Re: pap + md5

2004-07-23 Thread Evren Yurtesen
It is the password that your NAS sends to your radius server. It is in text normally. It is only encrypted with the shared key when it travels over network. Sergei Koveshnikov wrote: Hello to everyone! I'm trying to use MAX6000 + freeradius-1.0.0-pre3 + Postgres + pap + md5 encryption for users

Re: pap + md5

2004-07-23 Thread Evren Yurtesen
Sergei Koveshnikov wrote: It is the password that your NAS sends to your radius server. It is in text normally. It is only encrypted with the shared key when it travels over network. Yes, you quite right, but why pap doesn't make md5 encryption? May be it depends on configuration of client (I use

timestamp field in radcheck table

2004-08-20 Thread Evren Yurtesen
Hi, I figured out that timestamp field in radcheck table has vanished since 0.9.3 version. Is there any reason why? Just wondering, not complaining :) But anybody knows how to remove all the timestamp values from mysql dumps that I can insert to new database schema easily? -e- - List info/subs

dialup_admin forms problem...

2004-09-06 Thread Evren Yurtesen
Hi, I installed dialup_admin from freeradius 1.0.0 But everytime I enter some data to forms like a username or how many rows should it show etc. When I press submit, it gets resetted in the next page. What might be the solution? or problem? I thought it was something about register_globals but i

Re: dialup_admin empty statistics

2004-09-08 Thread Evren Yurtesen
Yeah well, do you have the accounting table filled with some stuff? Actually the thing is that I get empty statistics when I enter a username etc. I get this problem that whatever I enter to forms do not work. If I enter the username to the URL like ?login=username then it works...?! Is that the

Re: dialup_admin empty statistics

2004-09-08 Thread Evren Yurtesen
Kostas Kalevras wrote: On Wed, 8 Sep 2004, Evren Yurtesen wrote: Yeah well, do you have the accounting table filled with some stuff? Actually the thing is that I get empty statistics when I enter a username etc. I get this problem that whatever I enter to forms do not work. If I enter the

Re: dialup_admin empty statistics

2004-09-12 Thread Evren Yurtesen
Kostas Kalevras wrote: On Wed, 8 Sep 2004, Evren Yurtesen wrote: Yeah well, do you have the accounting table filled with some stuff? Actually the thing is that I get empty statistics when I enter a username etc. I get this problem that whatever I enter to forms do not work. If I enter the

FreeBSD - Making all in libltdl... & *** No rule to make target `all'. Stop.

2004-09-12 Thread Evren Yurtesen
Hello, I am getting errors about libltdl when I try to compile the latest cvs version of freeradius. I am having no problems compiling 1.0.0 version though... Any ideas about what to do? I have seen few other people were having the same problem but there werent any practical solutions. Should

ip pools question

2004-09-21 Thread Evren Yurtesen
Hello, I want to use the freeradius ip pools. I just wonder something though ever ip pool name I define should be included in the accounting and post-auth sections? Its kind of confusing, whats the point of defining the Pool-Name attribute in users file and then define the same name in accounting

Re: ip pools question

2004-09-22 Thread Evren Yurtesen
Paul Hampson wrote: On Wed, Sep 22, 2004 at 04:20:23AM -0700, Evren Yurtesen wrote: Hello, I want to use the freeradius ip pools. I just wonder something though ever ip pool name I define should be included in the accounting and post-auth sections? Its kind of confusing, whats the point of

sql group rpocessing -> The user IS found in radcheck, the check items DO match AND Fall-Through is set in the radreply table ?

2004-11-13 Thread Evren Yurtesen
Hello, Cant there be an option to process groups for users which check items match even though fall-through is not set? It would be painful to add fall-through to every user account now... What is the purpose of this change in sql module in recent cvs? Thanks Evren - List info/subscribe/unsubscr

Re: sql group rpocessing -> The user IS found in radcheck, the check items DO match AND Fall-Through is set in the radreply table ?

2004-11-15 Thread Evren Yurtesen
found in radcheck table ! On Sunday 14 November 2004 10:23, Evren Yurtesen wrote: Hello, Cant there be an option to process groups for users which check items match even though fall-through is not set? It would be painful to add fall-through to every user account now... What is the purpose of this

learning freeradius + ldap + for mac and novell directory server

2004-11-18 Thread Evren Yurtesen
You can read the readme files and documentation included in doc directory of the distribution I guess... Evren Michael Basso wrote: I just installed freeradius 1.0.1 and wish to configure LDAP support to authenticate users against Novell's eDirectory as well as several MAC servers. Where ca

patch attached for checkrad - mikrotik_snmp and more...

