HTTP; JMS Access

2013-10-02 Thread George Innocent
http with the error message below when RADIUS is used. ยท george (admin account) : Found message of type FATALERROR: Probe failed to subscribe for notifications. Caused by: javax.jms.JMSSecurityException: SAM-O Access Violation - knoll (SAM-O account) : Exception in

Re: TLS-Client-Cert-Expiration date format

2013-07-25 Thread George Ross
> Just wondering if anyone knew what the expiration date format was back > from eap-tls transactions? I have a cert here that expires 23/07/2015 > and FR gives back "150723132302Z". > That's a Z on the end..? <http://en.wikipedia.org/wiki/ISO_8601>. -- Georg

Re: Changed Attributes

2013-06-25 Thread George Innocent
Hi Alan; Thanks for the feed back but i have not edited the Dictionary file what i said i checked and confirmed that the attributes i have configured are available on dictionary for. On 25 June 2013 16:21, Alan DeKok wrote: > George Innocent wrote: > > I have checked the dictionary

Re: Changed Attributes

2013-06-25 Thread George Innocent
ou are using are in a > dictionary > > file and that the dictionary file is being read by the server when > it > > starts > > well? > > alan > - > List info/subscribe/unsubscribe? See > http://www.freeradius.org/list/users.html > -- Regards: George Innocent. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Changed Attributes

2013-06-24 Thread George Innocent
Cleartext-Password := NOT User-Password == > > 2) formatting is VERY important...I hope you dont have blank lines between > each entry > > 3) ensure that these attributes that you are using are in a dictionary > file and that the dictionary file is being read by the

about radlast

2013-05-31 Thread george torwell
Hello everyone, we had issues with radlast on freeBSD and linux. It seems that the format for the utmp and wtmp that last reads isnt consistent, on freeBSD its not even the same file... So we wrote the attached file to read the file radutmp written by freeRadius. If its useful to anyone, you can h

Re: rlm_ippool vs rlm_sqlippool

2013-04-30 Thread George Chelidze
ave better performance/ With Regards Stefan Thank you Stefan for your quick response. Best Regards, -- George Chelidze Software Developer Magticom Ltd. 5, A. Politkovskaya St. 0186 Tbilisi, Georgia Office: +995 322171376 Mobile: +995 599117900 - List info/subscribe/unsubscribe? See http://www.freeradiu

Re: rlm_ippool vs rlm_sqlippool

2013-04-30 Thread George Chelidze
On 2013-04-30 16:30, Alan DeKok wrote: George Chelidze wrote: We use rlm_ippool for pool management. Each pool is configured with 16K addresses. About 10K are used in the peek time (per pool). The DBM files underlying IP pools really aren't that scalable. I believe we have almost re

rlm_ippool vs rlm_sqlippool

2013-04-30 Thread George Chelidze
k you in advance, -- George Chelidze - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Session-Timeout

2013-04-30 Thread George Chelidze
On 2013-04-27 02:46, David Peterson wrote: Sorry about that, they say its 16 bit. I have seen this once with a HUAWEI nas. The max value for 16bit unsigned integer is 65535. it's about 18 hours. BR, -- George Chelidze - List info/subscribe/unsubscribe? See http://www.freeradius.org

Re: MAC Address Auth

2013-04-08 Thread George Chelidze
n your user database. Then you repeat this for every user/mac-address pair you want. Best regards, Matthias -- George Chelidze - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: rlm_detail alternatives?

2013-03-28 Thread George Chelidze
n you would like to send to the syslog. As Alan already noted, you can use rlm_linelog, however keep in mind, that syslog packet size is limited to 1024 bytes, which means that in some cases your messages will be truncated. BR, -- George Chelidze Software Developer Magticom Ltd. - List

Re: FTP Error when Radius is UP

2013-02-11 Thread George Innocent
> > I bleieve that you've got a config problem...when RADIUS is up, its not > working and > thus failing.when its down, the router/switch/NAS knows this and fails > back to a working > local username/password. > > alan > - > List info/subscribe/unsubscribe

Re: FTP Error when Radius is UP

2013-02-07 Thread George Innocent
when the Radius is DOWN ; FTP connection is successful and the plotter works too but fails when its UP. Rgds On 7 February 2013 21:14, Alan DeKok wrote: > George Innocent wrote: > > I am using Freeradius on Ubuntu; The authentification part works fine > > but i am facing challenge

