Re: rlm_ldap: could not start TLS

2006-04-03 Thread Sayantan Bhowmick
Hi, Please make sure that you have entered the DNS name of your ldap serer(eDirectory) in the ldap section of radiusd.conf. -Sayantan. On Sat, Apr 1, 2006 at 6:58 pm, in message [EMAIL PROTECTED], [EMAIL PROTECTED] wrote: Hi, I'm trying to make freeradius 1.1.0 contact a LDAP

Re: VLAN and SSID

2006-04-03 Thread Antonio Matera
Anyone can help me please? Thanks, Antonio on 30/03/2006 17.39 Antonio Matera said the following: hi, ok, now the authentication request works (the problem was that if I restart the AP I lost this configuration. How can I save it using the web configuration?) Now the log is the

RE: pppoe-server

2006-04-03 Thread Seferovic Edvin
Hi, 1. try sending the interval in the Acct-Interim-Interval attribute to your pppoe-server 2. try to send the questions to the mailing list Regards, Edvin From: Wassim abbas [mailto:[EMAIL PROTECTED] Sent: Montag, 03. April 2006 00:18 To: [EMAIL

Problem with LDAP against Active Directory

2006-04-03 Thread domjullier
Hi folks, I want authenticate users from a WLAN with freeradius. The Users are stored in the Active Directory of a Windows 2003 Server. With some Tutorials from the Internet I have configured freeradius to make that. Unfortunately the Authentication function not succesfully. Thats the output

Re: rlm_ldap: could not start TLS

2006-04-03 Thread Paulo Cabrita
Hi. I had the same problem with the same version of freeradius to authenticate to an OpenLDAP. Check this (it worked for me): - verify your TLS configuration: you must have the same name as the certificate. For instance, don't use IP address when it is expecting the DNS name. - verify that

Re: Separate query for authentication and authorization

2006-04-03 Thread vignesh_b
thanks a lot Alan. was very much confused between the two Authentication and Authorization -- View this message in context: http://www.nabble.com/Separate-query-for-authentication-and-authorization-t1373817.html#a3722776 Sent from the FreeRadius - User forum at Nabble.com. - List

Implimenting Capping with FreeRadius

2006-04-03 Thread Shawn Hamman
Hi, OS: Fedora C4 FR: 1.0.2-2 DB: MySQL 4.1.11-2 I was wondering if anybody has a more elegant solution to implementing capping with FreeRadius than writing a script that totals the bytes in/out in the radacct table every couple of minutes and updates the radcheck table to deny further

RE: Problem with LDAP against Active Directory

2006-04-03 Thread Caines, Max
Hi Dominique There appears to be something wrong with the search base definition for your LDAP search. It looks like you are using the traditional LDAP basename which goes ou=mydepartment, o=mycompany, c=ch. Active Directory uses basenames that look like dc=ad, dc=ch. Your LDAP server is

MACs

2006-04-03 Thread Mordor Networks
HelloI\'m trying to log the users MAc address using pppoe and FR + mysqli added AVpair to the users file calling-station-id but checkval could not find itenrlm_checkval: Could not find item named Calling-Station-Id in request rlm_checkval: Could not find attribute named Calling-Station-Id in check

Re: Implimenting Capping with FreeRadius

2006-04-03 Thread Alan DeKok
Shawn Hamman [EMAIL PROTECTED] wrote: I was wondering if anybody has a more elegant solution to implementing capping with FreeRadius than writing a script that totals the bytes in/out in the radacct table every couple of minutes and updates the radcheck table to deny further logins? Have

JRadius module for post-auth

2006-04-03 Thread Yizhi Lao
Hi, This is related to my previous mail on setting up Freeradius for 2 factor authentication with chanllenge-response. I looked at what JRadius module can do and am going to attempt the following approach 1. insert a JRadius module into the post-auth section, such that the module will

Re: Two times authorization and/or both proxying and serving

2006-04-03 Thread Mark Supersonik
I know I'm a little bit tedious, but i need your help, please... I need to find the cheapest way to reject a request in proxy radius in the case that a domain doesn't has quota. If domain has quota, the proxy must forward the request to the corresponding authserv and finish the cycle in its

Re: Implimenting Capping with FreeRadius

2006-04-03 Thread Peter Nixon
On Mon 03 Apr 2006 16:22, Shawn Hamman wrote: Hi, OS: Fedora C4 FR: 1.0.2-2 DB: MySQL 4.1.11-2 I was wondering if anybody has a more elegant solution to implementing capping with FreeRadius than writing a script that totals the bytes in/out in the radacct table every couple of minutes and

Other attributes

2006-04-03 Thread JVUVANT Yahoo
Hi all Does freeradius integer specific attributes from boxes as redback ? if yer, how can we use it ? Thanks Jacques ___ Nouveau : téléphonez moins cher avec Yahoo! Messenger !

