Backing up freeradius

2007-06-01 Thread Elie Hani
Hi; I have freeradius configured on Fedora Core 6, I tried to configure a backup script where I can copy /etc/raddb folder to another server with the same version and the same operating system. When it's done, the command service radiusd start did not work, But radiusd -x & worked and the serve

RE: error make rlm_tls

2007-06-01 Thread Pilar Sanchez
> > Pilar Sanchez wrote: > > I put as option of "compile" > > -with-openssl-libraries=/usr/local/ssl/lib > > --with-openssl-includes=/usr/local/ssl/include > > Maybe that should be with --with-openssl-libraries. > > You have -with-openssl-libraries. I wrote bad in the email but was rigth

Re: Backing up freeradius

2007-06-01 Thread Peter Nixon
On Fri 01 Jun 2007, Peter Nixon wrote: > On Fri 01 Jun 2007, Elie Hani wrote: > > Hi; > > > > I have freeradius configured on Fedora Core 6, I tried to configure a > > backup script where I can copy /etc/raddb folder to another server with > > the same version and the same operating system. > > > >

Re: Backing up freeradius

2007-06-01 Thread Peter Nixon
On Fri 01 Jun 2007, Elie Hani wrote: > Hi; > > I have freeradius configured on Fedora Core 6, I tried to configure a > backup script where I can copy /etc/raddb folder to another server with > the same version and the same operating system. > > When it's done, the command service radiusd start did

RE: Backing up freeradius

2007-06-01 Thread Elie Hani
Thanks a lot, it works fine now. Elie Hani -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Peter Nixon Sent: Friday, June 01, 2007 10:47 AM To: FreeRadius users mailing list Subject: Re: Backing up freeradius On Fri 01 Jun 2007, Peter Nixon wrote: > On F

Re: problem in autehtication with EAP-MD5

2007-06-01 Thread tnt
Yes, radius is now working fine. What are you using (? going to use) to assign an IP address to the client - radius or DHCP? If you are using DHCP something is wrong with address/netmask assignment. If you are not using anything at the moment you will need to pick one. As for wpasupplicant log - i

Re: problem in autehtication with EAP-MD5

2007-06-01 Thread tnt
This looks OK now: State: DISCONNECTED -> ASSOCIATING .. State: ASSOCIATING -> ASSOCIATED .. EAP: EAP entering state INITIALIZE .. EAPOL: SUPP_PAE entering state AUTHENTICATING This is now a supplicant issue > EAP is failing despite Access-Accept. Something is broken there. You will need to post

Freeradius and Rodopi

2007-06-01 Thread Jeff
Does anyone have a Radiusd.conf they would share? I am trying to get Rodopi's users file it creates to work with freeradius As you knw its in a different format as username Password = password Anyway its a backup radius solution of site, and I don't want it to have to use mssql Trying to be as

Disabling EAP-TLS while keeping EAP-PEAP

2007-06-01 Thread Martin Gadbois
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 When enabling EAP-PEAP with FreeRADIUS, module EAP-TLS is required. How can I disable EAP-TLS while using EAP-PEAP? I agree that if the client does not have a client key, EAP-TLS will not work. But how to restrict EAP-TLS in any case? Thanks! - --

Re: Disabling EAP-TLS while keeping EAP-PEAP

2007-06-01 Thread tnt
By not issuing client certificates. Ivan Kalik Kalik Informatika ISP Dana 1/6/2007, "Martin Gadbois" <[EMAIL PROTECTED]> piše: >-BEGIN PGP SIGNED MESSAGE- >Hash: SHA1 > >When enabling EAP-PEAP with FreeRADIUS, module EAP-TLS is required. > >How can I disable EAP-TLS while using EAP-PEAP

Re: Disabling EAP-TLS while keeping EAP-PEAP

2007-06-01 Thread Martin Gadbois
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 [EMAIL PROTECTED] wrote: > By not issuing client certificates. > While I covered this solution in my initial posting, what if a certificate was issued, no CRL possible and I want to disable EAP-TLS but keep EAP-PEAP? - -- == +---

RE: Disabling EAP-TLS while keeping EAP-PEAP

2007-06-01 Thread tnt
If someone can gain that level of access and decides JUST to issue a wild certificate - write him a "Thank You" letter. What if he cretes a batch of new users? Or resets ALL your users passwords to "Leroy wuz 'ere"? Your worries are misplaced. Ivan Kalik Kalik Informatika ISP - List info/subscri