RE: WPA w/ EAP-TLS against 0.8.1

2003-10-02 Thread Jeremy
I've got a cisco 1200 AP using LEAP with WEP/TKIPwhich is basically the same thing as wpa I think Its just the pre standard version of it that cisco has been using for years -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Ian Pritchard Sent: Thursda

RE: TLS and TTLS

2003-09-29 Thread Jeremy Davis
Umm 802.1X was designed by meetinghouse www.mtghouse.com for incorporation with HP for their Procurve line of products. Funk Software co-invented EAP-TTLS with Certicom. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Nixon, Anthony S. Sent: Monday

RE: Hotspot billing

2003-09-17 Thread Jeremy Davis
Sweet, I will break out my P-360 and give it a whirl. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Alan DeKok Sent: Tuesday, September 16, 2003 12:05 PM To: [EMAIL PROTECTED] Subject: Re: Hotspot billing "Jeremy Davis" <[EMAIL PROT

RE: Hotspot billing

2003-09-16 Thread Jeremy Davis
Like a radius client capable of PAP or CHAP authentication would be a good start. It only has an 802.1x client, so the only password enable authentication revolves around EAP-MD5 which has yanked from XP SP1. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED

RE: Wi-fi hotspot

2003-09-16 Thread Jeremy Davis
type of application. If you need help contact me off-list. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Brynjar Hauksson Sent: Tuesday, September 16, 2003 10:28 AM To: [EMAIL PROTECTED]; 'Tom Emerson' Cc: [EMAIL PROTECTED] Subject: RE: Wi-

RE: Hotspot billing

2003-09-15 Thread Jeremy Davis
Just use PAP, every hotspot controller I have used minus the Gemtek P-360 support PAP and CHAP. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of De Schrijver Peter Sent: Monday, September 15, 2003 10:47 AM To: [EMAIL PROTECTED] Subject: AW: Hotspot

RE: Bandwith limiting of wireless users.

2003-09-14 Thread Jeremy Davis
e so many ways to do rate limiting, it just depends on your topology. This post is getting extreme off topic, if you need any more help, email me directly. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Evren Yurtesen Sent: Sunday, September 14, 200

RE: Bandwith limiting of wireless users.

2003-09-13 Thread Jeremy Davis
PPPoE can provide link encryption, I know this is starting to get off topic. If you like a Cisco IOS like feel, then definitely microtik is probably the way to go. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Alan DeKok Sent: Saturday, September

RE: Radius auth based on Mac addresses

2003-09-12 Thread Jeremy Davis
StarOS can also do this. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Redi Tela Sent: Friday, September 12, 2003 6:53 AM To: [EMAIL PROTECTED] Subject: RE: Radius auth based on Mac addresses Have a look at www.mikrotik.com , section Hotspot

RE: clients.conf

2003-08-22 Thread Jeremy Davis
having a mandatory static IP address at the location. Can you specify a domain name instead of a ipaddress? Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Chris Parker Sent: Friday, August 22, 2003 12:10 PM To: [EMAIL PROTECTED] Subject: Re

RE: clients.conf

2003-08-22 Thread Jeremy Davis
I guess free radius just doesnt like this catch all type of client unless this is something else I need to configure for it my entry is client { secret = 0.0.0.0/0 shortname = testing } I dunno. jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of

RE: Info on using mysql with freeradius

2003-08-20 Thread Jeremy Davis
its not real complex once again look under docs folder in the source code for rlm_sql docs, it has a link to a gentleman's website that has more information and configuration examples Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of MPDU Interne

RE: Info on using mysql with freeradius

2003-08-20 Thread Jeremy Davis
read the under docs, it has a link to a site that gives examples. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Thor Spruyt Sent: Wednesday, August 20, 2003 2:57 PM To: [EMAIL PROTECTED] Subject: Re: Info on using mysql with freeradius > Hi

RE: FreeRADIUS now part of Red Hat Linux

2003-08-20 Thread Jeremy Davis
Thanks for the explanation. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Paul Hampson Sent: Wednesday, August 20, 2003 1:50 PM To: [EMAIL PROTECTED] Subject: RE: FreeRADIUS now part of Red Hat Linux > From: Jeremy Davis > Sent: Thursd

