Re: Freeradius/Oracle compilation

2010-12-14 Thread Alan DeKok
Alexandre Chapellon wrote: > Hello I didn't have even a comment about this. > Is there something stupid in the proposed patch? I've been busy. Off of the top of my head: - requiring a new option to configure isn't friendly. - the whole *point* of configure is to have the computer "just figure

Re: wifi ip allocation

2010-12-14 Thread Alan DeKok
pauvre wrote: > I'm also trying to assign pools of IPs based on LDAP group membership. Since > your conversation is very technical and not easy to put in place by someone > who just started with RADIUS, RADIUS is a technical subject. You're not going to get very far if you have a hard time with

Re: Freeradius/Oracle compilation

2010-12-14 Thread Alexandre Chapellon
Hello I didn't have even a comment about this. Is there something stupid in the proposed patch? regards. Le samedi 11 décembre 2010 à 18:43 -1000, alexandre.chapel...@mana.pf a écrit : > Unless I missunderstood the compil process it seems to me that todays source > tree is stuck to Oracle 10g.

Re: wifi ip allocation

2010-12-14 Thread Alexandre Chapellon
Le mardi 14 décembre 2010 à 14:25 -0800, pauvre a écrit : > Hello all, > > I'm also trying to assign pools of IPs based on LDAP group membership. Since > your conversation is very technical and not easy to put in place by someone > who just started with RADIUS, I was looking for a descriptive wa

Re: syntax to discharge my mac Address

2010-12-14 Thread luis ramiro ochoa torres
> > okay I'll keep trying thanks... > - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: wifi ip allocation

2010-12-14 Thread pauvre
Hello all, I'm also trying to assign pools of IPs based on LDAP group membership. Since your conversation is very technical and not easy to put in place by someone who just started with RADIUS, I was looking for a descriptive way to get to that end. And I found the following : http://www.anthon

Re: Failed remembering handle for proxy socket

2010-12-14 Thread Alan DeKok
Mika wrote: > Upgrade to 2.1.10 did not solve the problem. > I also tried increasing physical memory to 1,5 GB, but i still get the same > error. It is not an "out of memory" error. > Would be good to know where the limitation is.. > I guess the configuration is not meant to be this way. Need

Re: PEAP/EAP-GTC proxy?

2010-12-14 Thread Alan DeKok
mgmitch wrote: > ERROR: Failed to create a new socket for proxying requests. Upgrade to 2.1.10. This was *exactly* the same message posted only a day or so ago. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: syntax to discharge my mac Address

2010-12-14 Thread Alan DeKok
luis ramiro ochoa torres wrote: > the problem is we can > not enlist the mac addresses for users toaccess computers right > through an access point with the mac > address without entering password only with the mac > address ofeach computer and have unique access to these comput

Re: Failed remembering handle for proxy socket

2010-12-14 Thread Mika
Upgrade to 2.1.10 did not solve the problem. I also tried increasing physical memory to 1,5 GB, but i still get the same error. Would be good to know where the limitation is.. I guess the configuration is not meant to be this way. Need to add more logic to the config i think. Debug output: [r

Re: One virtual server for MS-chapv2 against AD w/ ntlm_auth, the other one against ldap ntpasswd hash possible?

2010-12-14 Thread schilling
Got the whole setup working. So basically if users sign on with usern...@foo.edu with eap, they will be sent to ldap w/ ntpassword authorization. If users sign on with username only with eap, they will be sent to active directory w/ ntlm authentication. configuration changes are the following: etc/

Re: syntax to discharge my mac Address

2010-12-14 Thread luis ramiro ochoa torres
> > the problem is we can not enlist the mac addresses for users toaccess > computers right through an access point with the mac address without > entering password only with the mac address ofeach computer and have > unique access to these computers do notknow how to do it and have found as > we

PEAP/EAP-GTC proxy?

