Re: Microsoft: SmardCard or Certificate Auth

2009-11-12 Thread Alan DeKok
swatzy wrote: I'm trying to configure a FreeRadius server to perform a certification authentication from a Windows Laptop. I have follow the steps at http://wiki.freeradius.org/WPA_HOWTO#HOWTO_Do_It:_An_Outline Ugh. That is WAY out of date. But when I try to do the connection, it never

Re: FR2.1.3+LDAP+802.1x+PEAP

2009-11-12 Thread Alan DeKok
Caius wrote: i know about the restrictions, but do you know how weak that NT hash is? Everyone knows. so i cant afford to make all my user password hash weak... Perhaps you didn't read the web page on deployingradius.com. If you want to do PEAP, the ONLY CHOICE you have is whether to

clients.conf

2009-11-12 Thread Peter Carlstedt
://card.mail.cn.yahoo.com/ -- next part -- An HTML attachment was scrubbed... URL: https://lists.freeradius.org/pipermail/freeradius-users/attachments/20091112/e7a9b9df/attachment.html -- Message: 6 Date: Thu, 12 Nov 2009 08:34:19 +0200 From: Guk

Re: clients.conf

2009-11-12 Thread Alan DeKok
Peter Carlstedt wrote: I have one radius server connected to a Netgear wired switch, from that switch I have a AP(Mikrotik) connected. What I am trying to do is to add the Mikrotik into the clients.conf file but when I do i get an error at startup(dont remember the error message). If you

DHCP in FR

2009-11-12 Thread kako
Hi, I started the radiusd with -X. Is this part of the output means or not there is DHCP support? radiusd: Loading Virtual Servers server dhcp { modules { } # modules } # server WARNING: Server dhcp is empty, and will do nothing! - List info/subscribe/unsubscribe? See

usergroup and radgroupcheck problem!

2009-11-12 Thread Hamid Reza Hasani
Hi, (Salam) I'm using last version of freeradius. when my users are going to connect, I see this message: [sql] expand: %{User-Name} - myuser [sql] sql_set_user escaped user -- 'myuser' rlm_sql (sql): Reserving sql socket id: 2 [sql] expand: SELECT id, groupname, attribute, Value,

Re: DHCP in FR

2009-11-12 Thread Alan DeKok
k...@zhnet.hu wrote: I started the radiusd with -X. Is this part of the output means or not there is DHCP support? It means you didn't read the sample configuration file in raddb/sites-available/dhcp radiusd: Loading Virtual Servers server dhcp { modules { } # modules You

Re: clients.conf

2009-11-12 Thread Alexander Clouter
Alan DeKok al...@deployingradius.com wrote: Asking questions on a public forum involves some simple etiquette. i.e. being willing to doo a *tiny* bit of work for yourself. And editing your email to remove 100's of lines of garbage. Might be too complicated and sit more at the bottom end of

Re: [Fwd: Re: [Fwd: I need some help with freeradius 2.0.4]]

2009-11-12 Thread Wagner Pereira
Hi, Ivan. Yes, my output now is showing: Sending Access-Accept of id 128 to 200.133.204.64 port 21645 Service-Type := NAS-Prompt-User And how should I debug ip ssh. I've used the tcpdump to catch the traffic through eth0. Did you mean that? If it's affirmative, see the tcpdump output

Re: FreeRADIUS + Postgresql dies unexpectedly

2009-11-12 Thread Duarte Fonseca
Hi Alan, If you could point out which specific commit(s) address this issue I would be very grateful. Thank you, Duarte 2009/11/6 Alan DeKok al...@deployingradius.com: Duarte Fonseca wrote: Hi list, Just checking if anyone has any more suggestions on how I should proceed with this.  A

Re: FreeRADIUS + Postgresql dies unexpectedly

2009-11-12 Thread Alan DeKok
Duarte Fonseca wrote: Hi Alan, If you could point out which specific commit(s) address this issue I would be very grateful. $ git log src/modules/rlm_sql/drivers/rlm_sql_postgresql ... 45877bf44b02d418b6fb263a39e5de07ced58b6e Alan DeKok. - List info/subscribe/unsubscribe? See

Re: FreeRADIUS + Postgresql dies unexpectedly

2009-11-12 Thread Alexander Clouter
Duarte Fonseca fonseca.dua...@gmail.com wrote: If you could point out which specific commit(s) address this issue I would be very grateful. One day we will persaude Alan to put something more verbose in the git commit logs :) Until then: git log -p -n1

Re: FreeRADIUS + Postgresql dies unexpectedly

2009-11-12 Thread Duarte Fonseca
Thanks Alan and Alex, I thought it was that one, just wanted to make sure as I gave it a quick test and it seems the problem is still there. I'm doing some more tests to make sure it's not me doing something silly, I'll be in touch if I keep having problems (hopefully with gdb and valgrind

