Syntax Error

2006-05-16 Thread Lakshmi Jayaraman
Hi, I am using the latest version of freeRadius. The version is 1.1.1. When I try to run the server it gives a lot of syntax error. Kindly let me know how to proceed with the same. Thanks Lakshmi The information contained in this electronic message and any attachments to this message are int

Using ntlm and MS-CHAP authentication on the same server

2006-05-16 Thread Bugneac Constantin
Hi to all, I would like know if it is possible to configure the Freeradius to do authentication based on ntlm for one group of users and MS-Chap for other on the same server. In my configuration I use one radius server for controling access to wireless network and dial-up network. The problem is t

Re: getting Freeradius to recorde login failure, etc

2006-05-16 Thread Jeremy ohara
Hi there i dont want to sound rude, etc but your not really answering my question. you only  answered half of it   what do i wite for the sql statement, etc   Jeremy  -Original Message-From: "Duane Cox" <[EMAIL PROTECTED]>To: "FreeRadius users mailing list" Date: Tue, 16 May 2006 22:

Re: getting Freeradius to recorde login failure, etc

2006-05-16 Thread Jeremy ohara
Hi there i dont want to sound rude, etc but your not really answering my question. you only  answered half of it   what do i wite for the sql statement, etc   Jeremy  -Original Message-From: "Duane Cox" <[EMAIL PROTECTED]>To: "FreeRadius users mailing list" Date: Tue, 16 May 2006 22:

Re: getting Freeradius to recorde login failure, etc

2006-05-16 Thread Duane Cox
post-auth {    #    #  If you want to have a log of authentication replies,    #  un-comment the following line, and the 'detail reply_log'    #  section, above.#   reply_log       sql       Post-Auth-Type REJECT {    sql    }} - Origi

Re: getting Freeradius to recorde login failure, etc

2006-05-16 Thread Jeremy ohara
where and how do i do it and what do i write???   jeremy  -Original Message-From: "Duane Cox" <[EMAIL PROTECTED]>To: "FreeRadius users mailing list" Date: Tue, 16 May 2006 18:17:26 -0500Subject: Re: getting Freeradius to recorde login failure, etc yes, there is a subsection under the

Re: Error running free-radius

2006-05-16 Thread Vineet Verma
You might want to make sure you are looking at the correct .conf file. I have seen systems where 2 separate installations are done inadvertently (for example, one in /etc/raddb and the other in /usr/local/etc/raddb). -Vineet On Tue, 2006-05-16 at 16:36, Alan DeKok wrote: > "Jordi Soriano Terol" <

Re: Error running free-radius

2006-05-16 Thread Alan DeKok
"Jordi Soriano Terol" <[EMAIL PROTECTED]> wrote: > I've checked the file and all the {} are correct. Even if i try with the > original free-radius config file the error is still there. Maybe is a bug? The problem does not occur in default installs with default configurations. Therefore, the

Re: Error running free-radius

2006-05-16 Thread Jordi Soriano Terol
From: "Alan DeKok" <[EMAIL PROTECTED]> Reply-To: FreeRadius users mailing list To: FreeRadius users mailing list Subject: Re: Error running free-radius Date: Mon, 15 May 2006 20:37:28 -0400 "Jordi Soriano Terol" <[EMAIL PROTECTED]> wrote: > Hi all! I´ve encountered an error message whil

Re: getting Freeradius to recorde login failure, etc

2006-05-16 Thread Duane Cox
yes, there is a subsection under the post_auth section for such a thing...     - Original Message - From: Jeremy ohara To: FreeRadius users mailing list Sent: Tuesday, May 16, 2006 3:24 PM Subject: getting Freeradius to recorde login failure, etc  hi there

working huntgroups

2006-05-16 Thread Carlos Mauricio Reyes Sanmiguel
Hi, I need to separate the users in the machines that they have access to, i read about the huntgroups file, but is not working, it seems that the radius is not checking the huntgroup file to give the access. I have a freeradius on a Redhat machine, running with the MySQL database for the users

Re: Spitting accounting and auth into 2 different databases?

2006-05-16 Thread Alan DeKok
"Cris Boisvert" <[EMAIL PROTECTED]> wrote: > So I just need to have another instance of the sql module and only one of > them will have the accounting option enabled and the other will have only > the auth portion enabled? All you have to do is list one in "accounting", and the other in "authori

RE: Spitting accounting and auth into 2 different databases?

