MySQL - One RADIUS database per realm

2011-07-25 Thread Dave Thompson
probably)? Or, if this is possible, any instructions would be greatly appreciated. Thank you. -- - Dave - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: MySQL - One RADIUS database per realm

2011-07-25 Thread Dave Thompson
I think that multiple SQL instances are exactly what I'm looking for! Thank you for the information! On Mon, Jul 25, 2011 at 2:54 PM, Danny Stemmet da...@msbmicro.com wrote: Hi Dave, I have not tested this, but I will try it as soon as I have a chance.. Create a sql.conf file per client

debug lofile

2009-12-04 Thread Yagnesh Dave
Hello, I wanted know that is there any way by which we can direct the debug logs of the radius server to a file created with date extension on daily basis...similar to the detail-%Y%m%d. Regards, Dave. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

query about users file and Radius restarting

2009-12-04 Thread Yagnesh Dave
Hi All, I want to know that do we need to restart the radius server once we add a new user in the users file or it is automatically taken in affect. Because at the moment I re-start the freeRadius every time I add a new user. Regards, Dave.- List info/subscribe/unsubscribe? See http

error := Invalid version in module 'rlm_exec'

2009-12-03 Thread Yagnesh Dave
in advance. Regards, Dave,- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

not able to get authenticated by free Radius

2009-12-03 Thread Yagnesh Dave
seconds Going to the next request Waking up in 0.9 seconds. Sending delayed reject for request 37 Sending Access-Reject of id 139 to 192.168.243.250 port 1645 ### Please let me know where I have done a mis-config. Thanks and Regards, Dave

Failed to link to module 'rlm_exec'

2009-12-02 Thread Yagnesh Dave
and Regards, Yagnesh Dave. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Could not link driver rlm_sql_mysql:

2009-12-01 Thread Yagnesh Dave
-enabled/default[161]: Failed to find module sql. /usr/local/etc/raddb/sites-enabled/default[62]: Errors parsing authorize section. Errors initializing modules r...@cn# Thanks and Regards, Yagnesh Dave.- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Error= Expecting section start brace '{' after FreeRADIUS Version

2009-11-30 Thread Yagnesh Dave
# Please help me to overcome this. Thanks and Regards, Yagnesh Dave.- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Re: Error= Expecting section start brace '{' after FreeRADIUS Version

2009-11-30 Thread Yagnesh Dave
initializing modules bash-3.00# Thanks and Regards, Yagnesh Dave. On Mon, 30 Nov 2009 15:20:18 +0530 wrote Hi, Hi Everyone, I was trying to set-up mysql for logging the accounting logs for the users. I followed the instruction

help--- IPsec VPN on radius

2009-11-18 Thread Yagnesh Dave
the freeRadius, I get this error in the log file /usr/local/etc/raddb/users[24374]: Parse error (reply) for entry ezvpn: Unknown value outbound for attribute Service-Type Errors reading /usr/local/etc/raddb/users Please tell what is the correct config to get it working. Regards, Dave. - List info

Re: help--- IPsec VPN on radius

2009-11-18 Thread Yagnesh Dave
type. Regards, Dave On Wed, 18 Nov 2009 16:22:30 +0530 wrote Hi, I am trying to configure this on Free Radius; # setup for IPSec VPDN, ezvpn Password := cisco Service-Type = outbound, Cisco-Avpair = ipsec:tunnel-password=cisco123, Cisco-Avpair=ipsec:tunnel-type*esp

solution---Re: Re: help--- IPsec VPN on radius

2009-11-18 Thread Yagnesh Dave
outbound5 Please let me know if this is correct to do. Regards, Dave. On Wed, 18 Nov 2009 16:47:05 +0530 wrote Hi, Found the problem, it is with the service type attribute. I am getting this error on the freeradius /usr/local/etc/raddb/users[24719]: Parse error (reply

realm --help

2009-11-16 Thread Yagnesh Dave
to convert the users file of Merit Radius to the syntax that Free Radius has and then use it. Thanks and Regards, Dave. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Re: checking user connect time

