EAP/TLS Authentication fail~~~~

2006-04-13 Thread 孙 强
Hi I want to build a freeradius+openssl server to authenticate 802.1x and I've installed freeradius-1.0.2 and openssl-0.9.7e the server is built in RedHat 9 and the client is Odyssey Client Manager in Windows XP. now i can use EAP/MD5 get the authentication well. but when we use EAP/TLS, the

Re: Freeradius, mysql, please help!!!

2006-04-13 Thread A . L . M . Buxey
Hi, Correct, alan DeKok told me too. I changed it, but it didn't solve the problem. as per other reply change your stored password to clear text and use that to vlidate all is okay before going into more complex setups alan - List info/subscribe/unsubscribe? See

Re: Accessing REQUEST structure data outside FreeRADIUS module

2006-04-13 Thread Nicolas Castel
2006/4/12, Alan DeKok [EMAIL PROTECTED]: Nicolas Castel [EMAIL PROTECTED] wrote: I'm using FreeRADIUS v1.1.0. I'm developping some modules and I try to access auth_req structure (REQUEST) data from an external function (out of my module) and it fails. All works fine when accessing this

Re: EAP/TLS Authentication fail~~~~

2006-04-13 Thread A . L . M . Buxey
hi, I note you are not using the root.crt file for the CA_file. I've found that using the pem often causes issues depending on how the cert was generated. also, did you use the XP extensions with your certificate as per the docs? alan - List info/subscribe/unsubscribe? See

Re: Question

2006-04-13 Thread A . L . M . Buxey
Hi, # First setup all accounts to be checked against the UNIX /etc/passwd. # (Unless a password was already given earlier in this file). # DEFAULT Auth-Type = Radius Fall-Through = 1 thats going to cause huge amounts of pain for you (and others who read this) simply delete this

Freeradius 1.1.1 with openldap 2.0.X

2006-04-13 Thread Rohaizam Abu Bakar
Tried to upgrade current machine with: FreeBSB 4.11 OpenLDAP 2.0.X Freeradius 1.0.4 To Freeradius 1.1.1 using ports But it tried to install openldap 2.2.X as well... I want to usedexisting openldap (2.0.X) It is possible to force freeradius ports installation to use existing openldap

Re: WiFi Mac address authentication

2006-04-13 Thread Guillaume
thanks for your help, i'll try this asap and provide feedback. 2006/4/12, brainstorm [EMAIL PROTECTED]: Solved the problem a couple of weeks ago... the error was actually in eap.conf, the following two attributes were required when the MAC check was active: peap: copy_request_to_tunnel = no

freeRadius vs. AIX

2006-04-13 Thread Reynold McGuire
I know this has come up a few other times... But I have searched back thru all of the archives and still have not come up with a working build of freeRadius for AIX. If anyone has freeRadius working under AIX, please let me know and maybe we can trade configure scripts. The end result of what I

ldap+radius+wpa 802.1x authentication

2006-04-13 Thread foreveruni
Hi I've been trying to set up my freeradius with my ldap database(all users to authenticate) and I can't authenticate my wireless machines using my AP with EAP. all my config files can be found at http://nebioq.ath.cx:85/radius.tar.bz2 and my radiusd -X -A in

Re: freeRadius vs. AIX

2006-04-13 Thread Alan DeKok
Reynold McGuire [EMAIL PROTECTED] wrote: I know this has come up a few other times... But I have searched back thru all of the archives and still have not come up with a working build of freeRadius for AIX. I've done it in the past, but AIX is... odd. If anyone has freeRadius working under

Authentication with username and passwd

2006-04-13 Thread dark0s dark0s
Hello, I must to configure the authentication service with username and password only.Do I must to modify the /etc/raddb/users file?Regards,Saverio Yahoo! Mail: gratis 1GB per i messaggi, antispam, antivirus, POP3- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: freeRadius vs. AIX

2006-04-13 Thread mnisay
Reynold McGuire [EMAIL PROTECTED] wrote: I know this has come up a few other times... But I have searched back thru all of the archives and still have not come up with a working build of freeRadius for AIX. I've done it in the past, but AIX is... odd. If anyone has freeRadius working

Re: Freeradius, mysql, please help!!!

