Re: a newbie testing freeradius need help

2008-04-28 Thread jennie susan
Hi all, I have succeed in configuring the server again with correct openssl libraries and development headers, the eapol_test is halfway successful, the tunnel was established, but i dont know why its didnt succeed after that, can you give me an hint please. Thank you all for helping me out.

Re: a newbie testing freeradius need help

2008-04-28 Thread Alan DeKok
jennie susan wrote: I have succeed in configuring the server again with correct openssl libraries and development headers, the eapol_test is halfway successful, the tunnel was established, but i dont know why its didnt succeed after that, can you give me an hint please. In 2.0.3 you have to

Redundant SQL

2008-04-28 Thread Breuer Nicolas
Hello I'm using a redundant config for the module ip_pooling # Get an address from the IP Pool. redundant { ip_pooling ip_pooling2 handled } If ip_pooling failed go to ip_pooling2 using the sql2 connection to an other mysql server. SQL2 is correctly loaded I started radius. Ok - on

Use passwd for MAC filtering?

2008-04-28 Thread Wolfgang Burger
Hi, I`m trying to add a MAC-Filter to my existing FreeRadius deployment. For some of my users I`m using TLS and want to be able to bind the certificates to a MAC address. I`ve tried to use passwd. In my radiusd.conf ... passwd maclist { filename = /etc/raddb/maclist format

Re: Use passwd for MAC filtering?

2008-04-28 Thread Alan DeKok
Wolfgang Burger wrote: ... Then, in sites-enabled/default: ... if ( mac-add != Calling-Station-ID ) { That won't work. See man unlang. The right hand side of an comparison CANNOT be a reference to an attribute. It MUST be something else. e.g. if (mac-add !=

Re: Use passwd for MAC filtering?

2008-04-28 Thread Wolfgang Burger
Am 28.04.2008 um 13:40 schrieb Alan DeKok: That won't work. See man unlang. The right hand side of an comparison CANNOT be a reference to an attribute. It MUST be something else. e.g. if (mac-add != %{Calling-Station-Id}) { ... The reason is that it's perfectly

Re: OT: EAP-TTLS - Problem with securew2 and Vista

2008-04-28 Thread Sergio Belkin
2008/4/27 Tural Kaptan [EMAIL PROTECTED]: Dear Sergio, Sorry for the delay in the reply, I just wanted to drop you a note related to the problem that you have mention in your e-mail to freeradius-users lists on 18th of April .. We had experienced the same problem with some Vista

Re: Redundant SQL

2008-04-28 Thread Alan DeKok
Breuer Nicolas wrote: ... I started radius. Ok - on SQL1. If i kill mysqld without restarting the server. rlm_sql_mysql: MYSQL check_error: 2002 received What are the *other* debug messages? i.e. it tries to connect. Does it succeed? The code in rlm_sqlippool rlm_sql is written

Newbie EAP/TLS

2008-04-28 Thread Mauro Iorio - Smart Soft s.r.l.
Hi all, sorry for this newbie question, but I was wondering if there's a way to implement EAP/TLS in freeradius. Does freeradius support TLS? Is there any documentation about it? Any information would be very appreciated. Thank You, Mauro Iorio - List info/subscribe/unsubscribe? See

Re: Newbie EAP/TLS

2008-04-28 Thread Nicolas Goutte
Am 28.04.2008 um 17:07 schrieb Mauro Iorio - Smart Soft s.r.l.: Hi all, sorry for this newbie question, but I was wondering if there’s a way to implement EAP/TLS in freeradius. Does freeradius support TLS? Is there any documentation about it? As far as I know, yes. See also:

Re: Newbie EAP/TLS

2008-04-28 Thread Alan DeKok
Mauro Iorio - Smart Soft s.r.l. wrote: sorry for this newbie question, but I was wondering if there’s a way to implement EAP/TLS in freeradius. Does freeradius support TLS? http://freeradius.org/features/eap.html Is there any documentation about it? Yes. Lots. See the web page, the

Help needed with freeradius, solaris and trapeze

2008-04-28 Thread Miguel Dias
Hello all, I'm new with Freeradius... I've a machine with solaris 10 installed and with freeradius installed too but I'm taking a lot of problems to use it with my Trapeze infrastructure. Can anyone help? I'm starting with WPA2 - TKIP and I would Like to configure FreeRadius to Authenticate some

Re: Help needed with freeradius, solaris and trapeze

2008-04-28 Thread Alan DeKok
Miguel Dias wrote: Can anyone help? I'm starting with WPA2 - TKIP and I would Like to configure FreeRadius to Authenticate some test users that I can create on freeradius. WPA2 means that the access point isn't doing RADIUS authentication for the users. please help really needed... Where

Re: Help needed with freeradius, solaris and trapeze

2008-04-28 Thread Guy Davies
Hi Alan, Erm... I'm using WPA2/AES that uses 802.1x to authenticate the user :-) WPA2/TKIP is a strange choice (if not technically invalid). Normally, folks go for WPA/TKIP or WPA2/AES. Anyway, back to Miguel's question... I have not used Trapeze kit for a couple of years but I have used it in

Certificate Properties.

2008-04-28 Thread Andrew Olson
Are there attributes available to get at properties of a certificate. I want to look at properties like Subject DN, Serial number, etc. So, somewhere in the FR config, I could do something like '%{cert-serial-number} == blah'. Thanks, Andrew Olson - List info/subscribe/unsubscribe? See