FTP Error when Radius is UP

2013-02-07 Thread George Innocent
configured well. What could i be missing -- Regards: George Innocent. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

IP Grouping

2012-10-08 Thread George Innocent
I have a set of IP for my NAS and wish to group this together so i don't have to create a set of new ones on the clients.conf file every time a new NAS is created. What's the best way to do this without causing a crash -- Regards: George Innocent. - List info/subscribe/unsubscribe

Re: Radius Config and Router

2012-09-12 Thread George Innocent
strict-To-Home = true Timetra-Default-Action = permit-all Timetra-Cmd = "debug,configure" Timetra-Action = deny Rgds On Wed, Sep 12, 2012 at 6:23 PM, Alan DeKok wrote: > George Innocent wrote: > > Find attached my config files. > > You were not asked to attach your config

Re: Radius Config and Router

2012-09-12 Thread George Innocent
The configuration works fine on the servers but fails to record the logs for the routers. Rgds On Wed, Sep 12, 2012 at 5:34 PM, Fajar A. Nugraha wrote: > On Wed, Sep 12, 2012 at 9:15 PM, George Innocent > wrote: > > Hello; > > > > I have configured the radius and some

Re: Radius.Logs

2012-09-11 Thread George Innocent
8 2012 : Debug: Waking up in 0.9 seconds. > > Tue Aug 7 15:54:09 2012 : Info: Sending delayed reject for request 43 > > Sending Access-Reject of id 185 to 10.250.0.7 port 43677 > > Tue Aug 7 15:54:09 2012 : Debug: Waking up in 4.9 seconds. > > Tue Aug 7 15:54:14 2012 : Info: Cleaning up request 43 ID 185 with > timestamp +519 > Tue Aug 7 15:54:14 2012 : Info: Ready to process requests. > > -- Regards: George Innocent. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: RADIUS LOG Error

2012-08-29 Thread George Innocent
The errors are for the NAS i have; i also have servers that are authenticated by the radius Rgds On Wed, Aug 29, 2012 at 10:24 AM, Fajar A. Nugraha wrote: > On Wed, Aug 29, 2012 at 2:09 PM, George Innocent > wrote: > > Hi: > > > > I'm able to Log in to the

Re: RADIUS LOG Error

2012-08-29 Thread George Innocent
I have this set On Wed, Aug 29, 2012 at 10:15 AM, Arran Cudbard-Bell < a.cudba...@freeradius.org> wrote: > > On 29 Aug 2012, at 08:09, George Innocent > wrote: > > > Hi: > > > > I'm able to Log in to the servers but on the Nodes with

Re: Failed to authenticate the user

2012-08-07 Thread George Innocent
And how do i send this signal of change> On Tue, Aug 7, 2012 at 4:03 PM, Alan DeKok wrote: > George Innocent wrote: > > How long does the Radius changes take to synchronize with the NAS; what > > commands should i use to make effect changes made on the files. > > You

Re: Failed to authenticate the user

2012-08-07 Thread George Innocent
when I start the radius server using radiusd -x I got the same error. Unable to open file " /usr/local/etc/raddb/radiusd.con": Permission Denied "Errors reading /usr/local/etc/raddb/radiusd.conf Please tell me how to solve the problem ? Rgds On Tue, Aug 7, 2012 at 3:56 PM, George

Re: Failed to authenticate the user

2012-08-07 Thread George Innocent
wrote: > George Innocent wrote: > > I have authenticated successfully locally but on trying the same from my > > NAS using the same credentials it fails. > > What could i be doing wrong> > > Almost everything. You're using "radiusd -Xx", where the d

Re: Failed to authenticate the user

2012-08-07 Thread George Innocent
ed reject for request 43 Sending Access-Reject of id 185 to 10.250.0.7 port 43677 Tue Aug 7 15:54:09 2012 : Debug: Waking up in 4.9 seconds. Tue Aug 7 15:54:14 2012 : Info: Cleaning up request 43 ID 185 with timestamp +519 Tue Aug 7 15:54:14 2012 : Info: Ready to process requests. On Fri