2009-11-04 Thread Yagnesh Dave
Hi, Thanks for your quick answer. I am very new to radius server, so i was not able to understand what you pointed out below. It would be great if you can elaborate a bit on it. Regards, Yagnesh Dave. On Mon, 02 Nov 2009 17:04:11 +0530 wrote Can you let me know where can we check the time

Re: Re: Re: checking user connect time

2009-11-04 Thread Yagnesh Dave
Hi, I also found this command in the Radius E-book by O`reilly. radiusreport -i 0 -f detail But this command does not work, i get an error message saying not found. Please help me. Regards, Yagnesh Dave On Wed, 04 Nov 2009 17:50:55 +0530 wrote Hi, Thanks for your quick answer. I am very

checking user connect time

2009-11-01 Thread Yagnesh Dave
Hi, Can you let me know where can we check the time for which a particular user is connected, basically this is required so that we can advice the customer if his ISDN line is connected for too long. Regards, Yagnesh Dave.- List info/subscribe/unsubscribe? See http://www.freeradius.org/list

separate log file and access list config

2009-10-26 Thread Yagnesh Dave
Hi All, How can we use separate flies for logging authentication and accouting information. Also wanted to know does free radius configure the access list on the interface, similar to the ip address. One more quick question, how can we set timeout for different users, so if the connection is

getting disconnected.

2009-10-12 Thread Yagnesh Dave
__ Thanks and Regards, Yagnesh Dave.- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

need help for cisco vrf /ip address radius config

2009-09-28 Thread Yagnesh Dave
on this will be a appreciated. Thanks in Advance. Regards, Yagnesh Dave.- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Freeradius help to update /etc/hosts?

2009-08-23 Thread Dave
Ive been using freeradius for years to authenticate pppoe users for my WISP., Customers get dynamic IP addresses from an IP pool. Im going to be implementing a new monitoring system, and I need to use hostnames to check on customer status. Anyone have ideas how freeradius can update a DNS server

Freeradius updating /etc/hosts?

2009-08-23 Thread Dave
Ive been using freeradius for years to authenticate pppoe users for my WISP., Customers get dynamic IP addresses from an IP pool. Im going to be implementing a new monitoring system, and I need to use hostnames to check on customer status. Anyone have ideas how freeradius can update /etc/hosts

Re: Distinguish RADIUS requests from NAS device

2009-06-26 Thread Dave Rummel
Andrew are you looking to do different groups or are you looking to differentiate logging into say a router with standard privileges vs enabled privileges ? Andrew Hall wrote: Hi there. We have a network device using FreeRADIUS 1.x for authentication. This RADIUS server in turn queries an

Openldap and FreeRadius2

2009-06-25 Thread Dave Rummel
If anyone needs help in getting there openldap to work with freeradius2 please reply back. I finally was able to figure it out and then used unlang to authorize my groups and would like to share what I have learned. Christopher Sheldon wrote: Does anyone else who subscribes to the list

Re: Openldap and FreeRadius2

2009-06-25 Thread Dave Rummel
Would like to make a request for an account to the wiki so I can add to it. Dave Rummel wrote: If anyone needs help in getting there openldap to work with freeradius2 please reply back. I finally was able to figure it out and then used unlang to authorize my groups and would like to share what

Re: Disabling users

2009-06-25 Thread DAve
Alan DeKok wrote: DAve wrote: I have read through the docs, looked into Session-Timeout and SQL counters, but I do not see how to force a client to re authenticate. What am I missing? What config information do I need to provide? What information/manual/how to have I missed? http

Re: Disabling users

2009-06-25 Thread DAve
users as needed. Thank you! DAve DAve wrote: Good afternoon all, We recently retired our old ICRadius servers and installed FreeRadius. We run two radius servers with a third server acting as master for the radius data and as the accounting server. All is working well. Billing has

Disabling users

2009-06-24 Thread DAve
information/manual/how to have I missed? Thanks, DAve -- Posterity, you will know how much it cost the present generation to preserve your freedom. I hope you will make good use of it. If you do not, I shall repent in heaven that ever I took half the pains to preserve it. John Quincy Adams http

