licensing issue

2007-11-20 Thread jerry jose
respected, i would like to implement the services of Freeradius server for one of our upcoming projects(Voip based application).i would like some information regarding : 1)i would like the server to interact with one of our clients programs and perform some some data retrieval tasks,ie

Re: licensing issue

2007-11-20 Thread Alan DeKok
jerry jose wrote: 1)i would like the server to interact with one of our clients programs and perform some some data retrieval tasks,ie the server recieves a request and will call an external program to perform the remaining tasks.i would like to know whether such an external program

Re: [SPAM] Re: [SPAM] Re: [SPAM] Re: EAP-TLS does not sendan accessOK.

2007-11-20 Thread tnt
Download Freeradius 2.0 and use certificate creation script from there. They should be OK for 1.1.7 too. Ivan Kalik Kalik Informatika ISP Dana 20/11/2007, Patrice Oliver [EMAIL PROTECTED] piše: Hello, I looked at the event viewer. No information. Yesterday, I made a test of certificates /

Re: [SPAM] Re: [SPAM] Re: [SPAM] Re: EAP-TLS does not sendan accessOK.

2007-11-20 Thread OLIVER Patrice
Hello, I don't find version 2.0 at this location : http://www.freeradius.org/download.html Only the 1.1.7 Cordialement, Patrice OLIVER Chef du Projet Ville Hôpital Responsable Réseaux Sécurité HOSPICES CIVILS DE

Freeradius-client in pppd

2007-11-20 Thread Damjan
I need the feature to specify the local ip address for the radius requests in PPPd and I see that freeradius-client-1.1.5 has that feature. Is there any patch to make pppd use this radius client instead of it's own copy of the old radiusclient? -- damjan | дамјан This is my jabber ID --

Re: [SPAM] Re: [SPAM] Re: [SPAM] Re: EAP-TLS does not sendan accessOK.

2007-11-20 Thread tnt
http://www.freeradius.org/press/index.html#freeradius-2.0.0-pre2 Dana 20/11/2007, OLIVER Patrice [EMAIL PROTECTED] piše: Hello, I don't find version 2.0 at this location : http://www.freeradius.org/download.html Only the 1.1.7 Cordialement, Patrice

Re: [SPAM] Re: [SPAM] Re: [SPAM] Re: EAP-TLS does not sendan accessOK.

2007-11-20 Thread OLIVER Patrice
Ok, Thanks Cordialement, Patrice OLIVER Chef du Projet Ville Hôpital Responsable Réseaux Sécurité HOSPICES CIVILS DE BEAUNE Service Informatique BP 104 21203 BEAUNE CEDEX Tél. 33 3 80 24 44 09 Fax 33 3 80 24 45

Re: please help not allow the many connections from single user

2007-11-20 Thread ann kok
I did attribute in mysql and start freeradius In the /var/log/radius.log I can see Auth: Multiple logins (max 1) [MPP attempt]: When I kick out the user in the nas server, I am still seeing this Auth: Multiple logins (max 1) [MPP attempt]: ls it any delay time to take? how can I control it?

Re: please help not allow the many connections from single user

2007-11-20 Thread tnt
Have you configured nastype in your clent configuration? If checkrad script is to check sessions with NAS it needs that. Ivan Kalik Kalik Informatika ISP Dana 20/11/2007, ann kok [EMAIL PROTECTED] piše: I did attribute in mysql and start freeradius In the /var/log/radius.log I can see Auth:

Re: please help not allow the many connections from single user

2007-11-20 Thread ann kok
Thank you but in the nas file. it said to use clients.conf i configure the clients.conf and put the NAS (linux) there can you help? or teach me to run the command Thank you Peter more naslist # # THIS FILE IS DEPRECATED. # # You should NOT be using this file to configure the

