Re: Error connecting Radius server

2011-02-01 Thread Alan Buxey
Don't care what the client end says . Follow the docs and post the radiusd -X output Alan - Reply message - From: "vijay s sheelavantar" Date: Tue, Feb 1, 2011 06:27 Subject: Error connecting Radius server To: "freeradius-users" Hello Friends, I am getting following error while au

Re: Error connecting Radius server

2011-02-01 Thread Fajar A. Nugraha
On Tue, Feb 1, 2011 at 12:24 PM, vijay s sheelavantar < s_vija...@rediffmail.com> wrote: > Hello Friends, > > I am getting following error while authenticating users. The request from > pam_radius is reaching radius server and server is sending "Access-Accept". > but client is not able to receive

Re: shared-secret

2011-02-01 Thread Alan DeKok
Travis Dimmig wrote: > freeRadius seems to have a 32 character limit on the length of the > shared-secret. No. If you're seeing that, either the documentation is out of date, or you're using a ~10 year-old version of the server. Alan DeKok. - List info/subscribe/unsubscribe? See http://ww

Question on Radius logs

2011-02-01 Thread Brett Littrell
Hi All, Real quick and I am sure easy question here. I read through the unlang man page, really helped in getting a clue. One thing I was wondering though, is there a way to output text to the log based on a condition? What I mean is something like if x!=y then printf(" x did not equal

Re: Question on Radius logs

2011-02-01 Thread James J J Hooper
--On Tuesday, February 01, 2011 08:41:54 -0800 Brett Littrell wrote: Hi All, Real quick and I am sure easy question here. I read through the unlang man page, really helped in getting a clue. One thing I was wondering though, is there a way to output text to the log based on a condit

Re: Question on Radius logs

2011-02-01 Thread Brett Littrell
Hi James, That looks perfect for the tech logs, thanks. The debugging side was a little different, I was thinking about inputting text strings in the middle of unlang scripts. Usually when I write say a C program I will pop in a lot of printf's with variables so I know what a variable is

Re: Question on Radius logs

2011-02-01 Thread Alan Buxey
Hi, as James says...unlang with linelog module.. if you want to do more, then thats easy too - just use PERL module and use unlang with a call to a logging PERL module - the world is your oyster at that stage regarding what you can do - with your printf's etc :-) alan - List info/subscribe/unsu

Login Mysql

2011-02-01 Thread Marcelo Corradini
?Freeradius version 2.1.1 Ubuntu Server 10.04 LTS - 32bits Mysql 5.0 Dear friends, I'm struggling, I hope you can help me. The problem is the following: I did the installation Freeradius normally created an account and login. When I changed the authentication system for Mysql, unsuccessfully.

Re: Login Mysql

2011-02-01 Thread Alan Buxey
hi, your list of included files shows something is broken the sql.conf should read in other fileseg dialup.conf - which contains all the magic you need to deal with the actual user-name queries!! including configuration file /etc/raddb/sql.conf including configuration file /etc/raddb/sql

Re: Question on Radius logs

2011-02-01 Thread Brett Littrell
Thanks Alan, Did not think about calling the perl module, that should work very well... thanks Brett Littrell Network Manager MUSD CISSP, CCSP, CCVP, MCNE >>> On Tuesday, February 01, 2011 at 10:15 AM, in message >>> <20110201181525.ga9...@lboro.ac.uk>, Alan Buxey >>> wrote: Hi,

Re: Question on Radius logs

2011-02-01 Thread Brian Candler
> The debugging side was a little different, I was thinking about inputting > text strings in the middle of unlang scripts If you run radiusd -X you will see the output of expansions, so you can do if ("DEBUG: I am looking at %{foo} and %{bar}") { } and you'll see the text in the log. Ex

Active Directory and authorize section

2011-02-01 Thread Harry Hoffman
Hi All, I'm trying to find out what to use (if anything) in the authorize section when authenticating clients via MSCHAP-v2 and AD credentials. The how-to at deployingradius.com only speaks to the authentication section. If I only want to ensure that the username/password credentials are valid d

Re: Active Directory and authorize section

2011-02-01 Thread Alan Buxey
Hi, > I'm trying to find out what to use (if anything) in the authorize > section when authenticating clients via MSCHAP-v2 and AD credentials. > > The how-to at deployingradius.com only speaks to the authentication > section. > > If I only want to ensure that the username/password credentials a

Re: Active Directory and authorize section

2011-02-01 Thread Harry Hoffman
Right, I do understand the distinction which is why I asked the question. I didn't know if the tutorial just assumed everyone was authorized and then granted access as long as the userid/password matched AD or if there's something missing that should be addressed in authorize. Cheers, Harry On

Different Installation paths between source and yum giving error of missing directory

2011-02-01 Thread Samuel
Please pardon me if this has been addressed before; my search on the site has not helped me solve my problem. I installed freeradius 2.1.10 from source and the raddb folder was put in /usr/local/etc whereas yum put it in /etc. I deleted the files in /usr/local/etc/ and used yum to install b

Removing/Deleting freeradius 2.1.10 system

2011-02-01 Thread Samuel
Please how can I completely remove freeradius 2-1.10 installation if I installed from source file. Thanks Samuel - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Different Installation paths between source and yum giving error of missing directory

