Re: Freeradius-Users Digest, Vol 25, Issue 106

2007-05-23 Thread anoop_c
Hi all I am doing eap-tls with fr 1.1.6 I am not getting anything in the log file.I am able to authenticate and connect. Wat are the config to be done for getting log Regards Anoop - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

LDAP access configuration

2007-05-23 Thread Manuel Sánchez Cuenca
Hello all, I have a scenario where a first radius server (R1) proxies the authentication request to another radius server (R2). Later, when the user is authenticated, R1 must access to a LDAP server to recover some network parameters, such as session-timeout or framed-ip-address, and enforce them

Accounting-Response with invalid signature

2007-05-23 Thread Rio Yang
Hi All, I got the following message from my radius.log. Wed May 23 16:39:11 2007 : Error: Received Accounting-Response packet from 172.16.1.1:1813 with invalid signature (err=2)! (Shared secret is incorrect.) Wed May 23 16:39:11 2007 : Error: Reply from home server 172.16.1.1:1813 - ID: 180

Different behavior when run with -X and not

2007-05-23 Thread hwang
for request 0 radius_xlat: '/usr/local/freeradius-1.1.6/var/log/radius/radacct/10.1.2.182/detail-20070523' rlm_detail: /usr/local/freeradius-1.1.6/var/log/radius/radacct/%{Client-IP-Address}/detail-%Y%m%d expands to /usr/local/freeradius-1.1.6/var/log/radius/radacct/10.1.2.182/detail-20070523

Re: Accounting-Response with invalid signature

2007-05-23 Thread Milan Holub
Hi Rio, what type of NAS are you using? I've experienced similar behaviour with nocat software. The problem was that the NAS did not generate correct packet signature according to rfc. I have a simple patch to freeradius to bypass checking of signature of accounting packets. Although the

FreeRadius on openSuse Error

2007-05-23 Thread Siqhamo Sifo
I am currently running freeradius on openSuse 10.2 and when I do a tail -f on my log file I c the ff error messsage : Error: Exec-Program: FAILED to execute /usr/local/bin/mtacnt: No such file or directory What i find strange is that it seems like mtacnt is not installed on my system which I

Problem with logging detail-log to syslog

2007-05-23 Thread Mark van Herpen
Hello, I want to log all the freeradius (v 1.1.3) logs to syslog (syslog-ng). I 've already added this to my syslog-ng.conf : filter f_radiusd { match (radiusd); }; destination radiuslogs { file(var/log/radiusd.log); }; log { source (src); filter(f_daemon); filter(f_radiusd);

Re: Accounting-Response with invalid signature

2007-05-23 Thread Rio Yang
Hi Milan, Sorry~ I don't describ my architecture more detail. NAS (Aptilo) --- FreeRADIUS --- JuniperSBR (Funk) (FreeRadius proxy to JuniperSBR) The error message occurred between FreeRADIUS and JuniperSBR. In my thinking, there is no secret error in Accounting-Request why I got the secret

Problem connecting to a router via RADIUS Server authentication

2007-05-23 Thread prajakta choudhari
Hi all: I have configured the radius server . I have a linksys router with wireless security as RADIUS enabled and laptop that connects to the linksys router. whenever i try connecting to the router i get the folloing message on the machine wiht the radius server. the clients.conf has the

Re: FreeRadius on openSuse Error

2007-05-23 Thread Peter Nixon
On Wed 23 May 2007, Siqhamo Sifo wrote: I am currently running freeradius on openSuse 10.2 and when I do a tail -f on my log file I c the ff error messsage : Error: Exec-Program: FAILED to execute /usr/local/bin/mtacnt: No such file or directory What i find strange is that it seems like

Re: Very critical: Memory leak in freeradius-1.1.6

2007-05-23 Thread nikitha george
On 5/23/07, nikitha george [EMAIL PROTECTED] wrote: Please find the valgrind output below. It shows so much memory is still reachable. I guess we are not cleaning up the all the expired cached session at regular interval. ==21844== 7,456 bytes in 29 blocks are still reachable in loss record

Re: Problem with logging detail-log to syslog

2007-05-23 Thread Claudiu Filip
Hi Mark, Wednesday, May 23, 2007, 2:47:10 PM, you wrote: logdir = syslog [...] rlm_detail: Failed to create directory syslog/radacct: No such file or directory LOGDIR means... log dir : regards, Claudiu Filip - List info/subscribe/unsubscribe? See

Re: Problem connecting to a router via RADIUS Server authentication

2007-05-23 Thread Claudiu Filip
Hi prajakta, Be sure you have in clients.conf something like: client 192.168.6.15 { secret = working789 shortname = mylinksys nastype = other } Restart radiusd if you changed something here. Then http://192.168.6.15 to configure your linksys and in

AW: Problem connecting to a router via RADIUS Server authentication

2007-05-23 Thread Stadler Karel
Make sure you have the same shared secret configured on your linksys router and in your clients.conf looks like this: # Linksys client 192.168.6.15 { secret = whatever shortname = myRouter nastype = other } replace whatever with the secret key.

