Re: EAP-TTLS with tunneled PAP Users files

2004-12-20 Thread Joe Raviele
.11 EAP-Message = 0x020200090174657374 Message-Authenticator = 0x02521fa69ec92e5d9da39a3ffb06e1f7 Processing the authorize section of radiusd.conf modcall: entering group authorize for request 0 modcall[authorize]: module "preprocess" returns ok for request 0 radius_xlat:

Retry Delay and Retry Count in Proxy.conf

2004-12-20 Thread prabhdeep
Hi, I would like to know if there is a way to set retry_delay ... at realm level, as I would like to wait longer for some re... Thanks Prabh - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: RADIUS and PAM configuration help--RESOLVED with solution posted

2004-12-20 Thread Toby Zimmerer
Alright! I figured this whole thing out! I switched over to the pam_radius_auth module (Sept 2003) to tie PAM into an existing RADIUS server. The difference with tying RADIUS in with Redhat ES is that each module tha links to PAM has a separate module under the /etc/pam.d directory. You mus

Re: problems with radutmp

2004-12-20 Thread Paul Hampson
On Mon, Dec 20, 2004 at 02:19:11PM -0200, Luiz Gustavo Anflor Pereira wrote: > > hello all > > I have a problema concerning radutmp. > Here is the situation: > The command " radwho | grep 7969 " gives me the output: > rsf7969rsf7969 PPP >999 Fri 16:20 200.96.10 > If i use the o

Unsubscribe

2004-12-20 Thread Antonio Martinez
- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: debian compile issues in conjunction with eap

2004-12-20 Thread Sven Juergensen
Paul Hampson wrote: Check you've got libssl-dev installed. It is quite possibly silently not building rlm_eap_tls due to lack of OpenSSL or wrongly-version openSSL, the same thing that'd cause rlm_x99_token to not build. that did it, thanks a bunch paul and alan. all the best and merry xmas, sven -

Re: RADIUS and PAM configuration help

2004-12-20 Thread Stefan . Neis
Hi, > I am looking to have SSH authenticate to a RADIUS server. I believe that > PAM is supported for SSH authentication, so I planned on linking PAM to SSH > (which I think is setup by default). Note that newer OpenSSH versions (starting with 3.7, IIRC) come with PAM disabled by default

Re: RADIUS and PAM configuration help

2004-12-20 Thread Toby Zimmerer
Thanks for the response, Alex. I apologize my sarcasm has caused some confusion. I am looking to have SSH authenticate to a RADIUS server. I believe that PAM is supported for SSH authentication, so I planned on linking PAM to SSH (which I think is setup by default). From there, I want to tie

MAC addr. authentication & SQL

2004-12-20 Thread Joe Mailander
recently set up freeradius-1.0.1. I'm trying to set up a simple MAC-address based allow/deny (NAS is a cisco AP1200). I'm using the sql method for authorization, which works fine. All I care about is an allow or deny based on the hardware address of the NIC, I don't need joe user to supply a

RE: Dialupadmin

2004-12-20 Thread Cris Boisvert
I found that the Kernel was dumping errors to the messages log and after some google'ing I found something that states Fedora core 3 has a problem with SELINUX. Where selinux would not let apache and any other process work together.. Some security feature I guess.. So I had to go into /etc/sysco

Re: reject_delay anomaly

2004-12-20 Thread George C. Kaplan
In message <[EMAIL PROTECTED]>, Scott writes : > George, > > I was recently monitoring some testing of my own radius server the other day. > > I'm using the CVS release (not a daily snapshot) from 2004-12-15 on RedHat > 7.2. While briefly testing my setup, I noticed there was a reject delay fo

Re: Dialupadmin

2004-12-20 Thread Kostas Kalevras
On Mon, 20 Dec 2004, Cris Boisvert wrote: Dialup admin wonʼt connect to the mysql database on the server I have.. its running freeradius on fedora core 3 The radius server will connect to the database although dialup admin wonʼt . Enable debug mode. Make sure you have mysql enabled in php If you a

Dialupadmin

2004-12-20 Thread Cris Boisvert
Dialup admin won’t connect to the mysql database on the server I have.. its running freeradius  on fedora core 3 The radius server will connect to the database although dialup admin won’t .   I pulled the config from another machine that is setup the same way.. I checked the user and pa

Re: mysql DB script

2004-12-20 Thread Mathias Röhl
Am Mo, den 20.12.2004 schrieb Dustin Doris um 17:36: Hi > When you unpack the source, its in > > freeradius-1.0.1/src/modules/rlm_sql/drivers/rlm_sql_mysql > thx a lot, after find . -name "*.sql" I found it jet at the moment > named > > db_mysql.sql regards [EMAIL PROTECTED] - Li

Re: mysql DB script

2004-12-20 Thread Dustin Doris
When you unpack the source, its in freeradius-1.0.1/src/modules/rlm_sql/drivers/rlm_sql_mysql named db_mysql.sql On Mon, 20 Dec 2004, Mathias [ISO-8859-1] Röhl wrote: > Hi > > after my setup works with an accesspoint and 802.1x I tried to use LDAP > and mysql. AFAIR there must be a script to c

problems with radutmp

2004-12-20 Thread Luiz Gustavo Anflor Pereira
hello all I have a problema concerning radutmp. Here is the situation: The command " radwho | grep 7969 " gives me the output: rsf7969rsf7969 PPP >999 Fri 16:20 200.96.10 If i use the option "-r", so "radwho -r | grep 7969", the output is: rsf7969,rsf7969,PPP,S-2145975988,Fri 1

mysql DB script

2004-12-20 Thread Mathias Röhl
Hi after my setup works with an accesspoint and 802.1x I tried to use LDAP and mysql. AFAIR there must be a script to create the radius DB, but I cann't find this. There's no such one in /usr/local/etc/freeradius-1.0.1/doc. I builed fr from the source, not with the .deb, thats why I haven't the f

Re: FreeBSD 5.3 compile problem ..continued...

2004-12-20 Thread A . L . M . Buxey
hi, still struggling along here, with the help of some folk I have a compiling FreeBSD 5.3 FreeRADIUS - both the 1.0.1 ports versions (with krb5 enabled) and also a 1.1.0-pre CVS version - fresh from this morning. A few questions to throw out now: When I try to authenticate with kerberos, I am se

(no subject)

2004-12-20 Thread Alfred H. Dahl
> >> If a Mikrotik pppoe-server stops, or the accounting-stop-packet from > >> the pppoe-server does not reach the radius-server, the IP-address is > >> not freed from the ip_pool, meaning we get "stale" sessions in the > >> IP-Pool. >Now I think about it, there's supposed to be an accounting

RE: cisco av-pair

2004-12-20 Thread TANGUY ERIC
with this modification, now it's ok thanks -Message d'origine- De : [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] la part de Alan DeKok Envoyé : vendredi 17 décembre 2004 19:07 À : [EMAIL PROTECTED] Objet : Re: cisco av-pair "TANGUY ERIC" <[EMAIL PROTECTED]> wrote: > I use freradius 0.9.

Re: Redirect users to a web page

2004-12-20 Thread Carl Peterson
NocatSplash http://nocat.net/moin/NoCatSplash > i don`t want to "force" my users to authorise, i just want them to see > the "news" page every time they login, then everything goes normally. > Cheers, > Florin > > - > List info/subscribe/unsubscribe? See > http://www.freeradius.org/list/users.html