RE: FreeRADIUS now part of Red Hat Linux

2003-08-20 Thread Jeremy Davis
Where are the free radius debian packages, I don't see them in testing or stable. Maybe unstable? Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Peter Nixon Sent: Wednesday, August 20, 2003 10:30 AM To: [EMAIL PROTECTED] Subject: Re: FreeR

RE: users configuration using mysql

2003-08-19 Thread Jeremy Davis
If all your users are using chap, set default chap authentication in the users file. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of apellido jr., wilfredo p Sent: Tuesday, August 19, 2003 11:48 AM To: [EMAIL PROTECTED] Subject: users configuration

RE: clients.conf

2003-08-19 Thread Jeremy Davis
I understand that much. I the ips range from 141. 208. 65. to a few others. I tried using the 0.0.0.0/1 but that only worked when the nas was behide a firewall with a private address. Thanks Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Oliver

clients.conf

2003-08-19 Thread Jeremy Davis
I want to have just one entry into clients.conf for all of my radius usage. I tried the man page, it wasn't there, but its referenced to exist in man clients. Anyway if someone could point to me the document, the man page, or the answer. TiA, Jeremy - List info/subscribe/unsubscribe

RE: Advantages of Using SQL ?

2003-08-14 Thread Jeremy Davis
It is a good analogy, obviously if you had millions of girlfriends it would take more memory :) Memory in both cases would still be faster, anything loaded in memory will always be faster, anything accessing a harddrive will almost always be the bottleneck compard to loading from memory. Jeremy

Auth-Type

2003-08-14 Thread Jeremy Davis
I am not reference the authtype anywhere when using SQL. Its not referenced in the user file either. I am assuming it doesn't need to be set? Or does this cause conflicts down the road, so far everything is working ok? Jeremy - List info/subscribe/unsubscribe? See http://www.freeradiu

RE: Sample config on Redhat with proxy

2003-08-14 Thread Jeremy Davis
Download the software, it comes with a variety of documentation. Also at freeradius.org there is a FAQ. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Dick Lau Sent: Wednesday, August 06, 2003 12:32 AM To: [EMAIL PROTECTED] Subject: Sample config

huntgroups

2003-08-14 Thread Jeremy Davis
huntgroups in a SQL database? Or is that possible already and I have overlooked it somewhere. TIA Jeremy - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: Interface with standard wireless access point

2003-08-14 Thread Jeremy Davis
In my lab I have an Proxim AP2500, Nomadix USG, Colubris CN3000, P-360, and a Engenius something or other all running against freeradius. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Wireless Orbit Inc Sent: Monday, August 04, 2003 8:00 PM To

RE: Advantages of Using SQL ?

2003-08-08 Thread Jeremy Davis
But the argument was never about effiency, it was about speed. SQL makes a lot more sense if you have a lot of users. The maintence would be easier as well. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Evren Yurtesen Sent: Tuesday, August 05

RE: Advantages of Using SQL ?

2003-08-04 Thread Jeremy Davis
Killer analogy :) Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Peter Nixon Sent: Monday, August 04, 2003 3:24 PM To: [EMAIL PROTECTED] Subject: Re: Advantages of Using SQL ? On Tue August 5 2003 06:37, Evren Yurtesen wrote: > Well, if that

RE: Has anyone been able to get rlm_sql to auth users

2003-07-29 Thread Jeremy Davis
I have it running authenticating hotspot controllers in my lab. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Alan DeKok Sent: Tuesday, July 29, 2003 3:44 PM To: [EMAIL PROTECTED] Subject: Re: Has anyone been able to get rlm_sql to auth users Guy

RE: Cisco leap problem with pre3

2003-07-19 Thread Jeremy Salch
Re: Cisco leap problem with pre3 "Jeremy Salch" <[EMAIL PROTECTED]> wrote: > I created it again and this time it showed up as follows ... Which is exactly the same set of error messages. > I couldn't seem to make it happen in -X mode. Which makes things > difficu