Re: please help not allow the many connections from single user

2007-11-20 Thread ann kok
btw, i saw some users are fine but some users are not not sure it is limited by time or modem Do you have idea? Thank you --- [EMAIL PROTECTED] wrote: nastype is a setting in clients.conf. Read instructions in the file. Ivan Kalik Kalik Informatika ISP Dana 20/11/2007, ann kok [EMAIL

log radius users

2007-11-20 Thread stefek143
Hi Everybody. Is possible to log which pupil were used my radius system if i using eap-tls method to auth and ldap to autz if is possible, could you help me show what i have to change in confings Thank You. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: log radius users

2007-11-20 Thread tnt
radiusd.conf: .. # Log authentication requests to the log file. # # allowed values: {no, yes} # log_auth = no .. Change log_auth to yes. Ivan Kalik Kalik Informatika ISP Dana 20/11/2007, stefek143 [EMAIL PROTECTED] piše: Hi Everybody. Is possible to log which pupil were used my radius

Re: please help not allow the many connections from single user

2007-11-20 Thread tnt
btw, i saw some users are fine but some users are not not sure it is limited by time or modem Do you have idea? Thank you Sorry. I don't know what are you on about. Whatever it is, modem is the most unlikely culprit. Ivan Kalik Kalik Informatika ISP - List info/subscribe/unsubscribe? See

SLES 10 + Oracle

2007-11-20 Thread Stefan Kohler
Hi users, I have a problem compiling a RPM-package for SLES10 and I followed the instructions on the WIKI-sites. All dependecies are installed and I also installed the Oracle rpms (oracle-instantclient-basic and oracle-instantclient-devel), so all headers and stuff should be installed.

2.0.0-pre2 missing radrelay functionality?

2007-11-20 Thread Brian De Wolf
While looking into fixes for my previous post, I began poking at 2.0.0-pre2. I see that radrelay's functionality is supposed to have been merged into the main server, but I do not see where it has the same capability of relaying accounting packets to other RADIUS servers. Has this functionality

Re: please help not allow the many connections from single user

2007-11-20 Thread ann kok
basically I don't know how to solve it out I follow the freeradius/doc 1/ add group in freeradius/users eg: DEFAULT Group == homeuse,Simultaneous-Use = 1,Fall-Through = 1 2/ insert radius database INSERT INTO radgroupcheck (GroupName, Attribute, op, Value) values(homeuse, Simultaneous-Use, :=,

Re: please help not allow the many connections from single user

2007-11-20 Thread tnt
1. Delete that entry in users file. You are checkig Simultaneous-Use in radgroupcheck. 2. In session{} module in radiusd.conf change checking to sql. 3. Uncomment simunltaneous use queries in sql.conf. 4. If your NAS is not listed in docs enter other as nastype. That means there will be no

log radius users

2007-11-20 Thread stefek143
ok, i set log_auth = yes and also i've uncomented detail_log and detail reply_log and everything what i have in file radius.log is Tue Nov 20 20:38:14 2007 : Info: Using deprecated naslist file. Support for this will go away soon. and in another files /radacct, radutmp , radwatch.log,

Re: log radius users

2007-11-20 Thread tnt
Are you running server in debug mode (radiusd -X)? Ivan Kalik Kalik Informatika ISP Dana 20/11/2007, stefek143 [EMAIL PROTECTED] piše: ok, i set log_auth = yes and also i've uncomented detail_log and detail reply_log and everything what i have in file radius.log is Tue Nov 20 20:38:14 2007 :

log radius users

2007-11-20 Thread stefek143
yes Are you running server in debug mode (radiusd -X)? Ivan Kalik Kalik Informatika ISP Dana 20/11/2007, stefek143 stefek143 at wp.pl piše: ok, i set log_auth = yes and also i've uncomented detail_log and detail reply_log and everything what i have in file radius.log is Tue Nov 20 20:38:14

Re: log radius users

2007-11-20 Thread tnt
Logging doesn't work then. Run it just as radiusd. Ivan Kalik Kalik Informatika ISP Dana 20/11/2007, stefek143 [EMAIL PROTECTED] piše: yes Are you running server in debug mode (radiusd -X)? Ivan Kalik Kalik Informatika ISP Dana 20/11/2007, stefek143 stefek143 at wp.pl piše: ok, i set

