Re: No authenticate method (Auth-Type) configuration found

2010-04-13 Thread Alan DeKok
Ahmed Munir wrote: Thanks for reply. Well user is created on SQL, and I uncommented 'sql' from sites-enabled/default on Authorized section and Accounting Section. But when I add 'sql' in Authenticate section I'm getting same error. i.e. [r...@newtest raddb]# radtest sqltest testpwd

Multiple instances of attribute in tunnelled reply

2010-04-13 Thread sunhualing
Hello everyone: I am using a freeradius-2.1.8, with eap-ttls mschap v2. I happen to get a problem that some attribute missing in the Access-Accept message, while it appears in the first Access-Challenge message. I still find that those attributes appear tunneled reply , i use the debug mode.

PEAP/MS-CHAPv2 issue: mschap verified successful, but peap got no responses.

2010-04-13 Thread Wang Nan
(others keywords: ActiveDirectory, Active Directory, AD, winbind, samba, eap.conf, peap, mschap) Hi FreeRARIUS gurus, I was implementing FreeRADIUS solution integrated with AD environment by using Samba/Winbind. EAP/TLS works, but not PEAP/MSCHAPv2, in that peap module is waiting for something

Re: Daemon exit normally but unexpectedly

2010-04-13 Thread Alan DeKok
gorec2005 gorec2005 wrote: Tell my - how can you search exactly where the error occurs because of what the daemon exit's: ... Wed Apr 7 15:04:42 2010 : Error: rlm_sql (sql): failed after re-connect Wed Apr 7 15:06:42 2010 : Info: Exiting normally. It's hard to tell what's going on. There

RE: How to handle dynamic update of shared secret and client configuration in free radius

2010-04-13 Thread Rajendra Hegde
I wonder if this is directly not achievable, what if some other program running on machine B update the file and send signal SIGHUP or some oither signal I am not sure to freeradius so that free radisu rereads the config information without getting restarted ? Does it work ? Which signal to

Re: How to handle dynamic update of shared secret and client configuration in free radius

2010-04-13 Thread Nicolas Goutte
Am 13.04.2010 um 15:27 schrieb Rajendra Hegde: I wonder if this is directly not achievable, what if some other program running on machine B update the file and send signal SIGHUP or some oither signal I am not sure to freeradius so that free radisu rereads the config information without

Re: How to handle dynamic update of shared secret and client configuration in free radius

2010-04-13 Thread Nicolas Goutte
Am 13.04.2010 um 15:50 schrieb Nicolas Goutte: Am 13.04.2010 um 15:27 schrieb Rajendra Hegde: I wonder if this is directly not achievable, what if some other program running on machine B update the file and send signal SIGHUP or some oither signal I am not sure to freeradius so that free

3GPP2-Prepaid-Acct-Quota

2010-04-13 Thread Alexander
Dear all, after solving my 'check user traffic quota at login time' problem I try to take the next step and disconnect active sessions if user's traffic limited is exceeded. My Cisco LNS supports 3GPP2 VSA attributes. Therefore I took a look at 3GPP2-Prepaid-Acct-Quota AKA

Freeradius With EAP-TTLS-LDAP and EAP-PEAP-AD

2010-04-13 Thread Nathan McDavit-Van Fleet
Hello, I'm trying to get Freeradius 2.1.7 working on Redhat. I had previously gotten PEAP working with ntlm_auth using the walk-through on deployingradius.com on a Debian machine. However, it was version 2.0.7 so things have changed quite a bit in the config files. In the new walkthrough

Dan Schaffer is not in the office

2010-04-13 Thread Dan Schaffer
I will be out of the office starting Tue 04/13/2010 and will not return until Thu 04/15/2010. I will respond to your message when I return. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Freeradius With EAP-TTLS-LDAP and EAP-PEAP-AD

2010-04-13 Thread Alan Buxey
Hi, I tested ntlm_auth directly and it works perfectly. Samba and everything else is all good, I got TTLS and the users files authenticating well as well (so my cert is good and TLS is good). So it appears as if I’m missing something in my Freeradius configs that specifically has to do

RE: Freeradius With EAP-TTLS-LDAP and EAP-PEAP-AD

2010-04-13 Thread Nathan McDavit-Van Fleet
I attached the logs for freeradius -X -Original Message- From: freeradius-users- bounces+nmcdavit=alcor.concordia...@lists.freeradius.org [mailto:freeradius-users- bounces+nmcdavit=alcor.concordia...@lists.freeradius.org] On Behalf Of Alan Buxey Sent: Tuesday, April 13, 2010 1:55

RE: Freeradius With EAP-TTLS-LDAP and EAP-PEAP-AD

2010-04-13 Thread Garber, Neal
I attached the logs for freeradius -X The logs you attached just show the startup output, not an actual request that was rejected. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Multiple instances of attribute in tunnelled reply

2010-04-13 Thread Alan DeKok
sunhualing wrote: Hello everyone: I am using a freeradius-2.1.8, with eap-ttls mschap v2. I happen to get a problem that some attribute missing in the Access-Accept message, while it appears in the first Access-Challenge message. I still find that those attributes appear tunneled reply