proxy authentication

2006-12-26 Thread Dubi Lego
Hi all, Is it possible to proxy all authentication messages to specific remote server including replies (Access-Reject, Access-Accept)? - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: proxy authentication

2006-12-26 Thread Alan DeKok
Dubi Lego wrote: Is it possible to proxy all authentication messages to specific remote server including replies (Access-Reject, Access-Accept)? What do you mean by that? Proxying normally involves forwarding client requests to another server, and returning replies from that server back to

Re: Questions from a totally ignorant n00b

2006-12-26 Thread Gene Mosley
Alan, I read the FAQ section which you posted (http://wiki.freeradius.org/index.php/FAQ#How_do_I_deny_access_to_a_specific_user.2C_or_group_of_users.3F). It talks about denying access to a specific user, or a group of users - which is not what I need. I need to deny access to

Re: Questions from a totally ignorant n00b

2006-12-26 Thread Alan DeKok
Gene Mosley wrote: I need to deny access to specific IP addresses - not specific users. Asked and answered. https://list.xs4all.nl/pipermail/freeradius-users/2006-December/058983.html Then Bob should be able to authenticate from all of them - UNLESS for some reason I wanted to

problem with NT-Password and LDAP

2006-12-26 Thread Ana Gallardo Gómez
Hello, my problem is, i have a Freeradius server that retrieves the authentication information from an OpenLDAP server; in this server the NT-Password atributte has 252 characters (32 characters from NT-hash + white spaces), and the NT-Password generated in ms-chap has 32 characters. How can I

Repost: Properly using the := and = operators?

2006-12-26 Thread Mike
Dear list, I'm having a hard time learning how to use the attribute properties correctly in my mysql/radius database and my test enviroment is freeradius 1.1.3 / debian etch. What I'm trying to do is to establish a 'suspended' user group which receives a Framed-IP-Address attribute of

Re: problem with NT-Password and LDAP

2006-12-26 Thread Alan DeKok
Ana Gallardo Gómez wrote: Hello, my problem is, i have a Freeradius server that retrieves the authentication information from an OpenLDAP server; in this server the NT-Password atributte has 252 characters (32 characters from NT-hash + white spaces) Why not just update the entries in LDAP

RE: proxy authentication

2006-12-26 Thread Dubi Lego
I will clarify my question. Is it possible to forward all AAA messages including replies to another server which will only listen to messages and won't be active. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Alan DeKok Sent: Tuesday, December 26,