Re: pppd + freeradius

2003-08-29 Thread Frank Cusack
On Thu, Aug 28, 2003 at 10:23:26AM +0600, Eric wrote: > Has anybody linked ppp-daemon to freeradius server. > The 2.4.2b3 release of ppp has its own radiusclient, but it doesn't work. It works. You're misconfiguring it, or something. /fc - List info/subscribe/unsubscribe? See http://www.freerad

Vexira ALERT [your mail: "Re: Your application"]

2003-08-29 Thread postmaster
* * * * * * * * * * * * * * * Vexira ALERT * * * * * * * * * * * * * * * This version of Vexira MailArmor is licensed and full featured. Vexira has detected the following in a mail from your address: Worm/Sobig.F The mail was not delivered. Your computer may be infected with a virus

Re: rlm_unix error invalid password

2003-08-29 Thread Alan DeKok
Matt Whiteley <[EMAIL PROTECTED]> wrote: > The radiusd.conf file contains a unix module for authentication and I > have tried it with the passwd, group, and shadow files commented and > uncommented. I have tried running the server as root (to assure read > access on these files) or as the default

rlm_unix error invalid password

2003-08-29 Thread Matt Whiteley
I am using the freeradius-0.8.1-7 rpm on Redhat 9. I have tried to compile freeradius 0.9 without luck so my authenticate failure is on 0.8.1. I have placed an entry in clients.conf: client 192.168.1.0/24 { secret = test shortname = wlan } The users file contains

Re: RADIUS-LDAP / US Robotics Authentification

2003-08-29 Thread Alan DeKok
Octavio Ramirez Rojas <[EMAIL PROTECTED]> wrote: > How I make to sent the information (login, password) of the obile node > towards the AP? You read the AP documentation, and see that the AP will require the client to do EAP, to send the passwords. So EAP-TLS, or EAP-TTLS, just like I said in

Re: RADIUS-LDAP / US Robotics Authentification

2003-08-29 Thread Octavio Ramirez Rojas
Maybe I'm mistaken, I want to send user's login and password from the node mobile to the AP, inmediately the AP communicates with RADIUS server and this one with LDAP server to make the authentication. It's logic? I put the AP's addresse IP, in "clients.conf" file of freeradius. How I make to sen

Re: RADIUS-LDAP / US Robotics Authentification

2003-08-29 Thread Alan DeKok
Octavio Ramirez Rojas <[EMAIL PROTECTED]> wrote: > for LDAP user's autentification, i need the certificates? No. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: RADIUS-LDAP / US Robotics Authentification

2003-08-29 Thread Octavio Ramirez Rojas
for LDAP user's autentification, i need the certificates? Le ven 29/08/2003 à 17:04, Alan DeKok a écrit : > Octavio Ramirez Rojas <[EMAIL PROTECTED]> wrote: > > I used tcpdump, there is not communication between RADIUS server and AP > > US robotics. > > Then that's why it doesn't work. > > >

Re: RADIUS-LDAP / US Robotics Authentification

2003-08-29 Thread Alan DeKok
Octavio Ramirez Rojas <[EMAIL PROTECTED]> wrote: > I used tcpdump, there is not communication between RADIUS server and AP > US robotics. Then that's why it doesn't work. > # tcpdump host 193.51.25.110 or 153.51.25.186 > > (*nothing is happened*) The 'tcpdump' should be in the netwo

Re: RADIUS-LDAP / US Robotics Authentification

2003-08-29 Thread Octavio Ramirez Rojas
hi, I used tcpdump, there is not communication between RADIUS server and AP US robotics. Example: 193.51.25.186 = buckingham = AP US robotics 193.51.25.104 = chronos = Mobile node 193.51.25.110 = azteca = RADIUS server # tcpdump host 193.51.25.186 or 193.51.25.104 tcpdump: listening on eth1 16:1

Re: EAP/TLS trouble

2003-08-29 Thread Fabrice Beauvir
Yes, I agree with you, the problem comes from My AP. Thank you for these precisions I am actually contacting Intel and I 'll share with you feedback. Anyway If anybody have some tips and feedback about using Intel Pro Wirelless 5000 Alan DeKok wrote: I'm willing to change the code in

Re: max_request and max_servers in radiusd.conf

2003-08-29 Thread Alan DeKok
Rohaizam Abu Bakar <[EMAIL PROTECTED]> wrote: > ii) Unresponsive child > > Fri Aug 29 11:49:56 2003 : Error: WARNING: Unresponsive child (id > 135796736) for request 32216 > > => Anybody can explain this error?? Search the mailing list archives. One of your back-end databases is incredibly

Re: freeradius 0.9.0 EAP : LEAP and TLS supported on the same server?

