AW: freeradius and RSA SecurID

2004-12-09 Thread Markus.Wintruff
We're using debian, it's not one of the supportet distries :-( The fact is i won't use RSA Radius because as i heard it costs much more then only the ACE. Markus -Ursprüngliche Nachricht- Von: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Im Auftrag von Michael Markstaller

Login and Max-All-Session

2004-12-09 Thread Neil Craig
Hello all Running Freeradius 1.0.1 MySQL Chillispot 0.98 I have sucessfully setup accounting and authorisation via MySQL - all is working fine until I add an sqlcounter (Max-All-Session) - when this is active Freeradius throws up an error saying that the password supplied contains unprintable

Re: Redundant proxyradius and redundant homeradius

2004-12-09 Thread Thor Spruyt
Alan DeKok wrote: Thor Spruyt [EMAIL PROTECTED] wrote: I had both proxyradius servers configured to store all accounting in their own database, so by using radrelay, the databases should be the same, even if one proxyradius server is down for half an hour. Why do the databases need to be the same

Client can't get IP Address from DHCP

2004-12-09 Thread robert saab
Hi all, please give me any idea, I have installed the latest version of Freeradius and my Access Point is Proxim AP-4000 with 802.1x for authenticating method. Freeradius can accept my credentials when i try to connect from XP Pro, but there is no IP Address assigned from DHCP server. This is my

Re: Client can't get IP Address from DHCP

2004-12-09 Thread David ROUMANET
I've the same problem (however, one time it has works fine...) try to check your router configuration (Cisco need ip helper-address x.x.x.x on interfaces. x.x.x.x is DHCP server address.) For the rest, I don't know if there is an order in lines for users files... joe Auth-Type := local,

freeradius =1.0 uses clients.conf for authenticating devices or 'nas' table in database can serve same purpose?

2004-12-09 Thread Amit Gupta
I have one confusion. freeradius =1.0 uses clients.conf for authenticating devices or 'nas' table in database can serve same purpose. Thanks in advance, Amit Gupta - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: freeradius =1.0 uses clients.conf for authenticating devicesor 'nas' table in database can serve sa

2004-12-09 Thread Neil Craig
[EMAIL PROTECTED] 09/12/2004 10:12:55 I have one confusion. freeradius =1.0 uses clients.conf for authenticating devices or 'nas' table in database can serve same purpose. They should both do the same. I'm trying to use NAS table but even with the line in sql.conf uncommented it is still using

Re: freeradius =1.0 uses clients.conf for authenticating devicesor 'nas' table in database can serve sa

2004-12-09 Thread Kostas Kalevras
On Thu, 9 Dec 2004, Neil Craig wrote: [EMAIL PROTECTED] 09/12/2004 10:12:55 I have one confusion. freeradius =1.0 uses clients.conf for authenticating devices or 'nas' table in database can serve same purpose. They should both do the same. I'm trying to use NAS table but even with the line in

Re: freeradius =1.0 uses clients.conf for authenticatingdevicesor 'nas' table in database can serve

2004-12-09 Thread Neil Craig
[EMAIL PROTECTED] 09/12/2004 12:36:07 On Thu, 9 Dec 2004, Neil Craig wrote: [EMAIL PROTECTED] 09/12/2004 10:12:55 I have one confusion. freeradius =1.0 uses clients.conf for authenticating devices or 'nas' table in database can serve same purpose. They should both do the same. I'm trying to

Re: freeradius =1.0 uses clients.conf for authenticatingdevicesor 'nas' table in database can serve

2004-12-09 Thread Kostas Kalevras
On Thu, 9 Dec 2004, Neil Craig wrote: The server will always read the client.conf file. You should have at least one entry there (an entry for localhost would be enough). Thanks...any idea why it doesn't read from SQL? No idea. Run it in debug mode to see what happens. -- Kostas Kalevras

Clients SQL

2004-12-09 Thread Neil Craig
Hi I'm having a strange problem with reading the NAS list from SQL - I have uncommented the appropriate line in sql.conf and made the entry in the db - I assumed this was working until I added another to the db - it doesn't recognise the NAS - if I put it in clients.conf then all is fine. Is

