freeRADIUS

2007-02-23 Thread Senthil Nathan
Hi, I would like to know how to send the accounting messages from the freeradius client to the server. It would be helpful, if you give me the links on the same. Thanks Senthil Nathan R On 2/22/07, Senthil Nathan [EMAIL PROTECTED] wrote: Hi, I need few info about freeradiusclient. 1. I

Re: LDAP authentication allowed if User Object does not exist.

2007-02-23 Thread Alan DeKok
Eric Belcher wrote: Each student is issued with a certificate that is used to authenticate him to the radius server. The certificate name is his MAC address. A corresponding NDS account exists for this MAC address. I presume that's with EAP-TLS? However, I have found a flaw I can't seem to

Re: Proxy question

2007-02-23 Thread Alan DeKok
Jory Privett wrote: I have a new FreeRadius server that I set up and everything is working great, well all most. What I want to do is have it check a local file and if the user is not there then to proxy the request to another server. I can make it check the local file or proxy the

Re: [SOLVED] Freeradius Authentication to Actice Directory

2007-02-23 Thread sanni
Thats it! If i user uppercase username for login the client it works. Can i set uppercase as default in the radiusd.conf? I found only to make it lowercase. Thank you very much. A.L.M.Buxey wrote: hi, from a 2 second inspection on the error I can see one major difference - you are

Re: radeapclient error !

2007-02-23 Thread Alan DeKok
Amin BEN ABDALLAH wrote: *I used radeapclient to test authentification with EAP-MD5* ... *I got an error in radeapclient :* *** glibc detected *** radeapclient: munmap_chunk(): invalid pointer: It's a bug. 1.1.5 will contain the fix. Alan DeKok. -- http://deployingradius.com -

Re: Dial Up Admin Interface

2007-02-23 Thread Abel Monzón
We are looking at installing the Dial Up Admin Interface for administration purposes. Research suggests that the place to in all the relevant information is at /usr/share/doc/freeradius-dialupadmin/HOWTO.gz We have installed V1.1.4 and the HOWTO.gz cannot be

Re: Accounting SQL Profiles

2007-02-23 Thread UriCALL Support
Alan, it is a big help. This what happens when users are not reading the documentation fully :(. Thxs a loot, I will try it out. Cheers, Dan - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: [SOLVED] Freeradius Authentication to Actice Directory

2007-02-23 Thread sanni
I found the Problem: Some account names in the Active Directory were in uppercase, now i changed all to lowercase. And now it works with the lowercase login. sanni wrote: Thats it! If i user uppercase username for login the client it works. Can i set uppercase as default in the

Re: Dial Up Admin Interface

2007-02-23 Thread Marc Hultquist
Have a look at the dialup_admin package which is available on freshmeat.net ! I believe the direct link to the project is - http://freshmeat.net/projects/dialup_admin/ ! Not sure if that is what you are looking for though. - List info/subscribe/unsubscribe? See

Set Pool-Name based on Framed-Pool

2007-02-23 Thread Pasi Kärkkäinen
Hi list! I'm having problems setting Freeradius internal Pool-Name attribute based on Framed-Pool attribute (in proxy auth reply). users file: DEFAULT Framed-Pool == tech, Pool-Name := tech_ippool Fall-Through = 1 I can see the Framed-Pool attribute in proxy auth reply (with correct

Re: Freeradius+Mysql - radreply

2007-02-23 Thread Fabrício F. Kammer
Can anyone help me with this doubt??? Regards, Fabrício Fabrício F. Kammer escreveu: Hi all, I've a Freeradius working fine with mysql. I put my users on table usergroup and I put the attributes to verification of the authentication on the table radgroupcheck. (Because I'm making the

normal behaviour when Framed-Protocol = PPP is in the Auth request?

2007-02-23 Thread lolo
Hi list, I am very new in FreeRadius, and there is something which is a bit strange: 0] Current config I use FreeRadius 1.1.4, out of the box. I define my authorized clients in clients.conf. I define a user in the users file following the examples given in the same file: Mickey

Re: Set Pool-Name based on Framed-Pool

2007-02-23 Thread Alan DeKok
Pasi Kärkkäinen wrote: users file: DEFAULT Framed-Pool == tech, Pool-Name := tech_ippool Fall-Through = 1 I can see the Framed-Pool attribute in proxy auth reply (with correct value), but when freeradius is processing users file, the above line does not match.. There is no

Re: normal behaviour when Framed-Protocol = PPP is in the Auth request?