LDAP Auth

2009-06-04 Thread Dave Rummel
11 ? *Thu Jun 4 16:15:52 2009 : Debug: attr_filter: Matched entry DEFAULT at line 11 *Thanks for your help Dave - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Help with a redirect / splash page for sign up

2009-03-17 Thread Dave Sinclair
Maybe not perfect for this list, but I gotta think somone on here has done this before. We just got handed over 500 DSL subscribers. Old ISP is dead, no records, no accounting data. Just the ATM PVC's are on our network. I'm trying to figure out how to do a one time redirect so that they sign

Re: how to have freeradius/unlang do two or more SQL statements at onetime

2009-03-16 Thread Dave Sinclair
Hi Arran, Where might one find your patch ??? 2009/3/16 Arran Cudbard-Bell a.cudbard-b...@sussex.ac.uk: Hi All, The old rlm_xlat function only supported SELECT statements, and threw up errors on any others. The patch Alan mentioned makes rlm_sql look for INSERT, DELETE and UPDATE keywords

Re: how to have freeradius/unlang do two or more SQL statements at onetime

2009-03-16 Thread Dave Sinclair
Hi Tried this, but it tossed out errors at me :( 2009/3/16 t...@kalik.net: When Post-Auth-Type REJECT is executed I need to insert two or more rows into a SQL data base. here is what I have at present sites-enabled/default        Post-Auth-Type REJECT {                sql        }

Re: trying to use Post-Auth-Type REJECT to insert users

2009-03-15 Thread Dave Sinclair
Hi, Their isnt' a backup. So I'm having problems with: postauth_query = INSERT INTO ${authcheck_table} VALUES (NULL,'%{User-Name}','Password', '==', '%{User-Password:-Chap-Password}'); postauth_query = INSERT INTO ${usergroup_table} values ('%{User-Name}','Dynamic',''); I

how to have freeradius/unlang do two or more SQL statements at one time

2009-03-15 Thread Dave Sinclair
Hi, When Post-Auth-Type REJECT is executed I need to insert two or more rows into a SQL data base. here is what I have at present sites-enabled/default Post-Auth-Type REJECT { sql } sql.conf - sql/mysql/dialup.conf postauth_query = INSERT INTO

trying to use Post-Auth-Type REJECT to insert users

2009-03-14 Thread Dave Sinclair
Hi, The high level goal is to have a new radius server slurp all the users on a DSL ATM aggregation link into a SQL database. We are taking over a bunch of users from a defunct ISP and don't have the UserName / Password data. What I'm thinking is that there should be a way to have Post-Auth-Type

RE: wimax.c

2009-02-17 Thread dave anderson
I would like to write the Wimax Freeradius Wiki but need an account. Can you help me get a log in. -Original Message- From: Alan DeKok [mailto:al...@deployingradius.com] Sent: February 17, 2009 6:15 AM To: FreeRadius users mailing list Subject: Re: wimax.c dave anderson wrote

wiki

2009-02-16 Thread dave anderson
I would be willing to update the wiki with what I have learned about how to configure Freeradius to use the wimax module. However it seems you need an account to do any wiki edits and there is no place to allow you to create and account. Does anyone have a link to how to do so ? Dave

RE: wimax.c

2009-02-15 Thread dave anderson
DeKok [mailto:al...@deployingradius.com] Sent: February 15, 2009 12:09 AM To: FreeRadius users mailing list Subject: Re: wimax.c dave anderson wrote: Also the raddact table has empty field for calling station-id for wimax. I know wimax has this field in hex rather than ascii which

RE: wimax.c

2009-02-14 Thread dave anderson
Ok thanks, so for the first item I can just put some function in to calculate it as I want or static code them. -Original Message- From: Alan DeKok [mailto:al...@deployingradius.com] Sent: February 14, 2009 10:32 AM To: FreeRadius users mailing list Subject: Re: FW: wimax.c dave

