Re: Detail File

2004-01-08 Thread Turtiainen, Tero
Hi, Alan DeKok [EMAIL PROTECTED] wrote: Bobby R. Cox [EMAIL PROTECTED] wrote: I would like the detail file/dir to look like this... /usr/var/radius/radaccthostname/detail The server doesn't look up hostnames, because it takes too long. I am not sure on the syntax to get the host

BUG?? Couldn't open syslog/radius.log for logging: Not a directory

2004-01-08 Thread Christopher D. Kotran
OS: RH9.0 Platform: i386 FreeRadius Version: 0.9.3 Problem Summary: radiusd: radiusd: Couldn't open syslog/radius.log for logging: Not a directory Problem Detials: It appears that freeradius is attempting to log to a file when asked to to log to the syslog. Listed below is the config settings

Is it possible to test sql accounting locally

2004-01-08 Thread Antoine Cavalié
Hi everybody As I modified and recompiled freeradius 0.9.3 to have accounting work as I want it to work, I would like to test accounting locally In other words, I would like to know if there is a equivalent to radtest, which only runs authorization modules, that could run sql accounting modules.

Re: Is it possible to test sql accounting locally

2004-01-08 Thread Robert Causey
Antoine, Download NTRadPing from www.dialways.com. You may have to google it. This is a windows radius test client that can send accounting packets among it's other features. Just make sure the pc you are testing from is in the clients.conf file of your radius server. Hope this helps, Robert

RE: Is it possible to test sql accounting locally

2004-01-08 Thread Antoine Cavalié
Sorry, I didn't read the radclient documentation Antoine Cavalié - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Free Radius and non-plain text passwords (resolution)

2004-01-08 Thread Alan DeKok
Phillip Ames [EMAIL PROTECTED] wrote: Personally, I would find it more likely that the latter scenario occurs and all the passwords are now in plaintext available to the cracker. That's your perogative. Is it possible that the sample users file could be updated to include a sample entry

Re: IP setting for supplicant

2004-01-08 Thread Alan DeKok
matt morris [EMAIL PROTECTED] wrote: So should I enable DHCP for the AP? That's a local configuration issue. It's up to you. Also, another thing, when I set the supplicant's ip settings to auto, the AP cannot be reached (no reply from ping, can't access the AP). I can only access and

RE: SU, and here there

2004-01-08 Thread Bill Gallagher
Title: Message Yes, I only joined the list today and the FIRST mail from it was this, header below. Received: from mail1 ([172.16.0.1]) by altair.rockgrove with SMTP (Microsoft Exchange Internet Mail Service Version 5.5.2657.72)id CRATQX2V; Thu, 8 Jan 2004 12:23:36 -Received: from

Re: freeradius + MySQL on remote host question

2004-01-08 Thread Alan DeKok
Robert Causey [EMAIL PROTECTED] wrote: Trying to pear down the variables and hone in on the cause is especially dificult when ld doesn't return any %^*$%** errors during compile. Yes. Originally, FreeRADIUS was even worse. There were *huge* numbers of complaints from people who put MySQL

accounting_update_query_alt

2004-01-08 Thread João Filipe Frade
Hello, Is it possible to make the update query behave like the start and the stop queries? And alternate update query is useful in several cases (i.e. server problems, lost start packets, billing, ADSL connections). TIA, Joao Frade - List info/subscribe/unsubscribe? See

Re: bandwith limiting with FreeRadius and MySQL

2004-01-08 Thread Alan DeKok
Patrick de Ruiter [EMAIL PROTECTED] wrote: I'm trying to setup bandwith limiting on freeradius and mysql, but so far I'm not able to make it work. My questions are the following; where to put the Ascend-Data-Rate atribute in mysql and which fields do I need to adjust to make it work. Don't

