Re: Logs from /var/log/radius/radius.log

2010-02-11 Thread Johan Meiring
I intentionally didn't include the output of show full processlist and show innodb status because they are very large to include them here. If you need them, please tell me and I will send it to you personally. show full processlist would show how long some of the queries have been running,

Re: FreeRadius 2.1.8 works fine in DEBUG mode

2010-02-11 Thread Amal Janardhanan
If I don't include in import statement from python it works well. Just any import like import socket, it fails... A plain Python code works. Here is the thread sample. Sampling process 88764 for 3 seconds with 1 millisecond of run time between samples Sampling completed, processing

Re: Logs from /var/log/radius/radius.log

2010-02-11 Thread Fajar A. Nugraha
On Fri, Feb 12, 2010 at 6:22 AM, muffin sk muffi...@gmail.com wrote:  Slow queries: 166 Start with that. Activate slow query log (see Mysql docs) to see which queries took a long time, and when they happen. Combine that with freeradius log about db handle, and you should be able to decide whether

Re: Logs from /var/log/radius/radius.log

2010-02-11 Thread muffin sk
Hello Fajar, On Fri, Feb 12, 2010 at 8:48 AM, Fajar A. Nugraha fa...@fajar.net wrote: On Fri, Feb 12, 2010 at 6:22 AM, muffin sk muffi...@gmail.com wrote:  Slow queries: 166 Start with that. Activate slow query log (see Mysql docs) to see which queries took a long time, and when they happen.

Re: Logs from /var/log/radius/radius.log

2010-02-11 Thread Johan Meiring
muffin sk wrote: - show full processlist - show innodb status Unfortunately your datbase is doing nothing in the logs attaced. Please re-run and re-send show processlist while radius is claiming the SQL pools to be unavailable, i.e. while your'e having the problem. -- Johan Meiring

how to use daloradius to limit pptp users time?

2010-02-11 Thread Jean
hi, all I am trying to set a test billing plan where the user 1 minute total. It's not quite working and I have a few questions: 1. First I set up a billing plan called 1time: BillingPlansNew Plan. I set Time SettingsPlan Type = Accumulative, and Plan Time Bank = 60. Then I assigned the plan to

Re: Coa server warning

2010-02-11 Thread Andrew Rikhlivsky
On 02/11/2010 01:48 PM, Alan DeKok wrote: Andrew Rikhlivsky wrote: I tried to configure COA service on my test server. When i send coa packet: ... server localhost-coa { WARNING: Empty section. Using default return values. WARNING: Empty section. Using default return

Re: radiusd not responding to radtest

2010-02-11 Thread Fajar A. Nugraha
On Wed, Feb 10, 2010 at 11:45 PM, Colin Byelong c.byel...@ucl.ac.uk wrote: ++[unix] returns notfound ... so unix module is enabled [pap] WARNING! No known good password found for the user.  Authentication may fail because of this. ... but No known good password found for the user. If you

Re: Logs from /var/log/radius/radius.log

2010-02-11 Thread Fajar A. Nugraha
On Thu, Feb 11, 2010 at 10:23 AM, muffin sk muffi...@gmail.com wrote: Can you briefly explain the meaning for each line below if that doesn't cost much of your time? I Which part are you having trouble with? Thu Feb 11 05:53:24 2010 : Info: rlm_sql (sql): There are no DB handles to use!

Re: FreeRadius 2.1.8 works fine in DEBUG mode

2010-02-11 Thread Alan DeKok
Amal Janardhanan wrote: I tried debugging by radiusd -fxx -l stdout. But no information is printed in the window nor in any of the file. I tried various radius version from 2.1.1 to 2.1.8. Same result everywhere. Those command line options should cause it to print it's starting

Re: no wait exec scripts end up as defunct zombie process

2010-02-11 Thread Alan DeKok
Sajeewa Warnakulasuriya wrote: Also after further testing I found the issue is caused when running two no wait exec modules at the same time. Hmm OK. If you look at my previous posts the module names proxy_bb_realms and bb_quota_update We solved it by removing the proxy bb realms