Re: Failed to authenticate the user

2012-08-03 Thread George Innocent
Its on the ubuntu installation failing on debug On 8/3/12, Julson, Jim wrote: > George, > > Is this still on Ubuntu 12.04 or did you end up rebuilding to CentOS 6.2? > Forgive me if this is redundant information. > > -Original Message- > From: freeradius-users-boun

Re: Failed to authenticate the user

2012-08-03 Thread George Innocent
n where i could be going wrong on the >> authentification > > ..and where is this username: P1Z1X2C7S9Y9B0O8[ > > ?? > > alan > - > List info/subscribe/unsubscribe? See > http://www.freeradius.org/list/users.html > -- Regards: George Innocent. - List in

Re: Failed to authenticate the user

2012-08-01 Thread George Innocent
Sorry about that my mail filter might have converted this as it was rejecting the files initially; as for the user created I haven't edited the file with the stated user, On 8/1/12, Alan DeKok wrote: > George Innocent wrote: >> I am getting the attached logs on debug. >&g

Re: Failed to authenticate the user

2012-08-01 Thread George Innocent
. you >> need >> to ensure that they match - i've already pointed out what your RADIUS >> server >> is receiving >> >> alan >> - >> List info/subscribe/unsubscribe? See >> http://www.freeradius.org/list/users.html >> > > > &

Re: Failed to authenticate the user

2012-08-01 Thread George Innocent
t your RADIUS > server > is receiving > > alan > - > List info/subscribe/unsubscribe? See > http://www.freeradius.org/list/users.html > -- Regards: George Innocent. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Failed to authenticate the user

2012-08-01 Thread George Innocent
identical > > alan > - > List info/subscribe/unsubscribe? See > http://www.freeradius.org/list/users.html > -- Regards: George Innocent. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Abwesenheit (was: Freeradius Installation Challenges)

2012-07-29 Thread George Innocent
testing123 > > M-BM- M-BM- shortname = localhost > > M-BM- M-BM- nastype M-BM- M-BM- M-BM- = other > > } > > > alan > - > List info/subscribe/unsubscribe? See > http://www.freeradius.org/list/users.html > -- Regards: George Innocent. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Abwesenheit (was: Freeradius Installation Challenges)

2012-07-27 Thread George Innocent
/radiusd.conf > > which bit of this isnt clear? you have too many closing braces in your > clients.conf > file - ie you've made a mistake when editing it. > > so..fix that (or post it to this list so we can point out the error) > > alan > - > List info/sub

Re: Abwesenheit (was: Freeradius Installation Challenges)

2012-07-27 Thread George Innocent
ation. > > alan > > > - > List info/subscribe/unsubscribe? See > http://www.freeradius.org/list/users.html > -- Regards: George Innocent. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Abwesenheit (was: Freeradius Installation Challenges)

2012-07-27 Thread George Innocent
ulson= > marketron@lists.freeradius.org [mailto: > freeradius-users-bounces+jjulson=marketron@lists.freeradius.org] *On > Behalf Of *George Innocent > *Sent:* Friday, July 27, 2012 9:46 AM > > *To:* FreeRadius users mailing list > *Subject:* Re: Abwesenheit (was: Freera

Re: Abwesenheit (was: Freeradius Installation Challenges)

2012-07-27 Thread George Innocent
ces+jjulson=marketron@lists.freeradius.org] *On > Behalf Of *George Innocent > *Sent:* Friday, July 27, 2012 7:41 AM > > *To:* FreeRadius users mailing list > *Subject:* Re: Abwesenheit (was: Freeradius Installation Challenges) > > ** ** > > No this is my first Installation:

Re: Abwesenheit

2012-07-27 Thread George Innocent
On running Radtest im getting: radclient: noi response from server for ID 123 socket 3. radiusd -X results on the test radtest give segmentation fault Rgds On Fri, Jul 27, 2012 at 6:00 PM, George Innocent wrote: > oN RUNNING RADTEST > > On Fri, Jul 27, 2012 at 4:44 PM, Alan De

Re: Abwesenheit

2012-07-27 Thread George Innocent
oN RUNNING RADTEST On Fri, Jul 27, 2012 at 4:44 PM, Alan DeKok wrote: > George Innocent wrote: > > No this is my first Installation: > > I have already installed this but i am having issues with > > authentification of the test user so i dont understand why yet im doing >