Re: Trying to set no authentication for users

2004-01-08 Thread John Horne
On Thu, 2004-01-08 at 16:19, Alan DeKok wrote: John Horne [EMAIL PROTECTED] wrote: This seemed to make no difference. However I did notice, before and after the change, that if the user file entry has something like: User-Password != something Then if the user enters the

Re: Trying to set no authentication for users

2004-01-08 Thread Alan DeKok
John Horne [EMAIL PROTECTED] wrote: Given that, I assume then that it is then not possible to create a default 'users' file entry which will allow *any* user through if we insist on using MS-CHAPv2? Auth-Type := Accept Will allow the user through, without password checking. Alan

Re: Implementing a realtime-prepaid platform with freeradius

2004-01-08 Thread Alan DeKok
German Viera [EMAIL PROTECTED] wrote: I am trying to implement an application altering the free radius code that log directly to a db and during logging update users data (depending on de VSA of time left and the number dialed), I didn't very good result till now but I would like to know

Re: Trying to set no authentication for users

2004-01-08 Thread John Horne
On Thu, 2004-01-08 at 16:48, Alan DeKok wrote: John Horne [EMAIL PROTECTED] wrote: Given that, I assume then that it is then not possible to create a default 'users' file entry which will allow *any* user through if we insist on using MS-CHAPv2? Auth-Type := Accept Will allow the

Re: Trying to set no authentication for users

2004-01-08 Thread Alan DeKok
John Horne [EMAIL PROTECTED] wrote: Will allow the user through, without password checking. No it doesn't - I tried that after reading the FAQ. If I use just: jhornexAuth-Type := Accept then radiusd complains that no MSCHAP password has been supplied: Which is why I

Re: freeradius + MySQL on remote host question

2004-01-08 Thread Richard Bailey
Alan, After reading this message, I thought you might enjoy reading about my 3 servers running FR. I build it on each of the three machines with no serious problems, I watched the messages when a build did not work because of a missing file, found and installed it, and repeat until no more

Re: Trying to set no authentication for users

2004-01-08 Thread Alan DeKok
John Horne [EMAIL PROTECTED] wrote: As can be seen it says 'Login OK' but seems to be missing the: Sending Access-Accept of id 209 to 127.0.0.1:40603 MS-CHAP2-Success = 0x01533d36364635423233344331414344363438463746353946443832353834324437424131433645464332 Ah, yes. For that,

Re: Implementing a realtime-prepaid platform with freeradius

2004-01-08 Thread Robert Causey
German, In Alans post to this question, he has a better suggestion. In my case there is an existing billing system, that we will be integrating to, that also uses MySQL for the database that will handle the updates via a background process. MySQL does not have a concept of database triggers,

any suggestions for dynamic DNS clients

2004-01-08 Thread john zurowski
We've setup a few hotspots all with static IPs and everything works perfectly. However we've had requests regarding using dynamic IPs (ADSL lines) and dynamic DNS. Has anyone tackled this problem and have recommendations as to what could be done. My initial thoughts were to develop a server

Re: any suggestions for dynamic DNS clients

2004-01-08 Thread Franklin Marmon
are you wanting to change the dns name every time an ip is reused? or are you just wanting a host record to follow a customer who has andynamic IP? frm On Thursday, January 8, 2004, at 01:28 PM, john zurowski wrote: We've setup a few hotspots all with static IPs and everything works

Re: any suggestions for dynamic DNS clients

2004-01-08 Thread john zurowski
From: Franklin Marmon [EMAIL PROTECTED] Reply-To: [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject: Re: any suggestions for dynamic DNS clients Date: Thu, 8 Jan 2004 13:38:05 -0700 are you wanting to change the dns name every time an ip is reused? or are you just wanting a host record to

Re: any suggestions for dynamic DNS clients

2004-01-08 Thread Johnboy
Our Hotspot gets a new IP every night, too. We use a simple dyndns service linke no-ip.com. Simply enter the dyndns name in the clients.conf file and every works well ... If your Hotspot dont provide an dyndns client, use an dsl router. John Eckert --On Donnerstag, 8. Januar 2004 20:28 +

