Re: wpa2-psk and radiusd possible?

2009-07-16 Thread Stefan Winter
Hi, Is there a way to have different PSK's for every MAC? I bed, it is not a job for radius and maybe a complete wrong concept? Your bet is correct: WPAx-PSK does not consult a RADIUS server at all. One PSK is for the whole SSID, there is not usually a PSK-per-user. So how did you do that

Info regarding Radius and Ipv6

2009-07-16 Thread Vamsi Krishna Valiveti
Hi , Please let me know 1) Whether there Radius Server (Linux / Windows) is available with IPv6 support. 2) Whether Radius Server is available which listens on IPv6 address. Rgds, Vamsi DISCLAIMER: This message is proprietary to Aricent and is intended

Re: Info regarding Radius and Ipv6

2009-07-16 Thread Michael Schwartzkopff
Am Donnerstag, 16. Juli 2009 09:57:44 schrieb Vamsi Krishna Valiveti: Hi , Please let me know 1) Whether there Radius Server (Linux / Windows) is available with IPv6 support. 2) Whether Radius Server is available which listens on IPv6 address. Rgds, Vamsi Google freeradius ipv6 gives:

Re: make install without messing with previous configuration?

2009-07-16 Thread A . L . M . Buxey
hi, if you really want to do this cp -R /etc/raddb /etc/raddb.old make install rm -rf /etc/raddb cp -R /etc/raddb.old /etc/raddb but you then lose 'sight' of new virtual servers, new config options etc and slowly but surely this will bite you (in my case a while back the logging config of the

Re: ./configure

2009-07-16 Thread A . L . M . Buxey
hi, those WARNINGs that ./configure prints out - do you *CARE* about any of the functions that are being warned about? ie do you want to use MySQL support? do you want to do EAP methods? (if so, you'll need OpenSSL), do you want to do any simultaneous usage checking? etc if you DO need any of

Re: radius.log permissions issue

2009-07-16 Thread A . L . M . Buxey
Hi, Is this a known bug? Is there a workaround other than creating the file by hand and setting its ownership before starting freeradius? ?? how are you starting this server - the file/directory should be radiusd:radiusd and when run it will do the 'correct thing' alan - List

Re: Info regarding Radius and Ipv6

2009-07-16 Thread A . L . M . Buxey
Hi, 1) Whether there Radius Server (Linux / Windows) is available with IPv6 support. 2) Whether Radius Server is available which listens on IPv6 address. FreeRADIUS works fine with IPv6 thanks - both responding and listening to RADIUS on the IPv6 stack. alan - List

Re: question about freeradius vs AA(ldap) and A(mysql)

2009-07-16 Thread Ivan Kalik
My question is how can i change the usergroup, radgroupcheck, radgroupreply, tables into Ldap to authorization-authentication step, with more options to check like Calling-Station-Id, Called-Station-Id, Hint, Groupnames, etc etc??? Place user into a group in ldap and use Ldap-Group to check

radtest for accounting

2009-07-16 Thread Rakotomandimby Mihamina
Hi all, radtest alows me to bascally test account (login, pass,...). I would like to test the logout process now: what radtest friend is the one to use? Thank you. PS: I need it because at logout I have to process the remaining credit of the user. -- Architecte

Re: radtest for accounting

2009-07-16 Thread Ivan Kalik
radtest alows me to bascally test account (login, pass,...). I would like to test the logout process now: what radtest friend is the one to use? Radclient. Ivan Kalik Kalik Informatika ISP - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: radius.log permissions issue

2009-07-16 Thread Philip Molter
On Jul 16, 2009, at 4:03 AM, a.l.m.bu...@lboro.ac.uk wrote: Hi, Is this a known bug? Is there a workaround other than creating the file by hand and setting its ownership before starting freeradius? ?? how are you starting this server - the file/directory should be radiusd:radiusd

Re: How to reject when a user logs in without realm?

2009-07-16 Thread Navin
At 08:00 PM 7/15/2009, you wrote: Hope you are referring to realm freescale.com { type= radius authhost= LOCAL accthost= LOCAL present in the radiusd.conf file. removed it. Restarted the freeradius server. The user file

Re: How to reject when a user logs in without realm?