2004-01-10 Thread Evren Yurtesen
1.0Author: [EMAIL PROTECTED] # cisco_l2tp 1.14 Author: [EMAIL PROTECTED] -# mikrotik_telnet 1.0Author: Evren Yurtesen <[EMAIL PROTECTED]> +# mikrotik_telnet 1.1Author: Evren Yurtesen <[EMAIL PROTECTED]> +# mikrotik

Re: haevy Performance and load requirements

2004-01-11 Thread Evren Yurtesen
Of course it should be possible with fast enough CPU's :) If not you can load balance the requests. It shouldnt be difficult to stack up your friend's pizza boxes over each other :) Also achieving fault tolerance at the same time (maybe 100% unless your power supply fails :) then you can use mul

Re: freebsd ppp Ascend-Data-Rate

2004-01-12 Thread Evren Yurtesen
I believe FreeBSD doesnt support that option... See man ppp and find the line >ppp uses the following attributes from the RADIUS reply: It is sad but I figured out some linux product is supporting this :( If you find a solution to this under FreeBSD please let me know. Evren Patrick de Ruiter w

Re: freebsd ppp Ascend-Data-Rate

2004-01-12 Thread Evren Yurtesen
Well this is a freebsd related problem. (I answered the same email in freebsd-users mailing list) FreeBSD ppp doesnt support that attribute... I believe FreeBSD doesnt support that option... See man ppp and find the line >ppp uses the following attributes from the RADIUS reply: It is sad but I

Re: Simultanious logins / Time logged in

2004-01-13 Thread Evren Yurtesen
Look at simultaneous-use attribute and the time-limiting stuff in freeradius Evren Ty Carter wrote: Is there a way to only allow one login, per open session??? I'm trying to assist my client in his ISP to accomplish two things: 1> Disallow multiple logins from more than one person while online

Re: [MikroTik] PPPoE Only one user connection

2004-02-01 Thread Evren Yurtesen
- From: "Evren Yurtesen" <[EMAIL PROTECTED]> To: "sarky" <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]> Sent: Sunday, February 01, 2004 7:47 PM Subject: Re: [MikroTik] PPPoE Only one user connection If you are registered to freeradi

freeradius developers

2004-02-02 Thread Evren Yurtesen
easiest way to kill Ghost connections at the moment i have 5 Ghost connections where the users are trying to come back on but not happening becasue radius have them loged on sarky - Original Message - From: "Evren Yurtesen" <[EMAIL PROTECTED]> To: "sarky" <[EMA

Re: [MikroTik] PPPoE Only one user connection

2004-02-02 Thread Evren Yurtesen
man it is working fine no probs at all :) just trying to see the easiest way to kill Ghost connections at the moment i have 5 Ghost connections where the users are trying to come back on but not happening becasue radius have them loged on sarky - Original Message - From: "Evren Yurtesen&quo

Re: [MikroTik] PPPoE Only one user connection

2004-02-02 Thread Evren Yurtesen
Alan DeKok wrote: "sarky" <[EMAIL PROTECTED]> wrote: Thanks man it is working fine no probs at all :) just trying to see the easiest way to kill Ghost connections at the moment i have 5 Ghost connections where the users are trying to come back on but not happening becasue radius have them loged

Re: [MikroTik] PPPoE Only one user connection

2004-02-02 Thread Evren Yurtesen
If you are registered to freeradius mailing list, you should have received my patches for the checkrad program. Please apply that patch to freeradius before compilation, then you can use SNMP or Perl-Telnet to control this one user situation. But the patch only works up to 1 user limit. If you w

Re: Simultaneous-logon

2004-02-02 Thread Evren Yurtesen
It depends if you are using p5-Net-Telnet or net-snmp software (by the way you need new version of that which supports v2 requests, even though mikrotik doesnt support v2) So which one do you use? for SNMP in naspasswd file x.y.z.a SNMP community_id in clients.conf nastype = mikrotik_snmp This s

Re: Simultaneous-logon

2004-02-02 Thread Evren Yurtesen
I use, but what is the relation with this question? Bartosz Jozwiak wrote: Are you using MySql with freeradius ? - Original Message - From: "sarky" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Sunday, February 01, 2004 2:11 PM Subject: Simultaneous-logon Hello all Right i have

