Question on proxy setting

2010-07-26 Thread 柴崎 昌一
Hello, We want to re-send Accounting-Request again by using the Proxy server. Because our NAS doesn't send Accounting-Request again. We want to set it to "Synchronous=no". Can I make it to "Synchronous=no"? M.Shibasaki - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/us

Re: Another LDAP/RADIUS integration problem.

2010-07-26 Thread Tom Leach
Alan, I changed the ldap.attrmap file from "checkItem Crypt-Password userPassword" to "checkItem User-Password userPassword" and it's authenticating now, but I now have a new message in the debug output and I'm not sure if it's a problem, suggestion, or otherwise. I can't change the LDAP direc

RE: Error: ASSERT FAILED threads.c[406]

2010-07-26 Thread Meyers, Dan
Will do :) Just to check I've understood properly - Do you expect the new version to just fix the ASSERT FAILED error, and what's happening in the perl is still something I need to investigate (and is probably thread related), or should the fix also stop me getting unresponsive children in the perl

Integration Question

2010-07-26 Thread Sallee, Stephen (Jake)
Does anyone have any experience integrating FreeRADIUS with an FOSS package called PacketFence? If you do, and are willing, please drop me a line. Jake.Sallee(at)umhb(dot)edu. Jake Sallee Godfather Of Bandwidth Network Engineer Fone: 254-295-4658 Phax: 254-295-4221 - List info/subscribe/uns

Unable to perform CHAP Authentication: after modifying client with CHAP-Password.

2010-07-26 Thread Santosh Kumar
Hi everyone, Need help for modifying the radius client or updating for CHAP authentication, Modified the below attribute, instead of PW_USER_PASSWORD to PW_CHAP_PASSWORD, but its rejecting please do know if i'm wrong or/and have to take care of any other aspect. With PAP(PW_USER_PASSWORD)it w

Re: Setting up pam_radius_auth

2010-07-26 Thread Mike J
On Fri, Jul 23, 2010 at 4:54 AM, Alan DeKok wrote: > Mike J wrote: > > Now obviously is says there's a problem with the secret, but I believe > > I've setup the secret correctly in the configs I've shown above. > > Does anybody have any ideas what I'm doing wrong? > > Either the password is inco

Reg: Accounting RequestAuthenticator Secret

2010-07-26 Thread Karthikeyan Gopal - ERS, HCL Tech
Hi, I have one basic question in generating Accounting-Request and Response Authenticator generation. My config: NAS shared secret = testing123 Accounting server Secret = 123testing While generating Accounting-Request Authenticator which secret to use? NAS or Acct server secret? In Accounting

Re: Disconnect user to turn off windows

2010-07-26 Thread Alan DeKok
jorge88 wrote: > Yeah, well, is that I'd rather do it with the radius. Could you use an > attribute to be turned off at 50 seconds of inactivity? See Idle-Timeout. If that doesn't do what you want, then what you want is impossible to do in RADIUS. Alan DeKok. - List info/subscribe/unsubscrib

Re: Disconnect user to turn off windows

2010-07-26 Thread jorge88
Yeah, well, is that I'd rather do it with the radius. Could you use an attribute to be turned off at 50 seconds of inactivity? Thanks Regards Jorge Alan DeKok-2 wrote: > > jorge88 wrote: >> What event and / or attribute to the NAS should send a disconnection? > > This is layer2 (ethernet).

Re: Disconnect user to turn off windows

2010-07-26 Thread Alan DeKok
jorge88 wrote: > What event and / or attribute to the NAS should send a disconnection? This is layer2 (ethernet). > It > could automatically detect when you turn off the computer? It can detect when the ethernet link layer goes away. > The NAS I use is coovachilli Well.. ask them if they

Re: Disconnect user to turn off windows

2010-07-26 Thread jorge88
What event and / or attribute to the NAS should send a disconnection? It could automatically detect when you turn off the computer? The NAS I use is coovachilli Thanks Regards Alan DeKok-2 wrote: > > jorge88 wrote: >> When a user need to turn off the computer, you are automatically >> disconn

Re: Disconnect user to turn off windows

2010-07-26 Thread Alan DeKok
jorge88 wrote: > When a user need to turn off the computer, you are automatically disconnect > the session. Is this possible? It's up to the NAS to send an Accounting "Stop" when the computer is no longer connected to the network. Alan DeKok. - List info/subscribe/unsubscribe? See http://www

Disconnect user to turn off windows

2010-07-26 Thread jorge88
Good afternoon, Someone could help me? When a user need to turn off the computer, you are automatically disconnect the session. Is this possible? Thank you very much Regards Jorge -- View this message in context: http://old.nabble.com/Disconnect-user-to-turn-off-windows-tp29266422p292664

Re: Error: ASSERT FAILED threads.c[406]

2010-07-26 Thread Alan DeKok
Meyers, Dan wrote: > Ran fine for a week or so, but in the last few days we've had it crash > twice, both times with the same message. The logs initially fill with > messages of the sort: > > "Sat Jul 24 01:05:08 2010 : Error: WARNING: Unresponsive child for > request 128145, in module perl compon

Error: ASSERT FAILED threads.c[406]

2010-07-26 Thread Meyers, Dan
Quick bit of background. We're using FreeRADIUS in combination with rlm_perl for network access control at our site. Everything was running fine on FreeBSD 8.0 with FreeRADIUS 2.1.8 compiled from ports and Perl 5.8 compiled to be non-threaded and not support multiplicity. We got new higher spec ser

Re: SV: Freeradius-Users Digest, Vol 63, Issue 75

2010-07-26 Thread Alan Buxey
Hi, > Im resending agian this question with a hope that someone can respond. sending what - you attached a whole daily digest of the list. if you want help then please be concise. alan - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: SV: SV: SV: Controlling with Auth-Type a client must use

2010-07-26 Thread Alan DeKok
Madsen.Jan JMD wrote: > Hmm okay. > > I got 2 clients, client1 and client2 > I want client1 to use my passwd module (kmdov3) to do authorization > And I want client2 to use the unix module for authorization. That's clear enough. > In my users file I have configured the one client I want to ON

Re: How to separate users to different server...

2010-07-26 Thread Spacelee
Thanks very much, I will give a try. On Thu, Jul 22, 2010 at 7:13 PM, Madsen.Jan JMD wrote: > What I would do. > > > > Use the etc_group module > > > > Create som groups for your users > > Group1 > > Group2 > > > > Add the respective users to the correct groups > > > > In the users file I will

SV: SV: SV: Controlling with Auth-Type a client must use

2010-07-26 Thread Madsen.Jan JMD
Hmm okay. I got 2 clients, client1 and client2 I want client1 to use my passwd module (kmdov3) to do authorization And I want client2 to use the unix module for authorization. In my users file I have configured the one client I want to ONLY use my passwd module Users: # Client1

Re: ntlm_auth fails for none domain

2010-07-26 Thread John
It finally works.  Looks the format changed.     --domain=%{mschap:NT-Domain:-xjtu}  ==> works in freeradius-1.1.x, 2.1.x not works --domain=%{%{mschap:NT-Domain}:-xjtu}   ==> works in freeradius-2.1.x, 1.1.x not works --- 10年7月8日,周四, John 写道: 发件人: John 主题: Re: ntlm_auth fails for none

Re: SV: SV: Controlling with Auth-Type a client must use

2010-07-26 Thread Alan DeKok
Madsen.Jan JMD wrote: > Yeah okay Alan, I have tried that allready, and it's working. But the > challange is, that I got some client that should use the Unix > authentication(unix server login), and some that dont(application logins and > Cisco node access). So that's why I want to decide witch