RE: radius + rlm_ldap: alter auth-type if server not reachable

2011-08-21 Thread Thomas Dupas
Hi, I found a reference in the mailing list now (must have used the wrong search parameters before) with a hint: http://lists.cistron.nl/pipermail/freeradius-users/2011-April/msg00450.html But it still returns a REJECT -> " Using Post-Auth-Type Reject" In the authorize section of sites-enabled/

radius + rlm_ldap: alter auth-type if server not reachable

2011-08-21 Thread Thomas Dupas
Hi, I'm currently using FreeRADIUS v2.1.7 with OpenLDAP v2.3.43 as back-end. After already reading numerous times that ldap failover doesn't work/isn't implemented in the rlm_ldap I had to find another way to provide HA. Currently I'm pointing towards 2 radius servers, each configured with a dif

Re: freeradius & cisco COA

2011-08-21 Thread Alan DeKok
James J J Hooper wrote:on port 1700 instead of 3779. > > Cisco wireless or wired? We're using Cisco WiSMs/WiSM2s [wireless]. You > have to enable RFC3576 capability per radius server in the config. They > use destination UDP/3799. The only gotcha we've had so far, is that the > CoA packet has to c

Re: freeradius & cisco COA

2011-08-21 Thread James J J Hooper
On 21/08/2011 13:10, Arran Cudbard-Bell wrote: Wow ok a lot of CoA and DM questions lately. anyone have like experience to share ,,, Well it should be the same as any other CoA implementation, except IIRC its on port 1700 instead of 3779. Cisco wireless or wired? We're using Cisco WiSMs/WiS

Re: A little issue with disconnecting users

2011-08-21 Thread Arran Cudbard-Bell
> Thanks Arran. Honestly, I don't have any idea about CoA and DM but I know > that I can use SNMP on the server which runs Debian 6.0. This might be out of > the RADIUS scope but I need a little bit more information on this to work it > out. How should I send the PoD to SNMP? Will SNMP handle s

Re: freeradius & cisco COA

2011-08-21 Thread Arran Cudbard-Bell
Wow ok a lot of CoA and DM questions lately. > anyone have like experience to share ,,, Well it should be the same as any other CoA implementation, except IIRC its on port 1700 instead of 3779. I wrote a bunch of stuff for HP switches here: http://wiki.freeradius.org/HP#RFC+3576+Change+of+Autho

freeradius & cisco COA

2011-08-21 Thread Student University
Hi , anyone have like experience to share ,,, Thanks in advance ,,, Lily ,,, - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html