-02 Thread Pat Calhoun
On Wed, 2002-10-02 at 16:00, Lars Viklund wrote: > On Wed, 2002-10-02 at 10:25, Pat Calhoun wrote: > > This is what I am trying to do, but XP doesn't seem happy. I suspect > > that as I mentioned above, I need to find the exact congdon draft that > > covers 802.1X expected behavior :( > > It seem

Re: question about EAP dynamic keys generation

2002-10-02 Thread Lars Viklund
On Wed, 2002-10-02 at 10:25, Pat Calhoun wrote: > This is what I am trying to do, but XP doesn't seem happy. I suspect > that as I mentioned above, I need to find the exact congdon draft that > covers 802.1X expected behavior :( It seems like section 4 in the congdon -20 draft just describes what

Re: question about EAP dynamic keys generation

2002-10-02 Thread Pat Calhoun
On Wed, 2002-10-02 at 15:17, Lars Viklund wrote: > On Wed, 2002-10-02 at 09:24, Pat Calhoun wrote: > > > send the supplicant an EAPOL-Key message with an empty Key field, which > > > means use the specified number of bits from the MS-MPPE-Send-Key as the > > > key-mapping key. > > > > check... un

Re: question about EAP dynamic keys generation

2002-10-02 Thread Lars Viklund
On Wed, 2002-10-02 at 09:24, Pat Calhoun wrote: > > send the supplicant an EAPOL-Key message with an empty Key field, which > > means use the specified number of bits from the MS-MPPE-Send-Key as the > > key-mapping key. > > check... unfortunately, this doesn't appear to work. Do you mean "not

Re: question about EAP dynamic keys generation

2002-10-02 Thread Pat Calhoun
On Wed, 2002-10-02 at 14:24, Lars Viklund wrote: > On Wed, 2002-10-02 at 08:08, Pat Calhoun wrote: > > Does anyone have a clue how the AP selects the right key to use as the > > key-mapping-key? > > It can either: > > invent a random key-mapping (unicast) key and send it to the supplicant > in

Re: radrelay crashes when I try to run it

2002-10-02 Thread Alan DeKok
Simon <[EMAIL PROTECTED]> wrote: > Blah, radrelay was infact segfaulting on any A/V pair that > valuepair.c:userparse was having trouble with due to a stupid bug on my > part. Tiny patch included below to fix this. Added, thanks. > Now radrelay will silently ignore any cruft that may have ende

Re: question about EAP dynamic keys generation

2002-10-02 Thread Lars Viklund
On Wed, 2002-10-02 at 08:08, Pat Calhoun wrote: > Does anyone have a clue how the AP selects the right key to use as the > key-mapping-key? It can either: invent a random key-mapping (unicast) key and send it to the supplicant in an EAPOL-Key message signed with the MS-MPPE-Send-Key and encrypt

Re: Cisco and CONNECTINFO_STOP

2002-10-02 Thread Alan DeKok
Yury Bokhoncovich <[EMAIL PROTECTED]> wrote: > Hm...there are few risky chars in SQL, namely \0 and apostrophe. http://www.striker.ottawa.on.ca/~aland/SQLInjectionWhitePaper.pdf I forgot where I found it originally. Are you *sure* that for *all* SQL variants, the only magic characters are

Re: Another FreeRadius/SQL Question

2002-10-02 Thread Alan DeKok
"Tim D. McCracken" <[EMAIL PROTECTED]> wrote: > When using the relational database modules (MySql or Oracle), > are the use entries looked up during the authentication process Yes. > or are they loaded one time at startup, thus requiring a HUP > similar to the file based method? Hmm... woul

Re: Freeradius/*SQL question

2002-10-02 Thread Shawn O'Shea
> First off, is it neccessary to fill the dictionary table as well, or can > the text version be used directly for that? More to the point, how do I > tell radiusd to ONLY look in its sql table for authentication? This is controlled like any other aunthentication module, via the authenticate {}

Re: Cisco and CONNECTINFO_STOP

2002-10-02 Thread Yury Bokhoncovich
Hello! On Tue, 1 Oct 2002, Alan DeKok wrote: > > modified, in particular some characters like '+', '(', and ')' are > > translated in the exadecimal notation. a string like this: > > > > 24000/31200 V34+/LAPM (52000/28800) > > > > is modified in: > > > > 24000/31200 V34=2B/LAPM =2852000/2880

Another FreeRadius/SQL Question

2002-10-02 Thread Tim D. McCracken
When using the relational database modules (MySql or Oracle), are the use entries looked up during the authentication process or are they loaded one time at startup, thus requiring a HUP similar to the file based method? - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/user

Re: question about EAP dynamic keys generation

2002-10-02 Thread Pat Calhoun
> > 3.the AP uses the key received from Server to encrypt WEP key. > > AP actually produces two WEP keys, a broadcast and a unicast keys and > then send those encrypted to the supplicant, using EAPOL-Key method. > Does anyone have a clue how the AP selects the right key to use as the key-mappin

Freeradius/*SQL question

2002-10-02 Thread Rens Houben
Hello, I've been using freeradius as authentication server for quite some time now, and so far it has worked very well. However, now one of my colleagues has asked me to set up a second radius server for local dialup accounts which will be administered by someone who doesn't have the fain

Re: problem with certain usernames under 0.7.1

2002-10-02 Thread Dan Monjar
Perfect! It is working now. thanks Anyone on the list running Freeradius under Tru64? On Tue, Oct 01, 2002 at 06:10:05PM -0700, Frank Cusack wrote: > On Tue, Oct 01, 2002 at 08:48:39PM -0400, Dan Monjar wrote: > > the users. The odd thing is the users that fail all have a username that >