Re: Abwesenheit (was: Freeradius Installation Challenges)

2012-07-27 Thread George Innocent
+jjulson= > marketron@lists.freeradius.org [mailto: > freeradius-users-bounces+jjulson=marketron@lists.freeradius.org] *On > Behalf Of *George Innocent > *Sent:* Friday, July 27, 2012 3:34 AM > *To:* FreeRadius users mailing list > *Subject:* Re: Abwesenheit (was: Freeradiu

Re: Abwesenheit (was: Freeradius Installation Challenges)

2012-07-27 Thread George Innocent
List info/subscribe/unsubscribe? See > http://www.freeradius.org/list/users.html > -- Regards: George Innocent. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Freeradius Installation Challenges

2012-07-27 Thread George Innocent
server. Kill that process and then run it. > > > alan > > -- > This smartphone uses free WiFi around the world with eduroam, now that's > what I call smart. > > -- Regards: George Innocent. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Freeradius Installation Challenges

2012-07-27 Thread George Innocent
uspst:/usr/local/src# > Thanks to assist resolve this > > -- > Regards: > George Innocent. > -- Regards: George Innocent. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: IPv4 *and* IPv6 addresses for home_servers and failover

2012-06-14 Thread George Ross
g2_server roaming0_server6 roaming1_server roaming2_server6 ? -- George D M Ross MSc PhD CEng MBCS CITP, University of Edinburgh, School of Informatics, 10 Crichton Street, Edinburgh, Scotland, EH8 9AB Mail: g...@inf.ed.ac.uk Voice: 0131 650 5147 Fax: 0131 650 6899 PGP: 1024D/AD758CC5 B91E

Re: Access requests logging to SQL: How to save comments for rejected requests?

2012-04-28 Thread George Koulyabin
No, I used reference to %{Module-Failure-Message}. I changed reference from %{Module-Failure-Message} to %{control:Module-Failure-Message} and message 'User not found' droped to database. It works. But when I sent request with wrong password, message 'Bad password' did not drop to database bec

Re: Access requests logging to SQL: How to save comments for rejected requests?

2012-04-27 Thread George Koulyabin
I tried to implement Your advice. 1) Changes in configuration: authorize { ... sql_auth if ( notfound ) { update control { Module-Failure-Message := 'User not found'

Re: Access requests logging to SQL: How to save comments for rejected requests?

2012-04-27 Thread George Koulyabin
02:00:42PM +0200, Alan DeKok wrote: > George Koulyabin wrote: > > Records drop to database when access is rejected. But I want to see reason > > of rejection. As in radius.log. > > Edit the SQL queries to include Module-Failure-Message. > > Alan DeKok. > - >

Re: Access requests logging to SQL: How to save comments for rejected requests?

2012-04-27 Thread George Koulyabin
wrote: > George Koulyabin wrote: > > I tried to save results of process access requests to SQL database using > > postauth_query. I used 'Module-Failure-Message' attribute as a comment for > > rejected requests. The message 'rlm_pap: CLEAR TEXT password check failed

Access requests logging to SQL: How to save comments for rejected requests?

2012-04-27 Thread George Koulyabin
Hi. I am using FreeRADIUS 2.1.12. I tried to save results of process access requests to SQL database using postauth_query. I used 'Module-Failure-Message' attribute as a comment for rejected requests. The message 'rlm_pap: CLEAR TEXT password check failed' drops to database when password is wr

RE: Opposite of Expiraton attribute?

2011-06-20 Thread Matthew George
Works perfectly!!! Thank you so much Phil. --- raddb/dictionary: ATTRIBUTE Current-Date3000string raddb/sites-enabled/xx: authorize { ... update request { Current-Time-Date := " %m-%d-%Y" } sql ... } MySQL radcheck tabl

RE: Opposite of Expiraton attribute?

2011-06-18 Thread Matthew George
:04 AM To: freeradius-users@lists.freeradius.org Subject: Re: Opposite of Expiraton attribute? On 06/17/2011 11:50 PM, Matthew George wrote: > Using logintime I cannot specify a date and time, its uucp. > > I need to be able to specify a date and time. I'm curious as to why > the &q

RE: Opposite of Expiraton attribute?