2011-02-01 Thread John Dennis
On 02/01/2011 04:15 PM, Samuel wrote: Please pardon me if this has been addressed before; my search on the site has not helped me solve my problem. I installed freeradius 2.1.10 from source and the raddb folder was put in /usr/local/etc whereas yum put it in /etc. I deleted the files in /usr/l

Re: Different Installation paths between source and yum giving error of missing directory

2011-02-01 Thread Fajar A. Nugraha
On Wed, Feb 2, 2011 at 4:15 AM, Samuel wrote: > I deleted the files in /usr/local/etc/  and used yum to install but i get an > error that /usr/local/etc/raddb cannot be found when I run radiusd -X. Where > is radiusd picking that path from ? When you compile from source binaries are usually insta

Re: Removing/Deleting freeradius 2.1.10 system

2011-02-01 Thread Samuel
After checking again I think make clean or make distclean should fix that. Am I right ? Thanks On 01/02/2011 21:23, Samuel wrote: Please how can I completely remove freeradius 2-1.10 installation if I installed from source file. Thanks Samuel - List info/subscribe/unsubscribe? See http

Re: Different Installation paths between source and yum giving error of missing directory

2011-02-01 Thread Brian Candler
On Tue, Feb 01, 2011 at 09:15:52PM +, Samuel wrote: > Please pardon me if this has been addressed before; my search on the > site has not helped me solve my problem. > I installed freeradius 2.1.10 from source and the raddb folder was > put in /usr/local/etc whereas yum put it in /etc. > > I

Re: FR 2.1.0 (ubuntu) proxying to NPS/IAS.

2011-02-01 Thread hellbird
Thank you for your answer. I have contacted Microsoft to help me. Best wishes, Marko -- View this message in context: http://freeradius.1045715.n5.nabble.com/FR-2-1-0-ubuntu-proxying-to-NPS-IAS-tp2766222p3367101.html Sent from the FreeRadius - User mailing list archive at Nabble.com. - List inf

Re: Active Directory and authorize section

2011-02-01 Thread Brett Littrell
Hi Harry, So this is the way I understand it. The authenticate section is used to just verify that you are who you are, via certs, username/password, token etc. The authorize section is where you define the sources for all the information you want FR to respond to. So to just authe

Re: Removing/Deleting freeradius 2.1.10 system

2011-02-01 Thread Alan Buxey
Hi, > After checking again I think make clean or make distclean should fix > that. Am I right ? no. you could do make -n install to see what/where things got put...and then go through manually. basically, if you use packages, you can remove (most times ;-) ) - if you use source code...well,

RE: shared-secret

2011-02-01 Thread Travis Dimmig
So you're saying that new versions of freeRadius (2.1.10) has support for longer shared-secrets? Do you know what the maximum length is now? -Travis From: freeradius-users-bounces+tdimmig=impulse@lists.freeradius.org [mailto:freeradius-users-bounces+tdimmig=impulse@lists.freeradius.or

Re: Different Installation paths between source and yum giving error of missing directory

2011-02-01 Thread Fajar A. Nugraha
On Wed, Feb 2, 2011 at 5:09 AM, Brian Candler wrote: > You may need to logout/login again for your shell to realise that it should > look for a radiusd in another directory. ... or run "hash -r" -- Fajar - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

freeradius dhcp file configuration details needed for multiple vlan

2011-02-01 Thread Anagh Pramanik
I am using VLANs and want different IP ranges for different access privileges, So I use Q-Trunks as our network equipment permits. After surfing internet i have sucessfuly configured the below mentioned case My existing (sample) scenario i

Re: FR 2.1.0 (ubuntu) proxying to NPS/IAS.

2011-02-01 Thread Johan Meiring
On 2011/02/02 12:32 AM, hellbird wrote: Thank you for your answer. I have contacted Microsoft to help me. Would be really interesting to know if it works contacting them!! -- Johan Meiring Cape PC Services CC Tel: (021) 883-8271 Fax: (021) 886-7782 - List info/subscribe/unsubscribe? See h

Re: FR 2.1.0 (ubuntu) proxying to NPS/IAS.

2011-02-01 Thread Johan Meiring
On 2011/02/02 12:32 AM, hellbird wrote: Thank you for your answer. I have contacted Microsoft to help me. Would be really interesting to know if it works contacting them!! -- Johan Meiring Cape PC Services CC Tel: (021) 883-8271 Fax: (021) 886-7782 - List info/subscribe/unsubscribe? See h

freeradius dhcp file configuration details needed for multiple vlan

2011-02-01 Thread Anagh Pramanik
Sorry in users i sent the wrong vlan id it is corrected --- On Tue, 2/1/11, Anagh Pramanik wrote: From: Anagh Pramanik Subject: freeradius dhcp file configuration details needed for multiple vlan To: freeradius-users@lists.freeradius.org Date: Tuesday, February 1, 2011, 11:30 PM

Re: Question on Radius logs

2011-02-01 Thread Alan DeKok
Brett Littrell wrote: > For freeradius I was not sure if there was similar > functionality. I am guessing there is not, I was kind of thinking it > may be a stretch to add something like that in a config file. See "radmin", and "raddebug". They can print full debugging logs for a particular u