Re: Access-Reject, how to auth-type -> check password inpostgresql

2004-02-13 Thread Truong Manh Cuong
Truong Manh Cuong wrote: Hi all, I don't know why radiusd don't check username/password in postgresql. Please show me how to config: check username/password in postgresql Using clear text password (I don't know this is chap or pap) this is log when I run radiusd -X: Starting - reading configuratio

Idetify accounting results

2004-02-13 Thread Ayman Alashquar
Dear All, In the accounting text files, one attribute is the "Acct-Status-Type" attribute. By this attribute, one can distinguish "START","STOP" and "ACTIVE" values. We are using the Oracle database for the accounting, the table used for the accounting has the follwoing attributes: RADACCTID

RE: FreeRadius with Oracle driver

2004-02-13 Thread Ayman Alashquar
Thanks Jeff, >From the 'ldd' I found that one shared library is missing, in Sun Solaris this >requires modifying the LD_LIBRARY_PATH to include the $ORACLE_HOME/lib in the >library path then restart the 'radiusd'. I got accounting to Oracle working >successful. Regards Ayman Alashquar -

unsubscribe

2004-02-13 Thread Arindam Roy
unsubscribe - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Access-Reject, how to auth-type -> check password inpostgresql

2004-02-13 Thread Truong Manh Cuong
Hi all, I don't know why radiusd don't check username/password in postgresql. Please show me how to config: check username/password in postgresql Using clear text password (I don't know this is chap or pap) this is log when I run radiusd -X: .

Auth-Type = System -> Local (Postgresql)

2004-02-13 Thread Truong Manh Cuong
Hi All, How can I change Auth-Type to Local ? It use System as default. I don't know where to config this. Thanks and Regards, Manh Cuong. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Unsubscribe

2004-02-13 Thread Arindam Roy
Unsubscribe -- Your favorite stores, helpful shopping tools and great gift ideas. Experience the convenience of buying online with [EMAIL PROTECTED] http://shopnow.netscape.com/ - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

rlm_ippool error follow up question

2004-02-13 Thread apellido jr., wilfredo p
Im removing rlm_ippool dir and then try to recompile again. I got this new error. gmake[5]: Leaving directory `/usr/local/radiusd/src/modules/rlm_x99_token' gmake[4]: Leaving directory `/usr/local/radiusd/src/modules' gmake[3]: Leaving directory `/usr/local/radiusd/src/modules' Making all in main

rlm_ippool error

2004-02-13 Thread apellido jr., wilfredo p
hello, good day i got this error when compiling the latest cvs of freeradius. im using freebsd 4.8 ... thanks ... any suggestion or comment /usr/include/netinet6/in6.h:122: syntax error before `u_int8_t' /usr/include/netinet6/in6.h:144: syntax error before `u_int8_t' /usr/include/netinet6/in6.h:

RE: response: Access-Reject, how to use NTRadPing?

2004-02-13 Thread Truong Manh Cuong
I want Radiusd accept users from postgresql account. So that mean that in raddb/users, change Auth-Type = Local ? I use NTRadPing, when I send start signalm at least how many options (parameters) should I add ?   Thanks alot, Manh Cuong.   From: [EMAIL PROTECTED] [mailto:[EMA

Re: Error compiling Freeradius-0.9.3 on FreeBSD 4.9

2004-02-13 Thread Albert Miles Enabe
>Albert Miles Enabe <[EMAIL PROTECTED]> wrote: >> I am trying to compile Freeradius-0.9.3 from ports collection with >> --with-experimental-modules on FreeBSD 4.9. I am interested in using >> rlm_sqlcounter. It seems to me that the errors appear when compiling >> rlm_smb. Any help on this? >

Re: radius.log rotate?

2004-02-13 Thread Guy Fraser
ated ISP's, but they only want to see traffic for their realm. A log file named like : %L/%{Realm}/%Y%m%d.log That translates to: /path/to/logdir/SomeISP.com/20040213.log Would make it possible to do, and files would be renamed on the fly. Well, it's Friday night and I'm an hour

SQL.conf to force user case Sensitive

2004-02-13 Thread sarky
Hello all Well i have asked this question before now i have edited sql.conf and hashed the lines below in the other way 2 and the system still doesnt check case sensitive anyone know any solution to double login?     # Use these for case sensitive usernames. WARNING: Slower queries!auth

RE: zero packet

2004-02-13 Thread Anson Rinesmith
I was hoping there was just a config change. I already parse out these lines as well as valid account logins, to produce just a user error log.   -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Jeremy Davis Sent: Friday, February 13, 2004 4:56

