Delegated-IPv6-Prefix

2011-08-28 Thread Dmitry Kozlov
Hello. I'm trying to include Delegated-IPv6-Prefix attribute to reply, here is contents of radreply table: id | username | attribute | op | value

Time and traffic limits

2011-08-28 Thread Mobin Yazarlou
Hello, I have the following user in the database: mysql SELECT * FROM radcheck; ++--+++-+ | id | username | attribute | op | value | ++--+++-+ | 1 | sqltest | Cleartext-Password | := | testpwd |

Re: Delegated-IPv6-Prefix

2011-08-28 Thread Alan DeKok
Dmitry Kozlov wrote: I'm trying to include Delegated-IPv6-Prefix attribute to reply, here is contents of radreply table: ... But it rejects Access-Request and writes to log: rlm_sql: Failed to create the pair: Invalid octet string fc00:1:2:2::/64 for attribute name Delegated-IPv6-Prefix

Re: Time and traffic limits

2011-08-28 Thread Dmitry Kozlov
Hi! rlm_sql: Failed to create the pair: Invalid octet string 600 for attribute name Max-All-Session freeradius doesn't now such attribute, if you want to limit maximum session time use Session-Timeout attribute for it. - List info/subscribe/unsubscribe? See

Re: Delegated-IPv6-Prefix

2011-08-28 Thread Dmitry Kozlov
Use a version of FreeRADIUS which has a dictionary entry for Delegated-IPv6-Prefix. i.e. upgrade. Thanks. Actual problem was that dictionary.rfc4818 was not included in dictionary file. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Freeradius proxy - Fortigate - Cisco ACS

2011-08-28 Thread Alan DeKok
Ole Bobakke wrote: Both of them use the Cisco ACS to authenticate users, so at this point the same username can login to both SSL portals, this is no good :-( Yup. Then I tried to add a fortigate VSA to the Cisco ACS server, so when user p...@ompa.corp.com mailto:p...@ompa.corp.com login

Re: radmin del client error

2011-08-28 Thread tohaikmeng
Hello Arran and Alan, My aim is to achieve the addition of client entries without any server reloading/restart, and AAA will permits for those newly added clients. My first thought was to use radmin -e add client file file and it works for me but the deletion del client ipaddr ipaddr failed on

Mac OXS Server version of FreeRadius Error

2011-08-28 Thread DavidS
Hi All I hope you can help. I am having some problems running with Radius Authentication. The radius server is running on a Mac OSX server (ie a version of Freeradius I believe). I have a cisco Acess Point (1250 series) and want to use the Radius server to Authenticate EAP for WiFI users. I have

Re: radmin del client error

2011-08-28 Thread Alan DeKok
tohaikmeng wrote: My aim is to achieve the addition of client entries without any server reloading/restart, and AAA will permits for those newly added clients. My first thought was to use radmin -e add client file file and it works for me but the deletion del client ipaddr ipaddr failed on me.

Re: Mac OXS Server version of FreeRadius Error

2011-08-28 Thread Alan DeKok
DavidS wrote: I have added some users dsaw Cleartext-Password := X test Cleartext-Password := test That should work. However while users can Authenticate with LEAP no other EAP version Authenticates So... fix eap.conf. This is documented. The Mac OSX Server terminal output

Re: radmin del client error

2011-08-28 Thread tohaikmeng
Go install the new version. It works. - Yup, I will try this again. Thanks. We know. The dynamic clients code does this, and is *documented* as doing this. Your multiple email messages have said you want to do this. Explaining it again here means you're assuming we're either blind or