2011-06-17 Thread Matthew George
xpiraton attribute? http://wiki.freeradius.org/Rlm_logintime Regards, Ryan Williams Network Engineer -Original Message- From: freeradius-users-bounces+ryan=integritynet.com...@lists.freeradius.org [mailto:freeradius-users-bounces+ryan=integritynet.com.au@lists.freeradius.o rg] On Behalf Of George Cheli

Re: Opposite of Expiraton attribute?

2011-06-16 Thread George Chelidze
On 06/17/2011 09:23 AM, Matthew George wrote: Is there an attribute that is the opposite of expiration? I'm trying to setup accounts to have a specific login time range. For example; Start-Time >= 5 June 2011 00:00:00 Expiration == 5 June 2011 02:00:00 I've been hunting googling

RE: Opposite of Expiraton attribute?

2011-06-16 Thread Matthew George
I do not want to define an expiration date after the first login. I want to configure the account to only authenticate successfully at a specified date that is greater than or equal to the value provided in the radcheck table. This way I can pre-populate usernames into the radcheck table an

RE: Opposite of Expiraton attribute?

2011-06-16 Thread Matthew George
n of N from the date of first login. Regards On 6/17/2011 10:53 AM, Matthew George wrote: Is there an attribute that is the opposite of expiration? I'm trying to setup accounts to have a specific login time range. For example; Start-Time >= 5 June 2011 00:00:00 Expiration == 5 Ju

Opposite of Expiraton attribute?

2011-06-16 Thread Matthew George
Is there an attribute that is the opposite of expiration? I'm trying to setup accounts to have a specific login time range. For example; Start-Time >= 5 June 2011 00:00:00 Expiration == 5 June 2011 02:00:00 I've been hunting googling for hours but I've been unable to find an attribute that

Re: Can't get checkrad to be called

2011-06-05 Thread George Chelidze
2.1.7 configuration. As far as it works with 2.1.10 you can build it on CentOS from source. Glad to hear you figured it out. Best Regards, George Chelidze - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Slow Mysql Queries

2011-06-05 Thread George Chelidze
#x27;s corrupted */ Drop output from "SHOW CREATE TABLE " and a sample script which takes a long time to execute here. Best Regards, George Chelidze - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Can't get checkrad to be called

2011-06-03 Thread George Chelidze
it's there Can you post authorize/accounting sections from your configuration? Best Regards, George Chelidze - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Freeradius not releasing IPs from pool

2011-06-03 Thread George Chelidze
es. Best Regards, George Chelidze - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Can't get checkrad to be called

2011-06-03 Thread George Chelidze
with radutmp/sql modules for sumult checks. Best Regards, George Chelidze - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

What is purpose of TNC-VLAN-Access/TNC-VLAN-Isolate?

2011-04-29 Thread George
Hi. What is purpose of TNC-VLAN-Access/TNC-VLAN-Isolate attributes? These attributes are included into dictionary.freeradius.internal. Can I use these attributes for saving vlan's name or id when updating requests? - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.htm

Failed binding to socket: Address already in use

2010-02-23 Thread George Greene
i would like to listen to the address assigned to the computer. 192.168.1.12 FreeRADIUS Version 2.1.0 g...@lisa:/sbin$ sudo freeradius -X FreeRADIUS Version 2.1.0, for host i486-pc-linux-gnu, built on Sep 17 2009 at 17:22:02 Copyright (C) 1999-2008 The FreeRADIUS server project and contri

HOWTO Contribution

2010-02-04 Thread George Shearer
Hi All, I'd like to contribute a HOWTO to the Wiki.. I don't see a HOWTO to do that :) Topic: Replacing Cisco ACS Server with FreeRadius in a Microsoft Active Directory environment to support Wireless, Network Administration, and VPN users. - List info/subscribe/unsubscribe? See http://www.fr

Freeradius replacing Cisco ACS in an Active Directory Environment (Wifi PEAP+MSCHAP and other uses)

2010-02-02 Thread George Shearer
now, this platform is OLD, but... you have to admit, it has to be one of the most reliable platforms cisco has ever sold. It's hard to say goodbye. radiusd.conf ----- # freeradius config for a typical co

