RE: MRTG graphing from radacct sql data

2003-11-30 Thread John Hengstler
I second it... Regards, John -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Vector Sent: Sunday, November 30, 2003 6:10 PM To: [EMAIL PROTECTED] Subject: Re: MRTG graphing from radacct sql data I'm interestedthanks, vec - Original Message

Help with EAP/TLS config

2003-11-26 Thread John Furman
-- User-Name = jfurman -- BUF-Name = John Furman -- subject = /C=CA/ST=Ontario/L=Waterloo/O=The Baron St. Matrix/OU=Digital Work Shop/CN=John Furman/[EMAIL PROTECTED] -- issuer = /C=CA/ST=Ontario/L=Waterloo/O=The Baron St. Matrix/OU=Digital Work Shop/CN=John Furman/[EMAIL PROTECTED] -- verify return:0

RE: Multiple realm authentication with FreeRADIUS back to Active Directory?

2003-11-19 Thread Heiden, John
] [mailto:[EMAIL PROTECTED] Behalf Of Alan DeKok Sent: Wednesday, November 19, 2003 11:12 AM To: [EMAIL PROTECTED] Subject: Re: Multiple realm authentication with FreeRADIUS back to Active Directory? Heiden, John [EMAIL PROTECTED] wrote: I am assuming I need to somehow have FreeRADIUS add

RE: Multiple realm authentication with FreeRADIUS back to Active Directory?

2003-11-19 Thread Heiden, John
well, not my problem then. I am pretty sure that AD does RADIUS. Or am I thinking of the OS under AD? (2000?) John -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Alan DeKok Sent: Wednesday, November 19, 2003 12:13 PM To: [EMAIL PROTECTED] Subject: Re

RE: cisco authorization through freeradius

2003-11-18 Thread John A. Hengstler
| == | NULL | RADIUS:radcheckcontains diallerouter for the user All modem dial up customers work just fine, but ISDN dial in fails as indicated above. Can anyone shed some pointers on this. I still haven't figured it out.. Regards, John Hengstler - List info/subscribe/unsubscribe? See

Multiple realm authentication with FreeRADIUS back to Active Directory?

2003-11-17 Thread Heiden, John
like the book is extremely out of date with FreeRADIUS already, etc. It seems like the book should already have a new edition out. Anyway, any help or advice would be EXTREMELY appreciated! I need to get a prototype up and running very soon. Thanks! John Heiden Network Engineer The University

Re: Incorrect logins - incorrect

2003-10-14 Thread John McKinney
shell? HTH John McKinney - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: cross-compiler freeradius to arm

2003-10-01 Thread john zurowski
Looks like you're trying to link against an existing library on your x86 build machine i.e. in /usr/lib You need to ensure you include the library path for your ARM libraries check the documentation for the cross-compiler re: PATH setup make sure there's a libltdl.so in your ARM tool chain as

works with a ppphint, but how to insert this into my proxy for someone?

2003-09-30 Thread John Keimel
= 192.168.1.1:1813 secret = supersecret nostrip } Thank you. j -- == + It's simply not | John Keimel+ + RFC1149 compliant!| [EMAIL PROTECTED]+ + | http

Re: PAP and CHAP

2003-09-25 Thread John Luker
Dennis, Insulting one of the main developers probably won't score you a lot of points or get you much help in this forum. Be that as it may there are an abundance of RADIUS packages out there that have wonderful technical support from the company you BUY IT FROM. How much support do you think

RE: MESSAGE

2003-09-18 Thread John A. Hengstler
THANK SADDAM! -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of [EMAIL PROTECTED] Sent: Thursday, September 18, 2003 4:28 PM To: [EMAIL PROTECTED] Subject: MESSAGE FROM THE DESK OF DR WILLIAMS COLE EMAIL:[EMAIL PROTECTED] ATT:Sir/Madam I feel very sorry to

Re: freeradius+mysql prepaid (block time)

