Re: FreeRadius and MacOSX 10.6

2010-02-24 Thread Fabien COMBERNOUS
Alan DeKok wrote: Fabien COMBERNOUS wrote: Hi there, I'm trying to setup a freeRadius on MacOSX host 10.6. This OS use FreeRADIUS Version 2.1.3. I'm looking for informations about how to permit a client device to ask an IP address when it is plugged on the network. Is this for PP

Re: FreeRadius and MacOSX 10.6

2010-02-24 Thread Fajar A. Nugraha
On Wed, Feb 24, 2010 at 3:55 PM, Fabien COMBERNOUS wrote: > It is not for ppp. I'm already using dhcp. > > In a first step, i would like to dynamically assign  a vlan to the port of > my switch in function of the mac address where the device is plugged. I > would like to add a device in the opendi

dictionary help

2010-02-24 Thread Igor Smitran
Hello, I am trying to rewrite some custom AVPairs that cisco sends me. In order to do that i've created cusatom dictionary: ATTRIBUTE   disc-cause-ext  507 integer VALUE  disc-cause-ext  Unknown 1002 VALUE  disc-cause-ext  CLID-Auth-Fail  1004 VALUE  disc-cause

Re: Parse error

2010-02-24 Thread Alan DeKok
Mike Diggins wrote: > > Could someone tell me what the syntax error on the Proxy-To-Realm line > is please? $ man unlang > preacct { > detail > suffix > if ((Proxy-To-Realm = DEFAULT) && (User-Name =~ '=' is not a comparison operator. You need an opening brace '{'

Re: monitoring freeradius

2010-02-24 Thread Alan DeKok
Mark Jones wrote: > I am not looking to see if radius is failing or not running but as to > how many of the options under the thread pool are being used at any > given point in time. What does that mean? How many threads are being used? That information isn't currently available. It shouldn

rlm-ldap error for chap

2010-02-24 Thread Eric Eric
Excuse me for replicated emails. I'm using old version of freeradius 1.1.3! When I tried to upgrade I had a problem and it is still in old version. this is the result of search in ldap server: dn: uid=test ,ou=example,...  uid: test givenName: test objectClass: top objectClass: person objectClass

Re: monitoring freeradius

2010-02-24 Thread Mark Jones
I can't see why I would set it to longer then 5 seconds but some of the comments in the radius.conf file suggest there may be cases when you want it less then that. Which led me to wondering how you could check if you needed to. - Original Message - From: "Alan DeKok" To: "FreeRadius

reply_log issue

2010-02-24 Thread Mark Jones
I have turned on reply_log option in the post-auth area. for both accepted and rejected packets. It is logging to the file successfully but it does not log the username or password. Wed Feb 24 10:06:47 2010 Packet-Type = Access-Accept Framed-Address = x.x.x.x Framed-Netma

buffered proxied accounting packets

2010-02-24 Thread Mark Jones
Is it possible to have the accounting packets that you would normally proxy to another server wrote to a file and then sent from the file. The same concept as we get with the buffered-sql config. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: buffered proxied accounting packets

2010-02-24 Thread Alan DeKok
Mark Jones wrote: > Is it possible to have the accounting packets that you would normally > proxy to another server wrote to a file and then sent from the file. > The same concept as we get with the buffered-sql config. raddb/sites-available/decoupled-accounting Alan DeKok. - List info/subs

Re: reply_log issue

2010-02-24 Thread Alan DeKok
Mark Jones wrote: > I have turned on reply_log option in the post-auth area. for both > accepted and rejected packets. > > It is logging to the file successfully but it does not log the username > or password. Does the reply contain the username and password? Likely not. Alan DeKok. - Lis

Re: reply_log issue

2010-02-24 Thread Mark Jones
ok but in the same post-auth section if i use the sql_log facility it will write the username and password - Original Message - From: "Alan DeKok" To: "FreeRadius users mailing list" Sent: Wednesday, February 24, 2010 11:01 AM Subject: Re: reply_log issue Mark Jones wrote: I have

Re: reply_log issue

2010-02-24 Thread Alan DeKok
Mark Jones wrote: > ok but in the same post-auth section if i use the sql_log facility it > will write the username and password That's nice. You have been careful to discuss only problems. I suggest stating your requirements instead. Alan DeKok. - List info/subscribe/unsubscribe? See htt

Re: reply_log issue

2010-02-24 Thread Mark Jones
Ok what I am trying to do We have a radius server that out las comunicate to for authentication and accounting. Accounting is not stored localy it is wrote to an sql database on another server. We have setup the buffered-sql section so that accounting is wrote to a local detail file then r

Graphs from freeradius activity

2010-02-24 Thread José Campos
Hello, everyone What’s, if possible, the way you recommend to obtain graphical analysis from freeradius activity? I would like to get grahps and statistics from radius activity, for example: - How many users have auth successfully - Auth reject per day - Bad p

Re: Graphs from freeradius activity

2010-02-24 Thread Alan DeKok
José Campos wrote: > What’s, if possible, the way you recommend to obtain graphical analysis > from freeradius activity? Munin http://munin.projects.linpro.no/ The latest version includes scripts for FreeRADIUS. See also the "scripts" directory. Alan DeKok. - List info/subscribe/unsub

Re: rlm-ldap error for chap

2010-02-24 Thread John Dennis
I owe you an apology, I said not to edit /etc/raddb/ldap.attrmap, but you do. I always forget that the clear text password mapping is not in ldap.attrmap by default, I assume that because of the inherent security risks. By forcing you to add it you'll be forcefully aware of what you've done. He

Re: rlm-ldap error for chap

2010-02-24 Thread Alan Buxey
Hi, > Now to make matters a touch bit more complicated FreeRADIUS changed how > it accessed the clear text password in its set of attributes. In older > versions of FreeRADIUS it was known as User-Password, but that produced > an unfortunate ambiguity and it was later modified to be > Cleartext

Re: dictionary help

2010-02-24 Thread Alan DeKok
Igor Smitran wrote: > Hello, > I am trying to rewrite some custom AVPairs that cisco sends me. > In order to do that i've created cusatom dictionary: ... > When radius is started with this dictionary i don't get any value for > disc-cause-ext attribute. It doesn't exist. Hmm... the code in rlm_

Re: reply_log issue

2010-02-24 Thread Alan DeKok
Mark Jones wrote: > We have a radius server that out las comunicate to for authentication > and accounting. Please review your posts for spelling and grammer. It's difficult to understand your questions when they are full of nonsensical phrases. > Accounting is not stored localy it is wrote to

Re: sequence realms

2010-02-24 Thread Alan DeKok
Latha Krishnamurthi wrote: > Is there a way in freeradius to forward the requests to all the > configured realms one after the other, if it gets rejected say for null > or default realms ?? No. A reject is a reject. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.o

Re: FreeRadius and MacOSX 10.6

2010-02-24 Thread Alan DeKok
Fabien COMBERNOUS wrote: > In a first step, i would like to dynamically assign a vlan to the port > of my switch in function of the mac address where the device is plugged. > I would like to add a device in the opendirectory, and specifying its > mac address and the vlan this mac address have to u

mysql configuration for version 2.1.8

2010-02-24 Thread Pratik Shrestha
Hello to all, I am using the latest version 2.1.8 and I am newbie. I was trying to configure sql (mysql) for this version, but I did not find any configuration help from any source. I cannot find the sql files that used to be in older version. So, can anyone locate these files for me or please tell