RE: zero packet

2004-02-13 Thread Jeremy Davis
Write a script to parse the file and delete those entries, this could be done in a number of languages.   Jeremy   -Original Message-From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]On Behalf Of Anson RinesmithSent: Friday, February 13, 2004 9:33 AMTo: [EMAIL PROTECTED]S

RE: response: Access-Reject

2004-02-13 Thread Jeremy Davis
Run the server is debug mode, radiusd -X and see if it is trying to authenticate via system or local.   Jeremy   -Original Message-From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]On Behalf Of Truong Manh CuongSent: Thursday, February 12, 2004 10:25 PMTo: [EMAIL PROTECTE

RE: freeradius+postgresql: access-reject

2004-02-13 Thread Jeremy Davis
Try changing the Auth-type from system to local in the users file. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Truong Manh Cuong Sent: Friday, February 13, 2004 6:20 AM To: [EMAIL PROTECTED] Subject: freeradius+postgresql: access-reject Hi all,

MD5 password encryption problem

2004-02-13 Thread Mike Lampson
Hello all, I have searched the mailing list archived and have failed to find a solution to my particular problem. I am trying to switch the entries in our users file from Unix crypt to MD5 encryption. My entry in the users file looks like this: mikelampson Auth-Type := PAP, Crypt-Password =

FreeRadius, Cygwin and MySQL

2004-02-13 Thread A. Clausen
Before I even bother attempting this, is it possible? I'm running Mysql on a Win2000 machine, and have managed to get FreeRadius 0.9.3 compiled under Cygwin on the same machine. If it won't work, then I'll just stick to periodic scans of the detail file and building the users file from the databa

Request for an out-of-date CVS version

2004-02-13 Thread Jason2
My apologies to the postmaster for sending this from the wrong email addy. Hullo folks, Would anyone on list happen to have one of the older CVS source sets that compiles successfully for PEAP? I've finally threshed out the stupidity oif user problems

Re: Restrict to NAS-Port-Type

2004-02-13 Thread Alan DeKok
Paulo Fragoso <[EMAIL PROTECTED]> wrote: > All is working fine, but we would like to restric PPTP users to only > connect to vpn server. So we have created our radgroupcheck this way: ... > | 8 | virtual | NAS-Port-Type| := | Virtual | That won't do what you want. Use '=='. See also "m

Re: PLEASE HELP!freeradius and mysql

2004-02-13 Thread Ciolo_-^DusT^-_WebMaster
thanx for replaying now I will check - Original Message - From: "Theodore Knab" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Friday, February 13, 2004 5:37 PM Subject: Re: PLEASE HELP!freeradius and mysql > You get that error when you don't have the mysql server running. > > So if

RE: radius.log rotate?

2004-02-13 Thread Anson Rinesmith
I found that for now the easiest way for me is to edit newsyslog.conf (FreeBSD 4.6) and add that file in there. Works pretty well so far. > -Original Message- > From: [EMAIL PROTECTED] [mailto:freeradius- > [EMAIL PROTECTED] On Behalf Of Guy Fraser > Sent: Friday, February 13, 2004 11:33 A

remove me

2004-02-13 Thread Stepon Esfandiary
remove me -- Wavetex Email Signature Stepon Esfandiary System Administrator / Programmer 903.597.7566 (v) 903.533.1699 (f) [EMAIL PROTECTED] This message is confidential, intended only for the named recipient(s)and may contain information t

Re: radius.log rotate?

2004-02-13 Thread Guy Fraser
Anson Rinesmith wrote: Does the radius.log file rotate when it gets large? If not, has anyone written a script to do this? Thanks, Anson I have been meaning to look into having the log file dynamically named. I made a patch for Cistron Radius that dynamically named. Example: /va

Restrict to NAS-Port-Type

2004-02-13 Thread Paulo Fragoso
Hi, We have a Freeradius 0.9.3 + Mysql to authenticate 02 systems. The frist system is a RAS (Lucent MAX6000) and the second system is a FreeBSD 5.1 + MPD to implement PPTP vpn. All is working fine, but we would like to restric PPTP users to only connect to vpn server. So we have created our r

Re: radius.log rotate?

2004-02-13 Thread Dennis Rex
Not sure which one you are using, but there are scripts for Debian, SuSE and RH included with the 0.9.3 package. On Fri, 2004-02-13 at 08:43, Anson Rinesmith wrote: > Does the radius.log file rotate when it gets large? > > If not, has anyone written a script to do this? > > > > Thanks, > >

radius.log rotate?

