Re: Fwd: Fwd: LDAP+EAP

2006-04-18 Thread João Mamede
In the TLS/TTLS attenpts or in all of them?The client doesn't have ip right . all the connection is made by the Acess Point? I'll probably try with a windows computer or something.I'm using wpa_supplicant/wpa_gui. and I authenticate with 802.1x in my university ok. On Tuesday 18 April 2006 22:36

callingstationid filter and regexp

2006-04-18 Thread Miguel
Hi, im trying to configure a check that 1315 username will be allowed to connect only from a particular list of callinstationids, so i added a Calling-Station-Id attribute to the radcheck table, this are my filter's details username: 1315 list of callingstationids: - from 22662100 to 22662199

Re: Fwd: Fwd: LDAP+EAP

2006-04-18 Thread Alan DeKok
[EMAIL PROTECTED] wrote: > That's xpextensions? I think it's ok now. but I still have not authentication > (I have a update in http://nebioq.ath.cx:85/radiuslog.txt ). I have > cert-src.pem cert-clt.pem .der (for both) and .p12(for both) with TTLS both > freeradius and wpa_supplicant crash now :

Re: getting disconected

2006-04-18 Thread Joe Maimon
freeradius contains no inherent support for disconnecting users other than sending attributes at the time of the connection that may cause the device connected to terminate the connection. Run the server in debugging mode and see what attributes it sends to your NAS. debik wrote: I have

Re: getting disconected

2006-04-18 Thread debik
It is always 6 minutes and few seconds. The Wireless connection. Maybe it is drivers fault ? - Original Message - From: "Laker Netman" <[EMAIL PROTECTED]> To: "FreeRadius users mailing list" Sent: Tuesday, April 18, 2006 8:45 PM Subject: Re: getting disconected > Is it *always* 6 minute

Re: getting disconected

2006-04-18 Thread Laker Netman
Is it *always* 6 minutes, or does it vary? What kind of connection? Wired, wireless, DSL, etc... Event Viewer contain any info? Laker --- debik <[EMAIL PROTECTED]> wrote: > I have problem with my freeradius. > I'm getting connected but after 6 minutes Win XP > xlient is getting disconected. >

getting disconected

2006-04-18 Thread debik
I have problem with my freeradius. I'm getting connected but after 6 minutes Win XP xlient is getting disconected. I have looked in to radius debug and theres no stop message swnt to the client. On the client I haver run ethereal to look for some kind of packet, but i didn't find anything. So

Re: Windows 2000 Server using FreeRadius

2006-04-18 Thread Alan DeKok
"Rick Robinson" <[EMAIL PROTECTED]> wrote: > I checked the radius.log file, and it indicates the secret > is not correct even though they are set the same. Why are you looking at the log file? Run the server in debugging mode. And if the server says that the shared secret is wrong, it pretty

Re: Can you use TLS and Request users authentication as well

2006-04-18 Thread Alan DeKok
Walter Reynolds <[EMAIL PROTECTED]> wrote: > What I am trying to figure out is a way to not only have a certificate, > but a secondary way to verify that that certificate is being used by a > person we allow. Passwords. > Is this something that can be done? Has anyone run into a similar prob

Re: Can you use TLS and Request users authentication as well

2006-04-18 Thread A . L . M . Buxey
Hi, > that the cert was trusted. The problem is coming from a university, we do > not have a way to control a users machine. So a user could take that > certificate and put it onto a friends machine. This friend may not be if the certificate (pkcs12 file) was password protected, then that p

Re: php manager for freeradius

2006-04-18 Thread A . L . M . Buxey
Hi, > i only use local file "USERS" to store my dial up users. I"m not using any > database system for freeradius. Is there any lite php manager for > freeradius? which one do u re command beside dialupadmin? the reason i'm not > using dialupadmin is because my linux distro freeradius packa

php manager for freeradius

2006-04-18 Thread teoh
i only use local file "USERS" to store my dial up users.  I"m not using any database system for freeradius. Is there any lite php manager for freeradius? which one do u re command beside dialupadmin? the reason i'm not using dialupadmin is because my linux distro freeradius package doesn't come

Re: Problem with Accounting.

2006-04-18 Thread Alejandro Sanchez
Hi Peter. I don't have de stop record in the detail file, when i finish the call looks like radius dosen't recive the BYE transaction.. --- Peter Nixon <[EMAIL PROTECTED]> escribió: > On Tue 18 Apr 2006 00:55, Alejandro Sanchez wrote: > > Hi. evrybody. > > > > I am using freeradius with Sip

Re: Cisco-AVPair Route Map

2006-04-18 Thread Joe Maimon
Alan Lumb wrote: Hi Everyone. I'm struggling to find concise documentation on Cisco-AVPairs (and what pairs cisco support) - can anyone help me with this? Mainly I am trying to setup a walled garden system based on radius reply, using a route map with set next hop e.g. route-map walled-gar

Re: Freeradius performance x336

2006-04-18 Thread Alan DeKok
JF Suret <[EMAIL PROTECTED]> wrote: > It's just to have an idea of how many request an server can handle, > I'll need a few request/seconds and I think that a x336 will be far > far faster than required but it's just to confirm it ... At a few requests/s, almost any machine will be fine. Alan

Re: how to add attributes

2006-04-18 Thread Alan DeKok
"DilipSimha.N.M" <[EMAIL PROTECTED]> wrote: > but why is the below statement given in the dictionary file??? Because the server can store numbers larger than 256. The RADIUS protocol can't. > ATTRIBUTE Exec-Program-Wait 503 string > > and these attributes can be given in the packet!!!