2006-05-16 Thread Cris Boisvert
So I just need to have another instance of the sql module and only one of them will have the accounting option enabled and the other will have only the auth portion enabled? -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Alan DeKok Sent: Tuesday, May 1

Re: Spitting accounting and auth into 2 different databases?

2006-05-16 Thread Alan DeKok
"Cris Boisvert" <[EMAIL PROTECTED]> wrote: > I would like to have 2 databases with the accounting in one and the auth in > the other? > > Is this possible? Yes. You need two instances of the SQL module. See the docs. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius

Spitting accounting and auth into 2 different databases?

2006-05-16 Thread Cris Boisvert
Freeradius on FC3 with Mysql Currently I have one slq.conf with the accounting and the auth data in the same database. I would like to have 2 databases with the accounting in one and the auth in the other? Is this possible?   Thanx Cris         - List info/subscribe/unsubscribe? See http:

getting Freeradius to recorde login failure, etc

2006-05-16 Thread Jeremy ohara
 hi there   is there a way to get Freeradius 1.0.5 with Mysql  to record login-failure, incorrect password or incorrect username into the mysql table?   i can see its possbile. but when you login with wrong details it doesnt get to record the login failure, etc. and i dont knwo what code to us

adding field to dialup_admin

2006-05-16 Thread David Antognini
Hi Guys, I want to add the attribute WISPr-Bandwidth-Max-Down to the user "edit" page in dialup_admin. I added "WISPr-Bandwidth-Max-Down" to the bottom of the user_edit.attrs file. Then I manually went in and added the attribute into the radreply table and it works fine, and in dialup admin I can s

Re: Dialup Admin

2006-05-16 Thread rabbtux rabbtux
I'm really new to the whole radius thing, however, I think you need to have snmp to your nas properly setup for this to work. On 5/15/06, Jeremy ohara <[EMAIL PROTECTED]> wrote: Wondering if anyone can help me with Dialup Admin. what the current problem is. when i look at online users. it sh

RE: How to use time period

2006-05-16 Thread Seferovic Edvin
It is not about your NAS.. FreeRADIUS manages this. Every Access-Request has a timestamp. If the Access-Request comes at 7.50 AM, FreeRadius will compare the time with the “Login-Time” attribute ( if set ) and then reject the request. If the access-request comes at 8.50 AM.. the user will

RE: rlm_sqlcounter developer required

2006-05-16 Thread Seferovic Edvin
Well, you just hit the point where you have to alter the code of freeradius ( rlm_sqlcounter to be precise ). Sqlcounter returns SessionTime ( as usual ). You have to change sqlcounter.c.. the function sqlcounter_authorize has the part that you would like to change. Here you should check th

Re: PB with Accent in nspmPassword in request LDAP between FREE-RADIUS 1.0.5 (suse) and edirectory novell 6.5

2006-05-16 Thread Alan DeKok
[EMAIL PROTECTED] wrote: > Does It mean that I have to modify the code with a ?printf? command and to > recompile? Yes. > What commands use to recompile? That depends on your system. If you have to ask, I would suggest not even trying. Instead, try putting the clear-text password, with a

Re: LDAP check attributes

2006-05-16 Thread Antonio Matera
Hi, thanks for the answer. I forgot my filter line in ldap module: filter = "(uid=%{Stripped-User-Name:-%{User-Name}})" How I have to insert in this string to add the ssid check? Where I insert the Cisco-AVPair check? Thanks, bye Antonio on 16/05/2006 14.06 ludovic cailleau said the follow

RE: How to use time period

2006-05-16 Thread ludovic cailleau
  Hi      Ok, but my NAS does not manage radiusLoginTime.   Is there another solution for that? Example: to recover the hour system and to compare it with the Ldap attributes (new check-items)?      Regards   Seferovic Edvin <[EMAIL PROTECTED]> a écrit : Hi !   YUP

RE: How to use time period

2006-05-16 Thread Seferovic Edvin
Hi !   YUP !! It does ! radiusLoginTime is the attribute in LDAP that u r looking for. Simply set it to Al0800-1200 and you’ll have ur time period. Depending on your NAS the user will be kicked off at 12 AM.   Regards,   Edvin   From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECT

