Re: Freeradius 0.9.3 with mysql

2003-12-11 Thread Dan Monjar
--On Thursday, December 11, 2003 01:40:40 PM -0500 Alan DeKok <[EMAIL PROTECTED]> wrote: Graeme Hinchliffe <[EMAIL PROTECTED]> wrote: Will a HUP force a reload of the config? Yes. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html Were you able to a

RE: Cisco VPN 3000 experience

2003-11-19 Thread Dan Didier
Do you use group functions, or is everyone in the base group? Thanks, Dan -Original Message- From: Tom Miller [mailto:[EMAIL PROTECTED] Sent: Wed 11/19/2003 4:14 PM To: [EMAIL PROTECTED] Cc: Subject: Re: Cisco VPN 3000 experience

Cisco VPN 3000 experience

2003-11-19 Thread Dan Didier
Hi list, I was wondering what peoples experiences have been with using FreeRadius with the cisco VPN 3000 concentrator. Are there any documents outlining this? Thanks, Dan - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: FreeRadius on TRU64 UNIX 5.1B

2003-11-13 Thread Dan O'Reilly
mpile OpenLdap and BerkleyDB (if ldap support is wanted, which it was in my case) Regards Lars Evensen On Mon, 10 Nov 2003, Dan O'Reilly wrote: > I'm trying to get freeradius running on a Tru64 system (NEE: Digital > UNIX) 5.1B. THe problem: it doesn't compile properly. Sorry I c

FreeRadius on TRU64 UNIX 5.1B

2003-11-10 Thread Dan O'Reilly
ime, has anybody successfully done this to version .92? Thanks! -- +---+--------+ | Dan O'Reilly | "There are 10 types of people in this | | Principal Engineer| world: those who u

Re: FreeRadius (current) caching RSA ACE/Server requests

2003-07-28 Thread Dan Geist
Right, I was kinda figuring I could do it if I wrote it myself, just wanted to see if it had already been done by someone else who was willing to share. It's that whole re-inventing the wheel thing ;) Thanks. Dan On Mon, 2003-07-28 at 13:24, Alan DeKok wrote: > Dan Geist <[EMAI

FreeRadius (current) caching RSA ACE/Server requests

2003-07-28 Thread Dan Geist
get around RSA's "security" feature and only ask the RSA server if the cache is empty or has "expired"? Thanks. Dan -- Dan Geist | [EMAIL PROTECTED] | (404)269-6822 Network Security Engineer | Data Engineering | Cox Communications - List info/subscribe/unsubscribe?

Re: Squid with Freeradius

2003-06-05 Thread Dan Perik
hen authenticated (which can't be transparent). I believe this could be done with the proper squid proxy restriction settings. But you'd have to try it out to find out for sure. - Dan On Wed, 2003-06-04 at 15:35, Wei Ming Long wrote: Hi Dan, Excellent! It is great to know that you ar

Re: Squid with Freeradius

2003-06-04 Thread Dan Perik
e. If you can't find it, let me know, and I can e-mail it to you. The system works great for us. - Dan On Wed, 2003-06-04 at 11:32, Wei Ming Long wrote: Hi everyone, I would like to use the proxy server Squid to perform transparent proxying and to authenticate http requests wit

RE: gnoring request from unknown client

2003-04-03 Thread Rosenstein Dan
Title: RE: gnoring request from unknown client Thankis Chris, But I have 10.119.33.184 as well, which doesn't help: And clients itself should be enough (although obsolete). client 10.119.33.184 {     #     #  The shared secret use to "encrypt" and "sign" packets between     # 

gnoring request from unknown client

2003-04-03 Thread Rosenstein Dan
Title: gnoring request from unknown client Hi, I'm using freeradius 0.8.1. I try activating it from actually two types of clients (which worked successfully against other RADIUS servers). And keep getting server errors of the form: Ignoring request from unknown client 10.119.33.184:3458 Th

Re: [OT] what billing software do you suggest?