Coa server warning

2010-02-11 Thread Andrew Rikhlivsky
Hello all. I tried to configure COA service on my test server. When i send coa packet: # echo User-Name = cisco, mpd-limit += \in#1=all rate-limit 132 15 30\, mpd-limit += \out#2=all rate-limit 132 15 30\|radclient -d /usr/local/share/freeradius/ -x [nas ip]:3799 coa

wpa_supplicant on Windows takes a long time to auth via freeradius

2010-02-11 Thread Vieri
Hi, I'm noticing that at times my Windows wpa_supplicant takes a long time to authenticate via freeradius. It seems to associate quickly to a Linksys WAP2000 access point. However, it takes a full 4-5 minutes to complete the connection. I noticed that each time Freeradius sends an

radius for linux authentication

2010-02-11 Thread sri . b
Hi List, I have configured my linux devices to use freeRadius (freeRadius 1.1.5 with MySQL backend) authentication. Installation of pam library went well and am able to get authenticated against my freeRadius server. Now the problem is how to identify a user like root have same name on

Re: radius for linux authentication

2010-02-11 Thread Nicolas Goutte
Am 11.02.2010 um 11:20 schrieb sr...@aol.in: Hi List, I have configured my linux devices to use freeRadius (freeRadius 1.1.5 with MySQL backend) authentication. Installation of pam library went well and am able to get authenticated against my freeRadius server. Now the problem is how to

Re: Error: [sql] database query error

2010-02-11 Thread Josip Rodin
On Thu, Feb 11, 2010 at 11:56:45AM +0700, Fajar A. Nugraha wrote: On Thu, Feb 11, 2010 at 11:25 AM, Teguh Kurniawan teguhkurniawanwij...@gmail.com wrote: Table 'radius.radusergroup' doesn't exist Do you have that table? Perhaps it's a case of not importing the database schema found in

Re: radius for linux authentication

2010-02-11 Thread Fajar A. Nugraha
On Thu, Feb 11, 2010 at 5:20 PM, sr...@aol.in wrote: Now the problem is how to identify a user like root have same name on multiple machines. For this I observed that this PAM library is sending Calling-Station-Id in Access-Request packets. I did modify my radcheck table to have entires as

Re: Coa server warning

2010-02-11 Thread Alan DeKok
Andrew Rikhlivsky wrote: I tried to configure COA service on my test server. When i send coa packet: ... server localhost-coa { WARNING: Empty section. Using default return values. WARNING: Empty section. Using default return values. } # server localhost-coa Sending CoA-ACK of id 231

Re: Simultaneous-Use problem with Mikrotik NAS clients

2010-02-11 Thread Fajar A. Nugraha
2010/2/11 Fojtán Balázs István bal...@fojtan.hu: simul_count_query = SELECT COUNT(*) \ FROM ${acct_table1} \ WHERE username = '%{SQL-User-Name}' \ AND acctstoptime IS NULL it uses ${acct_table1} (should be radacct by default). Have you enabled accounting? mysql select * from radcheck;

Re: Logs from /var/log/radius/radius.log

2010-02-11 Thread muffin sk
Hello Fajar, First of all, thank you for your time answering my questions to this list. On Thu, Feb 11, 2010 at 4:47 PM, Fajar A. Nugraha fa...@fajar.net wrote: Thu Feb 11 05:53:24 2010 : Info: rlm_sql (sql): There are no DB handles to use! skipped 0, tried to connect 0 usually this means

Re: Re: Simultaneous-Use problem with Mikrotik NAS clients

2010-02-11 Thread Fojtán Balázs István
Hello Fajar, thanks for your rapid response! simul_count_query = SELECT COUNT(*) \ FROM ${acct_table1} \ WHERE username = '%{SQL-User-Name}' \ AND acctstoptime IS NULL it uses ${acct_table1} (should be radacct by default). Have you enabled accounting? Yes, the accounting is working. It is

