VLAN Mapping with MS-CHAP

2006-05-05 Thread robiwan
Dear all, I try to put my Windows-XP-Clients in different VLANs on my Cisco Catalyst 3750 Switch, depending on their Account. And i use two differnt authentication methods: MD5-Challange and MS-CHAP. User hugo should be mapped in VLAN 50 and authenticated via MD5-Challange User roka at Domain

problems with hints file

2006-05-05 Thread wekz
Hi all, I use freeradius1.1.1 + ldap. And peap or eap-tls for authorization.I've been trying to use hints.file for changing the User-Name. When a laptop user which is in a domain tries to do a peap authentication, windows sends a User-Name that follows this pattern (at least the ones I've seen):

Re: VLAN Mapping with MS-CHAP

2006-05-05 Thread Phil Mayers
[EMAIL PROTECTED] wrote: Dear all, I try to put my Windows-XP-Clients in different VLANs on my Cisco Catalyst 3750 Switch, depending on their Account. And i use two differnt authentication methods: MD5-Challange and MS-CHAP. User hugo should be mapped in VLAN 50 and authenticated via

Re: problems with hints file

2006-05-05 Thread Phil Mayers
wekz wrote: Hi all, I use freeradius1.1.1 + ldap. And peap or eap-tls for authorization. I've been trying to use hints.file for changing the User-Name. When a laptop user which is in a domain tries to do a peap authentication, windows sends a User-Name that follows this pattern (at least the

Re: freeradius + ldap

2006-05-05 Thread ludovic cailleau
Ok, I mixed myself between the module ‘authenticate’ and ‘authorize.’ Now it is clearer! I make the default config and change little part and now it works perfectly. Thank you very much Alan Dekok Ludovic Cailleau Faites de Yahoo! votre page d'accueil sur le web pour retrouver

dupe client entry in clients.conf

2006-05-05 Thread Duane Cox
Hello List: Would it be valid to list a host twice in clients.conf. Each listing would have a unique shared secret and shortname? Reason for doing this. host 192.168.1.1 has two applications that run. One is a NMS monitoring package (sends rad packets to the radius server to verify it's

Re: FreeRADIUS 1.1.1 Segmentation fault on Fedora 4

2006-05-05 Thread Alan DeKok
Bjarni Hardarson [EMAIL PROTECTED] wrote: Think i have the same problem. I normally use EAP-PEAP but i couldnt get the server to segfault in valgrind with that. Think it was openssl that grinded it to a halt. Tried with EAP-MD5 instead and it produced the desired result. I'm running FC4

Re: dupe client entry in clients.conf

2006-05-05 Thread Alan DeKok
Duane Cox [EMAIL PROTECTED] wrote: Would it be valid to list a host twice in clients.conf. Each listing would have a unique shared secret and shortname? No. The shared secret is keyed off of the IP, and the IP's have to be unique. host 192.168.1.1 has two applications that run. One is a

Re: FreeRADIUS 1.1.1 Segmentation fault on Fedora 4

2006-05-05 Thread Bjarni Hardarson
Alan DeKok wrote: I'm running FC4 on one of my machines, and I don't see the same problem with the CVS head of 1.1 (i.e. 1.1.1 + a few patches that shouldn't affect this). I forgot to mention that i am not running FC4. Sorry about that. Here is my info from /proc/version Linux version

Re: FreeRADIUS 1.1.1 Segmentation fault on Fedora 4

2006-05-05 Thread Alan DeKok
Bjarni Hardarson [EMAIL PROTECTED] wrote: I built the server binary from the released 1.1.1 source. ./configure --with-edir --enable-developer The only difference I can see is that I'm using gcc version 4. I have another machine with 3.2, I'll see if I can try that. Maybe it's a gcc bug?

A bit lost.

2006-05-05 Thread Eric Hilden
Well I think I got everything installed correctly from PHP4, MySQL, Apache2, Freeraidus and Dialupadmin but I am still a bit confused on all the setting up. BTW: I did get the mysql examples all loaded into the radius database so everything is working great for that I think. I also configured

Re: FreeRADIUS 1.1.1 Segmentation fault on Fedora 4

2006-05-05 Thread Alan DeKok
Alan DeKok [EMAIL PROTECTED] wrote: The only difference I can see is that I'm using gcc version 4. I have another machine with 3.2, I'll see if I can try that. Nope. Doesn't seem to make any difference. Alan DeKok. - List info/subscribe/unsubscribe? See

Re: A bit lost.

2006-05-05 Thread Alan DeKok
Eric Hilden [EMAIL PROTECTED] wrote: My second problem is getting the FreeRadius configuration working correctly. I'm about to bust my head open because I don't get what I'm missing. I have edited the users.conf There is no users.conf file. Please be accurate in your terminology, it

Re: Missing User-Name attribute causing a segfault in attr_rewrite

2006-05-05 Thread dskinner
Quoting Alan DeKok [EMAIL PROTECTED]: Dennis Skinner [EMAIL PROTECTED] wrote: Any luck with this, Alan? Need any other info from me? Should I open a bug report in bugzilla? Try the following: #5 0x400e24f7 in preprocess_authorize (instance=0x0, request=0x8161638) at