2004-02-13 Thread Anson Rinesmith
Does the radius.log file rotate when it gets large? If not, has anyone written a script to do this?   Thanks,     Anson  

Re: PLEASE HELP!freeradius and mysql

2004-02-13 Thread Theodore Knab
You get that error when you don't have the mysql server running. So if the server is running, you need to check the host firewall. [EMAIL PROTECTED]:~$ mysql -u testdummy -h localhost ERROR 2002: Can't connect to local MySQL server through socket '/var/run/mysqld/ mysqld.sock' (2) On 13/02/04

Re: freeradius+postgresql: access-reject

2004-02-13 Thread Guy Fraser
Truong Manh Cuong wrote: Hi all, I installed freeradius 0.93 and use postgresql. I don't know how to config radius for authorizing. it rejects all request because it use system account. I want to config radius so that it query account in postgresql database. how to do it ? it reported that rlm_uni

Re: PLEASE HELP!freeradius and mysql

2004-02-13 Thread Gustavo A. Lozano
It is more a MySQL question than a Radius question. but the answer is: check the mysql.sock in your /tmp directory It happens in the configuration/installation time that files go to one place or another when you build the MySQL server. If you dont want to reinstall everything just create a link

Re: PLEASE HELP!freeradius and mysql

2004-02-13 Thread Ciolo_-^DusT^-_WebMaster
> Try that SQL statement in mysql using the user and password you have > setup in the database configuration. > > Example : > > mysql -uradius -p radius > Enter password:{rootpass} > ... > mysql> SELECT id,UserName,Attribute,Value,op FROM radcheck WHERE Username = 'fredf' ORDER BY id; > ++-

Re: Patch for PEAP MSCHAPV2. Is it ok ? (Alan DeKok)

2004-02-13 Thread Pierluigi Frullani
Re: Patch for PEAP MSCHAPV2. Is it ok ? (Alan DeKok) > "Pierluigi Frullani" <[EMAIL PROTECTED]> wrote: >> After a very long hunt, I've discovered a bug in rlm_mschap module, in >> freeradius snapshot 20040130. > > That's good, but why didn't you just do a CVS update? The bug was > discussed on t

Re: Compile Error on HP-UX11.0

2004-02-13 Thread Alan DeKok
"Suhr, Gunnar" <[EMAIL PROTECTED]> wrote: > /usr/ccs/bin/ld: Can't find library: "crypto" > > The file libcrypto.a is located in /usr/local/lib . There's no libcrypto.so. Go read up some more on Unix library systems & dynamic linking. > Does anyone have an idea, how to fix the problem ? $

Re: username limits

2004-02-13 Thread Alan DeKok
"Anson Rinesmith" <[EMAIL PROTECTED]> wrote: > Is there a MIN/MAX on username sizes for freeradius? RADIUS protocol limitations. 0-253 bytes. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: RADIUS don't UPDATE the DATABASE

2004-02-13 Thread Alan DeKok
[EMAIL PROTECTED] wrote: >Now I am testing a P-360 gateway from the another technology company in > order how P-360 function against RADIUS server. The P-360 gateway > authenticates, althoug it don't update the database with the new users. > Obviusly the problem is in the P-360 because with

Re: EAP-Message in logs

2004-02-13 Thread Alan DeKok
Theodore Knab <[EMAIL PROTECTED]> wrote: > It is working, however I am getting this error in my log file. > > Thu Feb 12 16:39:17 2004 : Error: rlm_eap: EAP-Message not found > > What does that mean ? Nothing. The message has been deleted in the latest CVS snapshots. Alan DeKok. - List i

Re: Patch for PEAP MSCHAPV2. Is it ok ?

2004-02-13 Thread Alan DeKok
"Pierluigi Frullani" <[EMAIL PROTECTED]> wrote: > After a very long hunt, I've discovered a bug in rlm_mschap module, in > freeradius snapshot 20040130. That's good, but why didn't you just do a CVS update? The bug was discussed on this mailing list in the past two weeks, and has already been f

Re: username limits

2004-02-13 Thread Theodore Knab
I think the only limitation is that the username has to be greater or equal to one character. Normally, the limitations would not be on Free-Radius but the back-end that is being used. With usernames and passwords, Radius just tells the gate-keeping device if a client is allowed or not. Username

Re: Problems with EAP/TTLS+PAP and LDAP

2004-02-13 Thread Alan DeKok
Arne Brutschy <[EMAIL PROTECTED]> wrote: > What I'm doing is to read the vlan id from ldap and give it to the > switch. The port the user is connected to will be added to that specific > vlan afterwards. This works just fine with EAP-MD5 or when I'm using my > real username outside the tunnel. T

Re: why freeradius doesn't log anything?