Freeradius replacing Cisco ACS in an Active Directory Environment

2010-02-02 Thread George Shearer
Hi All. This is my attempt at giving back to the freeradius community. Maybe others will find my configuration useful in their efforts. I'm a network guy, and I do quite a bit of consulting work for various companies. I have a customer in particular who (prior to this) was using a very out-of-date

Re: Free radius installation

2010-01-25 Thread George Chelidze
doing queries to ::1 (ipv6 address). cat /etc/hosts I think you have something like this: ::1 localhost ip6-localhost ip6-loopback either map 127.0.0.1 to localhost, or use radtest test test 127.0.0.1 0 testing123 George - List info/subscribe/unsubscribe? See http://www.freeradius.org

Re: Free radius installation

2010-01-25 Thread George Chelidze
is ipv4 interface to check whether radiusd is listening (why not try neststat -lnp instead?), while sending radtest queries to ::1 which is ipv6. are you sure your radiusd is listening for ::1 as well? my 2 cents. George - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Free radius installation

2010-01-25 Thread George Chelidze
daemon, surely the easiest thing is to just allow UDP port 1812 and 1813 traffic and THEN start learning what firewall flags work with the traffic. I just stated that it's possible, I didn't mean it should be configured like this while debugging something. George - List info

Re: How to charge based on accounting correctly

2010-01-24 Thread George Chelidze
information on it's internal disk if it can't get acknowledgment for accounting request/s and resend it later? Yes. How much time can it keep the data? I don't think it's a good idea to resend the data after several hours. Best Regards, George - List info/subscribe/un

Re: Free radius installation

2010-01-24 Thread George Chelidze
Hello Alan, not really - did you read what I wrote? How can you do a state check on what is a stateless protocol? I think you can still do state checks for UDP: http://www.sns.ias.edu/~jns/wp/2006/01/12/iptables-connection-tracking-udp/ Best Regards, George - List info/subscribe

How to charge based on accounting correctly

2010-01-22 Thread George Chelidze
information on it's internal disk if it can't get acknowledgment for accounting request/s and resend it later? Best Regards, George Chelidze - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: SQL Huntgroup only work with user check, not group check

2009-09-04 Thread George Koulyabin
On Thu, Sep 03, 2009 at 07:36:31AM -0300, Carlos Eduardo Tavares Terra wrote: > On Thu, Sep 3, 2009 at 6:30 AM, George Koulyabin wrote: > > > I wrote the rules for huntgroup here because the rules in groupcheck > didn't work. If I take this out, just keeping the groupcheck, &

Re: SQL Huntgroup only work with user check, not group check

2009-09-03 Thread George Koulyabin
On Tue, Sep 01, 2009 at 09:49:20PM -0300, Carlos Eduardo Tavares Terra wrote: > ++---+--+---+ > | id | groupname | nasipaddress | nasportid | > ++---+--+---+ > | 5 | wireless | 192.168.2.5 | NULL | > | 4 | adsl | 192.168.

Re: rlm_sqlcounter: Some strangenesses.

2009-08-27 Thread George Koulyabin
Info += "QV%{reply:Cisco-Pre-Output-Octets}" Cisco-Pre-Output-Octets := 0 Cisco-Pre-Output-Octets -= 0 # unusable attribute is removed from reply-list } } ... } I need your opinions. On Wed, Aug 26, 2

rlm_sqlcounter: Some strangenesses.

2009-08-26 Thread George Koulyabin
Hi. I am running FR v2.1.6. I am needing to generate some quota for users. This quota must be replied via attribute Cisco-Control-Info. I tryed to do this by different ways. I was interested by rlm_sqlcounter, as simple and powerful method of calculating of counters. I built test counter: sqlc

Re: How to use large SQL-query for %{sql:} clause?

2009-08-25 Thread George Koulyabin
On Tue, Aug 25, 2009 at 09:42:24AM +0100, Ivan Kalik wrote: > > I am needing to generate values of reply attributes via SQL. I am using > > `%{sql:SQL-query}` clause. > > I am inserting attribute/value pairs into radreply table, where value - > > `%{sql:}`-clause. > > But I had got complex and larg

How to use large SQL-query for %{sql:} clause?

