RE: freeradius 1.1.3 to 2.1.10 migration vlan assignment woes

2011-11-21 Thread Brian Gold
> if you take the standard initial 2.1.10 config and then edit the bits you > need, then you'll see that for this setup, the most important file > for you to deal with is the inner-tunnel virtual serverthats what handles > the EAP. so long as you've edited eap.conf correctly so that > the cer

using windows 8's builtin eap-ttls w/ freeradius

2012-03-05 Thread Brian Gold
down 7. Click "Settings" and uncheck "Enable identity privacy" 8. Click OK twice 9. Click the wifi icon in your tray and choose your secure wireless network 10. You will now be prompted for your username & password Brian Gold System Administrator Bard College at Simon's Rock - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: using windows 8's builtin eap-ttls w/ freeradius

2012-03-05 Thread Brian Gold
org] On Behalf Of Phil Mayers > Sent: Monday, March 05, 2012 10:45 AM > To: freeradius-users@lists.freeradius.org > Subject: Re: using windows 8's builtin eap-ttls w/ freeradius > > On 05/03/12 15:05, Brian Gold wrote: > > We've been using SecureW2's cli

adding mschap to an existing ttls/pap setup

2012-04-12 Thread Brian Gold
We currently have an existing freeradius setup using eap-ttls/pap with an openldap backend. Up until now, our userPassword has always been SHA encoded. I've been working to add sambaNTPassword hashes so that we can use either eap-ttls/mschap or peap/mschap. I've got the nt hashes set, but I'm hav

RE: adding mschap to an existing ttls/pap setup

2012-04-12 Thread Brian Gold
> Hi, > > I think I had a similar problem and fixed it by setting set_auth_type = no in > modules/ldap. But I'm not sure if this is the only thing I > changed... > > all the best, > Jan I have the same behavior after making this change unfortunately. - List info/subscribe/unsubscribe? See http

RE: adding mschap to an existing ttls/pap setup

2012-04-12 Thread Brian Gold
users mailing list > Subject: Re: adding mschap to an existing ttls/pap setup > > Brian Gold wrote: > > We currently have an existing freeradius setup using eap-ttls/pap with > > an openldap backend. Up until now, our userPassword has always been SHA > > encoded. I've been

RE: ldap redundant-load-balance issue

2012-04-19 Thread Brian Gold
> Thanks for that suggestion. Sounds quite simple to achieve fail-over for > ldap-queries. > But I have one problem when I enter my ldap servers like you mentioned > because the common name in the ldap server certificate > won't match the new defined dns name. > > I will test this scenario with

brief window of opportunity to log in via windows

2012-08-28 Thread Brian Gold
he radius end of things that I can do to adjust this timeout? Brian Gold System Administrator Bard College at Simon's Rock - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

adding operator-name to play nice with eduroam

2012-09-24 Thread Brian Gold
like to be capturing operator-name on incoming proxy requests. I can't seem to find any documentation as to where I would configure this though. Any suggestions? Brian Gold System Administrator Bard College at Simon's Rock - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: adding operator-name to play nice with eduroam

2012-09-24 Thread Brian Gold
ld=simons- > rock@lists.freeradius.org] On Behalf Of Matthew Newton > Sent: Monday, September 24, 2012 12:23 PM > To: FreeRadius users mailing list > Subject: Re: adding operator-name to play nice with eduroam > > Hi, > > On Mon, Sep 24, 2012 at 11:39:05AM -0400, Brian Gold wr