2003-08-26 Thread john zurowski
rlm_sqlcounter is what you need to use in radius.conf look at counter section also look at sqlcounter.conf I'm sure there are some topics in the mail archive as well (but I wouldn't swear to it) From: Scott [EMAIL PROTECTED] Reply-To: [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject:

Re: rlm_sqlcounter

2003-08-26 Thread john zurowski
From: "Scott" <[EMAIL PROTECTED]> Reply-To: [EMAIL PROTECTED] To: <[EMAIL PROTECTED]> Subject: rlm_sqlcounter Date: Tue, 26 Aug 2003 11:54:43 -0400 Redhat8, freeradius 0.9.0 I can't get rlm_sqlcounter to work. I've read the docs carefully and performed all the steps. ./configure

RE: ericsson tigris and freeradius

2003-08-01 Thread John Arthur
It's irrelevent just ignore it. Its just the dialup connection saying Can I have this address - since it was the last one I had. and the Tigris is saying No! - I'm giving you a new one -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Gustavo Lozano

Re: Need Help with SNMP

2003-07-31 Thread John M. Luker
***Wonders who p**sed in Steven's cheerios this morning At 07:02 AM 7/31/03, you wrote: What Mr. DeKok means is... He's a giant jerk and thinks he's too important to answer your questions, so he has to make snide remarks questioning your intelligence to make himself feel all nerdy

Re: Cisco Access Levels

2003-07-30 Thread John McKinney
attributes to a cisco, so maybe someone else can provide a little more information. Hope this helps. cisco-avpair= shell:priv-lvl=15 John McKinney Hi All: I didn't see this in the FAQ, but I'm sure someone has done this before: I want to set the server up to authenticate/authorize

Freeradius with MAC based authentication

2003-07-28 Thread Tracy, John
it's coming from a DHCP server? Thanks for your help, John Tracy - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: Freeradius with MAC based authentication

2003-07-28 Thread Tracy, John
Thank you very much, Alan. It works! It was right under my nose all along... -John -Original Message- From: Alan DeKok [SMTP:[EMAIL PROTECTED] Sent: Monday, July 28, 2003 10:18 AM To: [EMAIL PROTECTED] Subject: Re: Freeradius with MAC based authentication Tracy, John

proxy.conf and sending 'Framed-User = PPP for one realm

2003-07-28 Thread John Keimel
-- == + It's simply not | John Keimel+ + RFC1149 compliant!| [EMAIL PROTECTED]+ + | http://www.keimel.com + == - List info/subscribe/unsubscribe? See http://www.freeradius.org/list

cisco accounting attribute

2003-07-23 Thread John A. Hengstler
Greetings, Does anybody know why this accounting attribute would be listed this way coming from a cisco. Connect-Info = \320\272\254J721670\000\000\000\000\000\000\000\000\000\000\000 Regards, John Hengstler

RE: unsubscribe

2003-07-03 Thread John M. Luker
DP, Probably a waste of bandwidth, I've sent him 4 emails offlist with explicit instructions (cut and pasted from the freeradius site). I don't think he's reading any of his mail. Go figure. J. At 12:54 PM 7/3/03, you wrote: Do us all a favour and visit

RE: How do I know if SQL module is loaded?

2003-06-26 Thread John M. Luker
/unsubscribe? See http://www.freeradius.org/list/users.html John M. Luker www.flexpop.net 877.562.5128 voice 503.517.8866 voice 503.517.8868 fax - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Almost working after upgrade 0.3-0.8.1

2003-06-20 Thread John Straiton
found for the request: Rejecting the user I guess if I understood the auth {} section more I might be able to figure it out, but I don't. I'd really appreciate any help provided. This one has me stumped! John Straiton [EMAIL PROTECTED] Clickcom, Inc 704-365-9970x101 The 3 queries described