RE: Problem with LDAP against Active Directory

2006-04-03 Thread Jullier Dominique
Hello, Can you say me, which log-file I must control? I use already the other basename and also I use PAP. Greets Dominique PS: Sorry for my bad english! Which log-File Am Montag, den 03.04.2006, 14:42 +0100 schrieb Caines, Max: Hi Dominique There appears to be something wrong with the

conflicts/duplicates need

2006-04-03 Thread Duane Cox
List: I've been using free radius for about a month and learning as I go. But I've noticed that I get a period every few hours when freeradius doesn't authenticate. I'm not sure what the problem is, but here is the log as captured in /var/log/radiusd Any idea what could be causing this?

Re: conflicts/duplicates need

2006-04-03 Thread Alan DeKok
Duane Cox [EMAIL PROTECTED] wrote: But I've noticed that I get a period every few hours when freeradius doesn't authenticate. I'm not sure what the problem is, but here is the log as captured in /var/log/radiusd Any idea what could be causing this? Usually it's because your database is

Segmentation fault due to bind_address = 0.0.0.0

2006-04-03 Thread Rainer Poisel
Hi, I got a segmentation fault when i tried to run freeradius (Versions 1.0.4, 1.0.5, 1.1.0 and 1.1.1) on Debian (Sarge) or Suse (10.0) with options enabled in the attached config-file. Meanwhile I found out that the segmentation fault happened because of the following setting: bind_address =

(no subject)

2006-04-03 Thread Oliver.Stutzke
Hi all, i want to use FreeRADIUS (1.0.5) as an RADIUS Proxy, and must change the NAS-IP-Address and the User-Realm before sending it to an other Rasius Server. I tried it within the preproxy_users file with DEFAULT User-Name := `%{Stripped-User-Name:[EMAIL PROTECTED],

change NAS-IP-Address before relaying

2006-04-03 Thread Oliver.Stutzke
Title: change NAS-IP-Address before relaying sorry all, the first mail had no subject Hi all, i want to use FreeRADIUS (1.0.5) as an RADIUS Proxy, and must change the NAS-IP-Address and the User-Realm before sending

Re: Segmentation fault due to bind_address = 0.0.0.0

2006-04-03 Thread Alan DeKok
Rainer Poisel [EMAIL PROTECTED] wrote: I got a segmentation fault when i tried to run freeradius (Versions 1.0.4, 1.0.5, 1.1.0 and 1.1.1) on Debian (Sarge) or Suse (10.0) with options enabled in the attached config-file. Please see doc/bugs Meanwhile I found out that the segmentation fault

Why must clients exist when radius starts?

2006-04-03 Thread Douglas Phillipson
Is there a configuration option that will allow me to put a client IP in the clients file without the client actually existing yet? It seems when radius starts, if a client doesn't exist the daemon dies. I looked in the archives but I don't quite know what to query for. Also is it the case

Re: Why must clients exist when radius starts?

2006-04-03 Thread Alan DeKok
Douglas Phillipson [EMAIL PROTECTED] wrote: Is there a configuration option that will allow me to put a client IP in the clients file without the client actually existing yet? It seems when radius starts, if a client doesn't exist the daemon dies. Huh? It does that only if you put a

Re: Two times authorization and/or both proxying and serving

2006-04-03 Thread Alan DeKok
Mark Supersonik [EMAIL PROTECTED] wrote: I need to find the cheapest way to reject a request in proxy radius in the case that a domain doesn't has quota. If domain has quota, the proxy must forward the request to the corresponding authserv and finish the cycle in its natural porpose.

Re: Why must clients exist when radius starts?

2006-04-03 Thread Dennis Skinner
Alan DeKok wrote: Douglas Phillipson [EMAIL PROTECTED] wrote: Is there a configuration option that will allow me to put a client IP in the clients file without the client actually existing yet? It seems when radius starts, if a client doesn't exist the daemon dies. Huh? It does that