2006-04-13 Thread Guy Fraser
On Wed, 2006-12-04 at 14:02 -0400, Alan DeKok wrote: YvesDM [EMAIL PROTECTED] wrote: mysql select * from radcheck; ++--+---+++ | id | UserName | Attribute | op | Value |

RE: Simultaneous-Use Issue

2006-04-13 Thread mnisay
use Simultaneous-Use attribute equal 1 -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] .org] On Behalf Of Alan DeKok Sent: Thursday, April 13, 2006 3:02 PM To: FreeRadius users mailing list Subject: Re: Simultaneous-Use Issue James [EMAIL PROTECTED] wrote: Is there

Re: Freeradius, mysql, please help!!!

2006-04-13 Thread YvesDM
On 4/13/06, Guy Fraser [EMAIL PROTECTED] wrote: You will also need to use Auth-Type := Crypt-LocalThis has been discussed, an enormous number of times.Please feel free to use Google to search for answers.-List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.htmlI really did

How do i set volume limits?

2006-04-13 Thread YvesDM
Hi,Using the latest freeradiusdialupadmin on debian.I did find the option to set time limits (day,week,month), but i 'd like to know how i can set volume limits. (MiB's up/down transfered) The up-/down transferred MiB's are sent by the NAS and stored into the db. I can see all users sessions

non-number value in Acct-*-Octets

2006-04-13 Thread magmike
Hello, today my radius reveived very strange packet from pppd. Acct-Output-Octets was not number! accounting-Stop packet looks like follow: Wed Apr 12 04:27:39 2006 Acct-Session-Id = 443B9E03290F User-Name = user_name Acct-Status-Type = Stop Service-Type = Framed-User

Re: EAP/TLS Authentication fail~~~~

2006-04-13 Thread Alan DeKok
=?gb2312?B?y+8gx78=?= [EMAIL PROTECTED] wrote: now i can use EAP/MD5 get the authentication well. but when we use EAP/TLS, the client cannot be authenticated ~~ I don't whether it's the problem of the freeradius server configure or CAs or anyother EAP-TLS authenticates users by seeing if

Re: non-number value in Acct-*-Octets

2006-04-13 Thread Alan DeKok
[EMAIL PROTECTED] wrote: today my radius reveived very strange packet from pppd. Acct-Output-Octets was not number! The text printed by the server is *not* sent in the packet. Acct-Output-Octets = Route-Appletalk-No It looks like your dictionaries are screwed up, or there's a bug

RE: freeRadius vs. AIX

2006-04-13 Thread Reynold McGuire
I have seen these errors posted else ware, but no real fix for them... Here is the configure line ---CUT--- ./configure --prefix=/apps/renn/freeRadius_1.1.1 --with-openssl-includes=/usr/local/ssl/include/openssl --with-openssl-libraries=/usr/local/ssl/lib --without-rlm_sql

Re[2]: non-number value in Acct-*-Octets

2006-04-13 Thread magmike
today my radius reveived very strange packet from pppd. Acct-Output-Octets was not number! AD The text printed by the server is *not* sent in the packet. Acct-Output-Octets = Route-Appletalk-No AD It looks like your dictionaries are screwed up, or there's a bug in AD the server.

Re: freeRadius vs. AIX

2006-04-13 Thread Alan DeKok
Reynold McGuire [EMAIL PROTECTED] wrote: Module: Library search path is /apps/renn/freeRadius_1.1.1/lib radiusd.conf[1541] Failed to link to module 'rlm_exec': No such file or directory The $libdir configuration entry is wrong. The short answer is to configure with --disable-shared.

RE: freeRadius vs. AIX

2006-04-13 Thread Reynold McGuire
When I use '--disable shared' I get errors in make Errors attached. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Sent: Thursday, April 13, 2006 4:50 PM To: [EMAIL PROTECTED]; FreeRadius users mailing list Subject: Re: freeRadius vs. AIX Reynold McGuire

Re: freeRadius vs. AIX

2006-04-13 Thread Alan DeKok
Reynold McGuire [EMAIL PROTECTED] wrote: ... Is there some reason you CC me, and send two messages to the list? It's annoying to get three copies of the same message. Just reply once to the list. I *am* subscribed to it. When I use '--disable shared' I get errors in make It's an AIX