RE: wimax.c

2009-02-14 Thread dave anderson
at for repairing this for accting and I will make the change. DA -Original Message- From: Alan DeKok [mailto:al...@deployingradius.com] Sent: February 14, 2009 10:32 AM To: FreeRadius users mailing list Subject: Re: FW: wimax.c dave anderson wrote: However to populate these other variable

FW: wimax.c

2009-02-13 Thread dave anderson
-Original Message- From: dave anderson Sent: February 13, 2009 5:14 PM To: freeradius-users Subject: FW: wimax.c I have the Wimax FreeRadius (2.1.3) working but I am a bit unclear on a few key reply parameters: In the default server I have added update reply{ WiMAX-MSK

Re: Handing out duplicate IP addresses

2009-01-18 Thread Dave
I made this modification to the ippool.conf and still testing it, I have not seen the issue yet again but I havent loaded the server down. I made some other modifications to the server and database to try to make it move as fast possible but removing non-used modules, database indexing, other

Re: Handing out duplicate IP addresses

2009-01-17 Thread Dave
AFAIK it is the transaction. Problem is that update will work for all three users. Adding expiry_time IS NULL to update will cause it to work only for the first user. Ivan Kalik Kalik Informatika ISP - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Handing out duplicate IP addresses

2009-01-15 Thread Dave
I dont know if this means anything, but Im not using DHCP, Im using PPPoE. I didnt know FR could even be a dhcp server. Im just throwing out ideas, but is there a way to not thread the sqlippool module ? Let one request at a time for an IP, sure it would be slower, but for my use would be fine.

Handing out duplicate IP addresses

2009-01-14 Thread Dave
I thought I had this problem licked, but I still suffer from it. Anyone know why FR 2.1.3 with sqlippool (mysql) might decide to hand out the same IP more than once while its processing more than one request at a time? Wed Jan 14 22:05:59 2009 : Info: Allocated IP: 75.119.xxx,211 from

Just need a little help w/sqlippool

2009-01-13 Thread Dave
Ive been fighting with upgrading my working 1.7 freeradius to 2.1.3 . Ive been using the sqlippool module all this time, and while I think I'm close I just cant figure this out. The database is the original database I used with 1.7 but the configs are all new from the ground up for 2.1.3.I

Re: Just need a little help w/sqlippool

2009-01-13 Thread Dave
It seems adding the Fall-Through=Yes fixed it.. I never had that in there before, maybe I had it in a users text file somewhere in the old version and it read it from there? You are not using sql.conf from 1.1.7? Try adding Fall-Through = yes to radreply group entries. And give different

MYSQL check_error: 1064 received

2009-01-13 Thread Dave
I get this error on some of my queries but not from all users in the database, just some? I cant find much useful google information on it Here is a query that fails with that error: rad_recv: Access-Request packet from host 127.0.0.1 port 42830, id=69, length=57 User-Name = hheeg

Optimum MYSQL settings

2009-01-13 Thread Dave
Hi all. I promise this is my last question before I flip the switch on this new installation. I was using 1.1.7 and I had a number of problems with sqlippool handing out duplicate IPs, stop records not getting recorded, etc. Only under many requests (20-30) at one time. It was ok with small

Compile Error

2009-01-13 Thread Dave
I cant win today. I cant compile the newest FR. GCC 3.4.6 glibc 2.6.1 gmake[6]: Leaving directory `/root/freeradius-server-2.1.3/src/modules/rlm_counter' Making all in rlm_dbm... gmake[6]: Entering directory `/root/freeradius-server-2.1.3/src/modules/rlm_dbm'

Re: Compile Error

2009-01-13 Thread Dave
Oops glibc 2.3.6 Dave wrote: I cant win today. I cant compile the newest FR. GCC 3.4.6 glibc 2.6.1 gmake[6]: Leaving directory `/root/freeradius-server-2.1.3/src/modules/rlm_counter' Making all in rlm_dbm... gmake[6]: Entering directory `/root/freeradius-server-2.1.3/src/modules

Re: Compile Error

2009-01-13 Thread Dave
Replying to myself, upgrading glibc allowed it to compile.. left me with a whole bunch of other non FR related problems thou (server been around for a while :) Dave wrote: Oops glibc 2.3.6 Dave wrote: I cant win today. I cant compile the newest FR. GCC 3.4.6 glibc 2.6.1 gmake

Is sqlippool fast enough in 2.1.3

2008-12-10 Thread Dave
I have had a number of problems with 1.1.7 and sqlippool that its simply not able to process more than 10-20 connections at any one time. I will upgrade to 2.1.3 if its capable of handing 50-80 connections at one time? Does any one know? My server is a p4 dual core 3.0ghz and its also handing

Is 2.1.3 sqlippool fast enough?