Unique WEP's without LEAP

2003-06-12 Thread Tracy, John
to transfer data. Anyone heard/doing anything similiar? I'm not even sure if it's possible. We wanted to stay away from proprietary solutions like LEAP because it doesn't work with everybody... and being a school a bit of openness is okay. Thanks, John Tracy - List info/subscribe/unsubscribe

RE: Unique WEP's without LEAP

2003-06-12 Thread Tracy, John
Hi, I'm actually wanting the per-user WEP key to stay static accross a user's sessions. So I want per-user weps, but not rotating them. Does this make any sense? Thanks, John [EMAIL PROTECTED] wrote on 06/12/2003 09:53:20 AM: In a nutshell, can a Cisco Aironet 350 Access Point

RE: Unique WEP's without LEAP

2003-06-12 Thread Tracy, John
I'm actually wanting the per-user WEP key to stay static accross a user's sessions. So I want per-user weps, but not rotating them. Does this make any sense? Thanks, John no, because you want the wep key(s) to be created/delivered

Re: Error reading USR dictionary

2003-06-09 Thread John McKinney
On Mon, 9 Jun 2003, Read, Jared wrote: Jared, I noticed the same problem over the week-end. I commented out that dictionary, along with several other, in the mail dictionary file. I was upgrading from 0.8.1, I think. It was also on a RH 7.3 system. Seems to be doing fine now. John

Re: accounting file

2003-06-06 Thread John M. Luker
/03, you wrote: Can someone tell me where the freeradius keep the accounting data. Thanks in advance Hugo John M. Luker www.flexpop.net

Re: accounting file

2003-06-06 Thread John M. Luker
data. Thanks in advance Hugo John M. Luker www.flexpop.net

Re: Problem in starting radius with sqlcounter

2003-03-15 Thread john zurowski
You mention you added sqlcounter.conf to radius.conf did you add it like this : modules { . all the other modules $INCLUDE ${confdir}/sqlcounter.conf } This configuration works for me From: Eric [EMAIL PROTECTED] Reply-To: [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject: Problem

RE: PIX VPN Radius attributes

2003-03-04 Thread John Spanos
- any solution will need to be without either certs (phase 1 authentication) or vpngroups or both. I would dearly love to be wrong if someone knows of a way this can be done. Regards, John. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Jerome hebert Sent

mysql authorization

2003-02-28 Thread John E Murphy
I am trying to use mysql to authorize users. It seems that they are authorized but never get through because the system looks at the /etc/passwd file. Attached is the -X output. rad_recv: Access-Request packet from host 192.168.1.100:1880, id=17, length=46 User-Name = fred33

Re: Expiration of prepaid cards

2003-02-21 Thread john zurowski
Hi Eric, I'm not sure if this is what you're looking for or if it's the best way to do it but the following setup allows a user to authenticate for a predetermined time from first usage. i.e. if I set the time period to be 24hrs then a scratch card is valid for 24hrs from first usage. in

RE: RADIUS response from incorrect interface

2003-02-10 Thread John Gruber
Is that prophesy or cynicism?Not that you're wrong... we'd ask for that.g John -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of Alan DeKok Sent: Monday, February 10, 2003 3:35 AM To: [EMAIL PROTECTED] Subject: Re: RADIUS response from incorrect

Re: Invalid reply digest error

2003-02-07 Thread John Horne
On 04-Feb-2003 at 16:30:36 Alan DeKok wrote: John Horne [EMAIL PROTECTED] wrote: By stopping radius on one server I can see (using radiusd -xx) that the users are being authenticated on the other server and that a reply is being sent back. However on the local server the log file is showing

RE: RADIUS response from incorrect interface

2003-02-07 Thread John Gruber
why in the code. I just smiled and restarted the radiusd process in the failover scripts. John -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of Paul Jenner Sent: Friday, February 07, 2003 10:34 AM To: [EMAIL PROTECTED] Subject: RE: RADIUS response from

