Re: Finetuning for dialupadmin

2004-09-16 Thread Flo4000
Thanks Kostas! Yesterday I found the debug for sql and tested all of the failing outputson the mysql commandline. All of them where ok but, the totacct is empty (I will run the cron today), the acct terminatecause for failings are empty (I will look for the NAS), but the wrong Output of Downlo

Re: missing information in table radacct and totacct

2004-09-16 Thread Flo4000
thanks a lot! I will try a daily crontab for the badlogins today! - Original Message - From: "Kostas Kalevras" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Thursday, September 16, 2004 10:59 PM Subject: Re: missing information in table radacct and totacct > On Thu, 16 Sep 2004 [EM

RE: LDAP SSL won't bind??

2004-09-16 Thread Hou, Ming
I am wondering that I had a statement "checking for SSL_new in -lssl ... no" when I ran "configure", will it cause Radiusd fails to connect to my secure LDAP server? Thanks, ming -Original Message- From: Kostas Kalevras [mailto:[EMAIL PROTECTED] Sent: Thu 9/16/

Cisco WLSE authentication

2004-09-16 Thread Craig Miller
Hi, Is there anyone out there who has successfully managed to make a Cisco WLSE authenticate against a freeradius server when joining a WDS? Cisco AP1200 access points successfully authenticate to the freeradius server through the WDS, but I have been unsuccessful when it comes to the WLSE. A

Re: lotus notes ldap

2004-09-16 Thread J.R. Cabanban
command:  radtest arookie localhost 1 sharedsecret response:  rad_recv: Access-Reject packet from host 127.0.0.1:1812, id=61, length=20 snapshot of radiusd -X -A rad_recv: Access-Request packet from host 127.0.0.1:32847, id=53, length=59         User-Name = "arookie"         User-Passw

Re: RE : Sqlcounter pb

2004-09-16 Thread Alan DeKok
"EROS" <[EMAIL PROTECTED]> wrote: > But at last the counter return 0 which is wrong and allow the user to > have all session time. Then the counter module is not updating the counters during accounting. a) the server is not receiving accounting packets b) you did not list "counter" in "acco

Re: Me again im stuck

2004-09-16 Thread Alan DeKok
"Ugur GUNCER" <[EMAIL PROTECTED]> wrote: > How can i define attribute in a dictionary. Read the "man" page, and the dictionary files. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Me again im stuck

2004-09-16 Thread Ugur GUNCER
Hi alan How can i define attribute in a dictionary. I define wit some values but i cant take the called number > -Original Message- > From: [EMAIL PROTECTED] > [mailto:[EMAIL PROTECTED] On Behalf Of Alan > DeKok > Sent: Friday, September 10, 2004 9:17 PM > To: [EMAIL PROTECTED] > Sub

'rlm_exec

2004-09-16 Thread Rangel, Luciano
Hello, Help-me please Why??? radiusd.conf[1369] Failed to link to module 'rlm_exec': File not found Thanks, Luciano Rangel - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE : Sqlcounter pb

2004-09-16 Thread EROS
Yes I've notice in the freeradius startup log that it creates attributes for each counter that I've created. But at last the counter return 0 which is wrong and allow the user to have all session time. Any idea ? -Message d'origine- De : [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] De la

Re: Using an alternative password file

2004-09-16 Thread Julian Cowley
On Wed, 15 Sep 2004, Alan DeKok wrote: Julian Cowley <[EMAIL PROTECTED]> wrote: I'm using freeradius and I want authenticate from an alternative password file at the same time as authenticating from the normal Unix password file. When a request comes in, I want the alternative password file to be

Re: Finetuning for dialupadmin

2004-09-16 Thread Kostas Kalevras
On Tue, 14 Sep 2004 [EMAIL PROTECTED] wrote: > Hallo! > > My server works fine but there are some little dialupadmin-problems left on the > website: > > > 1) The "check server" Button does not work. It shows the user (from admin.conf) but > no "successfull" or anything > else). I added the serve

Re: LDAP SSL won't bind??

2004-09-16 Thread Kostas Kalevras
On Thu, 16 Sep 2004, Hou, Ming wrote: > Hi, > > Does anyone have any problem for FreeRadius 1.0.0 to communicate a > secure ldap server on Solaris 8? > > There are my components: > FreeRadius 1.0.0 > Openldap 2.2.15 > OpenSSL 0.97d > Gcc 3.3.2 > > There is my ldap configuration: > > ldap ldapssl {

Re: lotus notes ldap

2004-09-16 Thread Kostas Kalevras
On Wed, 15 Sep 2004, J.R. Cabanban wrote: > We just turned on the LDAP (v3 enable) server feature on our lotus > notes... > env... rh7.3 & freeradius 1.0 > read all howto "freeradius & ldap" that I could find in the web... > The ldap server is being queried by freeradius but could authenticate any

Re: missing information in table radacct and totacct

2004-09-16 Thread Kostas Kalevras
On Thu, 16 Sep 2004 [EMAIL PROTECTED] wrote: > Hallo > > does anyone know, why the totacct stays empty and the field "acctterminatecause" in > radacct too? For the totacct table you need to periodically run the scripts in bin/log_badlogins to fill it up. > > regard Florian > > > -- > [site=fn&p

Re: post_proxy_authorize after marking proxy server dead?