RE: Cisco leap problem with pre3

2003-07-18 Thread Jeremy Salch
Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Paul Hampson Sent: Friday, July 18, 2003 4:42 PM To: [EMAIL PROTECTED] Subject: RE: Cisco leap problem with pre3 > From: Jeremy Salch > Sent: Saturday, 19 July 2003 7:28 AM > Well.. Actually. I spoke t

RE: Cisco leap problem with pre3

2003-07-18 Thread Jeremy Salch
t: Re: Cisco leap problem with pre3 "Jeremy Salch" <[EMAIL PROTECTED]> wrote: > Fri Jul 18 14:33:10 2003 : Error: Discarding new request from client > GDC-T1-AP2:4849 - ID: 136 due to live request 88 This has nothing to do with LEAP. Something is causing the server to

RE: Cisco leap problem with pre3

2003-07-18 Thread Jeremy Salch
Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Alan DeKok Sent: Friday, July 18, 2003 4:20 PM To: [EMAIL PROTECTED] Subject: Re: Cisco leap problem with pre3 "Jeremy Salch" <[EMAIL PROTECTED]> wrote: > Fri Jul 18 14:33:10 2003 : Error: Discarding new

Cisco leap problem with pre3

2003-07-18 Thread Jeremy Salch
When about 12 clients are logging in using leap to a AP I get this error in the radius logfile And at the same time on the AP I get "No EAP response from server" and then "Failed EAP-Authentication" Fri Jul 18 14:33:05 2003 : Auth: Login OK: [drright] (from client GDC-T1-AP2 port 13 cli 000c

RE: radius benchmark

2003-07-18 Thread Jeremy Davis
I was looking for a utility for different radius servers as well, so I can benchmark freeradius vs. the current radius server that I am using. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Ulrich Walcher Sent: Friday, July 18, 2003 3:20 AM To: [EMAIL PROTEC

radius benchmark

2003-07-17 Thread Jeremy Davis
What is a good tool for radius benchmarking? Jeremy - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Problem compiling on Mandrake 8.2

2003-07-14 Thread Jeremy Salch
This is the last bit of the error that comes up When I try to compile 0.9-pre1 on mandrake 8.2 Anyone else try compiling it on a similar system or know What this could be ? gmake[6]: Entering directory `/root/freeradius-0.9.0-pre1/src/modules/rlm_acct_unique' gmake[6]: *** Warning: File `../..

Returning correct attributes

2003-07-09 Thread Jeremy McGee
List,   I am running FreeRadius with a MySQL backend.  Everything seems to be working fine except one thing…   I am in a pass-through radius environment.  We buy dialup through a wholesaler that aggregates service on multiple dial networks.  Radius requests are proxied from their radius

Re: LDAP authent/authorize and CHAP

2003-06-16 Thread Jeremy McDermond
thtype EAP { eap } authtype CHAP { chap } ldap } Hope this maybe helps you out a bit, this list can be a little harsh sometimes. -- Jeremy C. McDermond Lead Engineer Peak Internet [EMAIL PROTECTED] (541) 738-4921 On 6/15/03 11:30 AM, "

Simon Re: FreeRADIUS + SQL + MD5

2003-03-13 Thread Jeremy Brown
Simon, Just wanted to say thanks a ton for helping me, it works like a charm now. Beat my head against it for weeks and searched dilligently on Google to no avail. Also, FreeRADIUS is a great project, keep up the good work. Thanks, Jeremy - List info/subscribe/unsubscribe? See http

FreeRADIUS + SQL + MD5

2003-03-12 Thread Jeremy Brown
, the pairs match up fine then the authenticate function is carried out. So, after all this rambling, I guess my question is: Is there anyway to get the server to md5 hash the password before doing the MySQL query? I believe this would solve all my problems. Thanks, Jeremy - List info/subscr

Simultaneous-Use problem from virtual ISP

2003-02-21 Thread Jeremy Kusnetz
Hello, I am trying to get our radius servers to authenticate a virtual ISP request. When we have the Simultaneous-Use attribute in radcheck it ALWAYS fails with a Multiple login error, no matter how may Simultaneous-Use I give it. It always says there are more logins then the number I have. I ha