Re: clean_radacct integration

2004-02-02 Thread Evren Yurtesen
well you should configure clients.conf and naspasswd files also. Evren Andrew Staples wrote: -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf As Alan said, configure and use checkrad to verify if users are still active. My reading of the docs/googl

Re: [MikroTik] Radius Double login with one Username

2004-02-09 Thread Evren Yurtesen
Well, thats a bug and not a bug at the same time. Because if you are doing case checking then they sarky and SARKY are different username's thus different user's can login. Now, checkrad program doesnt have a switch to figure that out. If you want to use case checking or not. It requires further

Re: Radius - simultaneus userse

2004-03-04 Thread Evren Yurtesen
see the simultaneous-use attribute and I think there were some documentation in docs folder of freeradius edu wrote: On Wed, 03 Mar 2004 14:40:57 -0300, edu wrote: I have this configuration: Linux Slackware, freeradius and mysql, my problem is that more than one user with the same username

Re: Mikrotek + Freeradius Patch?

2004-03-05 Thread Evren Yurtesen
: [EMAIL PROTECTED] Subject: Mikrotek + Freeradius Patch? Hi, I am mocking up a Mikrotik Router OS and Freeradius combo for testing. I found the patch from Evren Yurtesen referenced here: http://www.mail-archive.com/[EMAIL PROTECTED]/msg005 28.html Here's the thing, I keep getting 'malfo

Re: Mikrotik + Freeradius Patch?

2004-03-05 Thread Evren Yurtesen
an hangover :) please excuse me if I wrote some wrong things. I think I am still drunk... Evren Troy Winemiller wrote: Hi, I am mocking up a Mikrotik Router OS and Freeradius combo for testing. I found the patch from Evren Yurtesen referenced here: http://www.mail-archive.com/[EMAIL PROTEC

Re: FreeRADIUS, MySQL, IP Pools

2004-03-05 Thread Evren Yurtesen
The answer depends on your dhcp server (and not) ;) I think. Did you check in your DHCP server manuals if it supports this type of attribute? What is your DHCP server? By the way, it is usually possible that your pupils might give an IP manually, it is not so secure to trust only to the DHCP se

expiration feature

2004-03-05 Thread Evren Yurtesen
Is it possible to send additional radius attributes for expired accounts other than simply rejecting them? What I want to do is to send a special radius attribute (cisco access list) that I will only let the user to connect to account renewal page if the account of user is expired. Any suggest

Re: expiration feature

2004-03-05 Thread Evren Yurtesen
Ivo wrote: On Fri, Mar 05, 2004 at 05:26:40PM +0200, Evren Yurtesen wrote: Is it possible to send additional radius attributes for expired accounts other than simply rejecting them? What I want to do is to send a special radius attribute (cisco access list) that I will only let the user to

Re: I want add mac address authentication to my radius config.

2004-03-06 Thread Evren Yurtesen
Yes, but I want the filter to work when the user's account expire (and freeradius shouldnt reject expired account) I am not sure if I was clear in my question, or? Jason Peterson wrote: You will want something like this in your /usr/local/etc/raddb/users file. testuser Auth-Type :=

Re: any NAS with good radius support

2004-04-29 Thread Evren Yurtesen
You can buy a cisco really cheap from eBay... I would suggest you AS5300 for example...It will rock your world :) -e- Anson Rinesmith wrote: An Ascend MAX2000 will handle 1 T1, and has been a very reliable NAS for me in the past. -Original Message- From: [EMAIL PROTECTED] [mailto:freerad

Re: Web based front end?

2004-05-21 Thread Evren Yurtesen
There is already Dialupadmin for that purpose. I wonder if you have missed it? Because it is pretty good. I believe the original question is about the 'users' file which is a normal file, not a table in a database. Evren Wei Ming Long wrote: Me too! Thanks. [EMAIL PROTECTED] 05/21/04 03:50AM >

Re: Web based front end?

2004-05-21 Thread Evren Yurtesen
I saw it once somewhere...there was a demo even but... http://sourceforge.net/projects/dialup-admin/ Maybe you should google... Troy Davis wrote: Is there any screen shots of this around? Regards Troy Comstech Systems - Original Message - From: "Evren Yurtesen" <[EMAIL P

Re: Web based front end?

2004-05-21 Thread Evren Yurtesen
Alan DeKok wrote: "Michael Shanafelt" <[EMAIL PROTECTED]> wrote: I don't know, I've never seen it. It might not. Looks like a lot of other people on the list haven't either. What's it under in the freeRADIUS install? Well, it has a sourceforge page http://sourceforge.net/projects/dialup-admin/ -