Re: pam_radius_auth query

2011-02-25 Thread Alan DeKok
vijay s sheelavantar wrote: 1. does pam_radius_auth.so support authorization of user accounts? What does that mean? Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: TTLS-MSCHAPv2 works but PEAP-MSCHAPv2 doesn't (FreeRADIUS 2.1.3)

2011-02-25 Thread Wenche Backman
Many many thanks! That was it, now it works! --Wenche -Original Message- From: freeradius-users-bounces+wenche.backman=csc...@lists.freeradius.org [mailto:freeradius-users-bounces+wenche.backman=csc...@lists.freeradius.org] On Behalf Of Alan DeKok Sent: 24. helmikuuta 2011 11:32 To:

Re: store and proxy accounting packets

2011-02-25 Thread Alan DeKok
Waqas Toor wrote: Did you bother *reading* the robust-proxy-accounting file? I have configured the robust-proxy-accounting That doesn't answer the question. The comments in that file describe how it works. This includes answering your original question. I am missing something but could

Re: store and proxy accounting packets

2011-02-25 Thread Waqas Toor
Thank you Alan for you help, But please can you point out where I am wrong or a line may be which is a bad config, I am having trouble understanding why the packets are not being forwarded while being in site-enabled directory. I read the file I am still struggling to understand FreeRadius proxy

Re: store and proxy accounting packets

2011-02-25 Thread Alan DeKok
Waqas Toor wrote: Thank you Alan for you help, But please can you point out where I am wrong or a line may be which is a bad config, I am having trouble understanding why the packets are not being forwarded while being in site-enabled directory. As I said, the debug log you posted shows

Re: store and proxy accounting packets

2011-02-25 Thread Waqas Toor
/radacct/2.2.2.2/detail-20110225 [detail] /usr/local/var/log/radius/radacct/%{Client-IP-Address}/detail-%Y%m%d expands to /usr/local/var/log/radius/radacct/2.2.2.2/detail-20110225 [detail]expand: %t - Fri Feb 25 18:35:11 2011 ++[detail] returns ok ++[unix] returns noop [radutmp] expand

Re: store and proxy accounting packets

2011-02-25 Thread Alan DeKok
Waqas Toor wrote: Ahaan, Ok below is an accounting packet and and its response also please tell me if the the lines that i get while in debug mode are normal ? Yes, but... [suffix] Looking up realm test_cpe.com for User-Name = 002682D1A232@test_cpe.com [suffix] No such realm

Auth-Type Perl instead of Auth-Type EAP?

2011-02-25 Thread Josh Richard
Hello list, After a bit of digging, I would like to ask a question to ensure this idea is even possible. :) I am running FR 2 on Debian. What I would like to do is have a WPA2 PEAP/MS_ChapV2 Cisco wireless SSID hook into the FR server above. The FR server currently is using rlm_perl to handle

Re: Auth-Type Perl instead of Auth-Type EAP?

2011-02-25 Thread Alan Buxey
How are you dealing with the challenge response. If you use eap ttls with pap them this is not an issue alan - Reply message - From: Josh Richard jrich...@d.umn.edu Date: Fri, Feb 25, 2011 17:59 Subject: Auth-Type Perl instead of Auth-Type EAP? To: freeradius-users@lists.freeradius.org

global hash variable Perl

2011-02-25 Thread vhn
hi all, I was able to setup my freeradius to use perl and mysql. Things are working ok. I wanted to use a global hash variable to store information. This way all other requests can also access this hash variable. Is this doable? I know you can use mysql for this purpose, but i wanted to reduce

global hash variable perl

2011-02-25 Thread Vinh Nguyen
hi all, I was able to setup my freeradius to use perl and mysql. Things are working ok. I wanted to use a global hash variable to store information. This way all other requests can also access this hash variable. Is this doable? I know you can use mysql for this purpose, but i wanted to reduce

..::Cisco Nac::..

2011-02-25 Thread Alfonso Alejandro Reyes Jiménez
Hi everyone, I need to configure a freeradius server to grant access to our Network based in the Cisco Nac solution. I just want to know if anyone has configured Cisco Nac on their network and any advice when doing it. Right know we are just gathering all the information related (Vendor

Re: Auth-Type Perl instead of Auth-Type EAP?

2011-02-25 Thread Alan DeKok
Josh Richard wrote: What I would like to do is have a WPA2 PEAP/MS_ChapV2 Cisco wireless SSID hook into the FR server above. OK... The FR server currently is using rlm_perl to handle authentication and Please, no. Authentication includes things like EAP. Doing EAP in Perl is not a good

Re: ..::Cisco Nac::..

2011-02-25 Thread Alan DeKok
Alfonso Alejandro Reyes Jiménez wrote: Hi everyone, I need to configure a freeradius server to grant access to our Network based in the Cisco Nac solution. I just want to know if anyone has configured Cisco Nac on their network and any advice when doing it. I'm sure it's been done, but