Install FR 2.1.10 on OS X 10.4.11

2010-10-01 Thread Wolfgang Burger
Hello, I´m using version of 1.1.7 on a production system and it was working quite well for me. For severall reasons I want to update my setup now. When I startet to try the new versions some days ago, the Frontpage- Version was 2.1.9. I'm running my server under Mac OS X 10.4.11 PPC.

inside Auth-Type has different rules

2010-10-01 Thread Iliya Peregoudov
Hello, I have following configuration: authenticate { Auth-Type CHAP { chap db_backend chap { ok = 1 } db_backend } } First chap module call should handle cases when Cleartext-Password already set (for example, by files module). If there is Cleartext-Password,

Re: Install FR 2.1.10 on OS X 10.4.11

2010-10-01 Thread Alan DeKok
Wolfgang Burger wrote: Is there a way to install 2.1.10 on this system? Yes. Edit the src/main/Makefile, and delete the line saying: PCAP_LIBS = -lpcap I had no idea that those functions were in some versions of pcap, and not in others. Every system I checked had those functions

Re: Freeradius + EAP_TLS + Cisco AP

2010-10-01 Thread Matija Levec
Hi. Valid CA is the one that issued radius server certificate. Just import it to trusted CAs list. Bye, M. Is mandatory for an XP machine to authenticate the server certificate to a valid CA? - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: vmps switch-port shutdown

2010-10-01 Thread Alan DeKok
Habegger Lukas, ERZ-AZD-AID-NOC wrote: i can set the vlan on a port for a specific mac but the port does not go to errdisabled when i use the above. If the switch receives the VMPS packet and ignores it, then blame the switch. Alan DeKok. - List info/subscribe/unsubscribe? See

FreeRADIUS ECCN code ?

2010-10-01 Thread Fabrizio Rossi
Hi all, Is somewhere declared the FreeRADIUS ECCN code ? (http://en.wikipedia.org/wiki/ECCN) I've looked in the WIKI and in the mailing list archives but I could not find this info. Thanks,     Fabrizio - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Default ldap fallthrough but no Auth-Type set

2010-10-01 Thread Alan DeKok
Harry Hoffman wrote: I've stuck with the default config and enabled both ldap and ntlm_auth (after making sure that both sources can authenticate per the docs). Both sources of authentication work. OK. It seems that when enabling the ldap module, it become the default if nothing else sets

Re: Radius+Ldap:Allow the same host in multiple vlans

2010-10-01 Thread Alan DeKok
Ramon Escriba wrote: Hi Alan, Then does it possible to do a general match rule in huntgroups to lets say the 35 first ports belong to a vlan A and the rest 36 to 48 to vlan B,or not? What did my message say? business NAS-IP-Address == 192.168.2.5, NAS-Port-Id == 1-35 IT

Re: FreeRADIUS ECCN code ?

2010-10-01 Thread Alan DeKok
Fabrizio Rossi wrote: Is somewhere declared the FreeRADIUS ECCN code ? (http://en.wikipedia.org/wiki/ECCN) No. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: inside Auth-Type has different rules

2010-10-01 Thread Alan DeKok
Iliya Peregoudov wrote: I have following configuration: authenticate { Auth-Type CHAP { chap db_backend chap { ok = 1 } db_backend } } That configuration is wrong. The purpose of the authenticate section is to do authentication. If you're doing DB

Re: Install FR 2.1.10 on OS X 10.4.11

2010-10-01 Thread Wolfgang Burger
Am 01.10.2010 um 15:47 schrieb Alan DeKok: Yes. Edit the src/main/Makefile, and delete the line saying: PCAP_LIBS = -lpcap Worked like a charm. Alan, thank you for your fast (as always) and very helpfull (as always, if asking the right questions) reply. Wolfgang - List

Re: Freeradius + EAP_TLS + Cisco AP

2010-10-01 Thread Esteban TALAVERA
Thanks I have to import root CA certificate or server certificate to XP CA trusted lists? On Fri, Oct 1, 2010 at 9:22 AM, Matija Levec matija.le...@astec.si wrote: Hi. Valid CA is the one that issued radius server certificate. Just import it to trusted CAs list. Bye, M. Is mandatory

RE: FreeRADIUS ECCN code ?

2010-10-01 Thread Tim Sylvester
FreeRADIUS is open source software that can be downloaded from the Internet by anyone in the world. The concept of exporting FreeRADIUS doesn't really make sense. Are there ECCN codes for Linux, OpenSSL, and OpenVPN? Tim -Original Message- From: freeradius-users-

RE: FreeRADIUS ECCN code ?

2010-10-01 Thread Fabrizio Rossi
Fabrizio Rossi wrote: Is somewhere declared the FreeRADIUS ECCN code ? (http://en.wikipedia.org/wiki/ECCN) No. Alan DeKok. - Hi Alan, Thanks for the prompt response. This gives me some problems as my company wants this or some equivalent info to use a 3PP SW. Can you answer a

Re: FreeRADIUS ECCN code ?

2010-10-01 Thread Alan DeKok
Fabrizio Rossi wrote: Thanks for the prompt response. This gives me some problems as my company wants this or some equivalent info to use a 3PP SW. shrug The money Ericsson pays to one lawyer is probably more than I make in a year. if you want legal advice, consult your own lawyers. Can

RE: FreeRADIUS ECCN code ?

2010-10-01 Thread Fabrizio Rossi
Hi Tim, This would be also my personal thought, but it seems our lawyers doesn't think in the same way. In fact there are ECCN codes for OpenSSL for instance. Fabrizio Sent: venerdì 1 ottobre 2010 16.56 To: 'FreeRadius users mailing list' Subject: RE: FreeRADIUS ECCN code ? FreeRADIUS

Re: FreeRADIUS ECCN code ?

2010-10-01 Thread Alan DeKok
Fabrizio Rossi wrote: Hi Tim, This would be also my personal thought, but it seems our lawyers doesn't think in the same way. In fact there are ECCN codes for OpenSSL for instance. Then type openSSL ECCN into google, and have your lawyers read the answer on the OpenSSL mailing list.

RE: FreeRADIUS ECCN code ?

2010-10-01 Thread Fabrizio Rossi
Fabrizio Rossi wrote: Thanks for the prompt response. This gives me some problems as my company wants this or some equivalent info to use a 3PP SW. shrug The money Ericsson pays to one lawyer is probably more than I make in a year. if you want legal advice, consult your own

Unfinished Request no Database

2010-10-01 Thread João Romariz
Hi, We are facing a strange issue with freeradius 2.1.9 running in a VM with Fedora Core 13. As soon as we start the server we get around 30 anthentication requests per second from a client. The first 30 to 40 request get a quick reply but from there on only very few replies are seen on the

Re: Unfinished Request no Database

2010-10-01 Thread Alan DeKok
João Romariz wrote: We are facing a strange issue with freeradius 2.1.9 running in a VM with Fedora Core 13. As soon as we start the server we get around 30 anthentication requests per second from a client. The first 30 to 40 request get a quick reply but from there on only very few replies