2007-02-23 Thread Alan DeKok
lolo wrote: I define a user in the users file following the examples given in the same file: MickeyAuth-Type :=Local, User-Password == mouse Reply-Message = Hello mickey mouse 1.1.5 will contain updated examples. You should be using: Mickey

Strange problems in large proxy setup

2007-02-23 Thread Kostas Zorbadelos
My greetings to the list. We have deployed a large setup using freeradius 1.1.3 in a proxy configuration in front of FUNK radius. During the day we have about 150.000 concurrent DSL users online. Our setup takes the access-request from the NAS, checks whether the user has any other active

Re: Strange problems in large proxy setup

2007-02-23 Thread A . L . M . Buxey
Hi, active sessions and if he is allowed to have a session the request is proxied to the FUNK server that performs the actual authentication. So the setup is a classical proxy setup. This policy decision of whether whoah. steady on there. this is not a

Re: [SOLVED] Freeradius Authentication to Actice Directory

2007-02-23 Thread A . L . M . Buxey
Hi, I found the Problem: Some account names in the Active Directory were in uppercase, now i changed all to lowercase. And now it works with the lowercase login. glad to be of service alan - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Strange problems in large proxy setup

2007-02-23 Thread Kostas Zorbadelos
On Fri, Feb 23, 2007 at 02:49:57PM +, [EMAIL PROTECTED] wrote: Hi, active sessions and if he is allowed to have a session the request is proxied to the FUNK server that performs the actual authentication. So the setup is a classical proxy setup. This policy decision of whether

Re: Strange problems in large proxy setup

2007-02-23 Thread Dennis Skinner
Kostas Zorbadelos wrote: radiusd -X confirms that the configuration is correct, however I have this problem behaviour in large scale. My initial suspitions go to the proxying code to be honest, but I need to take a good look to grasp it. I would try running the production radius in

Re: Dial Up Admin Interface

2007-02-23 Thread Abel Monzón
- Original Message - From: Marc Hultquist [EMAIL PROTECTED] To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Sent: Friday, February 23, 2007 1:17 PM Subject: Re: Dial Up Admin Interface Have a look at the dialup_admin package which is available on freshmeat.net !

[PATCH] When specifying the MODULES to build

2007-02-23 Thread Martin Gadbois
Here's a small patch for configure.in: diff -ur freeradius-1.1.4-org/configure.in freeradius-1.1.4/configure.in --- freeradius-1.1.4-org/configure.in 2007-01-04 18:42:28.0 -0500 +++ freeradius-1.1.4/configure.in 2007-02-22 14:59:06.0 -0500 @@ -1057,17 +1057,19 @@ dnl

PAM_RADIUS

2007-02-23 Thread [EMAIL PROTECTED]
Hi, I'd like to know if FreeRadius Pam_RADIUS is still up to date ? Do you have any suggest to make it work with Red Hat Entreprise Linux 4 ? Thanks, Thomas- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

[UPDATE] FreeRADIUS + LVS problem

2007-02-23 Thread Sam Schultz
According to my research, FreeRADIUS supposedly does work from behind an LVS load balancer. My current configuration works perfectly outside of the LVS, but once it is put behind the LVS it ceases to work. Connections seem to succeed even behind the LVS, until they get to an access

Re: PAM_RADIUS

2007-02-23 Thread [EMAIL PROTECTED]
OK authentication works but not accounting whereas i have in etc/pam.d/system-auth : account sufficient /lib/security/$ISA/pam_radius_auth.so any idea why my REDHAT does not send any accounting ? Thomas Message du 23/02/07 à 17h39 De : [EMAIL PROTECTED] A :

RE: Wait period between sessions

2007-02-23 Thread Cory Robson
he will still be subject to a wait period. Peter Nixon http://www.peternixon.net/ PGP Key: http://www.peternixon.net/public.asc - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html __ NOD32 2078 (20070223) Information __ This message was checked