Re: How to use time period

2006-05-16 Thread Kostas Kalevras
On Tue, 16 May 2006, ludovic cailleau wrote: Good morning!! I would like to authorize connection to the users to one time period stored in Ldap base. Example: The user Steeve can be connecting between 8h and 12h. So at the time of the request for connection, freeradius will have to check

How to use time period

2006-05-16 Thread ludovic cailleau
Good morning!!   I would like to authorize connection to the users to one time period stored in Ldap base.      Example: The user Steeve can be connecting between 8h and 12h. So at the time of the request for connection, freeradius will have to check if the time of connection is between this

Re: Mysql with freeradius Error again

2006-05-16 Thread Abul Monsur Mannan
Many thanks for quick reply.I'll do and try then must inform U about the result. Thanks again. On 5/16/06, [EMAIL PROTECTED] <[EMAIL PROTECTED]> wrote: Quoting Abul Monsur Mannan <[EMAIL PROTECTED]>: > how can I configure freeradius to accept request from mysql ? I'm > using Freeradius1.1.1 on

(no subject)

2006-05-16 Thread rmbc401
_ Express yourself instantly with MSN Messenger! Download today it's FREE! http://messenger.msn.click-url.com/go/onm00200471ave/direct/01/ - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: LDAP check attributes

2006-05-16 Thread ludovic cailleau
Antonio Matera <[EMAIL PROTECTED]> a écrit :> > ldap {> server = "localhost"> basedn = "dc=create-net,dc=org"> password_attribute = userPassword> start_tls = no> ldap_connections_number = 5> }>   You must use filter in Ldap module if you want check SSID. You’ll make filter with uid and Cisco-AV

RE: rlm_sqlcounter developer required

2006-05-16 Thread Mark Lovatt
I have been able to configure it to count traffic instead of time, but only when a user first logs in, it’ll then allow or deny them access, however it doesn’t return any attributes such as Max-Input_octets = ??, where ?? is some value(ie account balance) less the sum of acctinputoctets, th

RE: rlm_sqlcounter developer required

2006-05-16 Thread Seferovic Edvin
Hi,   I have been working with sqlcounter and for few of my installations I have changed it funcionality so it is able to count traffic instead of time.   What do you need ? What is your NAS ?   Send me a mail off the list if you need some specific solution.   Regards,   Edvin  

Re: LDAP check attributes

2006-05-16 Thread Antonio Matera
Anyone can help me? Thanks, bye Antonio on 15/05/2006 11.06 Antonio Matera said the following: Hallo, I have a problem with the LDAP attributes. I want set an ssid check in my radius authentication. If I do it with the user file all works fine. Now I want to insert this attribute in the ldap sc

rlm_sqlcounter developer required

2006-05-16 Thread Mark Lovatt
Hi,   I’m using rlm_sqlcounter to limit the amount of time my users can stay connected to a NAS, which works very well, as you know, it SUMS the amount of time a users has been online by querying the radacct table then returns a Session-Timeout attribute.   My NAS supports Max-Input_oct

Re: PB with Accent in nspmPassword in request LDAP between FREE-RADIUS 1.0.5 (suse) and edirectory novell 6.5

2006-05-16 Thread freeradius
Does It mean that I have to modify the code with a “printf” command and to recompile? What commands use to recompile? Best regards Stephan "Alan DeKok" <[EMAIL PROTECTED]> Envoyé par : [EMAIL PROTECTED] 11/05/2006 18:53 Veuillez répondre à FreeRadius users mailing list A FreeRad

Re: Check the subject and issuer in the EAP-TLS

2006-05-16 Thread Michal Prochazka
Oh, I've missed your point, sorry. This patch is against using some (for example, e-mail signing) certificate (issued by proper CA!) as wireless client's one, am I right on second try? :) No :-) As I have said, this script is enhancement of the EAP-TLS authentication. Radius does usual T

Dialup Admin

2006-05-16 Thread Jeremy ohara
 Wondering if anyone can help me with Dialup Admin.   what the current problem is. when i look at online users. it shows the nas server but saying noone is online.   and when i go to view the user who is online it says they are not online   can anyone help me here. if you need more info plz tel