2004-02-13 Thread Alan DeKok
[EMAIL PROTECTED] wrote: > I'm a very first time user of freeradius and I encountered some problems while > trying to get logs...in fact I have no logs at all. Is it receiving packets? This is in the FAQ... Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/u

Re: Pipe AVs to file

2004-02-13 Thread Alan DeKok
ROY <[EMAIL PROTECTED]> wrote: > Which source file must I edit to harvest AV pairs from an > Accounting-Request packet? None. If you read the docs, you would see how to log AV's to a file. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Freeradius + EAP-TLS + DHCP = not working. Help! - Repost in text hopefully.

2004-02-13 Thread Gene Nelson
Sorry - Wasn't my intention to post in html last time. Lotus notes has a mind of its own from time to time. Repost in Text (hopefully) I am experimenting with freeradius, and a new access point. Using 0.9.3 of FreeRADIUS. Everything between the acces

Re: Error compiling Freeradius-0.9.3 on FreeBSD 4.9

2004-02-13 Thread Alan DeKok
Albert Miles Enabe <[EMAIL PROTECTED]> wrote: > I am trying to compile Freeradius-0.9.3 from ports collection with > --with-experimental-modules on FreeBSD 4.9. I am interested in using > rlm_sqlcounter. It seems to me that the errors appear when compiling > rlm_smb. Any help on this? Delete th

zero packet

2004-02-13 Thread Anson Rinesmith
Is there a way to eliminate   Thu Feb 12 10:01:46 2004 : Error: rlm_sql:  Stop packet with zero session length .  (user '', nas '192.168.0.1')   messages from my radius.log ? I know what they are and what they mean, I just don’t want to see them.   Anson Rinesmith  

Re: FreeRadius with Oracle driver

2004-02-13 Thread Alan DeKok
Ayman Alashquar <[EMAIL PROTECTED]> wrote: > Apprceiate your feedback and many thanks in advance. I just worked through FreeRADIUS with Oracle on 9 installations. Any problems I ran into I solved through the methods described in he FAQ. If it works for me, it will work for you. Alan DeKok.

Compile Error on HP-UX11.0

2004-02-13 Thread Suhr, Gunnar
Hello, i'm trying to compile freeRadius 0.9.3 on a HP-UX 11.0 OS, but it stop's with the following error : /usr/ccs/bin/ld -b +h rlm_eap_tls-0.9.3.sl +b /usr/local/lib -o .libs/rlm_eap_tls-0.9.3.sl rlm_eap_tls.lo eap_tls.lo cb.lo tls.lo mppe_keys.lo -lcrypto -lssl -lnsl -lc /usr/ccs/bin/ld:

username limits

2004-02-13 Thread Anson Rinesmith
Is there a MIN/MAX on username sizes for freeradius?   Anson Rinesmith  

Re: Freeradius + EAP-TLS + DHCP = not working. Help!

2004-02-13 Thread Theodore Knab
Suggestion: don't send html to the list On 13/02/04 07:33 -0600, Gene Nelson wrote: -- -- Ted Knab Chester, Maryland 21619 USA -- 45865602e6164796f6e60237471647560216e646022756c6967696f6 e602963702f62637f6c6564756e

Freeradius + EAP-TLS + DHCP = not working. Help!

2004-02-13 Thread Gene Nelson
I am experimenting with freeradius, and a new access point.  Using 0.9.3 of FreeRADIUS. Everything between the access point and the clients works fine when just using static wep keys.  I turn on EAP-TLS, and configure everything correctly, and the clients authenticate just fine, but no DHCP address

freeradius+postgresql: access-reject

2004-02-13 Thread Truong Manh Cuong
Hi all, I installed freeradius 0.93 and use postgresql. I don't know how to config radius for authorizing. it rejects all request because it use system account. I want to config radius so that it query account in postgresql database. how to do it ? it reported that rlm_unix not found. I just comme

RADIUS don't UPDATE the DATABASE

2004-02-13 Thread Santiago Balaguer García
Hi people, I am using freeradius 0.93 and WGS4000 gateway. The WGS4000 authentices users and update the DB correctly. All go well. Now I am testing a P-360 gateway from the another technology company in order how P-360 function against RADIUS server. The P-360 gateway authenticates, altho