2008-12-10 Thread Dave
(repost, was posted as part of wrong thread) I have had a number of problems with 1.1.7 and sqlippool that its simply not able to process more than 10-20 connections at any one time. I will upgrade to 2.1.3 if its capable of handing 50-80 connections at one time? Does any one know? My server is

Re: control panel

2008-11-12 Thread DAve
the dial_up admin, but it is bad, I tested the phpradmin. Outside the two anyone could spend some more? Thanks We are in process of converting to FreeRadius from ICRadius and we installed ARA which seems to work fine and does what we need. DAve -- The whole internet thing is sucking the life out

Simultaneous-Use check not working

2008-10-27 Thread DAve
= 0 Note I enabled radutmp after sql was failing to stop the second login. I am certain I have missed something simple but I am unable to find it. Any help, cluesmacks, etc are appreciated. DAve -- I am watching the debate and I am very disappointed. The rules are simple, answer the question. I

Re: Simultaneous-Use check not working

2008-10-27 Thread DAve
time(secs): 0 Since I am testing with a test client from my laptop, and using radtest on the radius server (localhost), and using only accounting data to check for simultaneous use, does checkrad even come into play? Thanks, DAve It should fail. But checkrad script is old and there might

Re: Simultaneous-Use check not working

2008-10-27 Thread DAve
). And user/group entry (where is Simultaneous-Use set). Here is the last debug I ran plus the query results for that user's config. http://pixelhammer.com/Dan/debug.txt DAve Ivan Kalik Kalik Informatika ISP - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Simultaneous-Use check not working

2008-10-27 Thread DAve
to debug later IMO... Hmmm, the previous ICR install has only Simultaneous-Use = 2 for the group allowed SU. Do I need to set Simultaneous-Use := 1 for the groups not allowed SU, and Simultaneous-Use := 2 for the group allowed SU? DAve -- Marcelus Trojahn I-Conecta Redes de

Help with IP Pools and multiple ranges with same pool name

2008-02-26 Thread Dave
I cant seem to find the relative documentation or examples, but I want to have an IP pool pool2 with multiple range-start and range-stop IP ranges in it, but Im not sure how to put together the config for it. Something like this? *ippool* pool2 { range-start = 208.64.35.2

freeradius v.2.0.1 and Cisco 1200AP IOS V.12.3

2008-02-05 Thread Dave Cummings
at this point. I want to use freeradius, a Cisco 1200 Series Access Point, and one windows xp pro client to connect to the AP and authenticate against freeradius. I appreciate any input on this matter. Thanks again open source community. Dave

Re: SQLippool problems (duplicate IPs handed out).

2008-01-14 Thread Dave
: Could not find Pool-Name attribute. rlm_sqlippool: Could not find Pool-Name attrubute I have it set in radgroupreply or radreply as Pool-Name := pool2 for example I havent really changed much except make the config mods to make 2.0 work with mysql Dave This is quite possible, as I dont think

SQLippool problems (duplicate IPs handed out).

2008-01-13 Thread Dave
I use the sql IP pool setup with mysql, and been using it fine for a while, but I have a problem where if I have an influx of connections at one time (30++) That freeradius will hand out an IP to my NAS, but it doesnt get written to the database fast enuff and another thread of freeradius hands

PEAP help!