RE: I did Bizarre stuff with my pussy

2003-02-06 Thread John A. Hengstler
Title: Untitled Document Great The spam has found the list :) John Hengstler -Original Message-From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of samanthaSent: Thursday, February 06, 2003 5:58 PMTo: [EMAIL PROTECTED]Subject: I did Bizarre stuff

Invalid reply digest error

2003-02-04 Thread John Horne
? Thanks, John. -- John Horne, University of Plymouth, UK Tel: +44 (0)1752 233914 E-mail: [EMAIL PROTECTED] PGP key available from public key servers - List info/subscribe/unsubscribe? See http

limiting users to a time frame/window

2003-02-02 Thread john zurowski
a temporary account for a fixed time period e.g. 24hr. Note: The clock should start ticking only once the 1st successfull authentication takes place. Any help/suggestions would be greatly appreciated john Zurowski _ Stay in touch

Re: limiting users to a time frame/window

2003-02-02 Thread john zurowski
Just to add: The only method I can see is to launch an external-executable script/prog. (on authentication) to check if timeframe exceeded. Just wondering if there's a tidier way ? From: john zurowski [EMAIL PROTECTED] Reply-To: [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject: limiting users

Re: limiting users to a time frame/window

2003-02-02 Thread john zurowski
Thanks Alan I should've been a bit more careful about reading the radiusd.conf. From: Alan DeKok [EMAIL PROTECTED] Reply-To: [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject: Re: limiting users to a time frame/window Date: Sun, 02 Feb 2003 09:20:37 -0500 john zurowski [EMAIL PROTECTED] wrote

Re: MS-MPPE-Enc/Types set by default in rlm_mschap?

2003-01-31 Thread John Horne
:-) John. John Horne, University of Plymouth, UK Tel: +44 (0)1752 233914 E-mail: [EMAIL PROTECTED] PGP key available from public key servers - List info/subscribe/unsubscribe? See http://www.freeradius.org/list

Problems building Freeradius with MySQL support

2003-01-28 Thread john zurowski
/rlm_sql_mysql no object files are being generated although a Makefile is created It would be greatly appreciated if someone could point me at a how-to to resolve this issue. As I know that its something that I'm not doing right - just can't figure out what it is. Thanks in advance --- John

Re: Problems building Freeradius with MySQL support

2003-01-28 Thread john zurowski
Should have added Building on PC under RedHat 7.3 From: john zurowski [EMAIL PROTECTED] Reply-To: [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject: Problems building Freeradius with MySQL support Date: Tue, 28 Jan 2003 11:06:03 + I've been using Freeradius with the users file without

Re: Problems building Freeradius with MySQL support

2003-01-28 Thread john zurowski
the appropriate rpms for mySQL, installed them and then the freeradius ./configure worked fine. htmlDIV DIV P/P PA href=http://www.zurowski.btinternet.co.uk;John Zurowski/A/P P/P/DIV/DIV/html From: Ossama Suleiman [EMAIL PROTECTED] Reply-To: [EMAIL PROTECTED

RE: X-Ascend Atributes?

2002-12-30 Thread John A. Hengstler
of the variable, but if I change it to %{X-Ascend-Disconnect-Cause} it inserts properly. My only question here is, if there is a mixture of NASes (ie portmasters and ciscos), the above statement would loose the good AcctTerminateCause variables. Is that correct??? Thanks for the simple assistance John

RE: X-Ascend Atributes?

2002-12-30 Thread John A. Hengstler
Chris, thanks. I relooked at that after I sent the email. All is well Thanks for the help.. John Hengstler -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of Chris Parker Sent: Monday, December 30, 2002 9:54 AM To: [EMAIL PROTECTED] Subject: RE: X

X-Ascend Atributes?