Re: freeradius =1.0 uses clients.conf forauthenticatingdevicesor 'nas' table in database can serve

2004-12-09 Thread Neil Craig
Thanks...any idea why it doesn't read from SQL?No idea. Run it in debug mode to see what happens. I have - just complains of unknown NAS...checked IP/secret etc all ok

freeRADIUS 1.0.1 and Cisco PIX 515 version 6.1

2004-12-09 Thread Zachary Fortna
Title: freeRADIUS 1.0.1 and Cisco PIX 515 version 6.1 We recently migrated over to freeRADIUS 1.0.1 (Redhat ES 3 RPM) from Steel Belted RADIUS for authentication of our VPN. I set it up to use System authentication, and it works like a charm for a day or two, but then all of a sudden just

Error: No memory

2004-12-09 Thread Edgars
don't know how to fight with this error message. It seems to be appearing each time when some user using MSCHAP is connecting (with PAP it's ok). The following appears in debug section: Processing the authenticate section of radiusd.conf modcall: entering group Auth-Type for request 3 No memory

freeRADIUS 1.0.1 and Cisco PIX 515 version 6.1

2004-12-09 Thread Zachary Fortna
Title: freeRADIUS 1.0.1 and Cisco PIX 515 version 6.1 We recently migrated over to freeRADIUS 1.0.1 (Redhat ES 3 RPM) from Steel Belted RADIUS for authentication of our VPN. I set it up to use System authentication, and it works like a charm for a day or two, but then all of a sudden just

Re: freeRADIUS 1.0.1 and Cisco PIX 515 version 6.1

2004-12-09 Thread Kaczmarek, Thaddeus
On Thu, 2004-12-09 at 09:23 -0500, Zachary Fortna wrote: We recently migrated over to freeRADIUS 1.0.1 (Redhat ES 3 RPM) from Steel Belted RADIUS for authentication of our VPN. I set it up to use System authentication, and it works like a charm for a day or two, but then all of a sudden just

RE: freeRADIUS 1.0.1 and Cisco PIX 515 version 6.1

2004-12-09 Thread Jeff Green
Title: freeRADIUS 1.0.1 and Cisco PIX 515 version 6.1 Hi, We're currently running PIX515e / Finese 6.3(4) with FreeRadius 1.0.0 and Postgresql V7.4.5 on SuSE V9.1 and it's working fine. Previously I've run Finese 6.3(2)/6.3(3) against FreeRadius 0.9.x on SuSE 9.0 / 8.x with no probs.

Re: LDAP and Novell's eDirectory

2004-12-09 Thread Daniel Hesse
I got in to a discussion with a list serve at novell, for using 802.1x freeradius, against Novells LDAP server included with eDirectory. Novell is working on a solution to make eDirectory authentication mschapv2 possible with freeradius. Currently it is not!!! The LDAP server included with

Re: LDAP and Novell's eDirectory

2004-12-09 Thread Daniel Hesse
Actually I stated that wrongjust stick with the quoted materialand disregaurd my comments. Daniel D. Hesse Technology Administrator Methodist Manor Retirement Community 712-732-1120 Ext.116 [EMAIL PROTECTED] [EMAIL PROTECTED] 12/8/2004 9:12:48 AM I installed Freeradius ver.1.0.1 and

Re: Client can't get IP Address from DHCP

2004-12-09 Thread Edgars
and I don't understand '==' for Service-Type and just '=' for Framed-MTU... what's the difference ? take a look in rlm_sql under doc section. Edgars robert saab a écrit : Hi all, please give me any idea, I have installed the latest version of Freeradius and my Access Point is Proxim AP-4000

Not receiving any detail logs

2004-12-09 Thread Brenda Washington
I just upgraded my radius server from freeradius-0.9.0 to freeradius-1.0.1. Before the update, I was receiving my detail logs. After the upgrade, I am not receiving these logs. If I turn on auth-detail logging, I get the auth-detail logs with the password attribute which I don't want to shown in

Re: Redundant proxyradius and redundant homeradius

2004-12-09 Thread Alan DeKok
Thor Spruyt [EMAIL PROTECTED] wrote: Why do the databases need to be the same on the proxy? What's a backup database worth if it doesn't contain the same as the primary? But you already have two databases, one on each home server. The design of RADIUS, and radrelay, ensures that both

RE: freeradius and RSA SecurID

2004-12-09 Thread Michael Markstaller
Hmm, I've just double checked price lists, the radius-server is included with base and advanced ACE license AFAIK. But maybe they changed it with 6.0, another reason for us to continue lend the securid-service ;) Anyway, I never got this working under Debian, neither woody nor sarge.. When

Ttotacct is empty in mysql db, how to?