2009-07-16 Thread Ivan Kalik
users file snippet of unix password database: # # First setup all accounts to be checked against the UNIX /etc/passwd. # (Unless a password was already given earlier in this file). # DEFAULT Auth-Type = System Fall-Through = 1 The debug option helped to see that i was hitting

Re: radius.log permissions issue

2009-07-16 Thread John Dennis
On 07/16/2009 08:12 AM, Philip Molter wrote: On Jul 16, 2009, at 4:03 AM, a.l.m.bu...@lboro.ac.uk wrote: Hi, Is this a known bug? Is there a workaround other than creating the file by hand and setting its ownership before starting freeradius? ?? how are you starting this server - the

Re: radius.log permissions issue

2009-07-16 Thread Philip Molter
John Dennis wrote: FWIW, in our RPM's we force the creation of the radius.log file with ownership radiusd:radiusd at installation time before the server even runs. If you don't force the creation of the file with the right ownership then I think the issue revolves around when a log message is

radiusd start problem

2009-07-16 Thread K bharathan
i'm newbie to freeradius installed freeradius server 2.1 on opensuse 11.1 when i run radiusd -X i get the following error: unable to write 'random state' dh: Permission denied make: *** [dh] Error 1 Exec-Program output: openssl dhparam -out dh 1024 Exec-Program-Wait: plaintext: openssl dhparam

Re: radiusd start problem

2009-07-16 Thread A . L . M . Buxey
Hi, i'm newbie to freeradius installed freeradius server 2.1 on opensuse 11.1 when i run radiusd -X i get the following error: ensure that your chosen radiusd user can write to your radius config directory. bluntly this would be eg chown -R radiusd:radiusd /etc/raddb(with a

Re: radius.log permissions issue

2009-07-16 Thread Philip Molter
John Dennis wrote: There are various strategies to assure the newly created log file has the right ownership: * drop privileges prior to calling fopen() * call chown() after fclose() at the exit of the logging call. * pre-create the file if necessary very early during start up. I think the

Re: HELP! EAP-TLS: how can I install a cert on a workstation so that it works for all users

2009-07-16 Thread Nik Alleyne
Hi Guys, I think this is an excellent tutorial for what he is trying to achieve. http://www.howtoforge.com/wifi-authentication-accounting-with-freeradius-on-centos5 I've used this along with assistance from Ivan and have gotten everything I wanted to work successfully. Nik Quoting Nicolas

Re: wpa2-psk and radiusd possible?

2009-07-16 Thread Stefan Jensen
Hi,... Am Donnerstag, den 16.07.2009, 08:27 +0200 schrieb Stefan Winter: Your bet is correct: WPAx-PSK does not consult a RADIUS server at all. One PSK is for the whole SSID, there is not usually a PSK-per-user. So Thanks, i wanted to get sure about that. how did you do that with hostap;

(SOLVED) XP3 EAP-TLS was Re: HELP! EAP-TLS: how can I install a cert on a workstation so that it works for all users

2009-07-16 Thread john
On Thu, Jul 16, 2009 at 8:12 AM, Nicolas Boullisnicolas.boul...@ecp.fr wrote: Hi, DISCLAIMER: I'm no Windows specialist. john wrote: I am having a hard time figuring out how to make this work. Where/how does the cert get imported. Do I need to make a registry change in

Error: Thread 1 failed waiting for semaphore: Invalid argument: Exiting

2009-07-16 Thread Tim Gustafson
Hi, I've had a FreeRADIUS 2.1.3 server running on FreeBSD 7.1 for a few months now. I logged in today to add a new group to my users file, and then re-started the RADIUS daemon. After re-starting, I'm getting this in my error log: Info: Ready to process requests. Error: Thread 1 failed

how to get connection with server

2009-07-16 Thread shivashankar
i installed freeradius 2.1.6 on solaris10. i am unable to start the server.when ever i type the radiusd -X it is saying command not found. plz help me -- View this message in context: http://www.nabble.com/how-to-get-connection-with-server-tp24528569p24528569.html Sent from the FreeRadius -