2002-12-29 Thread John A. Hengstler
= 0 I see the "X-Ascend" codes, but they aren't getting translated properly? What can I do to have this inserted properly? All of the dictionary files are current including the cisco and ascend files. All other columns in the tables are being translated properly... Regards, John Hengstler

RE: installing radius

2002-12-26 Thread John A. Hengstler
I emailed him a couple weeks ago (the maintainer), and haven't received a response yet. Regards John Hengstler -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of Vitaliy Karlov Sent: Thursday, December 26, 2002 10:22 PM To: [EMAIL PROTECTED] Subject: Re

RE: usage.cgi problems

2002-12-09 Thread John Gruber
with the proxy process? Can I do that? Thanks, John - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Looking for dictionary files for mobile VSAs

2002-12-05 Thread John Padula
Is there a RADIUS client which uses 3GPP VSA's? The devices that handle wireless access to the IP world (SGSNs and GGSNs) advertise these VSAs. The 'vendor' is actually 3GPP (id=10415) or cmda2000 (id=5535). For 3GPP, see Appendicies in:

Decrypting chap passwords

2002-12-04 Thread john babiarz
Does anyone have a code fragment to decrypt a chap password? I need to take the password in plain text, after pulling it from authreq-strvalue to a private routine. john - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Looking for dictionary files for mobile VSAs

2002-12-04 Thread John Padula
Hi: I've been looking for dictionary files for 3GPP and CDMA-related VSAs. I've searched over the web and at their sites and have been unable to find them. Just wondering if these exist or if I need to piece them together from their specs and submit a home-grown version. Thanks for any info,

re: fr 0.7 openldap 2.1.4

2002-10-22 Thread John Hogenmiller
, it was comparing the encrypted form against the plain text. Cheers, John On Thu, 19 Sep 2002, John wrote: Hi, I think there may have been some similiar questions posted a few months back, but can't find them currently. I recently upgraded from openldap 2.0.5 to 2.1.4. Upon doing that, when fr 0.7

Help equired for EAP

2002-10-21 Thread john zurowski
John Zurowski Get a speedy connection with MSN Broadband.  Join now! Click Here - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

fr 0.7 openldap 2.1.4

2002-09-19 Thread John
attribute denies access still work as before, so fr 0.7 is at least able to query ldap. If anyone knows the answer to this, or can point me at previous postings, it would be greatly appreciated. Cheers, John --- John Hogenmiller, kb3dfz Network Engineer Pennswoods.net 877.716.2002 x 529 - List

fr 0.7 -- LDAP_OPT_X_TLS

2002-09-12 Thread John
= no # defaults to no Works like a champ! Cheers, John John [EMAIL PROTECTED] wrote: Tue Aug 6 10:55:57 2002 : Error: rlm_ldap: could not set LDAP_OPT_X_TLS option Success The only setting in radiusd.conf that seems to pertain to this is start_tls, which I have set to no. I did a grep

Re: Hand out a gateway with IP address

2002-09-08 Thread John Adams
option is : start digging on the network, listening for packets. Look for the routing packets, just to see if the information is getting sent. Joe John Adams wrote: Hi I have been a little more sensible and have looked at the RFC I wish the framed route to be something like

replicate-to-realm - freeRadius 0.7

2002-09-08 Thread Loh John Wu
. any help would be greatly appreciated, thanks, John - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

echoing RADIUS accounting requests to another ip/port

2002-09-06 Thread Loh John Wu
settings? Is it possible with minor code modifications to echo out the packets received? thanks in advance, John - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Replicate-To-Realm - does remote server that gets replicated data need to reply?

2002-09-06 Thread Loh John Wu
the replication is a one-time forward and forget. Is that true? thanks, John - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Hand out a gateway with IP address

2002-09-05 Thread John Adams
. John - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Hand out a gateway with IP address

2002-09-05 Thread John Adams
Sorry I meant transparent cache using squid as gateway John Adams wrote: Hi I have bought a load of kit from the UK to an Mid afcian country which has a 2 existing ISPs each with 128k and I am helping someone set up a third with there own 128k. We have made the radius work