2003-03-05 Thread Dan Debertin
w MySQL, you're already well on your way to understanding it. We've used it to administer users with FreeRADIUS with an LDAP backend, and also ICRADIUS with a MySQL backend. Both worked very well. (Note -- I don't work for them; just a satisfied customer.) Dan Debertin -- ++ Dan De

Re: Upgraded to RADIUS 0.8.1 and receiving The 'op' field for attribute xxxx is NULL, or non-existent

2003-02-12 Thread Dan Bell
I have found the problem. I had data in radgroupreply which contain NULL for the op field. I just added = to the op field and voila. The problem is now solved. Thanks for your assistance and hopefully this may address someone else's problem. Best Regards, Dan Bell LondonLink Net

Upgraded to RADIUS 0.8.1 and receiving The 'op' field for attribute xxxx is NULL, or non-existent

2003-02-12 Thread Dan Bell
o eliminate the errors. Must I move these defaults into a radgroupreply, update my schema or what? Thanks for your help. Best Regards, Dan Bell LondonLink Networks - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

cant unsubscribe

2003-01-29 Thread Dan
I went to the website, put my password in, it said I was unsubscribed, but I am still getting emails. I can't use the email feature because it says I'm not subscribed. and the website says I'm not subscribed now. but I still get emails. help Dan. - List info/subscribe/unsubs

RE: unsubscribe

2003-01-16 Thread Dan
It also says to mailto: etc Dan. On Thu, 16 Jan 2003, Brian Johnson wrote: > Amazing... > > > List info/subscribe/unsubscribe? See > > http://www.freeradius.org/list/users.html > > Obviously, Dan is not a reader. :) > > - Brian J. > > >

unsubscribe

2003-01-16 Thread Dan
unsubscribe - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

cisco av-pairs rear their ugly heads

2003-01-09 Thread Dan
ode (to screen not file). and nowhere are the commands listed. Dan. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

understanding MIBs (simultaneous use with cisco's)

2002-12-11 Thread Dan
ans, so I don't know what to do with it while on the topic of MIBs, can anyone tell me what this means or what it could be used for: 1.3.6.1.4.1.9.10.19.1.1.4.0:public@usernas2 I think this is the MIB for the IP pool on an AS500, which means it could be used to keep track of how ma

possible bug in free radius 0.78 ?

2002-12-01 Thread Dan
nix groups file with the group check in the users file ? Dan. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: limiting DSL users bandwidth

2002-11-14 Thread Dan
Yes, likely its the "T" version ISO (from what I've been reading off cisco's site. but I'll try both Dan. On Thu, 14 Nov 2002, Kevin Bonner wrote: > We use IOS 12.2(4)T3 currently. Use radtest on your radius box to make sure > all reply items are being sent a

Re: limiting DSL users bandwidth

2002-11-14 Thread Dan
l IOS version like a "T" version. We use 12.2(6) right now. plain ip plus sec56, not the service provider version or anything. any suggestions ? Dan. On Thu, 14 Nov 2002, Kevin Bonner wrote: > On Wednesday 13 November 2002 14:31, Dan wrote: > > testuserAuth-Type := System &

limiting DSL users bandwidth

2002-11-13 Thread Dan
lso tried the very long config examples from Cisco's site, but those don't have any effect either. Can anyone show me an example that does work ? or how to get this working another way? I've tried this with Merit, Cistron, and freeradius (if that matters a hill of beans) a

groups not working in user file

2002-11-13 Thread Dan
orize returns ok Why isn't the user matching the group check ? Dan. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

LDAP: compare_check_items and password_attribute don't mix

2002-10-21 Thread Dan Debertin
dictionary_mapping = ${raddbdir}/ldap.attrmap } } authorize { chap files ldap } authenticate { authtype CHAP { chap } authtype LDAP { ldap } } Thanks, Dan -- /^Dan Debertin$/ [EMAIL PROTECTED] | Did I sleep a little too late, www.nodewarrior.org | or am I awake?--Byrne - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: problem with certain usernames under 0.7.1

2002-10-02 Thread Dan Monjar
Perfect! It is working now. thanks Anyone on the list running Freeradius under Tru64? On Tue, Oct 01, 2002 at 06:10:05PM -0700, Frank Cusack wrote: > On Tue, Oct 01, 2002 at 08:48:39PM -0400, Dan Monjar wrote: > > the users. The odd thing is the users that fail all have a user

problem with certain usernames under 0.7.1

2002-10-01 Thread Dan Monjar
r P before trying to do a match. In other words, SMITHP1 becomes MITHP1 before the lookup is done. Any suggestions? -- Dan Starting - reading configuration files ... reread_config: reading radiusd.conf Config: including file: /usr/local/etc/raddb/proxy.conf Config: including file: /usr/loc

radrelay good start, what about the primary server?

