Huntgroup Relm Question

2003-11-16 Thread Paul Peters
Hi,   I’m setting up FreeRADIUS Huntgroups and have run into a configuration dilemma. We have several local dialup pops, plus 2 realms from a wholesale national dialup network. One realm is for hourly accounts, and the other for unlimited accounts. Currently, I’ve configured Radius to str

Re: Quintum Help

2003-11-16 Thread Amgaabaatar Purevjal
Never mind I found the error. It was typo that I put ammount instead of amount Thanks a lot Please ignore prevouis reply Alan DeKok <[EMAIL PROTECTED]> wrote: Amgaabaatar Purevjal <[EMAIL PROTECTED]>wrote:> Could you help me to configure freeradius for quintum . I installed> radius. But itis reject

Re: Quintum Help

2003-11-16 Thread Amgaabaatar Purevjal
Thanks The reason I edit dictionary files. I've got following error messages when I start radiusd    files: compat = "no"/etc/raddb/users[3]: Parse error (reply) for entry 12345: Unknown attribute Quintum-h323-credit-ammountErrors reading /etc/raddb/usersradiusd.conf[921]: files: Module instantiat

Re: How to insert an attribuite into a proxy-reply packet ?

2003-11-16 Thread Allen Chung
Sorry, I don't know how to make it work. Could you tell me more about it ?   I use freeradius to be a proxy server.    A <===> MySite <=> B I want each Auth-Reply to be one of below cases.   1. If the Session-Timeout is defined and the value is great than 0, proxy the reply-packet w

Re: Problem with EAP-TTLS+AEGIS Client

2003-11-16 Thread Jason Haar
On Mon, Nov 10, 2003 at 05:18:34PM +0200, Kostas Kalevras wrote: > Probably with small enough certificates to not worry about fragmentation. ..a bit off topic - but "large" certificates in general seem to be a problem with all sorts of SSL apps. We are running a full-blown internal CA, and so hav

Try to get NetGear ME103 work with freeRadius

2003-11-16 Thread Richard Yang
Hi, I'm running into trouble to get the freeRadius work with NetGear ME103 Access Point (ME103, 302.img). I'm attaching the log file (-X option) and radiusd.conf file. From the log, it seems to be the ME103 first send EAP-identity with the MAC address, then send in the user name in second acc

Re: rlm_* not present - server won't run

2003-11-16 Thread Sancho2k.net Lists
ion in the list archives and found some threads mentioning the inability to compile correctly on OpenBSD 3.3, but the problems related to inet_aton missing from lresolv, or something. My configure output shows: 'checking for inet_aton in -lresolv... yes'. Also suggested was to conf

Re: Problem with PEAP.

2003-11-16 Thread Bill Reid
I didn't want to. I was hoping to give it to someone specific. This is from the server side, it should demonstrate what I think I am seeing. I don't have the client side frames handy but they pretty much looked the same. Here ya go. Do what you will with it. It is tcpdump output. -=Bill A

RADIUS challenge-response

2003-11-16 Thread Asif Iqbal
In the pam_radius_auth src's INSTALL file says this "Users who have have a RADIUS challenge-response configuration must enter an initial password, unless 'skip_passwd' (see below) is defined. The password they enter may not be blank or empty." Is that mean a user can use blank/empty password cou

Re: Problem with PEAP.

2003-11-16 Thread Alan DeKok
Bill Reid <[EMAIL PROTECTED]> wrote: > I am definetly seeing two EAP portions in the frame. I have not gone > looking for where that might be happening. ... > ethereal sees it as a RADIUS frame, Can you please post an EXACT image of the packet? What you posted is an edited summary, and doesn'

Re: Login into radius

2003-11-16 Thread Kostas Kalevras
On Sat, 15 Nov 2003, Zoup wrote: > is this possible to login into radius server ( with somesort of tool like > radtest ) some who that radius think (!) user is online ? What do you mean by that? Test the user logon or make sure you get an access-accept even if the radius server believes the user

Re: dialup_admin

2003-11-16 Thread Kostas Kalevras
On Fri, 14 Nov 2003, apellido jr., wilfredo p wrote: > Good day Mr. Kalevras, as your suggestion im tried to > create a script to perform manual reset in GDBM > database(db.monthly). I want to synchronize the update > of GDBM database and MySQL. My question is after > sucessfully reseting user's c

Re: rlm_ldap doesn't support multiple attribute-fields anymore?

2003-11-16 Thread Kostas Kalevras
On Fri, 14 Nov 2003, DMcLF wrote: > hi, > > i just upgraded from freeradius 0.8.1 to 0.9.2, and i noticed that > rlm_ldap doesn't support multiple (same) attribute fields anymore.. > anyone knows if this is on purpose, or a programming glitch? > > this isn't so nice for me, since i use a lot of th

AcctStopTime problem

2003-11-16 Thread radius
Running RH7.3-MySQL 3.23.58-freeradius.0.9.0, when a dialup user log's in and happens to get dissconnected via bad modem or Verizon's junk phone lines my radacct fails to log the AcctStopTime (00:00:00) I have raddb.conf set to reject multiple logging and since no stop time is logged users get reje

Re: Problem with PEAP.

2003-11-16 Thread Bill Reid
That's what I hoped I am definetly seeing two EAP portions in the frame. I have not gone looking for where that might be happening. I am a little familiar with libpcap but a really terrible programmer. The frame looks kinda like this. ethereal sees it as a RADIUS frame, HEADERs: Radius P

Re: rlm_* not present - server won't run

2003-11-16 Thread Alan DeKok
"Sancho2k.net Lists" <[EMAIL PROTECTED]> wrote: > Commenting this out causes the next module to not be found. I see that > ALL of the defined modules I have are not found. Am I not supposed to > have a .so file for every module? Yes. If you don't, go back and read the output of "make", and t

Re: Problem with PEAP.

2003-11-16 Thread Alan DeKok
Bill Reid <[EMAIL PROTECTED]> wrote: > The only thing I noticed looking at the packet with an analyzer was that > there were two EAP sections in the frame. I don't however know if this > is normal behavior. Also I didn't really know where the actual mschap > challenge was supposed to be locate

Re: CHAP authentication

2003-11-16 Thread Alan DeKok
"apellido jr., wilfredo p" <[EMAIL PROTECTED]> wrote: > Im just asking so that i can sure that chap > authentication doesnt work and maybe someone could > give some comment. Hoping maybe i miss something. I > test it already before asking this in mailing list and > it doesnt work. Then say that

Problem with PEAP.

2003-11-16 Thread Bill Reid
I have been having a problem with PEAP using mschapv2. Looks to me like the client is not responding to the access challenge. I was able to see the challenge make it to the client (XP client), however it does not respond. The only thing I noticed looking at the packet with an analyzer was that

CHAP authentication

2003-11-16 Thread apellido jr., wilfredo p
Good day Mr. Dekok, sorry if im asking stupid question. Im just asking so that i can sure that chap authentication doesnt work and maybe someone could give some comment. Hoping maybe i miss something. I test it already before asking this in mailing list and it doesnt work. = wilfredo pahilang

rlm_* not present - server won't run

2003-11-16 Thread Sancho2k.net Lists
After configuring radiusd.conf: # /usr/local/freeradius-0.9.2/sbin/radiusd -X [...] radiusd: entering modules setup Module: Library search path is /usr/local/freeradius-0.9.2/lib:/usr/lib:/usr/local/lib radiusd.conf[523] Failed to link to module 'rlm_chap': file not found Commenting this out ca

Websehri.com Açýldý

2003-11-16 Thread websehri
www.websehri.com Websehri.com Acildi - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html