2004-12-09 Thread Michel van Dop
Hello, I using freeradius-mysql-0.9.3-1.1 on fedora 1,i connect to mysql server 3.58.x db.It workokay mysql on username and groupname. Mytotacct is empty in mysql db. Can anyone tell me how to config this or can me send a good link with information about this. Thank you to read my problem,

Re: Ttotacct is empty in mysql db, how to?

2004-12-09 Thread Dustin Doris
On Thu, 9 Dec 2004, Michel van Dop wrote: Hello, I using freeradius-mysql-0.9.3-1.1 on fedora 1, i connect to mysql server 3.58.x db. It work okay mysql on username and groupname. My totacct is empty in mysql db. Can anyone tell me how to config this or can me send a good link with

Re: Redundant proxyradius and redundant homeradius

2004-12-09 Thread Thor Spruyt
Alan DeKok wrote: Thor Spruyt [EMAIL PROTECTED] wrote: Why do the databases need to be the same on the proxy? What's a backup database worth if it doesn't contain the same as the primary? But you already have two databases, one on each home server. The design of RADIUS, and radrelay, ensures

Groups and individual attributes

2004-12-09 Thread Neil Craig
Is it possible to use both group and individual user attributes? When a user is part of a group it applies all the attribs for that but also the ones listed in radcheck? - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Ttotacct is empty in mysql db, how to?

2004-12-09 Thread Kostas Kalevras
On Thu, 9 Dec 2004, Michel van Dop wrote: Hello, I using freeradius-mysql-0.9.3-1.1 on fedora 1, i connect to mysql server 3.58.x db. It work okay mysql on username and groupname. My totacct is empty in mysql db. Can anyone tell me how to config this or can me send a good link with information

Implementing postproxy_query for rlm_sql

2004-12-09 Thread Thor Spruyt
Hi, I'd like to have a postproxy_query in rlm_sql so that I can have an sql query in the post_proxy section. I have figured out the following: - added a function in rlm_sql.c - added a line at the bottom in rlm_sql.c - added a var in conf.h What other files should be extended for this? Any other

RE: Check Multiple Calling-Station-Id in mysql

2004-12-09 Thread Nurul Faizal M.Shukeri
Message: 1 From: Lim Han Shyong [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject: RE: Check Multiple Calling-Station-Id in mysql Date: Tue, 7 Dec 2004 16:38:36 +0800 Reply-To: [EMAIL PROTECTED] Hi: There might be other better method, me use a simple stupid method, maybe can have

Pool wise bandwidth sharing

2004-12-09 Thread Nirmal
Hi, does freeradius-1.0.0 support Pool wise bandwidth sharing ? Thanks, Nirmal __ Do you Yahoo!? Jazz up your holiday email with celebrity designs. Learn more. http://celebrity.mail.yahoo.com - List info/subscribe/unsubscribe? See

How to grab users IP and MAC Address

2004-12-09 Thread Nurul Faizal M.Shukeri
Hi, I would like to monitor my users(wireless) and I try writing a system and I'm using table radacct. But value for Calling-Station-Id is not recorded and we are using DHCP server.All user can get ip address from dhcp but my radius server doesn't record it. Can anyone help me how to grab users

Re: How to grab users IP and MAC Address

2004-12-09 Thread Dana Hudes
On Fri, 10 Dec 2004, Nurul Faizal M.Shukeri wrote: I would like to monitor my users(wireless) and I try writing a system and I'm using table radacct. But value for Calling-Station-Id is not recorded and we are using DHCP server.All user can get ip address from dhcp but my radius server