Re: Simultaneous-Use problem with Mikrotik NAS clients

2010-02-11 Thread Fajar A. Nugraha
2010/2/11 Fojtán Balázs István bal...@fojtan.hu: mysql select * from radgroupreply; ++---+--++---+ | id | GroupName | Attribute        | op | Value | ++---+--++---+ |  1 | HZ        | Simultaneous-Use | := | 1     |

Re: Logs from /var/log/radius/radius.log

2010-02-11 Thread Fajar A. Nugraha
On Thu, Feb 11, 2010 at 11:08 PM, muffin sk muffi...@gmail.com wrote: Thu Feb 11 05:53:24 2010 : Info: rlm_sql (sql): There are no DB handles to use! skipped 0, tried to connect 0 usually this means the db is dead, or unresponsive, such that radiusd can't find a DB handle it can use What

Re: Simultaneous-Use problem with Mikrotik NAS clients

2010-02-11 Thread Marinko Tarlac
Yes. Fajar A. Nugraha wrote: 2010/2/11 Fojtán Balázs István bal...@fojtan.hu: mysql select * from radgroupreply; ++---+--++---+ | id | GroupName | Attribute| op | Value | ++---+--++---+ | 1 | HZ|

RHEL Freeradius Packages v2.1.7

2010-02-11 Thread Ben Wiechman
Does anyone have version 2.1.7 of the RHEL freeradius 2 rpms that John graciously provided? Thanks Ben - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

[SOLVED] Re: Cisco Aironet 1240AG, PEAP and Active directory

2010-02-11 Thread Abdessamad BARAKAT
Thanks guy, it's working fine now with the version 3.2.15 of samba For anyone have problems with ntlm_auth OK but no access-accept receive after that, use this version of samba. Freeradius 2.1.8 samba 3.2.5 Cisco Aironet 1240G Johan Meiring a écrit : Abdessamad BARAKAT wrote: I have tried

Re: RHEL Freeradius Packages v2.1.7

2010-02-11 Thread John Dennis
On 02/11/2010 12:43 PM, Ben Wiechman wrote: Does anyone have version 2.1.7 of the RHEL freeradius 2 rpms that John graciously provided? I removed the 2.1.7 version when I posted 2.1.8. I don't have copies of the 2.1.7 hanging around, but I just kicked off a build for them. They should show

Re: Cisco Aironet 1240AG, PEAP and Active directory

2010-02-11 Thread Alan Buxey
On 09/02/10 20:42, Trevor Jennings wrote: Just out of curiosity, is there a reason why Samba is used in the AD authentication? Is that the only option for FreeRadius? I ask because I heard that ntlm_auth was not that stable. no problem wth stability here - version 3.2.x - where did you

Re: RHEL Freeradius Packages v2.1.7

2010-02-11 Thread John Dennis
On 02/11/2010 01:56 PM, John Dennis wrote: On 02/11/2010 12:43 PM, Ben Wiechman wrote: Does anyone have version 2.1.7 of the RHEL freeradius 2 rpms that John graciously provided? I removed the 2.1.7 version when I posted 2.1.8. I don't have copies of the 2.1.7 hanging around, but I just

Checking password and doing something else during authenticate...

2010-02-11 Thread Johan Meiring
Hi, Let me start off with that a have a perfectly working freeradius setup authenticating a bunch of hotspots (coova-chilli). Thanks freeradius!!! All is done using custom code in rlm_perl during authentication. I check the password I check the users cap I check a bunch of other stuff I

Re: Logs from /var/log/radius/radius.log

2010-02-11 Thread muffin sk
Hello Fajar, On Fri, Feb 12, 2010 at 12:42 AM, Fajar A. Nugraha fa...@fajar.net wrote: When the NAS doesn't receive response (for whatever reason) in a certain time, it should sends the request again. The number of retries and timeout vary depending on NAS (tunable settings on some). If after