RE: Error: Accounting: fork: Success

2003-02-20 Thread Jeremy Kusnetz
ng it, and it's still working. So, why would commenting out the rad_waitpid fix my problem? What further problems will this give me? Obviously that was added for a reason. > -----Original Message- > From: Jeremy Kusnetz > Sent: Tuesday, February 18, 2003 4:53

Error: Accounting: fork: Success

2003-02-19 Thread Jeremy Kusnetz
> Does anyone know what this means? Seems to go away for awhile after a > restart of radius, but then I start getting tones of these in radius.log. > > Accounting seems to be working. > > I'm using Freeradius 8.1 with mysql for authentication and accounting. I > don't ever remember seeing thes

Error: Accounting: fork: Success

2003-02-18 Thread Jeremy Kusnetz
Does anyone know what this means? Seems to go away for awhile after a restart of radius, but then I start getting tones of these in radius.log. Accounting seems to be working. I'm using Freeradius 8.1 with mysql for authentication and accounting. I don't ever remember seeing these errors in the

mysql failover on freeradius8.1 solved

2002-12-30 Thread Jeremy Kusnetz
Last week I posted about a problem with mysql configurable failover with freeradius 8.1 I think I solved my problem, but the solution may point to a bug on how database connections are handled. Initially I had failover set in the authorize section, but not the accounting section. Since mysql rep

mysql failover on freeradius8.1

2002-12-26 Thread Jeremy Kusnetz
I have had configurable failover working since freeradius5.0. We recently upgraded to 8.0. Sadly I never tested failing over with 8.0. Of course our primary sql server died, and free radius was no longer able to authenticate. I have upgraded to 8.1 in my development environment. 8.1 seems to ha

Cisco default gateway

2002-12-03 Thread Jeremy Kusnetz
I guess this isn't really a freeradius question, but I'm trying to dynamically set the client's default gateway using Exec-Program-Wait I've successfully gotten it to work for Ascends by add the A/V pair: X-Ascend-Client-Gateway=192.168.1.1 but I'm having problems getting it to work on a cisco.

Re: Urgent

2002-11-29 Thread Jeremy Parr
When will they take a hint and make this a closed list? - Original Message - From: "Marcin Groszek" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Friday, November 29, 2002 9:42 AM Subject: Re: Urgent > Das south Africa government know about this? > Send me my 25% first and i will run

Re: Default Gateway

2002-11-20 Thread Jeremy Parr
Deleting the old gateway sounds like a bug. Maybe you could assign an IP address to the TC that is on the same subnet as the old gateway, delete the old gateway, and then change the ip address back. Jeremy - Original Message - From: "Jamil Buchalla Neto" <[EMAIL PROTECTED]

Re: Urgent Assistance

2002-11-16 Thread Jeremy Parr
This is the second piece of spam I have seen on this list in two days. Is the list not configured so only members can post? Jeremy - Original Message - From: "BUNDI KYARI" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Saturday, November 16, 2002 4:51 PM Subj

Re: CISCO LEAP

2002-11-15 Thread Jeremy Salch
On Thursday 14 November 2002 01:04 am, Lars Viklund wrote: > On Wed, 2002-11-13 at 16:06, Jeremy Salch wrote: > > On Wednesday 13 November 2002 06:52 pm, Mike Paneth wrote: > > > We are about to setup a wireless network based on CISCO 1200 APs and > > > need to contr

Re: CISCO LEAP

2002-11-13 Thread Jeremy Salch
On Wednesday 13 November 2002 06:52 pm, Mike Paneth wrote: > We are about to setup a wireless network based on CISCO 1200 APs and need > to control access. > > Does anyone know how to get Freeradius working with CISCO LEAP? It can't. . LEAP is a Cisco Proprietary EAP type to cisco.. you'l

Re: Radius for Cisco LEAP

2002-10-24 Thread Jeremy salch
mentation? If yes, do we have any > available "HOWTO - Configuration"/Documentation. If no, what's the best > alternative Radius to use in this case. > > Thanks & Regards, > > Nikhil. > > > > ----- > Do you Yahoo!?

