Re: Execute SCript after Auth ?

2004-12-18 Thread Scott
A seperate background process, or a cron job would be the best way to go (IMO). If you log accounting data to a sql database, I'm sure a modest SQL query would do. Otherwise you'll want to process the log files. I'd be interested in your methods for this, including the actual SQL statement, o

Re: reject_delay anomaly

2004-12-18 Thread Scott
George, I was recently monitoring some testing of my own radius server the other day. I'm using the CVS release (not a daily snapshot) from 2004-12-15 on RedHat 7.2. While briefly testing my setup, I noticed there was a reject delay for failed authentications. I didn't time anything, but you

Execute SCript after Auth ?

2004-12-18 Thread Jorge Minassian
Hi all !, I need to do something to get administrator alerted in case simultaneous use is detected. May it be done executing some script after radius auth ?. Is it possible ?. Thanks a lot, Jorge. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: EAP-PEAP-MSCHAPv2 not sending MPPE keys

2004-12-18 Thread Alan DeKok
Jakub Jermak <[EMAIL PROTECTED]> wrote: > Yes, the user was rejected, but why? On closer examination, it appears that the debug log you posted includes multiple user sessions. This is confusing, and makes it more difficult to track down what's going wrong, and why. > MSCHAPv2 module authentica

Re: EAP-PEAP-MSCHAPv2 not sending MPPE keys

2004-12-18 Thread Jakub Jermak
On Sat, Dec 18, 2004 at 07:22:36PM -0500, Alan DeKok wrote: > Jakub Jermak <[EMAIL PROTECTED]> wrote: > > I have a problem with eap-pearp-mschapv2 modules, not sending MPPE keys > > after successfull authentication > > The log you posted says that the user was rejected. MPPE keys > aren't sent

Re: EAP-PEAP-MSCHAPv2 not sending MPPE keys

2004-12-18 Thread Alan DeKok
Jakub Jermak <[EMAIL PROTECTED]> wrote: > I have a problem with eap-pearp-mschapv2 modules, not sending MPPE keys > after successfull authentication The log you posted says that the user was rejected. MPPE keys aren't sent for Access-Reject messages. Alan DeKok. - List info/subscribe/unsu

Re: log_file does not expand variables

2004-12-18 Thread Alan DeKok
data zone <[EMAIL PROTECTED]> wrote: > Quick question. Is there a reason that the log_file does not expand > variables like the detailfile does? No one has written the code. As always, patches are welcome. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list

Re: RADIUS and PAM configuration help

2004-12-18 Thread Alan DeKok
"Toby Zimmerer" <[EMAIL PROTECTED]> wrote: > I have reviewed the FAQ from the freeradius site and the instructions are as > clear as mud. I need to get some clarification on how exactly to tie in the > PAM modules to RADIUS. The aforementioned FAQ appears to be geared towards > a KERNEL expert

Re: Redirect users to a web page

2004-12-18 Thread Carl Peterson
Not quite sure what you are looking for here but it sounds like you want something like NoCat Splash, NocatAuth or Chilli. Carl Peterson On Saturday 18 December 2004 07:16, Florin Samareanu wrote: > anyone has any ideea how i can redirect my users the first time they > browse a web page to som

EAP-PEAP-MSCHAPv2 not sending MPPE keys

2004-12-18 Thread Jakub Jermak
ess = 0x06533d33373243413442423046464246394341364537434 13544423843313433434642334643453139 EAP-Message = 0x010700331a0306002e533d333732434134424230464642463943 4136453743413544423843313433434642334643453139 Message-Authenticator = 0x State = 0xf82ecaa579f0f96793a4d41fbe7

Re: Redirect users to a web page

2004-12-18 Thread A . L . M . Buxey
Hi, > anyone has any ideea how i can redirect my users the first time they > browse a web page to something www.mydomain.com/news/ ? > example: a vpn user connects to my box (freeradius, mysql, poptop), > then he opens www.google.com and gets redirected to > www.mydomain.com/news/. > the second ti

log_file does not expand variables

2004-12-18 Thread data zone
Quick question. Is there a reason that the log_file does not expand variables like the detailfile does? I was looking to have something like: log_file = ${logdir}/radius-%Y%m%d.log Thanks Data Zone - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Redirect users to a web page

2004-12-18 Thread Florin Samareanu
anyone has any ideea how i can redirect my users the first time they browse a web page to something www.mydomain.com/news/ ? example: a vpn user connects to my box (freeradius, mysql, poptop), then he opens www.google.com and gets redirected to www.mydomain.com/news/. the second time he opens a web

logging to stdout/stderr

2004-12-18 Thread richard lucassen
Logging to stdout/stderr didn't work in 0.9.3. A few months ago Alan DeKok replied to the same question: "1.0.0 has better support for log destinations, but it still might be closing stdout & stderr." http://lists.cistron.nl/pipermail/freeradius-users/2004-August/035103.html Is there a (maybe st

RE: Adding multiple called-station-ID into check items.

2004-12-18 Thread Michael Markstaller
> Khushal Singh > Sent: Saturday, December 18, 2004 7:49 AM > > hi all, > > i am using freeradius1.0.1..i have got one ras with 3 E1 lines. all > three line is having different access numbers..eg. 172265, 172266, > 172267. > now i want that my dialup user can only dial 172265 or 172266 to get > a