2009-08-25 Thread George Koulyabin
Hello. I am using FR v2.1.6. I am needing to generate values of reply attributes via SQL. I am using `%{sql:SQL-query}` clause. I am inserting attribute/value pairs into radreply table, where value - `%{sql:}`-clause. But I had got complex and large queries. I don't want to increase size of f

Re: virtual servers => 2 different user files

2009-08-25 Thread George Koulyabin
Hello On Tue, Aug 25, 2009 at 08:29:49AM +0200, kisteorg google wrote: > Hello list, > > I would like to use one freeradius for 2 different NAS-groups. Therefore > I need two different users files, one for each instance. I tried to make > the module configuration per virtual server, which seems n

Re: files: How to choose SQL entry for users?

2009-08-24 Thread George Koulyabin
Hi. On Mon, Aug 24, 2009 at 02:59:27PM +0200, Alan DeKok wrote: > George Koulyabin wrote: > > On Mon, Aug 24, 2009 at 01:45:11PM +0200, Alan DeKok wrote: > >> George Koulyabin wrote: > >>> I had got success when 'sql_auth' was defined as last entry into

Re: files: How to choose SQL entry for users?

2009-08-24 Thread George Koulyabin
On Mon, Aug 24, 2009 at 01:45:11PM +0200, Alan DeKok wrote: > George Koulyabin wrote: > > I had got success when 'sql_auth' was defined as last entry into > > instantiate { }. But I think that this > > solution is unsecure and wrong. > > Why is that?

Re: files: How to choose SQL entry for users?

2009-08-24 Thread George Koulyabin
Hi. I tried to use sql_auth-SQL-Group like ldap example (DEFAULT sql_auth-SQL-Group == "Group1"), but FR-server failed with error 'users[1]: Parse error (check) for entry DEFAULT: Invalid octet string "Group1" for attribute name "sql_auth-SQL-Group"'. This error says that attribute is not defin

Using user-defined variables in %{sql: } clause?

2009-08-21 Thread George
I am using FR v2.1.6. I tried to use clause like `%{sql: SELECT ...}`. But length of SQL-query is so large for using as field of SQL-table. And I thought that I can create variable like myquery = "SELECT ..." as entry of configuration file, and to use this as `%{sql:${myquery}}`. But it didn't

files: How to choose SQL entry for users?

2009-08-20 Thread George
Hi I am running FreeRADIUS v2.1.6. Problem is found when SQL works in 'users'. sql.conf: sql sql_auth { Some auth-queries... } sql sql_acct { Some acct-queries... } radiusd.conf: authorize { files sql_auth } users: DEFAULT SQL-Group == 'Group1' ... But files

Re: howto pstack running freeradius process

2009-07-27 Thread George Chelidze
On Fri, 2009-07-24 at 09:15 -0400, John Dennis wrote: > On 07/24/2009 04:27 AM, George Chelidze wrote: > > On Fri, 2009-07-24 at 08:08 +0200, Alan DeKok wrote: > >> George Chelidze wrote: > >>> I didn't say it's an issue with freeradius. > >>

Re: howto pstack running freeradius process

2009-07-24 Thread George Chelidze
On Fri, 2009-07-24 at 08:08 +0200, Alan DeKok wrote: > George Chelidze wrote: > > I didn't say it's an issue with freeradius. > > If it's not a FreeRADIUS issue, then the question doesn't belong on > the list. I have just realized that this question shoul

Re: howto pstack running freeradius process

2009-07-23 Thread George Chelidze
On Thu, 2009-07-23 at 22:27 -0700, Doug Hardie wrote: > On 23 July 2009, at 22:09, George Chelidze wrote: > > > > > On Thu, 2009-07-23 at 16:10 +0200, Alan DeKok wrote: > >> George Chelidze wrote: > >>> Hello, > >>> > >>> I am

Re: howto pstack running freeradius process

2009-07-23 Thread George Chelidze
On Thu, 2009-07-23 at 16:10 +0200, Alan DeKok wrote: > George Chelidze wrote: > > Hello, > > > > I am investigating one issue with freeradius 2.1.6 custom module and > > would like to get a stack trace of running process. > > This is a local OS issue. It

howto pstack running freeradius process

2009-07-23 Thread George Chelidze
bject file. The following commands was used to build the freeradius server: ./configure --prefix=/usr/local/freeradius-2.1.6 --enable-developer make make install Please point me to the right direction. Thanks in advance, George Chelidze - List info/subscribe/unsubscribe? See http://www.freeradiu

radiusd -f flag - how it affects custom freeradius module

2009-07-17 Thread George Chelidze
return RLM_MODULE_REJECT; } so, every time I start freeradius without -f I get: rlm_custom_auth: tibrvTransport_SendRequest() timed out I understand that this problem is very specific to tibco rendezvous which isn't the open source. It will be great if you can share your ideas abou