Re: Radius for Cisco LEAP

2002-10-24 Thread Jeremy Choi
thanks Jeremy Choi eMail: [EMAIL PROTECTED] Tel: 852 - 3123 1283 Fax: 852 - 2218 2212 56/F The Center 99 Queen's road central Hongkong - List info/subscribe/unsubscribe? See http://www.freeradius.org

Re: configure Cisco AP340 for Radius

2002-10-03 Thread Jeremy Salch
On Thursday 03 October 2002 08:53 pm, augustine tsai wrote: > Hi, > > Is there anyone know how to configure Cisco Airnet 340 (AP340) through > the web browser? There is a serial port at the back of AP340. I would > like to modify the Authenticator Configuration. I am setting up > supplicant on X

Freeradius 0.7.0 -- Accounting-Request packet with invalid signature

2002-09-26 Thread Jeremy Hasty
figuration files and setup available upon request. Thank you for your attention to this matter. -- ======== Jeremy Hasty Consultant - Network Operations University of the Virgin Islands Information Technology Department Email: <[EMAIL PROTECTED]> Phone: 340.693.1537

Login-Time and timezones

2002-08-26 Thread Jeremy Kusnetz
We are looking to use Login-Time, but I have a few questions about timezones. Our servers run on GMT, but I would want to setup Login-Times for people in different timezones. So for example if I wanted to limit logintimes to only Monday, If I said "Mo00:00-23:49" this would be in GMT time. If I

Re: Cisco wireless

2002-07-12 Thread Jeremy Salch
On Friday 12 July 2002 02:01 pm, Kevin Bentley wrote: > I'm a little confused about what I need to have in order to use EAP > authentication with the following setup: > > Cisco 350 series 802.11 access point > Cisco 350 wireless network card > Linux server running freeradius connected to the acces

Re: EAP documentation

2002-07-08 Thread Jeremy Salch
On Monday 08 July 2002 04:43 pm, Raghu wrote: > EAP documentation is added to the cvs (doc/eap). > Any Suggestions and feedback are welcome. Has the level of support for EAP changed in 0.6 from what there was iin 0.5 It still doesn't support cisco LEAP correct ? -- Business website -- www.g

Proxying problem Help needed

2002-07-05 Thread Jeremy Salch
I have 2 numbers and 2 realms i'm trying to proxy. what i want to happen is i want it to proxy by realm first and if they don't have a realm then proxy by the number they dialed. and as i understand it the user file processed until a match is found.. with just this listed it will proxy

Re: Upgradeing from 0.5 to 0.6

2002-07-05 Thread Jeremy Salch
On Friday 05 July 2002 11:06 am, Alan DeKok wrote: > Jeremy Salch <[EMAIL PROTECTED]> wrote: > > should i just be able to compile 0.6, do a make install and restart the > > service? using the same config files > > That should work, yes. > > But I would t

Upgradeing from 0.5 to 0.6

2002-07-05 Thread Jeremy Salch
I have a proxy radius server running freeradius 0.5 and i am wanting to update it to 0.6 should i just be able to compile 0.6, do a make install and restart the service? using the same config files -- Business website -- www.granbury.com Personal website -- www.tblx.net - List info/s

Proxying on Realm Befor Called-Station-ID ????

2002-06-24 Thread Jeremy Salch
Is there ANY way possible to proxy a user login based upon the Called-Station-Id and upon the REALM in the users file ??? here is the situation I have 2 lines lets say 555 and 555 on 555 I want its default realm to be joe.com SO by default if anyone calls this number and

Does FreeRadius cache Proxy'd username/passwds ?

2002-06-24 Thread Jeremy Salch
that is the question -- Business website -- www.granbury.com Personal website -- www.tblx.net - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Proxying on Realm Befor Called-Station-ID ????