2004-09-16 Thread Alan DeKok
James Nedila <[EMAIL PROTECTED]> wrote: > I have post_proxy_authorize = yes in proxy.conf. > Yet when a proxy server does not respond, and the proxy server is marked > dead, the post_proxy section is not executed. Yes. I don't think it should *ever* be executed. Rather, there could be a sub

Re: Port Filtering?

2004-09-16 Thread Alan DeKok
"Walker Tippit" <[EMAIL PROTECTED]> wrote: > I'm running freeradius (version 0.9.3) and would like to know how to set > up a framed-filter-id "spam" to keep some dialin users from sending spam > out on my network. How can I accomplish this? Consult your NAS documentation to see what it expects

post_proxy_authorize after marking proxy server dead?

2004-09-16 Thread James Nedila
Freeradius version: snapshot-20040909 I have post_proxy_authorize = yes in proxy.conf. Yet when a proxy server does not respond, and the proxy server is marked dead, the post_proxy section is not executed. Here are the relevant debug logs: Sending Access-Request of id 0 to XXX:1812

Re: missing information in table radacct and totacct

2004-09-16 Thread Thor Spruyt
First of all: send plain text mail please! The "totacct" field is not a standard field I guess. I never saw/heard it anyway. The reason that the acctterminatecause field is empty might be because the NAS doesn't send this attribute in the Stop packets or it doesn't send stop packets at all. Try r

Port Filtering?

2004-09-16 Thread Walker Tippit
Hello everybody   I'm running freeradius (version 0.9.3) and would like to know how to set up a framed-filter-id "spam" to keep some dialin users from sending spam out on my network.  How can I accomplish this?   Thank you,

missing information in table radacct and totacct

2004-09-16 Thread flo4000
Hallo does anyone know, why the totacct stays empty and the field "acctterminatecause" in radacct too? regard Florian -- - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Simple way to setup Freeradius ?

2004-09-16 Thread Alan DeKok
"Ronald I. Nutter" <[EMAIL PROTECTED]> wrote: > I am trying to setup 802.1x - EAP/TLS for my college with no additional > software required beyond that already exists on XP/2000 client. That should be possible. > My > problem is that I am on MS W2K for the servers which doesn't support > radius

Re: Misbehaving configure

2004-09-16 Thread Stefan . Neis
Hi, > configure: warning: silently not building rlm_sql_postgresql. > configure: warning: FAILURE: rlm_sql_postgresql requires: libpq-fe.h libpq. > > > These files are not only in my /include dir but ive gone so far as > to put them in the build/src/include dir as well, and yet the proble

Re: PEAP gets stuck

2004-09-16 Thread Michael Griego
Don't set Auth-Type to EAP. The server will do that for you. While it isn't the problem in this case, it will prove problematic for you in the future. Don't do it. Really. Even in testing. Now, a TLS Alert, Access Denied problem is described as such from the SSL_alert_type_string(3) man page:

RE: Install questions

2004-09-16 Thread Michael Basso
On Tue, 2004-09-14 at 11:26, Michael Basso wrote: > I think I finally installed freeradius 1.0.0. After I ran 'make > install', I > am supposed to edit etc/raddb/radiusd.conf. However, there is no > raddb folder > in etc. There is a raddb folder in usr/local/etc. But there is no > radiusd.con

PEAP gets stuck

2004-09-16 Thread Martin Pauly
Hi everyone, I have a trouble building an auth chain for a wireless network using PEAP. In general, it seems that Part 1 (creating the tunnel) of the conversation is successful, but that I get stuck at the beginning of Part 2 (exchanging further EAP through the tunnel). - No client certificat

Re: Beginner's problem - how to authenticate everyone

2004-09-16 Thread Mike Markowski
On Wed 15-Sep-04 at 1820 EDT, Alan DeKok wrote: > > based on this output from radiusd -X: > > > >users: Matched DEFAULT at 4 > > So... go check line 4. Now. Debug output should say "at line 4". Without units or descriptions, numbers are only marginally useful to new users. (E.g., to

Re: Please mail me

2004-09-16 Thread Rick Whitley
Why??? rick... Rom.5:8 >>> [EMAIL PROTECTED] 9/16/2004 10:11:46 AM >>> Daniel Glue Contracts Manager DD 0207 170 6423 * IMPORTANT NOTICE The information in this e-mail and any attached files is CONFIDENTIAL and may be legally

RE: Please

2004-09-16 Thread Daniel Glue
Ok sorry guys I think I may have the wrong site here but maybe you can help me. I am from a company looking for RADIUS people in particular FreeRadius people to work for me. I think I may have the wrong site, If I have im sorry for any inconvenience. Regards

LDAP SSL won't bind??

