FreeRadius keeps marking a home server dead

2004-08-27 Thread Htin Hlaing
Hi, I am using FreeRadius 1.0 pre release 3 as a daemon and I have noticed the following problem. I have proxying on and set up NULL realm with one home server to it. If a RADIUS message comes and the proxying to the home server works the first time, then it works fine. If the home

RE: FreeRadius keeps marking a home server dead

2004-08-27 Thread Htin Hlaing
Hi, Has anyone seen this behavior and any thoughts on this issue? Thanks, Htin -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Htin Hlaing Sent: Friday, August 27, 2004 8:25 AM To: [EMAIL PROTECTED] Subject: FreeRadius keeps marking a home server dead

RE: FreeRadius keeps marking a home server dead

2004-08-27 Thread Htin Hlaing
Hi, Has anyone seen this behavior and any thoughts on this issue? Thanks, Htin -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Htin Hlaing Sent: Friday, August 27, 2004 8:25 AM To: [EMAIL PROTECTED] Subject: FreeRadius keeps marking a home server dead

problem with proxying using fail_over setup

2004-07-07 Thread Htin Hlaing
Hi, With pre3 release, I am seeing the following problem when I am testing with proxying set up to a REALM which is has two radius servers for fail_over. In the REALM NULL, I set up two radius servers, but I only have the second one listed running. When a request comes in, it tries the first one

RE: problem with proxying using fail_over setup

2004-07-07 Thread Htin Hlaing
fail_over setup Htin Hlaing [EMAIL PROTECTED] wrote: However, the behavior that I see is it first marks the host from a totally unrelated realm as dead first and then the one that did not answer as dead. It's not a totally unrelated realm. It's a realm at the same IP address and port

RE: problem with proxying using fail_over setup

2004-07-07 Thread Htin Hlaing
: [EMAIL PROTECTED] [mailto:freeradius- [EMAIL PROTECTED] On Behalf Of Htin Hlaing Sent: Wednesday, July 07, 2004 2:32 PM To: [EMAIL PROTECTED] Subject: RE: problem with proxying using fail_over setup Thanks for that info Alan. That makes sense. Also, what I was looking for is that the second

RE: how to run radiusd with high debug info but in background

2004-07-05 Thread Htin Hlaing
Hi, I have tried this with the pre3 release and -sxxyz does not seem to daemonize for some reason. Actually, -xx or -x prevent from daemonizing. I thought it would if I take out -f. Has anyone seen this? Thanks, Htin -Original Message- From: [EMAIL PROTECTED] [mailto:freeradius-

Post-Auth for Access-Accept not called with LEAP

2004-06-25 Thread Htin Hlaing
Hi, I have the following set up in my radiusd to get auth results. With other EAP types like peap, ttls, etc. I get Access-Accepts also logged in the reply_log. For LEAP, I am not getting it. From debug run, I don't see post-auth getting called at all. How can I fix to get the post-auth

RE: Post-Auth for Access-Accept not called with LEAP

2004-06-25 Thread Htin Hlaing
Hi, Forgot to mention, I am using the 1.0.0 pre3 release. Thanks, Htin -Original Message- From: [EMAIL PROTECTED] [mailto:freeradius- [EMAIL PROTECTED] On Behalf Of Htin Hlaing Sent: Friday, June 25, 2004 8:10 AM To: [EMAIL PROTECTED] Subject: Post-Auth for Access-Accept

RE: Post-Auth for Access-Accept not called with LEAP

2004-06-25 Thread Htin Hlaing
this and make sure that the fix makes sense? Thanks, Htin -Original Message- From: [EMAIL PROTECTED] [mailto:freeradius- [EMAIL PROTECTED] On Behalf Of Htin Hlaing Sent: Friday, June 25, 2004 8:49 AM To: [EMAIL PROTECTED] Subject: Post-Auth for Access-Accept not called with LEAP Hi

RE: FreeRADIUS-1.0.0pre3 crash at SIGHUP

2004-06-25 Thread Htin Hlaing
. Is there anything I need turn on? I'll see if I can get a core and put it up somewhere semi-public. [Htin Hlaing] Yes. It's allow_core_dumps = yes in radiusd.conf file - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

cvs latest does not compile

2004-06-17 Thread Htin Hlaing
Hi, I just downloaded the cvs latest and did configure successfully, but make would fail from the first step going into libltdl. Htin gmake[1]: Entering directory `/data/home/hhlaing/FreeRadius/buildversion/radiusd/libltdl' gmake[1]: *** No rule to make target `all'. Stop. gmake[1]: Leaving

RE: radiusd -x gives error

2004-06-10 Thread Htin Hlaing
Try using -d option. For example, Radiusd -X -d /usr/local/etc/raddb Or just reconfigure with the right path. Htin -Original Message- From: [EMAIL PROTECTED] [mailto:freeradius- [EMAIL PROTECTED] On Behalf Of Manjunath M Prabhu Sent: Thursday, June 10, 2004 8:52 AM To: '[EMAIL

RE: [Q]: Assigning VLANs and restricting logins?

