RE: CIsco Pix and FreeRadius....

2006-01-19 Thread Mearl Danner
Read the comments in radiusd.conf. >>> [EMAIL PROTECTED] 1/18/2006 10:49:23 am >>> Done that fixed the issueNow I want to use ldap with freeradius is that possible? Tripp Sills Senior Network Engineer - Information Technology [EMAIL PROTECTED] Direct Mail Express 2441 Bellevue Avenue Exte

Re: Multiple Root Contexts

2005-07-20 Thread Mearl Danner
Might try downloading this and reading. It's very helpful. http://www.novell.com/documentation/edir_radius/pdfdoc/radadmin/radadmin.pdf If that's 3 separate "o=" at the root of the tree, the this from the above document. Example for Creating Multiple Instances of LDAP Module If you want mul

re: Searching Subcontexts in eDir

2005-07-19 Thread Mearl Danner
We're using Universal Passwords so the setup is a bit different. The documentation on rlm_ldap says that if password_attribute is set to NULL no password is sent. # default: NULL - don't add password Have you tried it with password_attribute = "userPassword" ? I'm assuming that you've tr

Re: Searching Subcontexts in eDir

2005-07-19 Thread Mearl Danner
Are you trying to use Universal Password to authenticate? I don't see the TLS negotiation required for the admin to read the Universal Password. Why don't you post the entire debug log? Then we can see all the setup info as the radius server reads it. Mearl >>> [EMAIL PROTECTED] 7/19/2005 3:11

Re: Searching Subcontexts in eDir

2005-07-19 Thread Mearl Danner
Check the filter statement in the ldap portion of radiusd.conf. It's searching on "uid" which in eDirectory is an integer field and isn't populated by default. Change the filter to filter = "(cn=%{Stripped-User-Name:-%{User-Name}})" and try it. That will get you past the "object not found" messa

Re: Freeradius and eDirectory

2005-07-05 Thread Mearl Danner
Thanks - that worked. I'm getting a tls connect. Now I have a problem testing using radtest. Using the following syntax. radtest jmuser heath10er server13.samford.edu 199.20.16.13 testing123 >From the log the admin bind and login is OK - I've obscured the password, but >it shows in the log exac

Freeradius and eDirectory

2005-06-27 Thread Mearl Danner
I'm having trouble getting a TLS connection from freeradius to my Novell LDAP Server. I've used Novell's document "Integrating Novell eDirectory with FreeRadius" to set it up. The radius -X log shows "rlm_ldap: could not start TLS Connect error" I've configured ldap.conf to use the same certifi

Re: AW: AW: Attributes Missing - Auth with ldap

2005-04-20 Thread Mearl Danner
Probably in the NDS setup - where the replicas are and which replica the info you're trying to get is on. Check this TID. It explains the referral process. http://support.novell.com/cgi-bin/search/searchtid.cgi?/10061859.htm Mearl >>> [EMAIL PROTECTED] 4/20/2005 11:58 AM >>> Hi, I did the ld

Re: Problems with PEAP/MSCHAPv2 and LDAP Server

2005-02-03 Thread Mearl Danner
You need to check the archives. But I'll answer anyway. Here's an explanation from one of Novell's forums. It's talking about Novells' Edirectory, but would apply to any other LDAP server. You are correct that the FreeRADIUS LDAP module cannot authenticate a MS-CHAP password against eDirectory.

Re: [radius] Re: Segmentation Fault - gdb output

2004-12-01 Thread Mearl Danner
Did you do "make clean" before you ran configure and recompiled? I had to when I recompiled with disable-shared. Mearl >>> [EMAIL PROTECTED] 12/1/2004 12:22:29 AM >>> Ok would be possible to get some instruction on how to build it staticly, I have looked through 14763 emails in this list that I

Re: cisco aironet 1200 series with freeRADIUS

2004-11-01 Thread Mearl Danner
This works on an AP350 - it's IOS 12.2 which also runs on 1200 AFAIK. Seems the trick is getting getting the Cisco eap config correct. If it's not correct, the AP won't recognize the 802.1x request as an eap request and won't contact the radius server for authentication. The freeradius configurati

Re: Problem Compiling

2004-10-20 Thread Mearl Danner
Perhaps > rlm_krb5.c:40:21: com_err.h: No such file or directory Mearl >>> [EMAIL PROTECTED] 10/20/2004 12:17:10 PM >>> how did you try installing? On my fedora system I always use "yum" to get and install the programs I want Matt wrote: > Hi, > Can anyone explain to me why I'm getting the e