2002-06-22 Thread Jeremy Salch
Is there ANY way possible to proxy a user login based upon the Called-Station-Id and upon the REALM in the users file ??? here is the situation I have 2 lines lets say 555 and 555 on 555 I want its default realm to be joe.com SO by default if anyone calls this number an

Proxying Error not stripping username

2002-06-20 Thread Jeremy Salch
I set up the line DEFAULT Called-Station-Id == "5551234", proxy-to-realm := "joe.com" I want it to still send the full username along with the realm on it to the radius server associated with that realm I set the nostrip option in the config for that realm under proxy.conf but when the requ

Anyone needing LEAP in FreeRadius

2002-06-20 Thread Jeremy Salch
Is there anyone interested in assisting in getting LEAP support for FreeRadius that would be willing to assist in or suppliment payment of a programmer that has agreed to write the module ? -- Business website -- www.granbury.com Personal website -- www.tblx.net - List info/subscribe/uns

Re: [fradius] Re: LEAP and Cisco Aironet AP340?

2002-06-18 Thread Jeremy Salch
On Tuesday 18 June 2002 02:45 pm, R P Herrold wrote: > On Tue, 18 Jun 2002, Jeremy Salch wrote: > > > > I am trying to set up FreeRadius to authenticate people through > > > > CIscos LEAP protocol > > > > Soo.. Could i bribe someone to write the patch

Re: LEAP and Cisco Aironet AP340?

2002-06-18 Thread Jeremy Salch
On Tuesday 18 June 2002 01:44 pm, Alan DeKok wrote: > Jeremy Salch <[EMAIL PROTECTED]> wrote: > > I am trying to set up FreeRadius to authenticate people through CIscos > > LEAP protocol > > FreeRADIUS does not currently support LEAP, sorry. > > As always

LEAP and Cisco Aironet AP340?

2002-06-18 Thread Jeremy Salch
I am trying to set up FreeRadius to authenticate people through CIscos LEAP protocol but in the log everytime i try to log in i get the following error Auth: Login incorrect: [test/] Although I do have a password entered in Ciscos ACU (Aironet Client Utility) and also using the command line

Re: Re: Certain https sites not working with USR

2002-04-11 Thread Jeremy Kusnetz
Looks like it was an MTU issue. Running "monitor radius" on the TC on the cisctron radius I saw we were not sending a Framed-MTU packet. But with Freeradius we were sending the default MTU of 576. I removed that attribute and I can now get to those secure sites I was unable to before. Thanks fo

Certain https sites not working with USR Total Control

2002-04-11 Thread Jeremy Kusnetz
This is really weird. We are migrating our customers from cistron 1.6.6 to freeradius 0.5. All our customers with Ciscos and Ascends are working just fine. One of our customers uses USR Total Control units for their NASs. Seemed like everything was going smooth for them, but they reported that

Re: freeRadius and VoIP

2002-03-20 Thread Jeremy McNamara
ould work. Give it a try and let us know what you find out. Jeremy McNamara, Chief Bottle Washer International Voice Network - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: freeradius-0.5 crashing

2002-03-20 Thread Jeremy Kusnetz
It would be difficult for me to turn off the simultaneous use because I have that attribute set for all our users in the sql database. I don't want to muck around too much with a production server, and I haven't seen this happen on my development environment. I've gone ahead and turned on core du

freeradius-0.5 crashing

2002-03-19 Thread Jeremy Kusnetz
Freeradius is crashing on me. I've resorted to running it with radwatch. We've just gone operational with freeradius when 0.5 came out. I've been running 0.4 or some CSV snapshot since then in development, but weren't getting nearly the number of requests that we are getting now, so I don't kno

Simultaneous logins on multiple NASs

2002-02-27 Thread Jeremy Kusnetz
I have Simultaneous logins working with SQL, but we have some customers that we are providing authentication for who have multiple NASs that a user can be connected to. Does freeradius support running radcheck on all the NASs to see if a user is logged in, not just the one he is coming from curre

Re: R: Always on "rlm_sql: Could not link driver rlm_sql_mysql"

2002-02-11 Thread Jeremy Brown
Maurice, Maybe try symlinking those two dirs to commonly looked at places. Example: ln -s /usr/local/mysql/include /usr/include/mysql ln -s /usr/local/mysql/lib /usr/lib/mysql Don't know if it will work but you can give it a shot. Jeremy On Wednesday 06 February 2002 02:14 pm, you