RE: Severe Issues with Radius Authentication/MySQL

2002-09-05 Thread John Gruber
I can testify that it's not something deeper...or nothing we've seen. Freeradius 0.7 (built from source) and MySQL 3.23.49 (stock Red Hat RPM) under RedHat 7.3 (2.4.18-10 kernel). Running fine for multiple days. Last rehup for clients file config change was a week ago. John Gruber

Re: Error: CHILD: exit on signal (11)

2002-08-27 Thread John
Just got back from a 2 week sabatical, hoping to pick up where I left off. John [EMAIL PROTECTED] wrote: After running flawlessly for a couple of weeks, suddenly and inexplicably, the radius server started spawning process and reached the maximum default of 32 (continued running), complained

Authentication order and regular expressions.

2002-08-14 Thread John Gruber
by the SQL query that I can use in the expression in the users file? I got the Group attribute from the old users format.. it does not work.. If there is a better way to do this... please let me know. Thanks, John Gruber - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

hostname lookups

2002-07-18 Thread John
as dialup123.domain.dom. If I turn it off, everything is recorded by the ip address. Is there a method to make the hostname logging occur in the same manner that cistron 1.6.6 did (which appears to have solely used the configuration files). John Hogenmiller, kb3dfz Systems Administrator

Re: Installing Freeradius on Solaris 9 Box

2002-07-03 Thread John Benge
any issues with Freeradius atm. Seems like you need to get a compiler working properly and your paths setup first, I've emailed you direclty with some pointers as Solaris support is out of the bounds of this newsgroup :) Cheers John -- oJohn Benge - Product Development o o

Re: RADIUS authorization based on group Memebership

2002-06-22 Thread John
down to 60% at lowest. I could provide you with example configs, but I think you'd be better off at a setup that takes 30% less cpu time. John Hogenmiller, kb3dfz Systems Administrator, Pennswoods.net 877.716.2002 x 529 --- Anyone could say, What fantastic and expensive items you have! Oh

ldap attributes (reject)

2002-06-18 Thread John
. Cheers, John John Hogenmiller, kb3dfz Systems Administrator, Pennswoods.net 877.716.2002 x 529 --- Anyone could say, What fantastic and expensive items you have! Oh, how I wish they were mine! But I have proven my sincerity by going that extra mile and actually robbing you blind. - List info

failover on

2002-06-03 Thread John
, John John Hogenmiller, kb3dfz Systems Administrator, Pennswoods.net 877.716.2002 x 529 --- Anyone could say, What fantastic and expensive items you have! Oh, how I wish they were mine! But I have proven my sincerity by going that extra mile and actually robbing you blind. - List info/subscribe

Re: Fix for Exec-Program-Wait

2002-05-22 Thread John
Is this the problem that I have been seeing? You mentioned Exec-Program-Wait in prior emails. If so, I'll try this out tonight. cheers, john Quoting Alan DeKok [EMAIL PROTECTED]: I've just committed a fix to the tree which should *hopefully* fix the problem with the server locking up

Re: LDAP Authentication based on more than just password

2002-05-21 Thread John Spanos
help would be much appreciated. John Spanos.

freeradius

2002-05-20 Thread John
is not in a form that the cisco's understand. What should I be looking at next? (I think when I'm done, I could probably write a document of my experiences. ;) John Hogenmiller, kb3dfz Systems Administrator, Pennswoods.net 877.716.2002 x 529 --- Wouldn't the sentence I want to put a hyphen between

radiusd timeouts

2002-05-13 Thread John
: Debug: Nothing to do. Sleeping until we see a reques t. John Hogenmiller, kb3dfz Systems Administrator, Pennswoods.net 1(877)897-4883 x 592 --- Wouldn't the sentence I want to put a hyphen between the words Fish and And and And and Chips in my Fish-And-Chips sign have been clearer

Fwd: rlm_ldap and group membership

2002-05-06 Thread John
# This query is what I think freeradius actually wants, in accordance # with the docs. [john@server john]]$ ldapsearch -b dc=domain,dc=dom '((objectclass=posixgroup)(memberuid=testjth01))' cn cn=multilink,ou=Group,dc=domain,dc=dom cn=multilink # testjth01 - search without specifying cn. # multilink