2008-01-06 Thread Dave Gibelli
. rlm_mschap: FAILED: MS-CHAP2-Response is incorrect modcall[authenticate]: module mschap returns reject for request 6 modcall: leaving group MS-CHAP (returns reject) for request 6 Dave - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Freeradius and AD

2007-12-15 Thread Dave Gibelli
On 11/12/2007, joe vieira [EMAIL PROTECTED] wrote: i do the exact same thing like this. DEFAULT Prefix == domainnameinputted, Strip-User-Name = No domain = domainnameoutputted Where does this go? is it the users file, the radiusd.conf or the eap.conf file? - List

Freeradius and AD

2007-12-11 Thread Dave Gibelli
Hi I am testing Freeradius within an 802.1x environment. I want to send authentication request to 4 different AD DC's depending on the Domain sent from the client to the Authenticator. Can Freeradius forward request in this way? Dave - List info/subscribe/unsubscribe? See http

Re: freeradius compile problem

2007-12-08 Thread Dave Gibelli
Alan I have OpenSSL installed, I thought that is where the crypto libraries come from? Where do I get the crypto libraries from? It would help if Freeradius supplied a reference to where to obtain these crypto libraries. Dave On 08/12/2007, Alan DeKok [EMAIL PROTECTED] wrote: Dave Gibelli

freeradius compile problem

2007-12-07 Thread Dave Gibelli
Hi I am having problems compiling with eap module. Here is the section from config.log showing what I think is the problem. I have the latest OpenSSL and Freeradius 1.1.7 Any ideas? configure:20584: gcc -o conftest -g -O2 -D_REENTRANT -D_POSIX_PTHREAD_SEMANTICS conftest.c -lssl

Re: SQL IP Pool maximum timeout.

2007-07-11 Thread Dave
To update, turning on interim updates on my NAS, fixed my problem... Thanks for all your help. Peter Nixon wrote: On Tue 10 Jul 2007, Dave wrote: My NAS is currently NOT sending interm updates, but there is an option to use that, just wasn't sure what it did, or how it would apply to me

Operator rlm_sql question

2007-07-11 Thread Dave
-Address check in the radgroupcheck table. But I always seem to get the static address, even though the other reply items are correct for the respective groups. This is with freeradius 1.1.6, with the standard mysql table schema. Thanks, Dave - List info/subscribe/unsubscribe? See http

Re: SQL IP Pool maximum timeout.

2007-07-09 Thread Dave
Hugh Messenger wrote: On Behalf Of Dave said: Yes accounting is working well from the NAS Are you sure the NAS is sending 'interim update' accounting packets, not just start/stop? My NAS is currently NOT sending interm updates, but there is an option to use that, just wasn't

Re: SQL IP Pool maximum timeout.

2007-07-08 Thread Dave
Alan DeKok wrote: Dave wrote: Im still having trouble with this problem, I switched the pool key to NAS port, the expiry time is 24 hours, and it seems after 24 hours, it wipes all the existing entries from the database, That would seem to fit the 24-hour expiry time you set

Re: SQL IP Pool maximum timeout.

2007-07-08 Thread Dave
Its posted a few posts back in this thread, that version is still the one Im using. Dave - can you copy and paste your sqlippool.conf, so we can see what your actual queries look like? -- hugh List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: SQL IP Pool maximum timeout.

2007-07-08 Thread Dave
Yes accounting is working well from the NAS Are you receiving accounting packets from your NAS? - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: SQL IP Pool maximum timeout.

2007-07-07 Thread Dave
for the new version? Peter Nixon wrote: On Tue 03 Jul 2007, Dave wrote: Hugh Messenger wrote: Dave [EMAIL PROTECTED] said: I use the sqlippool setup for handling IP pools, and it works well, except I want to rid of the expiry time, (maximum timeout=0). right now its setting for 24

SQL IP Pool maximum timeout.

2007-07-02 Thread Dave
I use the sqlippool setup for handling IP pools, and it works well, except I want to rid of the expiry time, (maximum timeout=0). right now its setting for 24 hours, and then it cleans itself out, and then freeradius starts handing out already assigned/used IP addresses. Im not sure where to

Re: SQL IP Pool maximum timeout.