Re: R: Always on "rlm_sql: Could not link driver rlm_sql_mysql" UPDATE

2002-02-06 Thread Jeremy Brown
/mysql /usr/lib/mysql ln -s /usr/local/mysql/include/mysql /usr/include/mysql Jeremy On Wednesday 06 February 2002 03:10 pm, you wrote: > Maurice, > > Maybe try symlinking those two dirs to commonly looked at places. Example: > > ln -s /usr/local/mysql/include /usr/include/mysql >

Re: R: Always on "rlm_sql: Could not link driver rlm_sql_mysql"

2002-02-06 Thread Jeremy Brown
Maurice, Maybe try symlinking those two dirs to commonly looked at places. Example: ln -s /usr/local/mysql/include /usr/include/mysql ln -s /usr/local/mysql/lib /usr/lib/mysql Don't know if it will work but you can give it a shot. Jeremy On Wednesday 06 February 2002 02:14 pm, you

Very OT reply (was Re: Documentation for Freeradius against PIX)

2002-02-05 Thread Jeremy McNamara
Here ya go... Denise Richards will tell you everything you need to know about the PIX firewall: http://routergod.com/deniserichards/ Ok i'm done now Jeremy Matt Twigg wrote: > Anyone know of any archives or documents out there covering using freeradius for > aaa authentication o

Re: freeradius with quintum

2002-01-28 Thread Jeremy McNamara
3-credit-time=15", h323-return-code = "h323-return-code=0" And make very sure: with_cisco_vsa_hack equals no in radiusd.conf Jeremy McNamara "J.E. Wu" wrote: > Can some one help me to configure freeradius with > quintum? I included dictionary.quin

Re: Possible bug in SQL module Re: radgroupreply

2002-01-25 Thread Jeremy Brown
Alan, I tried Randy's patch and it worked like a charm. Patched cleanly against today's CVS snapshot. Thanks guys, Jeremy On Friday 25 January 2002 02:33 pm, you wrote: > Randy Moore <[EMAIL PROTECTED]> wrote: > > This patch has not made it into CVS yet. Mayb

Re: Possible bug in SQL module Re: radgroupreply

2002-01-25 Thread Jeremy Brown
try your patch if += isn't sufficient to fix this, but I figured I was doing something wrong (which I probably am) and was just going to fix the syntax to make it work properly. Thanks guys, Jeremy > Hi Jeremy, > > Most of the attributes you specify below should be in 'radg

Re: Possible bug in SQL module Re: radgroupreply

2002-01-25 Thread Jeremy Brown
#x27;s the proper syntax anyways. But, it's still only showing "=" in the radtest, not "+=" I have checked the syntax of the SELECT statement and it looks ok to me. Sorry for the length of this e-mail, and I'm sure I'm missing something here. Thanks again for th

Possible bug in SQL module Re: radgroupreply

2002-01-24 Thread Jeremy Brown
ates that it will return multiple identical Attribute values if they are entered in raduserreply, as opposed to radgroupreply. Has anyone else experienced the same issue? If this has been covered previously, please accept my apologies. The bug search wasn't working as of this writing. Than

Re: anyone use freeradius with quintum?

2002-01-16 Thread Jeremy McNamara
be some conflict. Everything works fine here using the Quintum dictionary. Jeremy - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: anyone use freeradius with quintum?

2002-01-16 Thread Jeremy McNamara
h323-return-code must be 0 (zero) for the call to proceed. Jeremy "J.E. Wu" wrote: > Thanks for the info. > After including dictionary.quintum file, this is what I got from debug > console: > > rad_recv: Access-Request packet from host 192.168.0.20:24579, id=0, >

Re: anyone use freeradius with quintum?