2004-09-16 Thread Hou, Ming
Title: LDAP SSL won't bind?? Hi, Does anyone have any problem for FreeRadius 1.0.0 to communicate a secure ldap server on Solaris 8? There are my components: FreeRadius 1.0.0 Openldap 2.2.15 OpenSSL 0.97d Gcc 3.3.2 There is my ldap configuration: ldap ldapssl {     server = “lda

RE: Please

2004-09-16 Thread Lee Norvall
Please explain -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Drew Weaver Sent: 16 September 2004 16:22 To: [EMAIL PROTECTED] Subject: RE: Please ??? -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Daniel Gl

RE: Please

2004-09-16 Thread Drew Weaver
??? -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Daniel Glue Sent: Thursday, September 16, 2004 11:13 AM To: [EMAIL PROTECTED] Subject: Please Help - I am looking for Freeradius people urgently. Regards Daniel Glue Contracts Manager DD 0207 170 6423

Please

2004-09-16 Thread Daniel Glue
Help - I am looking for Freeradius people urgently. Regards Daniel Glue Contracts Manager DD 0207 170 6423 * IMPORTANT NOTICE The information in this e-mail and any attached files is CONFIDENTIAL and may be legally privileged or

Please mail me

2004-09-16 Thread Daniel Glue
Daniel Glue Contracts Manager DD 0207 170 6423 * IMPORTANT NOTICE The information in this e-mail and any attached files is CONFIDENTIAL and may be legally privileged or prohibited from disclosure and unauthorised use. The views

Re: lotus notes ldap

2004-09-16 Thread Alan DeKok
"J.R. Cabanban" <[EMAIL PROTECTED]> wrote: > The ldap server is being queried by freeradius but could authenticate any > ldap defined users... > The ldap server is working - an hp760wl is authenticating properly... > Any direction or things to try are greatly appreciated... Run the server in de

Re: RE : Sqlcounter pb

2004-09-16 Thread Alan DeKok
"EROS" <[EMAIL PROTECTED]> wrote: > I dive in the xlat.c code and I wonder if I must put in dictionnary file > or table something about max-all-session or if it must be added an > another case about max-all-session in the end of the code ? The counter/sqlcounter module should create the attribut

RE: Cant Get Called Number

2004-09-16 Thread Ugur GUNCER
Hi alan How can i define attribute in a dictionary. I define wit some values but i cant take the called number > -Original Message- > From: [EMAIL PROTECTED] > [mailto:[EMAIL PROTECTED] On > Behalf Of Alan DeKok > Sent: Friday, September 10, 2004 9:17 PM > To: [EMAIL PROTECTED] > Su

Re: Freeradius with Multiple Ldap Servers

2004-09-16 Thread Michael Griego
See doc/configurable_failover in the source tree. --Mike On Thu, 2004-09-16 at 08:23, Matthew Hunter wrote: > I have Freeradius configured with Ldap which works but I would like to > specify a secondary Ldap server incase the primary ldap goes down. How > would I go about doing that? Thanks >

Freeradius with Multiple Ldap Servers

2004-09-16 Thread Matthew Hunter
I have Freeradius configured with Ldap which works but I would like to specify a secondary Ldap server incase the primary ldap goes down. How would I go about doing that? Thanks Matt Hunter Network Analyst Waukesha County Technical College - List info/subscribe/unsubscribe? See http://www.fre

Re: detailperm problem

2004-09-16 Thread Urr
See "man umask". It's a C function call, not a program, but something on your system is setting the file creation mask. No problems anymore (startup script problem :). Thnx, this should be FAQ topic. rgrds, Urr - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

provide gateway IP address using freeradius

2004-09-16 Thread Milver S. Nisay
can ideas on attributes on providing specific IP address for dialup clients using freeradius? please advise. milver - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: received response to request we did not send (was: freeradius 1.0.0 pre2)

2004-09-16 Thread Raimund Sacherer
and, Thank you, of course! (just pressed ctrl+enter to fast ;-) and best regards Raimund Am Donnerstag, den 16.09.2004, 10:40 +0200 schrieb Raimund Sacherer: > Yes my Friend! ;-) I am your volunteer ;-) > > asapest i will set up this patch in our test-lab and create the package, > if in our test

Re: received response to request we did not send (was: freeradius 1.0.0 pre2)

2004-09-16 Thread Raimund Sacherer
Yes my Friend! ;-) I am your volunteer ;-) asapest i will set up this patch in our test-lab and create the package, if in our test-environment all goes well i will deploy this on our servers and we could send this patch to the development mailinglist :-) Am Mittwoch, den 15.09.2004, 16:48 +0200 s