Re: Basic freeradius set up problem [SOLVED]

2012-07-13 Thread Alan DeKok
Mik J wrote: > I finally solved my problem. My dialup.conf was empty with the exception of > the statement I added. And dialup.conf is supposed to have some sql queries > inside. > For the test to work, the password should be 'Password' and not > 'Cleartext-Password' NO. ABSOLUTELY NOT. P

Re: Help needed configuring MAB on FreeRADIUS and Cisco switch

2012-07-13 Thread alan buxey
Hi, you have defined the usual bits eg aaa new-model !

Re: PEAP Password

2012-07-13 Thread Carl Pierre
My lack of understanding I think, is due in part because of a wpa_supplicant-based client I am using with PEAP/EAP-GTC. The client asks for a username and password, sets up the tunnel and then challenges for a Password again for the GTC stuff. FreeRADIUS rightfully ignores the first password, but

Re: Help needed configuring MAB on FreeRADIUS and Cisco switch

2012-07-13 Thread Kaya Saman
On Fri, Jul 13, 2012 at 6:43 PM, Alan Buxey wrote: > If you get no output to screen then it doesn't matter if the RADIUS server > config is wrong as you've got problem elsewhere. Ha e you checked your > firewall on the server, I don't give answers to be randomly skipped over. To > verify you can s

Re: PEAP Password

2012-07-13 Thread Alan Buxey
No (i'm not even going to ask 'why would you want to do that?') alan - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Help needed configuring MAB on FreeRADIUS and Cisco switch

2012-07-13 Thread Alan Buxey
If you get no output to screen then it doesn't matter if the RADIUS server config is wrong as you've got problem elsewhere. Ha e you checked your firewall on the server, I don't give answers to be randomly skipped over. To verify you can send radius requests from another computer..eg using radte

Re: PEAP Password

2012-07-13 Thread Scott Armitage
On 13 Jul 2012, at 18:37, Scott Armitage wrote: > > On 13 Jul 2012, at 18:26, Carl Pierre wrote: > >> Hello: >> >> I would like to have FreeRADIUS check the user's submitted credentials >> before it even allows the Tunnel to even be set up. >> >> Is this a possibility? >> > > > No. The po

Re: PEAP Password

2012-07-13 Thread Scott Armitage
On 13 Jul 2012, at 18:26, Carl Pierre wrote: > Hello: > > I would like to have FreeRADIUS check the user's submitted credentials > before it even allows the Tunnel to even be set up. > > Is this a possibility? > No. The point of the tunnel is to secure the credentials. Thanks Scott Armita

Re: Help needed configuring MAB on FreeRADIUS and Cisco switch

2012-07-13 Thread Phil Mayers
On 13/07/12 18:26, Kaya Saman wrote: On Fri, Jul 13, 2012 at 5:43 PM, Alan Buxey wrote: Hi, The very last line of startup output will say Ready to process requests If you get NOTHING else then the server is not getting any packets through to it...which is either something simple such as th

PEAP Password

2012-07-13 Thread Carl Pierre
Hello: I would like to have FreeRADIUS check the user's submitted credentials before it even allows the Tunnel to even be set up. Is this a possibility? Regards, Carl - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Help needed configuring MAB on FreeRADIUS and Cisco switch

2012-07-13 Thread Kaya Saman
On Fri, Jul 13, 2012 at 5:43 PM, Alan Buxey wrote: > Hi, > > > The very last line of startup output will say > > Ready to process requests > > > If you get NOTHING else then the server is not getting any packets through > to it...which is either something simple such as the built in firewall of >

Re: Help needed configuring MAB on FreeRADIUS and Cisco switch

2012-07-13 Thread Alan Buxey
Hi, The very last line of startup output will say Ready to process requests If you get NOTHING else then the server is not getting any packets through to it...which is either something simple such as the built in firewall of cents (edit the firewall using your favourite method to allow UDP 1

Re: Help needed configuring MAB on FreeRADIUS and Cisco switch

2012-07-13 Thread Kaya Saman
On Fri, Jul 13, 2012 at 5:35 PM, Alan Buxey wrote: > radiusd -X > > > ...will print all output to the terminal it wad run in. That will show you > the workings > > alan > Yep, I did suggest this previously that I used this. It doesn't show anything at all apart from claiming that RADIUS

Re: Help needed configuring MAB on FreeRADIUS and Cisco switch

2012-07-13 Thread Alan Buxey
radiusd -X ...will print all output to the terminal it wad run in. That will show you the workings alan - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Help needed configuring MAB on FreeRADIUS and Cisco switch

2012-07-13 Thread Kaya Saman
Hi, I've created a server running CentOS 6.2 and FreeRADIUS 2.1.10-5. I also have installed the latest DaloRADIUS on the system to provide a web UI since ultimately that is where people will be provisioning systems from of which I believe it is installed correctly. I also have a Cisco 3560G swit

RE: Calling station ID

2012-07-13 Thread madal 30
Thanks Alan, It must be, The missing information on my log are : Acct-Status-Type = Alive Acct-Session-Time = 30600 Acct-Output-Octets = 169755195 Acct-Input-Octets = 52166343 Acct-Output-Packets = 214098 Acct-Input-Packets = 188732 Calling-Station-Id =

Re: Basic freeradius set up problem [SOLVED]

2012-07-13 Thread Mik J
>> Hello Alan, >> >> Thank you for your answer. >> I may have not understood what you wrote. >> I replaced in /etc/raddb/sql/mysql/dialup.conf >> >> sql_user_name = '%{Stripped-User-Name}' >> by >> sql_user_name = '%{User-Name}' > > Hello lsclrstd, > I have created a second user testus

Re: EAP-SIM configuration on v2.1.12

2012-07-13 Thread Mik J
Hello, I'm not an expert but it looked to me that the file the system cannot find is rlm_sim_files.so >/usr/local/etc/raddb/radiusd.conf[698]: Failed to link to module >'rlm_sim_files': ld.so.1: >radiusd: fatal: rlm_sim_files.so: open failed: No such file or directory Try to check with the co

status server: IPv6 support?

2012-07-13 Thread Tobias Hachmer
Hello list, is there a way to gather statistics for an IPv6 Socket with the status server? For example my radius server has the following listen sections: udp0 0 127.0.0.1:18120 0.0.0.0:* 2355/radiusd udp0 0 0.0.0.0:1645