2004-05-26 Thread Htin Hlaing
Hi Alan, Would it be right to say that a RADIUS server in 802.1X authentication allows a client to be authenticated but can not unauthenticate a authenticated client and let the AP(Nas) know about this unauthentication. I guess it comes down to RADIUS server responds to clients but does not

RE: [Q]: Assigning VLANs and restricting logins?

2004-05-26 Thread Htin Hlaing
Well if the admin, instructs the NAS equipment to log-off all the users your laptop should know immediately that its disassociated from the wifi AP. When your laptop ties to log-on again, and makes that request to the AP, the AP will contact the radius server again. Admin can/would log off

RE: [Q]: Assigning VLANs and restricting logins?

2004-05-26 Thread Htin Hlaing
btw, if you don't tell the NAS equipment that a user should be logged-off you've done nothing by Admin can/would log off the logged in clients on the domain that the RADIUS server resides. What would that accomplish (I dont even understand how do you think that will work?!?) Thanks. I of

RE: EAP-TLS and WEP key generation

2004-05-20 Thread Htin Hlaing
Hi Alan, So it seems that the AP is responsible for the WEP keys and their rotation..correct? Yes and no. It's responsible for using the keys, and asking for their rotation, but the RADIUS server generates the keys. [Htin Hlaing] My understanding was that RADIUS server

RE: EAP-TLS

2004-05-06 Thread Htin Hlaing
It is possible that rlm_tls libraries are not in the lib location. This will cause core dumps when the server tries to load the library. Htin -Original Message- From: [EMAIL PROTECTED] [mailto:freeradius- [EMAIL PROTECTED] On Behalf Of Frédéric EVRARD Sent: Thursday, May 06, 2004

FreeRadius stress test

2004-05-03 Thread Htin Hlaing
Hi, I would like to stress test FreeRadius under 802.1X Auth using the latest CVS version. Does anyone know a 802.1X traffic generator to do this? Any idea is welcome... Thanks, Htin - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: Access-Reject not in reply_log

2004-05-01 Thread Htin Hlaing
, 2004 7:27 AM To: [EMAIL PROTECTED] Subject: Re: Access-Reject not in reply_log Htin Hlaing [EMAIL PROTECTED] wrote: Wondering if something is wrong with my questions and therefore, ignored. If any one has some info for these, I would like to know. I appreciate it. I don't know about 0.9.3

Access-Reject not in reply_log

2004-04-30 Thread Htin Hlaing
Hi, Wondering if something is wrong with my questions and therefore, ignored. If any one has some info for these, I would like to know. I appreciate it. Thanks, Htin -Original Message- From: [EMAIL PROTECTED] [mailto:freeradius- [EMAIL PROTECTED] On Behalf Of Htin Hlaing Sent

RE: Access-Reject not in reply_log

2004-04-29 Thread Htin Hlaing
] [mailto:[EMAIL PROTECTED] On Behalf Of Htin Hlaing Sent: Wednesday, April 28, 2004 4:34 PM To: [EMAIL PROTECTED] Subject: Access-Reject not in reply_log Hi, According to the comments in radiusd.conf file for reply_log, it should be logging the Access-Rejects as well. But, I am seeing only the Access

Access-Reject not in reply_log

2004-04-28 Thread Htin Hlaing
Hi, According to the comments in radiusd.conf file for reply_log, it should be logging the Access-Rejects as well. But, I am seeing only the Access-Accept messages only. Is there anything else that I need to configure to get the Access-Rejects as well. Thanks, Htin

RE: Compile freeradius in C++

2004-04-20 Thread Htin Hlaing
Hi, If I write a module which is very specific towards communicating with the proprietary product outside of the FreeRadius, do I need to have the source code for this module available..? Thanks, Htin -Original Message- From: [EMAIL PROTECTED] [mailto:freeradius- [EMAIL

client.conf and proxy.conf

2004-04-13 Thread Htin Hlaing
Hi, I assume we need to bounce the FreeRadius server when changes are made to any config files. I am interested more in the config files which might be changed frequently such as client.conf and proxy.conf. Has anyone got expereince in this area, so the changes can take place dynamic without

RE: performance, stability, benchmarks

2004-03-30 Thread Htin Hlaing
Tariq, I am also very interested in those two as well, especially with EAP types. I am not sure if this is relevent but I am also interested in start up time? What are the factors which can have impact on the start up initialization time of a FreeRadius server? Thanks, Htin -Original

fast connect support in Free Radius

2004-03-29 Thread Htin Hlaing
Hi, I am wondering if FreeRadius EAP_TLS has support for session reuse or does it always have to restart from scratch for reauthentications? Thanks, Htin