Re: peap-tls support in freeradius

2008-07-30 Thread Gopinath Reddy N
Hi Alan, Could u please let me know whether I need to change any settings in configuration files like eap.conf or radiusd.conf to make it work for PEAP-TLS Thanks a lot Gopi On Wed, Jul 30, 2008 at 9:43 AM, Gopinath Reddy N [EMAIL PROTECTED] wrote: Hi Alan, Thanks for the info. Iam running

peap-tls support in freeradius

2008-07-29 Thread Gopinath Reddy N
Hi, I would like to know whether peap-tls(peap as outer authentication, tls as inner authentication method) is supported in freeradius. Some of my clients use peap-tls so want to know whether its supported by freeradius. I tried using a setup that works for tls for peap-tls but it fails saying

Re: peap-tls support in freeradius

2008-07-29 Thread Gopinath Reddy N
Hi Alan, Thanks for the info. Iam running 2.0.2 Regards Gopi On Tue, Jul 29, 2008 at 6:14 PM, Alan DeKok [EMAIL PROTECTED]wrote: Gopinath Reddy N wrote: I would like to know whether peap-tls(peap as outer authentication, tls as inner authentication method) is supported in freeradius. Some

Re: inner/outer authentication problem in 2.0.2

2008-06-17 Thread Gopinath Reddy N
Thanks Alan. This works. On Thu, Jun 12, 2008 at 11:02 AM, Alan DeKok [EMAIL PROTECTED] wrote: Gopinath Reddy N wrote: But by way of hack if user knows some other valid user name in the system he can use that as outer identity and get the policy setting of that user. So to avoid that Iam

inner/outer authentication problem in 2.0.2

2008-06-11 Thread Gopinath Reddy N
Hello all, Iam using freeradius 2.0.2 version with TTLS/MSCHAPv2 I have two users in configuration tmpuser - tmpgroup emp1 - employee Iam using tmpuser in outer authentication and emp1 in inner authentication. I have eap.conf file configured with ttls {

Re: inner/outer authentication problem in 2.0.2

2008-06-11 Thread Gopinath Reddy N
is there a way I can come out of this situation in freeradius Regards gnreddy 2008/6/11 Ivan Kalik [EMAIL PROTECTED]: Why do you apply any policies to the outer identity? Ivan Kalik Kalik Informatika ISP Dana 11/6/2008, Gopinath Reddy N [EMAIL PROTECTED] piše: Hello all, Iam using freeradius 2.0.2

ldap configuration parameters in radiusd.conf file

2008-02-25 Thread Gopinath Reddy N
Hi, Does any body has idea whether the below parameters are mandatory in radiusd.conf file ldap section. groupname_attribute = cn groupmembership_filter = (|((objectClass=group)(member=%{Ldap-UserDn}))((objectClass=GroupOfUniqueNames)(uniquemember==%{Ldap-UserDn}))) groupmembership_attribute =

avoiding ldap group search

2008-02-22 Thread Gopinath Reddy N
Hi, Presently my system is configured in such a way that freeradius checks whether user is present in ldap server and then it searches to find the user group in ldap. Is there a way I can avoid this? Basically I want to see if a user is present in Ldap server if he is present I will go ahead and

Re: Upgrade error for LDAP in Freeradius2.0

2008-01-27 Thread Gopinath Reddy N
] wrote in message news:[EMAIL PROTECTED] Gopinath Reddy N wrote: We have not changed any data in AD. But when we upgrade and try to connect using valid user id..user is getting rejected. ... (|((objectClass=group)(member=%{Ldap-UserDn})) The rreferences to %{LDAP-UserDn} should now

Upgrade error for LDAP in Freeradius2.0

2008-01-26 Thread Gopinath Reddy N
Hi, We have upgraded our freeradius1.6 to 2.0 We are using active directory for LDAP server. We have not changed any data in AD. But when we upgrade and try to connect using valid user id..user is getting rejected. Please let me know if there any issues I need to take before ugprading to 2.0

regarding RFC 2253 UTF-8 String Representation of Distinguished Names support

2008-01-21 Thread Gopinath Reddy N
Hi, Could anyone let me know whether RFC2253 is implemented in free radius. Iam trying to use special characters in Users name and active directory is expecting UTF-8 string form of the user. However free radius is not encoding it in UTF-8 format. Thanks for the help. -gnr - List

upgrade error in 2.0 version

2008-01-21 Thread Gopinath Reddy N
Hi, I would like to know if anything related to configuration has been changed in 2.0 version when compared with 1.1.6 Iam running radiusd -C command it throws the below error. Is it a valid error or I can ignore it. /etc/raddb/users[21]: Parser error (check) for entry DEFAULT: Invalid Octet

Re: regarding RFC 2253 UTF-8 String Representation of Distinguished Names support

2008-01-21 Thread Gopinath Reddy N
format.Or some configuration attribute Iam missing. Once again Thanks for the help. Regards gnr On Jan 21, 2008 5:53 PM, Alan DeKok [EMAIL PROTECTED] wrote: Gopinath Reddy N wrote: Could anyone let me know whether RFC2253 is implemented in free radius. it should be. Iam trying to use special

Re: Freeradius + portuguese characters in Active Directory

2008-01-16 Thread Gopinath Reddy N
hi Catónio if its converted to UTF-8 then it should look like below in hex format. Try to get ur hex data and compare it with below data. If you are not getting the UTF-8 decoded information as shown in below then there must be an issue with encoding mechanism of free radius. C- 0x43 a- 0x61