2003-08-29 Thread Alan DeKok
"Patrick Mowry" <[EMAIL PROTECTED]> wrote: > So does this mean if you need EAP-TLS and LEAP for two seperate services > you need seperate freeradius servers? No. There's only one DEFAULT type. The client can say "I don't like that EAP type, let's do X" > Short version is I want LEAP for Cisco

EAP-TLS problem

2003-08-29 Thread Yu-Ping Wang
Hi,   I use WinXP supplicant to authenticate with FreeRADIUS server by EAP-TLS.   On RADIUS server debug mode "run-radiusd -X -A", I see Access-Accept log, and my network adaptor status is authenticated successfully.   ping AP, I got reply from message, but, after 5 sec, I got request timeou

Re: Calling-Station-Id

2003-08-29 Thread Oliver Graf
On Fri, Aug 29, 2003 at 01:08:51PM +0100, João Filipe Frade wrote: > Ok i found it, its a simple hack. > Is there any reason not to include "#" in the sql fields? > AFAIK the "#" insn't a reserved char in SQL. When you search the list archives, you should find some discussion about this topic whic

Re: max_request and max_servers in radiusd.conf

2003-08-29 Thread Kostas Kalevras
On Fri, 29 Aug 2003, Rohaizam Abu Bakar wrote: > > Freeradius version: 0.9.0 > Authentication method: LDAP - openldap-2.0.27.tgz > Running in ISP enviroment connected to various kind of NAS > > > Found a few errors in radius.log > > i) thread error > > /var/log/radius.log.0.gz:Thu Aug 28 18:59:19

Re: Net-snmpk and checkrad

2003-08-29 Thread Kostas Kalevras
On Fri, 29 Aug 2003, Ali Gunduz wrote: > Hi, > > I noticed that snmpget (and snmpwalk) syntax used in checkrad script is > not compatible with net-snmp's (5.0.7) snmpget and snmpwalk.. > > In checkrad, syntax is like: > snmpget -r 1 -t 5 host community oid > > Whereas net-snmp syntax is: > snmpget

RE: Calling-Station-Id

2003-08-29 Thread João Filipe Frade
Ok i found it, its a simple hack. Is there any reason not to include "#" in the sql fields? AFAIK the "#" insn't a reserved char in SQL. TIA, Joao Frade - --- rlm_sql.c.old 2003-08-29 12:43:26.0 +0100 +++ rlm_sql.c 2003-08-29 12:53:17.0 +0100 @@ -253,7

Net-snmpk and checkrad

2003-08-29 Thread Ali Gunduz
Hi, I noticed that snmpget (and snmpwalk) syntax used in checkrad script is not compatible with net-snmp's (5.0.7) snmpget and snmpwalk.. In checkrad, syntax is like: snmpget -r 1 -t 5 host community oid Whereas net-snmp syntax is: snmpget -r 1 -t 5 -c community host oid Does everyone fix chec

Re: Calling-Station-Id

2003-08-29 Thread Oliver Graf
On Fri, Aug 29, 2003 at 12:14:15PM +0100, João Filipe Frade wrote: > How can i preserve the original "Calling-Station-Id" (whithout # -> =23 conversion)? hack rlm_sql.c Oliver. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Calling-Station-Id

2003-08-29 Thread João Filipe Frade
Hello, I noticed the following behavior regarding the "Calling-Station-Id". Running the server (freeradius 0.9.0) in debug mode: ... Acct-Status-Type = Start Calling-Station-Id = "#pcs-br1#A11#206#409" ... radius_xlat: 'INSERT into radacct (... , CallingStationId, ...) values(... , '=23pcs-br1=

Message from the ELC

2003-08-29 Thread dawn . t . turton
Dawn Turton is on leave until September 22nd. For information about the English Language Center, please contact Susan Barone at [EMAIL PROTECTED] or Lee Martin at [EMAIL PROTECTED] - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: LOg to syslog

2003-08-29 Thread a . l . m . buxey
Hi, > No, not directly. You would not want to do this anyway as syslog can be quite > slow.. learn the '-' flag ? s'funny i was going to ask exactly the same question about syslog capability yesterday some minds seem to think alike! radius.*-/var/log/radius.log would be ide

