FreeRadius vs SteelBelted, Tuning of Ports and Packets. Logs included!!!

2003-01-07 Thread Marnix Petrarca
= a5045ec781c51f68. modcall[accounting]: module acct_unique returns ok radius_xlat: '/usr/local/var/log/radius/radacct/10.10.254.252/detail-20030107' rlm_detail: /usr/local/var/log/radius/radacct/%{Client-IP-Address}/detail-%Y%m%d expands to /usr/local/var/log/radius/radacct/10.10.254.252/detail-20030107

freeradius0.8+RH8.0+Oracle9i: problem - growing of connections

2003-01-07 Thread Ruslan Spivak
Hello, freeradius users! I have noticed this problem with my configuration: Freeradius0.8 + RH8.0 + Oracle9i I can see that number of connections to my DB constantly grows: select status, count(*) from v$session group by status; and in 3-4 days number of allowed connections to my db exceeds

RE: Netware LDAP free Radius

2003-01-07 Thread markcapelle
Lyle: I have been using FreeRadius against Novell LDAP(Netware 5.1) for over a year now. It works like a dream... there were a few small tweaks I needed to get it working, but nothing major. I would have to go back and look at my notes, but I believe the main things were to create a CN

NT auth ...

2003-01-07 Thread Rodrigo Hidalgo
Hi all, New to this list, hopefully you can help me with my question. Setup: FreeRadius 0.8 PM3 | Radius_server using module rlm_smb | NT_domain_controller My question is can i with rlm_smb deny a user access when the domain user has grant dialin permission denied ?? If no is there any

Re: Solaris Issue

2003-01-07 Thread chris
Just jumpin' in here real quick without knowin' the full story... just trying to help: Check your LD_LIBRARY_PATH env var. Make sure it has a path to your SSL libs. Also, you can use a linker option to include the path. If you're using GCC, add a -R /path/to/lib in the makefile in the

Re: user subnet

2003-01-07 Thread Roger
Joe Maimon wrote: You can use the Framed-Route attribute in your reply if the Ascend box supports it and limit the login to once. Limiting the times the user is logged in wasn't my goal.. My goal was to assign user xyz to a certain range of ips.. Sorry about the confusion.. -- Rock River

Re: NT auth ...

2003-01-07 Thread Alan DeKok
Rodrigo Hidalgo [EMAIL PROTECTED] wrote: My question is can i with rlm_smb deny a user access when the domain user has grant dialin permission denied ?? No. The SMB module only does password checking. If you want something else to happen, you need to use another module in addition to

Re: FreeRadius vs SteelBelted, Tuning of Ports and Packets. Logs included!!!

2003-01-07 Thread Alan DeKok
Marnix Petrarca [EMAIL PROTECTED] wrote: The windows client gives an error-message: Error 734: The PPP link control protocol was terminated. The latest trailing messages logged by my FreeRadius daemon are different from the first, which leads me to think I have a combined problem: It seems

Re: Error about:rlm_eap_md5: No password configured for this user.

2003-01-07 Thread Shawn Adams
Thanks for the responses to my queries. I have the EAP/MD5 working with the win2k supplicant across a Nortel BS450 switch. users.conf: lunatic Auth-Type := Local, User-Password = test clients.conf: client 192.168.17.247 { secret = test shortname = bs450_1

Re: NT auth ...

2003-01-07 Thread Joe Maimon
Might I recommend you look at the possibility of proxy radius to the nt/w2k server which has Internet Autentication Service (installed in windows components) configured with remote access policies ? Rodrigo Hidalgo wrote: Hi all, New to this list, hopefully you can help me with my question.

Re: Solaris Issue

2003-01-07 Thread Brian Leung
hi all, when i type the command /usr/ccs/bin/ld /usr/local/openldap/lib/libldap.so SSL_get_error /usr/local/openldap/lib/libldap.so sk_value /usr/local/openldap/lib/libldap.so ber_memalloc /usr/local/openldap/lib/libldap.so ber_strdup /usr/local/openldap/lib/libldap.so ber_sockbuf_free

(no subject)

2003-01-07 Thread Nader Skaros
Hi Guys, Im a bit of a newbie when it comes to access servers, but we have got a cisco as5300 for our dialup customers and also our admin. We would like two different ip-address pools, and securing users access using ACL's. Would anyone be able to give me a quick rundown on how to do this? I

Re: AS5300, selecting IP pool

2003-01-07 Thread Evren Yurtesen
You just cant get radius send the required attribute or it sends the attribute but the as5300 somehow doesnt care? Here is a good example(although this is not actually freeradius) http://lists.cistron.nl/pipermail/cistron-radius/2001-July/001555.html Evren On Wed, 8 Jan 2003, Nader Skaros