2007-07-02 Thread Dave
Hugh Messenger wrote: Dave [EMAIL PROTECTED] said: I use the sqlippool setup for handling IP pools, and it works well, except I want to rid of the expiry time, (maximum timeout=0). right now its setting for 24 hours, and then it cleans itself out, and then freeradius starts handing out

Center for Internet Security - Call for Participation for FreeRADIUS Benchmark

2007-05-10 Thread Dave Shackleford
***Thanks to moderators for allowing this post - it's for a good cause!*** Hi folks, I'd like to introduce myself. My name is Dave Shackleford, and I represent the Center for Internet Security. Some of you may know of us, and some of you may not. CIS is a non-profit that coordinates teams

Re: FreeRADIUS FreeBSD port

2007-01-20 Thread Dave
/porters-handbook/ plist-config.html -- Dave - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Accounting data not being properly written to mySQL database.

2006-12-14 Thread Dave Martin
= 1166021257 (fields beginning with '*' have been sanitized). Any ideas? Thanks! Dave Martin -- Dave Martin Netcetera, Inc.[EMAIL PROTECTED

Adding proxying to our EAP setup

2006-10-06 Thread Dave Mussulman
section, it proxies the entire EAP packet. Can I tell it only to do that at a certain stage in the process? How would you recommend I configure this? Dave - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Error with libmysqlclient_r.so.14

2006-08-02 Thread Dave
Im No expert but I had the same problem with SSL not linking even though it was in the system path. To fix it I did: export LD_PRELOAD=/usr/lib/libssl.so Maybe doing the same with your mysql library might help you? Bruno Machado wrote: Hi all Im trying to use Radius, but Im receiving this

Re: Undelivered Mail Returned to Sender

2006-07-31 Thread Dave
: 5.0.0 Diagnostic-Code: X-Postfix; host 127.0.0.1[127.0.0.1] said: 550 5.7.1 Message content rejected, UBE, id=02941-03 (in reply to end of DATA command) Subject: New From: Dave [EMAIL PROTECTED] Date: Mon, 31

Operation of a radius server

2006-07-18 Thread Dave
I was just hoping someone here could explain to me how the radius server process works. My situation will be authorizing for DSL. I think the process is: My DSL wholesaler gets requests for a logins under my realm to their NAS, then sends it to me, then I send back a yes or no answer. My

Re: Error on startup: undefined symbol: SSL_set_ex_data

2006-07-17 Thread Dave
Alan DeKok wrote: Dave [EMAIL PROTECTED] wrote: Error: radiusd.conf[10] Failed to link to module 'rlm_eap': /usr/lib/libeap-1.1.1.so: undefined symbol: SSL_set_ex_data You've built using an older version of OpenSSL. Use OpenSSL 0.9.7 or later. Alan DeKok. - List info

Re: Error on startup: undefined symbol: SSL_set_ex_data

2006-07-17 Thread Dave
Alan DeKok wrote: Dave [EMAIL PROTECTED] wrote: Im using currently 0.9.7j for version openssl, I thought that may have been my problem but the version is up to date. Then you have two versions of OpenSSL installed. Alan DeKok. - List info/subscribe/unsubscribe? See http

Re: Error on startup: undefined symbol: SSL_set_ex_data

2006-07-17 Thread Dave
in openssl or freeradius Alan DeKok wrote: Dave [EMAIL PROTECTED] wrote: freeradius 1.1.0 does not have this error, 1.1.1 and 1.1.2 both do. for me, using ssl 0.9.7j and 0.9.8b. 1.1.2 doesn't have references to SSL_set_ex_data in libeap, and neither does 1.1.1. It looks to me like

Re: Error on startup: undefined symbol: SSL_set_ex_data

2006-07-16 Thread Dave
Alan DeKok wrote: Dave [EMAIL PROTECTED] wrote: Error: radiusd.conf[10] Failed to link to module 'rlm_eap': /usr/lib/libeap-1.1.1.so: undefined symbol: SSL_set_ex_data You've built using an older version of OpenSSL. Use OpenSSL 0.9.7 or later. Alan DeKok. - List info