Re: Fwd: rlm_ldap and group membership

2002-05-06 Thread John
{ suffix files preprocess } accounting { detail radutmp } session { radutmp } John Hogenmiller, kb3dfz Systems Administrator, Pennswoods.net 1(877)897-4883 x 592 --- Wouldn't the sentence I want to put a hyphen between the words Fish

odd error since switching to an L2TP config

2002-04-07 Thread John
? John - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

General question about experiences with radius pre-authentication packets/support

2002-03-21 Thread John Benge
pre-auth packets with freeradius?? I would have thought I could setup a user whose name is the DNIS digits? although I dont expect to be able to limit the number of ports(maybe this could be a future feature?) Using: Freeradius 0.4 on Solaris/Sparc 8 02/02. Thanks John -- oJohn Benge

Re: 3com Wirless Access Point and FreeRadius

2002-03-15 Thread Eric John Seneca
Then it doesn't do EAP properly. I have double checked with 3com to confirm they did not microsoft the EAP standard and I am told it is completely compliant with standard EAP. After reviewing the url posted by John Lindsay, I see that Cisco Aironet working with freeradius and I have found

A question regarding radius attribute tagging

2002-03-14 Thread john . benge
is there anything inparticular that I need to do to set it up or can I just add multiple instances of the attribute as in the example above? And has anyone else ever tried this with FR ?? Kind Regards John -- oJohn Benge - Development o o Email: [EMAIL PROTECTED] Mobile

Re: 3com Wirless Access Point and FreeRadius

2002-03-14 Thread Eric John Seneca
, 2002 10:06 AM Subject: Re: 3com Wirless Access Point and FreeRadius Eric John Seneca [EMAIL PROTECTED] wrote: Where do I get the module rlm_eap for freeradius? I get the following message ... It was not included in the tarball for freeradius-0.4. Try grabbing the latest CVS snapshot

Re: A question regarding radius attribute tagging

2002-03-14 Thread john . benge
days worth of radius experience under my belt, when should i/should not use VSA (like the tunnel VSA's in my original post)?? Cheers John -- oJohn Benge - Development o o Email: [EMAIL PROTECTED] Mobile: +44 7887796300 thus[tm] Fax: +44 870 051

Re: 3com Wirless Access Point and FreeRadius

2002-03-14 Thread Eric John Seneca
Radius Server has sent an Access-Challenge with EAP-MD5 challenge value for which the client should respond back. Based on the response received, Radius Server authenticates the user. The reason there is not response back is because the 3com access point interprets challenge as a failure.

Re: A question regarding radius attribute tagging

2002-03-14 Thread john . benge
portable. -Chris Hi, Thanks for the good advice Chris! Cheers John -- oJohn Benge - Development o o Email: [EMAIL PROTECTED] Mobile: +44 7887796300 thus[tm] Fax: +44 870 051 Work: +44 208 371 3739 - List info/subscribe/unsubscribe? See

Re: 3com Wirless Access Point and FreeRadius

2002-03-14 Thread John Lindsay
I have found the following URL very useful: http://www.missl.cs.umd.edu/~adam/802/ jsl -- John Lindsay - Engineering Services Manager Internode Professional Access ph +61 8 8223 2999 fx +61 8 8223 1777 31 York St Adelaide, PO BOX 284 Rundle Mall SA 5000 - List info/subscribe/unsubscribe

3com Wirless Access Point and FreeRadius

2002-03-13 Thread Eric John Seneca
Hi, I am trying to setup a 3com wireless access point to authenticate to a freeradius server. I have installed and configured the freeradius server as well as the access point but when I try to authenticate I get the following error: rad_recv: Access-Request packet from host 64.214.69.235:4859,