Re: Problem with logging detail-log to syslog

2007-05-23 Thread Mark van Herpen
Claudiu, I know what logdir means :) But according to the Syslog_Howto from the wiki, http://wiki.freeradius.org/Syslog_HOWTO : Modify /etc/raddb/radiusd.conf: logdir = syslog log_destination = syslog Because of the logdir entry above, you must locate all references to ${logdir}, comment

Re[2]: Problem with logging detail-log to syslog

2007-05-23 Thread Claudiu Filip
Hi Mark, it seems that you forgot a line with radacctdir = ${logdir}/radacct if you have no line with radacctdir, then add one with the correct path. best regards, Claudiu Filip @: [EMAIL PROTECTED] Http://www.globtel.ro T:+40344880100 F:+40344880113 - List

Re: Problem with logging detail-log to syslog

2007-05-23 Thread Mark van Herpen
Claudiu, I've got that line in my config, with the exact same path.. Grtz, Mark - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Accounting-Response with invalid signature

2007-05-23 Thread Alex French
On 23/05/07, Rio Yang [EMAIL PROTECTED] wrote: NAS (Aptilo) --- FreeRADIUS --- JuniperSBR (Funk) (FreeRadius proxy to JuniperSBR) The error message occurred between FreeRADIUS and JuniperSBR. But then you need to set the same shared secret on the FreeRadius server and the JuniperSBR,

freeradius as a middleware between multiple ldap/ADS-s ervers and CMS

2007-05-23 Thread baeus
Hello, I have got a very general question. I have got a moodle-CMS in the internet. For single-sign-in I made a ldap-authentification between our ADS in school and moodle. So every teacher and student can log into moodle with his windows-domain-password. Now other schools are also interested

strange thing happening with rlm_perl

2007-05-23 Thread Pedro Figueiredo
hi, i'm using fr 1.1.2 and perl 5.8.4, and wrote a simple perl script to return 2 random lns's for a given huntgroup. $ uname -a Linux radius1_staging 2.6.8-x4100-1 #1 SMP Wed Jun 7 08:58:42 BST 2006 x86_64 GNU/Linux this is what i have in users, right at the top: # [EMAIL PROTECTED]

Grouping users and clients

2007-05-23 Thread Giovanni Lovato
Hi all. We have a set of Cisco routers and a pool of users in an LDAP directory. At this time routers are configured to request authentication to FreeRadius, which binds to LDAP and grants access to user on successfully binding. We need to create groups of routers and groups of users, granting

dictionary handling

2007-05-23 Thread Wolfgang Rosenauer
Hi, since I just begun to use freeradius in production I found some strangeness. The default configuration is to include all dictionaries but I wonder how they are evaluated? I have a Cisco NAS which sends (at least I think) VSA records and so I configured the Cisco VSA hack. For accounting

Re: Grouping users and clients

2007-05-23 Thread Kostas Kalevras
O/H Giovanni Lovato έγραψε: Hi all. We have a set of Cisco routers and a pool of users in an LDAP directory. At this time routers are configured to request authentication to FreeRadius, which binds to LDAP and grants access to user on successfully binding. We need to create groups of

Re: Accounting-Response with invalid signature

2007-05-23 Thread Rio Yang
I have checked all secrets and they are the same. Not all Accounting-Response with invalid signature. This error message occurred in sometime. It's a very strange. Rio 2007/5/23, Alex French [EMAIL PROTECTED]: On 23/05/07, Rio Yang [EMAIL PROTECTED] wrote: NAS (Aptilo) --- FreeRADIUS ---

log file for free radius 1.1.6 eap-tls authentication

2007-05-23 Thread Anoop
Hi I am using free raidus 1.1.6 with eap-tls authentication.The whole set up is working fine. But i am not getting any logs .like user login ok..login filef etc Pls giude me How will i get logs and wat configurtion i need to do in the configuration files. Regards Anoop **