Re: D-link and freeradius

2006-03-13 Thread Dave Huff
with freeradius or i cant? I'm using FR with a Dlink 624. I did have to download the latest firmware from Dlink before it would work. Dave H -BEGIN PGP SIGNATURE- Version: PGP Desktop 9.0.5 (Build 5050) iQEVAwUBRBWYpiKWt8bugsEpAQiToAgAlX84Z+D2YHOUl+ZfYr25dUx3xYCKcJjY P

Re: Client certs with MSCHAPV2 in PEA

2006-02-24 Thread Dave Huff
. From: Alan DeKok [EMAIL PROTECTED] Robert Myers [EMAIL PROTECTED] wrote: The reason I ask, is that I'm using a client cert signed by my CA to do eap/tls, and it's working. I have not implemented the server cert as of yet. Then it *should* work with PEAP. But I don't know of many

RE: Client certs with MSCHAPV2 in PEA

2006-02-24 Thread Dave Huff
Dave Huff wrote: . From: Alan DeKok [EMAIL PROTECTED] Robert Myers [EMAIL PROTECTED] wrote: The reason I ask, is that I'm using a client cert signed by my CA to do eap/tls, and it's working. I have not implemented the server cert as of yet. Then it *should* work

RE: Client certs with MSCHAPV2 in PEAP

2006-02-23 Thread Dave Huff
-Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Alan DeKok Dave Huff [EMAIL PROTECTED] wrote: rlm_eap_tls: TLS 1.0 Alert [length 0002], fatal certificate_unknown TLS Alert read:fatal:certificate unknown SSL is telling FreeRADIUS

Client certs with MSCHAPV2 in PEAP

2006-02-22 Thread Dave Huff
I would like to configure this setup using Freeradius. My WinXP client (Intel ProSET) supports this, but FR chokes on it when enabled. I've got PEAP-EAP-MSCHAPV2 working with just password authentication. I noted this

RE: Client certs with MSCHAPV2 in PEAP

2006-02-22 Thread Dave Huff
-Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Alan DeKok Dave Huff [EMAIL PROTECTED] wrote: I would like to configure this setup using Freeradius. My WinXP client (Intel ProSET) supports this, but FR chokes on it when enabled

Re: Login incorrect- RAS autentication

2005-11-15 Thread Dave Weis
Why did you send this three times? It's normal for the TNT line to try and download configuration settings via radius unless you have turned it off. I don't remember the name of the setting but it's listed in the documentation and google can find it. On Tue, 15 Nov 2005, Danny Zenzano

Re: add a realm to a User-Name if no realm

2005-10-06 Thread Dave Weis
. dave - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: ip ranges in clients.conf

2005-08-10 Thread Shepherd, Dave
Tariq, Like you say, you can use: Client 172.0.0.0/8 { Secret = secret Shortname = 172-network } HTH Dave Shepherd -Original Message- From: [EMAIL PROTECTED] [mailto:freeradius- [EMAIL PROTECTED] On Behalf Of Tariq Rashid

Proxy/Not Proxy based on dialed number?

2005-07-26 Thread Dave Weis
I have a MAX TNT that will be doing dialin service. Is it possible to selectively proxy based on the DNIS? My user accounts are stored in a postgres database that I have working fine for PPPoA termination already. Thanks for any help dave - List info/subscribe/unsubscribe? See http

Download

2005-07-12 Thread Shepherd, Dave
I'm having trouble downloading from: ftp://ftp.freeradius.org/pub/radius I've tried 1.0.4, 1.0.3 from the website. I've also tried to use fireFTP and plain old ftp but with no luck. The ftp.freeradius.org hostname resolves to 62.24.0.50 OK Is the site known to be down? Dave - List

RE: Multiple Authentication REALMS - I hope in Plain Text

2005-06-21 Thread Shepherd, Dave
a custom 0.9.3 install, as base is only 0.5 !!! in fact even SLES9 only has 0.9.3. Maybe I need a chat with SuSE/Novell and ask them to release updates to freeRADIUS on a more regular basis.. Thanks for the help. :-) Dave Shepherd -Original Message- From: [EMAIL PROTECTED

  1   2   >