Proxy to multiple servers in FR 2.1.7

2009-11-12 Thread Patric
Hi again all :) I am attempting to proxy all accounting packets to 2 servers. In my proxy.conf I am using a default realm. realm DEFAULT { acct_pool = my_acct_failover nostrip } I create a home_server entry for each server, and add them to the home_server_pool for that

Re: Proxy to multiple servers in FR 2.1.7

2009-11-12 Thread Craig Campbell
/unsubscribe? See http://www.freeradius.org/list/users.html __ Information from ESET Smart Security, version of virus signature database 4600 (20091112) __ The message was checked by ESET Smart Security. http://www.eset.com __ Information from ESET Smart Security, version

Re: Freeradius-Users Digest, Vol 55, Issue 55

2009-11-12 Thread Gilbert Lo
Thank you for your message. I am away until Nov 19th. I will respond to your message on my return . For urgent matters, please contact helpd...@stgeorges.bc.ca . Cheers, Gilbert Lo - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Deprecate the X-Ascend-* attributes in dictionary.ascend?

2009-11-12 Thread Bjørn Mork
The dictionary.ascend file contains both Ascend VSAs and some historical Ascend specific extensions in the lower (1-255) RADIUS attribute space. These are prefixed with X-Ascend-. But nowadays, quite a few of these collide with official standard attributes. Although this is not a problem for the

Re: Deprecate the X-Ascend-* attributes in dictionary.ascend?

2009-11-12 Thread Bjørn Mork
Stupid me. Remember to check whether your great ideas are already implemented... They usually are when it comes to FreeRADIUS :-) bj...@canardo:/usr/local/src/git/freeradius$ git log share/dictionary.ascend.illegal commit 27b18889c932129ea758eff3232c254980124eb7 Author: Alan T. DeKok

Re: FreeRadius with 3COM

2009-11-12 Thread Rafael Fernandes
Thanks Guk, but i need this level of priority be based by freeradius, not set this level for local users. In other words, when an user test try to authenticate on the switch, the freeradius have to answer with Accept and pass the level of test priority. And the 3COM switch has to understand and

Re: FreeRADIUS + Postgresql dies unexpectedly

2009-11-12 Thread Duarte Fonseca
Hi again, So the problem seems to still be present, this is how I'm testing, please let me know if I'm doing something wrong. I got the redhat SRPM from http://people.redhat.com/jdennis/freeradius-rhel-centos/src/freeradius2-2.1.7-2.el5.src.rpm Applied the change to the source file and built

Re: FreeRADIUS + Postgresql dies unexpectedly

2009-11-12 Thread John Dennis
On 11/12/2009 11:38 AM, Duarte Fonseca wrote: Hi again, So the problem seems to still be present, this is how I'm testing, please let me know if I'm doing something wrong. I got the redhat SRPM from http://people.redhat.com/jdennis/freeradius-rhel-centos/src/freeradius2-2.1.7-2.el5.src.rpm

Re: FreeRADIUS + Postgresql dies unexpectedly

2009-11-12 Thread Duarte Fonseca
Hi John, The only change I did to the spec file was change the release (and later add the --enable-developer) What I did do was go to the SOURCES dir and unpack the freeradius-server archive, change the file in question, pack up freeradius-server replacing the original tar.bz2 archive. I did

Re: FreeRADIUS + Postgresql dies unexpectedly

2009-11-12 Thread John Dennis
On 11/12/2009 12:28 PM, Duarte Fonseca wrote: Hi John, The only change I did to the spec file was change the release (and later add the --enable-developer) What I did do was go to the SOURCES dir and unpack the freeradius-server archive, change the file in question, pack up freeradius-server

Re: FreeRADIUS + Postgresql dies unexpectedly

2009-11-12 Thread Alexander Clouter
Duarte Fonseca fonseca.dua...@gmail.com wrote: So the problem seems to still be present, this is how I'm testing, please let me know if I'm doing something wrong. I got the redhat SRPM from http://people.redhat.com/jdennis/freeradius-rhel-centos/src/freeradius2-2.1.7-2.el5.src.rpm

Re: usergroup and radgroupcheck problem!

2009-11-12 Thread tnt
if you look at them carefully, you can see there is a bit problem! my freeradius is read radgroupcheck before usergroup table, so it can't recognize user's group name for radgroupcheck query! so it can't read radgroupcheck attributes! where is my fault? can I change it priority? It looks

Re: [Fwd: Re: [Fwd: I need some help with freeradius 2.0.4]]

2009-11-12 Thread tnt
Yes, my output now is showing: Sending Access-Accept of id 128 to 200.133.204.64 port 21645 Service-Type := NAS-Prompt-User Then freeradius works. And how should I debug ip ssh. Oh dear, let me guess: you don't know much about Cisco admin? Well start with this:

Learning Freeradius Server

2009-11-12 Thread kachin Agarwal
Hi all,   I m new to freeradius server. I jus want to understand the flow of freeradius server and how does it run. So somebody could help me start with it on how to read the code. which is the program code to start with. Thanx Regards, Kachin The INTERNET now has a personality.