2002-06-24 Thread Dan Roberts - GWIS
sts within FreeRADIUS, or is possible with radrelay? Thank you. -- Dan Roberts, Systems EngineerVoice 800.656.GWIS GWIS Internet Solutions Fax330.656.5440 - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Radius Client Implementation

2002-06-06 Thread Dan Perik
If you're looking for something to act as a PC-based NAS, check out portslave at sourceforge. - Dan On Fri, 2002-05-31 at 17:11, Tay Shwu Ying wrote: > Hi all, > > I am a new user in FreeRadius and I would like to enquire if there is any > sample FreeRadius client implemen

Two RADIUS servers on the same box

2002-05-03 Thread Dan Bell
Is it possible to run two RADIUS servers on the same box (i.e. one RADIUS server serving port 1645 and another daemon serving port 1812)? Thanks, Dan - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Compile errors Version 0.5 on Redhat 7.1

2002-04-07 Thread Dan Perik
Under RedHat 7.0 I had to "./configure --without-rlm_x99_token" to get it to compile. Under RedHat 7.2 it compiled fine without need to configure out the "rlm_x99_token" module. From the looks of it, rlm_x99_token is pretty obscure. I know I didn't need it. Hope t

radiusd pidfile

2002-03-24 Thread Dan Perik
nything other such thing that might bite me later. Any comments? Thanks, - Dan -- - Dan Perik Computer Services Department Lapilo Center New Tribes Mission - PNG - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Could not link driver rlm_sql_mysql: file not found

2002-03-20 Thread Dan Bell
. I get this same message on the full config. What am I doing wrong? Thank you. Dan - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

SQL can't authenticate after 0.4 -> 0.5 upgrade

2002-03-19 Thread Dan Perik
o do now? What should I put in my "authenticate" section of radiusd.conf (if sql can't be there any more)? What should I put in my "users" file? Thanks, Dan -- - Dan Perik Computer Services Department Lapilo Center New Tribes Mission - PNG - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: rlm_ldap patch

2002-03-19 Thread Dan Perik
I just got the snapshot and see your fix. Thank you. I thought of using a "goto", but having drilled into me that if you can use something else, do it, I choose to restructure. Perhaps this is one of those exceptions where a "goto" is the cleanest way. Thanks for you

rlm_ldap patch

2002-03-17 Thread Dan Perik
rot your hard drive and cause your business to go bankrupt. - Dan -- - Dan Perik Computer Services Department Lapilo Center New Tribes Mission - PNG 157a158,160 > /* By Dan Perik */ > static int search_connect( void *instance, int res ); > 313a317 > int

LDAP connection timeout problems

2002-03-17 Thread Dan Perik
is looks like a bug in the FreeRadius rlm_ldap module. What are the chances of getting it fixed? I'm working on a patch, by my C is extremely rusty. It's not something I use every day as an systems/network admin. For the time being I can use configurable_failover so that if the fi

Re: Are 2 different auth types allowed

2002-03-17 Thread Dan Perik
On Tue, 2002-03-12 at 09:36, Dan Perik wrote: > On Tue, 2002-03-12 at 01:29, Alan DeKok wrote: > > Dan Perik <[EMAIL PROTECTED]> wrote: > > > Now, I'd like to extend that and allow FreeRadius to also try SQL > > > auth. So it would try LDAP first, and if th

Re: Are 2 different auth types allowed

2002-03-11 Thread Dan Perik
On Tue, 2002-03-12 at 01:29, Alan DeKok wrote: > Dan Perik <[EMAIL PROTECTED]> wrote: > > Now, I'd like to extend that and allow FreeRadius to also try SQL > > auth. So it would try LDAP first, and if the user isn't found (or > > even on a bad password), I

Are 2 different auth types allowed

2002-03-10 Thread Dan Perik
LDAP Fall-Through = 1 DEFAULT Auth-Type += sql Fall-Through = 1 Thanks, Dan -- - Dan Perik Computer Services Department Lapilo Center New Tribes Mission - PNG - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Passing access-list number from Radius server to Cisco PIX firewall - FreeRadius v0.4

2002-02-21 Thread dan kelley
each user where xxx is the number of your access list. good luck- dan > I'm trying to set a configuration with a PIX firewall as an authentication > gateway, relying on a freeradius server, which picks up users in a LDAP > directory. > I'd like to be able to : > - pass acce

okeeffe.bestweb.net re-sending all freeradius posts back to list

2002-02-12 Thread dan kelley
Hi- okeeffe.bestweb.net is re-sending every message that's been sent to this list in the last week or so. Is there any way that this address can be blocked until they fix thr problem? Thanks- Dan -- Forwarded message -- Return-Path: <[EMAIL PROTECTED]> Delivered

RE: Radius Died, restarting...

