Re: How to forward a request rejected by a proxy RADIUS server to another LDAP server?

2007-06-05 Thread Phil Mayers
Clark J. Wang wrote: I've configured a proxy RADIUS server in `proxy.conf' and an LDAP server in `radiusd.conf' and they work well. I want to forward those requests rejected by the proxy RADIUS server to the LDAP server and re-authenticate them again. Can I do that in FreeRADIUS? And how?

Re: How to forward a request rejected by a proxy RADIUS server to another LDAP server?

2007-06-05 Thread Jian Wang
On 6/5/07, Phil Mayers [EMAIL PROTECTED] wrote: Clark J. Wang wrote: I've configured a proxy RADIUS server in `proxy.conf' and an LDAP server in `radiusd.conf' and they work well. I want to forward those requests rejected by the proxy RADIUS server to the LDAP server and re-authenticate

Re: From users file to SQL

2007-06-05 Thread tnt
It will work fine if you set the pool to override the IP address already set. 1. Leave the # Default profile for everyone in the users file 2. Make groups SUSPENDED, DSL500 etc. in groupcheck table. You need 2 entries for group SUSPENDED, and one for others: (GroupName, Attribute, op, Value)

Re: Reject realm-based

2007-06-05 Thread tnt
Add notrealm in that realms configuration if you need to keep it in your radiusd/proxy.conf for some reason. Ivan Kalik Kalik Informatika ISP Dana 5/6/2007, Nicola Iotti [EMAIL PROTECTED] piše: Hi all, we use Freeradius as proxy based on prefix realm. We have to send an immediate

Reject realm-based vol.2

2007-06-05 Thread Nicola Iotti
Hi all, thank you for answers...but I think my problem is a little different...we have to reject request with a specified realm, not without realm. I mean for example we have to reject immediately requests with realm = 'office01' and to proxy requests with realm = 'office02' Regards Hi

Binding variable (Oracle)

2007-06-05 Thread Сергей Липин
Hi all, I'm use FreeRadius as DHCP server (sqlippool). Data Base is Oracle 10g. Freeradius+Oracle. How to use binding variable in Oracle? - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Reject realm-based vol.2

2007-06-05 Thread tnt
If you don't set up realm office1 requests will be processed locally, whole office1\username will be treated as username and since such user doesn't exist (I hope) in your local database, request will be rejected. Ivan Kalik Kalik Informatika ISP Dana 5/6/2007, Nicola Iotti [EMAIL PROTECTED]

pairfind() with VSAs

2007-06-05 Thread hwang
I'm trying to write my own module and come into some problems. I'm trying to access request attributes using pairfind() as mentioned in the Wiki. I can get normal attributes without problem but having problem with VSAs. I tried to access some Cisco VSAs like h323-conf-id, h323-call-origin by

log file for eap-tls with free radius 1.1.6

2007-06-05 Thread anoop_c
Hi In log file i am not able to get anyhting.First time i got one log saying its started and all. After that if again i start the server no logs are coming.But if i run in debug mode (RADIUS -X) its throwing all procedure and user is able to connect also Due to this i am unabe to change my

Re: Freeradius Auth via LDAP against Active Directory Server 2003

2007-06-05 Thread Ryan Kramer
Were you ever able to solve the issue of multipe OU's? I have about 100 OU's that have users under them, running without a specified OU doesn't work, and obviously once I drop into an OU it hits the users that live there, and no others. Ryan On 4/29/07, Jacob Jarick [EMAIL PROTECTED] wrote:

EAP-TLS problem

2007-06-05 Thread shantanu choudhary
hi all, i m trying to get EAP-TLS working for free radius, but i m not able to figure out how to handle all those certificates. Can u tell me how are u using those certificates and are u using openssl for generating those certificates and do need to run openssl explicitly along with radius

Re: Freeradius Auth via LDAP against Active Directory Server 2003

2007-06-05 Thread Phil Mayers
On Tue, 2007-06-05 at 09:22 -0500, Ryan Kramer wrote: Were you ever able to solve the issue of multipe OU's? I have about 100 OU's that have users under them, running without a specified OU Why can't you specify a top-level OU and use subtree searches? doesn't work, and obviously once I

use eap-peap

2007-06-05 Thread parfait kouassi nda
i have configured my freeradius as proxy, and i have used in fisrt eap type md5! now i want to use it with eap-peap and use active directory in windows server 2003! my application must be use the authentication which start windows session on a domain server in active directory to authenticate

Ldap group troubles

2007-06-05 Thread Dourty, Brian R. (IATS)
I'm having some trouble with the ldap group configuration against AD and need a little help. Freeradius 1.1.4 MS 2003 Active Directory radiusd.conf groupname_attribute = cn groupmembership_filter = (member=%{Ldap-UserDn})

Dynamic VLAN-Assigning with Dell PowerConnect 3448

2007-06-05 Thread André Graf
Hi List Since hours i am trying to get dynamic vlan-assigning working with a Dell PowerConnect 3448 Switch and Freeradius 1.1.6. In my Users-File I have the following Default-Entry (like seen in some other tutorials, often used with Cisco-devices). DEFAULT Auth-Type := EAP

Re: use eap-peap

2007-06-05 Thread tnt
http://wiki.freeradius.org/FreeRADIUS_Active_Directory_Integration_HOWTO Dana 5/6/2007, parfait kouassi nda [EMAIL PROTECTED] piše: i have configured my freeradius as proxy, and i have used in fisrt eap type md5! now i want to use it with eap-peap and use active directory in windows server

Re: Help Users Online Listing Issues

2007-06-05 Thread tnt
These are suspiciously spaced exactly at 15 minutes. Are you inserting accounting updates into radacct table? Ivan Kalik Kalik Informatika ISP Dana 6/6/2007, Jeff [EMAIL PROTECTED] piše: I just got Freeradius up and running I have am having the users online showing user on several times

Re: Help Users Online Listing Issues

2007-06-05 Thread Jeff
to be quite honest not even sure. What must I check to be certain? One thing I do no, the user is offline now, and they still are there in as online same entrys _ From: [EMAIL PROTECTED] To: FreeRadius users mailing list [mailto:[EMAIL PROTECTED] Sent: Tue, 05 Jun 2007