2002-01-16 Thread Jeremy McNamara
curate, not to mention not supporting DRQs) Jeremy McNamara - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

CHAP + sql crash

2002-01-16 Thread Jeremy Kusnetz
te = 'Password' OR Attribute = 'Crypt-Password' ) >ORDER BY Attribute DESC' >SELECT Value,Attribute FROM radcheck WHERE UserName = 'nastest' AND ( >Attribute = 'Password' OR Attribute = 'Crypt-Password' ) ORDER BY Attribute >DESC &g

Re: sql failover

2002-01-15 Thread Jeremy Kusnetz
Ahh.. I made the changes to the radiusd.conf file that Randy suggested and the failover works correctly now. Thanks for the help. I assume the patch will be in 0.5? Any idea when that will be coming out? Thanks again for the help. -Jeremy - List info/subscribe/unsubscribe? See http

Re: sql failover

2002-01-15 Thread Jeremy Kusnetz
> I've just committed a patch to CVS which allows it to fail over if the SQL database is down. I'm not 100% sure how to get this, I tried getting todays snapshot and compiling it, but I got errors. I did find on the dev. list Randy Moore's patch that you said you commited: - retval = RLM_MODULE_R

sql failover

2002-01-15 Thread Jeremy Kusnetz
I'm trying to get authentication working with multiple mysql databases, where the primary database is shutdown. In my configs ala the configuration_failover doc: $INCLUDE ${confdir}/sql.conf $INCLUDE ${confdir}/sql2.conf authorize { preprocess suffix redundant {

Re: WWW.FREERADIUS.ORG

2002-01-11 Thread Jeremy McNamara
know they too will uphold the statute) A link for further information: http://slashdot.org/article.pl?sid=02/01/03/1934239&mode=thread Just my $0.02, Jeremy McNamara Cc: Every email address I could find attached to trafficmagnet.net > > -Original Message- > > F

Re: sending cisco vsa's to the AS

2001-12-28 Thread Jeremy McNamara
rks with Crisco's gear their documentation is not the greatest. Jeremy McNamara - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Re: freeradius+mysql accounting issues

2001-12-27 Thread Jeremy Kusnetz
Okay, it does have to do with whom radius is running as. I changed it to run as root and everything worked as it should in non-debug mode. Now I just need to figure out where my permissions are screwing things up. Thanks > Does MySQL use a Unix socket or named pipe that only root has access to

Re: freeradius+mysql accounting issues

2001-12-26 Thread Jeremy Kusnetz
> Try to run it with the -s option... Nope, didn't work either. As soon as I stopped the process and restarted with -X, I saw the SQL update statement hit the server. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

freeradius+mysql accounting issues

2001-12-26 Thread Jeremy Kusnetz
For some reason the only way I can get freeradius to update the radacct tables in my mysql database is to run it in debug mode, either -x or -X When running it in debug mode everything works great. But as soon as I start freeradius with no debugging. Authentication still works, but it doesn't se

RE: Help Required

2001-12-24 Thread Jeremy McNamara
the approprate attributes run with the -X switch, it should be in the debug output if the NAS is sending it. Jeremy McNamara - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Help Required

2001-12-24 Thread Jeremy McNamara
Also you have to make sure your NAS is not picking up the line before ANI is sent. Just my $0.02, Jeremy McNamara On Mon, 24 Dec 2001, kathiresan j wrote: > > > HI.. > > I am running free radius 1.6.4 on Red Hat Linux which gets authentication > requests from Cisco Ras

Vendor/Product ID?

2001-12-18 Thread Jeremy McNamara
ctionary) IANA? Thank you, Jeremy McNamara - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Decoding VSAs

2001-12-11 Thread Jeremy McNamara
doing... I have created a dictionary file for Quintum (which is attached) that may look surprisingly like the Cisco file. Thanks for the guidance... I think we know enough now to make what we need happen. Jeremy McNamara Attachment: dictionary.quintum # # dictionary.quintum # # Ac

Re: Decoding VSAs

2001-12-11 Thread Jeremy McNamara
[EMAIL PROTECTED] wrote: > Jeremy McNamara <[EMAIL PROTECTED]> wrote: > > *Confused* How do i tell the server to *use* the Dictionary.cisco file? > > It should be using the cisco dictionaries by default. > > See: raddb/dictionary > > man 5 dictionary &

  1   2   >