With passwords only

2007-11-20 Thread build
G'day All, This is my first post so I'd like to thank those who make this list possible. I see this has been asked before but I could not find a complete answer in the archive or google. I want to setup a freeRADIUS server on a debian etch system to authenticate for a WRT54G AP using

Re: With passwords only

2007-11-20 Thread Paul Bartell
You will need a shared secret between the WRT and radius server, but otherwise, just follow the howtos on the wiki. On Nov 20, 2007 2:55 PM, build [EMAIL PROTECTED] wrote: G'day All, This is my first post so I'd like to thank those who make this list possible. I see this has been asked before

Re: With passwords only

2007-11-20 Thread build
G'day Paul, Thank you for your reply. I installed freeradius on my debian etch box. Then using the /EAP/MD5_HOWTO Step 1. woops :/# radiusd -s -X -bash: radiusd: command not found :/# /etc/pam.d/radiusd -s -X -bash: /etc/pam.d/radiusd: Permission denied :/# Thanks in anticipation, build On

Re: With passwords only

2007-11-20 Thread tnt
What authentication protocol are you using? If you are using 802.1x you have to use certificates. Ivan Kalik Kalik Informatika ISP Dana 20/11/2007, build [EMAIL PROTECTED] piše: G'day All, This is my first post so I'd like to thank those who make this list possible. I see this has been asked

Re: SLES 10 + Oracle

2007-11-20 Thread Peter Nixon
On Tue 20 Nov 2007, Stefan Kohler wrote: Hi users, I have a problem compiling a RPM-package for SLES10 and I followed the instructions on the WIKI-sites. All dependecies are installed and I also installed the Oracle rpms (oracle-instantclient-basic and oracle-instantclient-devel), so all

Re: With passwords only

2007-11-20 Thread build
G'day Ivan, Thanks for your reply. I have seen an Access Point using the same WRT54G as mine which apparently authenticates from a freeradius installation on a debian etch box and it only requires a username and password to login. How is that done? Thanking you in anticipation, build On

Re: With passwords only

2007-11-20 Thread tnt
VPN? Or PPPoE? I don't know what that AP can do. Read the user guide. Ivan Kalik Kalik Informatika ISP Dana 20/11/2007, build [EMAIL PROTECTED] piše: G'day Ivan, Thanks for your reply. I have seen an Access Point using the same WRT54G as mine which apparently authenticates from a freeradius

Re: With passwords only

2007-11-20 Thread Paul Bartell
This is probably done through WPA enterprise or another such protocal, or chilispot or a similar captive portal. On Nov 20, 2007 4:22 PM, [EMAIL PROTECTED] wrote: VPN? Or PPPoE? I don't know what that AP can do. Read the user guide. Ivan Kalik Kalik Informatika ISP Dana 20/11/2007, build

Re: With passwords only

2007-11-20 Thread Alan DeKok
build wrote: Thank you for your reply. I installed freeradius on my debian etch box. Then using the /EAP/MD5_HOWTO Step 1. woops :/# radiusd -s -X -bash: radiusd: command not found Debian re-names the FreeRADIUS binaries to freeradius. You can find this out by using the Debian package

WPA HOWTO

2007-11-20 Thread build
G'day All, Using Debian etch. I've started again with the WPA HOWTO at http://wiki.freeradius.org/WPA_HOWTO It's a bit confusing with the eap.conf file separate to the radiusd.conf but I thought I had got it right. I was wrong. :/# freeradius -X -A Starting - reading configuration files ... snip

Re: WPA HOWTO

2007-11-20 Thread OLIVER Patrice
Hi, I don't recommend you to use Debian Freeradius Package. It has been built without eap support. You have to rebuild from source. Here is a good link here : http://www.linuxinsight.com/building-debian-freeradius-package-with-eap-tls-ttls-peap-support.html Regards.

Re: WPA HOWTO

2007-11-20 Thread OLIVER Patrice
If it don't work, you have to do the changes manually. I did it, it's not a long job to do. Cordialement, Patrice OLIVER Chef du Projet Ville Hôpital Responsable Réseaux Sécurité HOSPICES CIVILS DE BEAUNE Service