Getting radlast to report real username

2002-02-26 Thread John Stern
: [EMAIL PROTECTED] [EMAIL PROTECTED] ph +-61 3 9669 8106 (w) 0418 670 246 (mob) John Stern, High Performance Computing and Communication Centre level 24 150 Lonsdale street, Melbourne, VICTORIA, 3000, AUSTRALIA _ - List info

Port 25 filtering

2002-01-31 Thread John Singewald
I am running the latest cistron-radius 1.6.4.3 on Redhat 7.0. I have been proxy authorizing several different modem pools for our users. I am about to add qwest modem pools but I need to set up a filter for smtp traffic to only allow relaying accross one smtp server denying all other port 25

Re: LDAP and unix Passwords

2001-12-18 Thread John Morrissey
these account to LDAP if % this can be done ? Sure, that can be done. Look at PADL's migration tools at http://www.padl.com/tools.html for a good starting point. john -- John Morrissey _o/\ __o [EMAIL PROTECTED]_- \_ / \ \, www.horde.net

Re: How do I setup users file to allow anyone to connect?

2001-12-14 Thread John Morrissey
On Fri, Dec 14, 2001 at 06:53:44PM +0900, Yuki Okada wrote: % I'm using FreeRadius0.3 on my FreeBSD4.4 Box. % I'm wondering how to setup my radius server to accept any user/password % pair. DEFAULT Auth-Type = Accept john -- John Morrissey _o/\ __o [EMAIL

Re: LDAP Authentication

2001-12-13 Thread John Morrissey
to RADIUS. Is this a correct assessment? That's correct. john -- John Morrissey _o/\ __o [EMAIL PROTECTED]_- \_ / \ \, www.horde.net/__(_)/_(_)/\___(_) /_(_)__ - List info/subscribe/unsubscribe? See http

port number override when starting FreeRadius

2001-12-02 Thread john
radius servers on one physical server. I understand how to override the directories at time of configure, my only problem I can foresee is that there will be a conflict in binding to port numbers. Thank you in advance to the person who shares the answer. John - List info/subscribe/unsubscribe? See

Re: [Fwd: Re: Changing RADIUS Passwords]

2001-10-25 Thread John Blumel
/bin/passwd some_user (assuming that passwd is located in /usr/bin on your system). Or, you could just edit the /etc/passwd file and replace /bin/false with /usr/bin/passwd. John Blumel - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Changing RADIUS Passwords

2001-10-24 Thread John Blumel
you evaluate this as a security risk? Theoretically, the worst case is that someone changes the password that they've stolen and I have to reset it but how much should I worry about buffer overflow or other attacks with passwd or replacements as the shell? John Blumel - List info/subscribe

Changing RADIUS Passwords

2001-10-23 Thread John Blumel
simply using Auth-Type = System and having them telnet to the RADIUS server and change their password. Thanks. John Blumel - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Routing to Proxies using DNIS

2001-10-18 Thread John Morrissey
because if I use NULL in realms, my proxy works authenticates etc. % % DEFAULT Called-Station-Id == 518555, Proxy-To-Realm = westelcom % Fall-Through = No try: DEFAULT Called-Station-Id == 518555, Proxy-To-Realm := westelcom Fall-Through = No john -- John Morrissey

postgres reply information

2001-10-02 Thread John Grange
trawled the documentation extensively, but just can't seem to get it right. Yours, John Grange - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: Group authentication

2001-09-30 Thread John McKinney
' on the system and that the user belongs to that group. While I don't have the freeradius working yet, I believe this will work fine, if not someone will hopefully correct me. (maybe this is why I'm having trouble with authentication?:)) Hope this helps, John McKinney -Original Message

newbie documentation

2001-09-28 Thread John Grange
and dynamic allocation). BTW: The application is for GPRS authentication, so if anyone has any knowledge on this, it would be appreciated. Sorry if I'm being thick and please tell me to RTFM, just tell me where it is and I'll read it. TIA John Grange - List info/subscribe/unsubscribe? See

  1   2   >