2001-10-02 Thread Dan Houtz
When I do a ps ax it shows up as: sh /usr/sbin/radwatch /usr/sbin/radiusd -y Dan Houtz -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of Juan Carlos Castro y Castro Sent: Tuesday, October 02, 2001 1:59 PM To: [EMAIL PROTECTED] Subject: Re: Radius Died

Radius Died, restarting...

2001-10-02 Thread Dan Houtz
I'm getting a "Radius died, restarting..." email about every ten seconds in root's mail. I assume this is being generated by radwatch. If I call radiusd directly without using radwatch, it runs perfectly and never seems to crash, so why is radwatch saying it is crashing? A

Group authentication

2001-09-30 Thread Dan Houtz
Greetings, Is it possible to configure FreeRadius to only authenticate system accounts that belong to a specific group? I'd like it to only accounts that belong to group "pppusers" while rejecting accounts belonging to other groups such as "emailusers". Thanks Dan Houtz

Authentication

2001-09-29 Thread Dan Houtz
customers to be able to telnet into the system. To stop this I set their shell to /bin/false. This stops them from telneting in but it also causes FreeRadius to respond with a reject. Am I going about this in the wrong way? Your assistance is appreciated.   Thanks, Dan Houtz  

Re: Call for 0.3 release.

2001-09-23 Thread Dan Perik Work
On Sun, 23 Sep 2001 10:09:11 -0400 [EMAIL PROTECTED] wrote: > "Dan Perik Work" <[EMAIL PROTECTED]> wrote: > > Unless the memory leak in the LDAP module is already > fixed > > (I haven't seen posts saying that it was), that would > seem a > &

Re: pppd + freeradius ?

2001-09-22 Thread Dan Perik
Check out portslave. - Dan Jorge Minassian wrote: > Hi all !, > Some one knows how to patch pppd-2.4.0, in order to get in running agains > radius ?. > Is it posssible ?. > I need to authenticate VPN users, using radius, instead pap/cap-secrets. > > Thank you fopr any he

Re: Call for 0.3 release.

2001-09-22 Thread Dan Perik Work
Unless the memory leak in the LDAP module is already fixed (I haven't seen posts saying that it was), that would seem a high priority for me. - Dan Perik On Fri, 21 Sep 2001 13:55:23 -0400 <[EMAIL PROTECTED]> wrote: > The list of changes from 0.2 is long. There are a &

Re: radiusd and time limit for one day

2001-08-27 Thread Dan Perik
Thank you all very much for your answer(s). I think that's what I'm looking for. Now to find time to implement it... -- - Dan Perik Computer Services Department Lapilo Center New Tribes Mission - PNG - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: radiusd and time limit for one day

2001-08-23 Thread Dan Perik
And so on. Is that possible, and if so how? - Dan Perik Paul Foxton wrote: > Hi, > > Not 100% surewhat you want to do, but if you mean you want to set the time a > user can log in: yes it is possible, with Login-Time. > > You need to specify this in the first line of your entry for t

Advice on a RAS

2001-08-16 Thread Dan Perik
and I'd run Portslave on them, of course. Any advice on which way to go with this stuff, or better options. Thanks, Dan Perik -- - Dan Perik Computer Services Department Lapilo Center New Tribes Mission - PNG - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

(Freeradius 0.1 vs. Freeradius 0.2) + LDAP

2001-08-14 Thread Dan Perik
So my question is, Is LDAP support working correctly in 0.2? Or should I stick with what works for me here and now, and wait for the (supposed) bugs in 0.2 to be flushed out? Thanks, Dan Perik -- - Dan Perik Computer Services Department Lapilo Center New Tribes Mission - PNG - List info/subs