Re: How to creat NT-Password

2003-08-29 Thread 3APA3A
Dear Sunny Wong, You can do it with smbencrypt utility from rlm_mschap module. --Friday, August 29, 2003, 9:26:21 AM, you wrote to [EMAIL PROTECTED]: SW> If I use mschap+freeradius+mysql,how to creat NT-password? What tools can encrypt cleartext to nt-password? SW> thanks? -- ~/ZARAZA 腕 ??鲥腩

Agustos bulteni

2003-08-29 Thread Toy
www.Jeton.net Aðustos Güncellemeleri * 17 farklý kategoride 3.000 in üzerinde hazýr sms mesajý * Ücretsiz sms servisleri * 70 yeni melodi * Cep telefonu alým-satým panosu http://www.Jeton.net Sitemiz tamamen ücretsizdir ve reklam dahi yoktu

VIRUS IN YOUR MAIL

2003-08-29 Thread postmaster
V I R U S A L E R T Our viruschecker found the I-Worm.Sobig.f.txt I-Worm.Sobig.f viruses in your email to the following recipient: -> <[EMAIL PROTECTED]> Delivery of the email was stopped! Please check your system for viruses, or ask your system adm

max_request and max_servers in radiusd.conf

2003-08-29 Thread Rohaizam Abu Bakar
Freeradius version: 0.9.0 Authentication method: LDAP - openldap-2.0.27.tgz Running in ISP enviroment connected to various kind of NAS Found a few errors in radius.log i) thread error /var/log/radius.log.0.gz:Thu Aug 28 18:59:19 2003 : Info: The maximum number of threads (32) are active, canno

Huntgroups Problem

2003-08-29 Thread Adam Łoboda
Hi everyone, I have encountered strange problem lately, and i don't know how to manage it Here what happens: I got users defined in /etc/passwd and /etc/shadow, additionaly there is a mirror in radius users file as follows (OS is the Sun OS 7) /etc/passwd aloboda:x:1001:101:Adam Loboda, Admin

Re: missing acct attributes

2003-08-29 Thread Oliver Graf
On Fri, Aug 29, 2003 at 08:09:25AM +0200, Chris Knipe wrote: > > Why not just tell acct_unique in its config that it should not look > > for NAS-Port-ID or substitute something else for it? > > > > And the second solution is nearly as obvious: patch pppd to do it > > right. There should be source c

RE: How to creat NT-Password

2003-08-29 Thread Matt Sapp
I'm sure theres some other way to do it, but this is what I came up with quick and dirty: # cat make_ntpwd.pl #!/usr/bin/perl $cleartext = $ARGV[0]; use Crypt::SmbHash; ($lm, $nt) = ntlmgen($cleartext); print "LM = $lm\nNT = $nt\n"; -Matt MNU Network Security Administrator --- Original Message

Re: missing acct attributes

2003-08-29 Thread Chris Knipe
- Original Message - From: "Oliver Graf" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Friday, August 29, 2003 7:52 AM Subject: Re: missing acct attributes > On Fri, Aug 29, 2003 at 01:28:38AM +0200, Chris Knipe wrote: > > This is very interesting, and for many months looked more tha

Re: missing acct attributes

2003-08-29 Thread Oliver Graf
On Fri, Aug 29, 2003 at 01:28:38AM +0200, Chris Knipe wrote: > This is very interesting, and for many months looked more than fine to me. > HOWEVER, Freeradius is now complaining (especially radutmp and rlm_ippool) > that there is no NAS-Port-ID specified (which, I can COMPLETELY understand). > The

How to creat NT-Password

2003-08-29 Thread Sunny Wong
If I use mschap+freeradius+mysql,how to creat NT-password? What tools can encrypt cleartext to nt-password? thanks獠丕~?够?撖殪够??纭囤?0~??b菏+?b策畋觎?¥

Vexira ALERT [your mail: "Re: Details"]

2003-08-29 Thread postmaster
* * * * * * * * * * * * * * * Vexira ALERT * * * * * * * * * * * * * * * This version of Vexira MailArmor is licensed and full featured. Vexira has detected the following in a mail from your address: Worm/Sobig.F The mail was not delivered. Your computer may be infected with a virus

Authenticate failure (newbie problem)

2003-08-29 Thread Matt Whiteley
I am using the freeradius-0.8.1-7 rpm on Redhat 9. I have tried to compile freeradius 0.9 without luck so my authenticate failure is on 0.8.1. I have placed an entry in clients.conf: client 192.168.1.0/24 { secret = test shortname = wlan } The users file contains