2010-12-14 Thread mgmitch
Hello, I've been trying to configure a new freeradius server (ver. 2.1.7) to proxy a OTP passcode to an existing (production) freeradius server (ver. 1.0.1) that is already setup to accept and authenticate the OTP passcodes for our remote access NAS devices (VPN, etc). I would like to use PEAP/

Re: Failed remembering handle for proxy socket

2010-12-14 Thread Mika
Alan Buxey wrote: > > its an interesting testwhy are you not using the latest > release of FreeRADIUS (2.1.10 ?) > 2.1.6 has worked fine for us, until now when we need some new functionality. Alan Buxey wrote: > > is there a reason why you want so many virtual servers listening > on t

Re: Failed remembering handle for proxy socket

2010-12-14 Thread Alan Buxey
hi, its an interesting testwhy are you not using the latest release of FreeRADIUS (2.1.10 ?) for this work...you seem to be comfortable with the technology... is there a reason why you want so many virtual servers listening on the same IP address? It seems a strange design - surely policies

Alvarion BS Service Provision

2010-12-14 Thread Wilson, Stuart
I cannot get our Alvarion BS to assign service profiles to a MS. I have read the forums and tried to use that information to help, but I cannot get a service profile to be assigned. Our setup is as follows: FreeRADIUS AAA with MySQL database. The radgroupreply is: 8 | MLB_MS| Filter-ID

Re: Failed remembering handle for proxy socket

2010-12-14 Thread Mika
Alan DeKok-2 wrote: > > > Upgrade to 2.1.10. > > Alan DeKok. > - > > OK. Will upgrade to 2.1.10. Thanks -- View this message in context: http://freeradius.1045715.n5.nabble.com/Failed-remembering-handle-for-proxy-socket-tp3304502p3304524.html Sent from the FreeRadius - User mailing li

Re: Failed remembering handle for proxy socket

2010-12-14 Thread Alan DeKok
Mika wrote > I am running FreeRadius 2.1.6 and testing a huge configuration in the way > that i am trying to open ~400 virtual servers on different ports. > Have a file in /etc/raddb/sites-enabled with all the configuration (listen > and virtual_server configs..) ... > Failed remembering handle for

Failed remembering handle for proxy socket

2010-12-14 Thread Mika
Hello. I am running FreeRadius 2.1.6 and testing a huge configuration in the way that i am trying to open ~400 virtual servers on different ports. Have a file in /etc/raddb/sites-enabled with all the configuration (listen and virtual_server configs..) radiusd -X stops with the below error: snip.

Re: FR 2.1.6 add realm to User-Name before Proxy by listening port

2010-12-14 Thread Phil Mayers
On 14/12/10 12:25, Mika wrote: Hello. Thank you Phil for the quick answer and these examples. Exactly what i was looking for. I will give this a go. Seems easy enough. Do you know where i could find some or all the possible values that I can use for this tweaking? Like: Packet-Dst-Port doc/var

Re: FR 2.1.6 add realm to User-Name before Proxy by listening port

2010-12-14 Thread Mika
Hello. Thank you Phil for the quick answer and these examples. Exactly what i was looking for. I will give this a go. Seems easy enough. Do you know where i could find some or all the possible values that I can use for this tweaking? Like: Packet-Dst-Port and so on.. I guess all of the RADIUS-At

Re: Do get in some other file?

2010-12-14 Thread Johan Meiring
On 2010/12/14 11:08 AM, Marinko Tarlac wrote: Hi.. It seems that you all have the same teacher... last 15 days this list was in some kind of spam attack... Almost the same questions every day... Hi I am and I have FR 2.1.10 on Ubuntu. How to add MAC to file? I think the answer is he

Re: Do get in some other file?

2010-12-14 Thread Marinko Tarlac
Hi.. It seems that you all have the same teacher... last 15 days this list was in some kind of spam attack... Almost the same questions every day... Hi I am and I have FR 2.1.10 on Ubuntu. How to add MAC to file? On 12/14/2010 1:46 AM, Gilberto Uriostegui García wrote: hello my nam

Re: FreeRADIUS exiting with Signal 11 on FreeBSD

2010-12-14 Thread Alan DeKok
Hugh Blandford wrote: > I can see no pattern in my radius.log that is consistent for all of the > exits. As this server is fairly quiet /var/log/messages is really quite > empty: Watch the CPU and memory usage by the server. > top is also similarly boring.at the present, I don't know what

Re: NAS-IP(v6)-Address = Packet-Src-IP(v6)-Address

2010-12-14 Thread Alan DeKok
Alexander Clouter wrote: > So, when NAS-IP(v6)-Address already exists, nothing happens, however if > it does, then it an attribute with the contents of > Packet-Src-IP(v6)-Address is added; obviously depending on the socket > type the packet arrives over so I am guessing in practice you probably