Re: Freeradius 2.1.1 - locked processes

2008-12-02 Thread George Chelidze
Alan DeKok wrote: It doesn't. That's likely a side-effect of function call trampolines, or something similar. can you explain this in more details in a couple of words, thinking about this problem for 4-5 days:) - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Freeradius 2.1.1 - locked processes

2008-12-01 Thread George Chelidze
_r() calls from print.c and it seems to be fixed. Thanks for suggestion. Best Regards, George Chelidze - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Freeradius 2.1.1 - locked processes

2008-11-30 Thread George Chelidze
mation, if this isn't enough. Any help is appreciated. Thanks in advace George Chelidze # /usr/local/freeradius/etc/raddb/sites-enabled/default preacct { fillrealm acct_unique } accounting { sql billing detail } # /usr/local/freeradius/etc/raddb/modules/acct_unique acct_u

Re: OT: java radius client libraries?

2008-05-13 Thread George Beitis
with RADIUS events. If you need more specific details please let me know regards George Alex French wrote: 2008/5/12 Alan DeKok <[EMAIL PROTECTED]>: http://coova.org/wiki/index.php/JRadius/ClientAPI ? It's actively supported. Unless there's another jradius out there.

Re: Re: Machine authentication

2008-05-06 Thread George KNIGHT
Thank you for your reply David. I have a long way to go I guess. Have a nice day. /GK On Tue, May 6, 2008 at 10:02 AM, David Mitton <[EMAIL PROTECTED]> wrote: > George, > >Your message came through just fine. But this is a voluntary list of > users, and your question

Re: Machine authentication

2008-05-06 Thread George KNIGHT
Hi, I sent an email to the list yesterday but it seems it wasn't delivered. I'm resending it again. /GK On Mon, May 5, 2008 at 12:10 PM, George KNIGHT <[EMAIL PROTECTED]> wrote: > Hello All, > I've been trying to setup an environment where WinCE OS client computer

Machine authentication

2008-05-05 Thread George KNIGHT
e specific changes I have to do on conf files for this to work? Or any change at the client machines? Thank you. George Knight - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: HOWTO PEAP + FreeRadius + XP Client

2008-05-01 Thread George KNIGHT
t copied to the Windows machine? Why are there so many certificates created and we are just using 2? Thank you George Knight On Thu, May 1, 2008 at 1:29 PM, Alan DeKok <[EMAIL PROTECTED]> wrote: > George KNIGHT wrote: > > Permissions are as follow; > > .. > > comp-010:/et

Re: HOWTO PEAP + FreeRadius + XP Client

2008-05-01 Thread George KNIGHT
message. Thank you Alan George Knight On Thu, May 1, 2008 at 1:06 PM, George KNIGHT <[EMAIL PROTECTED]> wrote: > Permissions are as follow; > > > comp-010:/etc/raddb # dir > total 289 > -rw-r- 1 root radiusd 718 2008-02-14 10:35 acct_users > -rw-r- 1

Re: HOWTO PEAP + FreeRadius + XP Client

2008-05-01 Thread George KNIGHT
root1743 2008-04-25 10:17 server.key -rw-r- 1 root root2525 2008-04-25 10:17 server.p12 -rw-r- 1 root root3495 2008-04-25 10:17 server.pem -rw-r- 1 root radiusd 578 2008-02-14 10:35 xpextensions comp-010:/etc/raddb # Thank you. George On Thu, May 1, 2008 at 12:47 PM

Re: HOWTO PEAP + FreeRadius + XP Client

2008-05-01 Thread George KNIGHT
". /etc/raddb/sites-enabled/default[199]: Errors parsing authenticate section. } } Errors initializing modules comp-010:/home/srn # - It says a 'permission denied' and you asked me earlier if I was running the comma

  1   2   3   >