Re: any suggestions for dynamic DNS clients

2004-01-08 Thread john zurowski
I presume you HUP your Freeradius server on a regular basis then. i.e. via a CRON job ? From: Johnboy [EMAIL PROTECTED] Reply-To: [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject: Re: any suggestions for dynamic DNS clients Date: Thu, 08 Jan 2004 22:11:41 +0100 Our Hotspot gets a new IP every

Re: freeradius MSCHAPv2 possible bug

2004-01-08 Thread Mauro Luzi
Il mer, 2004-01-07 alle 20:48, Alan DeKok ha scritto: Mauro Luzi [EMAIL PROTECTED] wrote: I tried all options: NT-Password and clear-text User-Password, it don't work with mschap-v2. with other autentications (pap, chap and mschap-v1) work fine. It works for me, and other people on

Re: any suggestions for dynamic DNS clients

2004-01-08 Thread john zurowski
I thought that Freeradius had to be restarted/ sent a HUP signal for it to retrieve domain names as it only stores IP address after loading the config file. Has this changed in 0.9.3 ? Alas I've not upgraded yet From: Johnboy [EMAIL PROTECTED] Reply-To: [EMAIL PROTECTED] To: [EMAIL PROTECTED]

Can't connect RADIUS Server!!!

2004-01-08 Thread Kirti S. Bajwa
Hello List: O/S: RH9 freeRADIUS: 0.9.3 I have a fresh install of RH9 on a server then installation of freeRADIUS (FR) software. Installation and settings went smoothly. RADIUS server is up and running I can test it by running: %radtest myUID myPW 12.21.237.15 0 testing123 To authenticate a

RE: Unable to do simple UNIX authentication

2004-01-08 Thread Kirti S. Bajwa
John: I just setup a freeRADIUS server and had the same problem. Please read the output and you will notice the following line: rlm_unix: [test]: invalid password Somehow the password is incorrect. Try another thing; restart the computer after making the changes and then run the same test. In

Re: Can't connect RADIUS Server!!!

2004-01-08 Thread Vincent_Giovannone
[EMAIL PROTECTED] wrote on 01/08/2004 05:03:59 PM: Hello List: O/S: RH9 freeRADIUS: 0.9.3 I have a fresh install of RH9 on a server then installation of freeRADIUS (FR) software. Installation and settings went smoothly. RADIUS server is up and running I can test it by running:

Re: freeradius/ldap documentation

2004-01-08 Thread Cameron Clark
how about ASCII art!? ok.. maybe not. At 11:54 AM 1/2/2004 -0500, you wrote: Dustin Doris [EMAIL PROTECTED] wrote: Would like to let everyone know that I have some documentation up about using freeradius w/ ldap auth and autz. The URL is http://doris.cc/radius. It's my intent to add this

Re: Re: got freeradius with PEAP to compile on Redhat 9.0

2004-01-08 Thread Marcel Wiget
forgot to mention. Its not an issue for the server but with Redhat 9.0. Redhat seems to have either obscure or wrong settings in their included opensslconf.h file. Marcel Alan DeKok wrote: Marcel Wiget [EMAIL PROTECTED] wrote: I successfully used current freeradius for several months for

Re: rlm_sql an old question.

2004-01-08 Thread Apu islam
I looked at the CVS snapsot. Here is my radiusd.conf relavant parts : # Accounting. Log to detail file, and to the radwtmp file, and maintain # radutmp. accounting { # acct_unique detail # counter unix radutmp # sradutmp } Does this look right ? should I

Re: freeradius/ldap documentation

2004-01-08 Thread Puneet B
how about ASCII art!? ok.. maybe not. actually why not?? :) Here's an attempt at it! (zipped and attached so that my mailer does not automagically open and inline the .txt files). Now we only need someone to combine this with the rest of the text ( maybe dos2unix it). Puneet At 11:54 AM