Cisco-AVPair Route Map

2006-04-18 Thread Alan Lumb
Hi Everyone. I'm struggling to find concise documentation on Cisco-AVPairs (and what pairs cisco support) - can anyone help me with this? Mainly I am trying to setup a walled garden system based on radius reply, using a route map with set next hop e.g. route-map walled-garden permit 10 set ip n

Re: Fecora Core 5 & FR 1.1.1 & MySQL 5 -> segmention fault

2006-04-18 Thread Olaf Schaefer
Problem solved. :) > Now I've got FC5 with MySQL 5.0.18, FR 1.1.1, and 2.6.16-1.2080_FC5) > I did the same I did with the testing machines before, installing > Fedora, setting up MySQL-DB , building FR1.1.1. Then I copied my > configuration files, did the necessary changes in the configuration > f

Fecora Core 5 & FR 1.1.1 & MySQL 5 -> segmention fault

2006-04-18 Thread Olaf Schaefer
Hallo, First, I hope you all had Hapy Easter. :) Today I tried to setup the first of my 2 production radius servers. On my testing machines Fedora Core 4 was running (MySQL 4.1.16-log,FR 1.1.1, 2.6.11-1.1369_FC4). Now I've got FC5 with MySQL 5.0.18, FR 1.1.1, and 2.6.16-1.2080_FC5) I did the sam

Can you use TLS and Request users authentication as well

2006-04-18 Thread Walter Reynolds
Hi, What I am trying to figure out is a way to not only have a certificate, but a secondary way to verify that that certificate is being used by a person we allow. If we put cert onto a machine, we have authenticated that the cert was trusted. The problem is coming from a university, we do

Re: Advice on using FreeRadius client

2006-04-18 Thread A . L . M . Buxey
Hi, > Hi, > I am planning to use FreeRadius client in our > commercial embedded product. The server can be from > any vendor. It will be helpful, if any one can provide > the statistics on stability, leak issues etc. > Please advise me whether it is a wise decision to use > FreeRadius client for th

Re: Problem with Cisco-AVPair

2006-04-18 Thread Phil Mayers
Antonio Matera wrote: It is possibile that my problem is this? rlm_eap_peap: Had sent TLV failure. User was rejcted rejected earlier in this session. Yes. So read (or send to the list for others to help you with) the FULL debug output, not just the last packet. - List info/subscribe/uns

Advice on using FreeRadius client

2006-04-18 Thread Chandra mohan
Hi, I am planning to use FreeRadius client in our commercial embedded product. The server can be from any vendor. It will be helpful, if any one can provide the statistics on stability, leak issues etc. Please advise me whether it is a wise decision to use FreeRadius client for this purpose. Thank

Re: how to add attributes

2006-04-18 Thread Phil Mayers
DilipSimha.N.M wrote: thanks alan, but why is the below statement given in the dictionary file??? # The attributes number ranges are allocates as follows: # # Range: 500-999 # server-side attributes which can go in a reply list

Freeradius performance x336

2006-04-18 Thread JF Suret
Hello, I would like to know if someone has done performence test using server (in my case it will be a x336)? If someone has done this type of test could he provide results he has obtained ? ;-) It's just to have an idea of how many request an server can handle, I'll need a few request/seconds and

Re: Problem with Accounting.

2006-04-18 Thread Peter Nixon
On Tue 18 Apr 2006 00:55, Alejandro Sanchez wrote: > Hi. evrybody. > > I am using freeradius with Sip Express Router (SER) > and i am enable accounting on freeradius 1.1.1 but in > the log files and the tables of freeradius only save > the start request, in other words when i finish a call > the me

Re: Problem with Cisco-AVPair

2006-04-18 Thread Antonio Matera
Hi, I don't know how can i resolve my problem ... With this user: vlan3 Cisco-AVPair == "ssid=VLAN3", User-Password := "test" Tunnel-Medium-Type = IEEE-802, Tunnel-Private-Group-Id = 3, Tunnel-Type = VLAN I have always the same problem... this is my log: rad_recv

Re: ippool seems to be consistent about the IP addresses that it's giving out

2006-04-18 Thread Nikos Vassiliadis
On Monday 17 April 2006 17:48, Alan DeKok wrote: > Nikos Vassiliadis <[EMAIL PROTECTED]> wrote: > > I am using ippool and it seems that it is using the same IP addresses > > all the time(given that they are available). So when I am testing with > > just one client, I get two alternating addresses