Mac-auth. authorized_macs file sintax

2013-06-21 Thread Roberto Ortega Ramiro
Hello, I have configured freeradius for accept one host conection over host mac address This is the log, at the end appear the error: Called-Station-Id = 00-90-0B-23-2E-BF:EquiposPortatiles Calling-Station-Id = 98-0C-82-B5-00-F2 Framed-MTU = 1250 NAS-Port-Type = Wireless-802.11

Re: Mac-auth. authorized_macs file sintax

2013-06-21 Thread Roberto Ortega Ramiro
Thank you for your fast response. I have found the problem, i have insert a space before the mac address. Sorry and thank you for you time. 2013/6/21 Roberto Ortega Ramiro roberto.ort...@escuelassj.com Hello, I have configured freeradius for accept one host conection over host mac address

Re: Mac-auth. authorized_macs file sintax

2013-06-21 Thread Roberto Ortega Ramiro
} } } But i have no conection. Thank you. 2013/6/21 Matthew Newton m...@leicester.ac.uk On Fri, Jun 21, 2013 at 01:23:28PM +0200, Roberto Ortega Ramiro wrote: Hello, I have configured freeradius for accept one host conection over host mac address On the assumtion

Re: Mac-auth. authorized_macs file sintax

2013-06-21 Thread Roberto Ortega Ramiro
...@freeradius.org On 21 Jun 2013, at 13:29, Roberto Ortega Ramiro roberto.ort...@esj.es wrote: Hi again. Matthew, you are rigth, i have no Access-Accept. Your NAS is configured wrong for Mac-Auth. It's attempting to start 802.1X authentication, that EAP-Message is an Identity response for 'luna

Re: Mac-auth. authorized_macs file sintax

2013-06-21 Thread Roberto Ortega Ramiro
Ortega Ramiro wrote: I'm trying to conect using AEP-TLS one host, and i was using one wrong user and password for connect the host with his mac. I have undertand that this is no posible. Right? You can do EAP-TLS *and* validate the MAC address. You just can't authenticate based on the MAC

Re: Mac-auth. authorized_macs file sintax

2013-06-21 Thread Roberto Ortega Ramiro
21, 2013 at 02:56:57PM +0200, Roberto Ortega Ramiro wrote: I'm trying to conect using AEP-TLS one host, and i was using one wrong user and password for connect the host with his mac. I have undertand that this is no posible. Right? You can do EAP-TLS *and* validate the MAC address. You just

Re: Mac-auth. authorized_macs file sintax

2013-06-21 Thread Roberto Ortega Ramiro
{ ok = return } I suppose that is not the most elegance way of make the configuration but it runs. Thank you for your help. 2013/6/21 Roberto Ortega Ramiro roberto.ort...@esj.es I'm not at work now, but. This wil do that i want: authorize_macs if (ok

Re: ldap

2013-06-21 Thread Roberto Ortega Ramiro
Hi, You have 2 modules ldap, one is ldap and the other is including configuration file /etc/freeradius/modules/ldap-orig Put /etc/freeradius/modules/ldap-orig out of modules directory. The dns goes right? I'll put the ldap server's ip instead of name. 2013/6/21 Julian Macassey

Re: Problems freeradius and samba4

2013-06-14 Thread Roberto Ortega Ramiro
Hi, i'm starter here but, the user freeradius in your ldap must be able to read user's passwords. Try with administrator in /etc/raddb/modules/ldap and if it works, the user freeradius won't has rigths for this. By El viernes, 14 de junio de 2013, ricardobarbosams escribió: Hi. Executing

Re: Problems wpa2-tls eap mschapv2 ldap

2013-06-04 Thread Roberto Ortega Ramiro
Hi, the status can tag as solved. I have uncomment the line ldap in /etc/raddb/sites-enabled/inner-tunnel Authorize section. And it runs. Thank you for your help. 2013/6/3 Roberto Ortega Ramiro roberto.ort...@esj.es Hi again, i have found this response http://lists.freeradius.org

Re: Problems wpa2-tls eap mschapv2 ldap

2013-06-03 Thread Roberto Ortega Ramiro
request Waking up in 0.4 seconds. 2013/6/3 Alan DeKok al...@deployingradius.com Roberto Ortega Ramiro wrote: Hi, the changes i have done in FreeRadius configuration: I have read than client and user files are not necesary, the others files are: Which aren't necessary. We ask

Re: Problems wpa2-tls eap mschapv2 ldap

2013-06-03 Thread Roberto Ortega Ramiro
now i will probe tomorrow as soon as i arrive. Thank you. 2013/6/3 Alan DeKok al...@deployingradius.com Roberto Ortega Ramiro wrote: Hello, here request 46, i don`t know where is the problem. Is it possible the problem were on the access point? No. If you read the debug output

Re: Problems wpa2-tls eap mschapv2 ldap

2013-06-03 Thread Roberto Ortega Ramiro
Hi again, i have found this response http://lists.freeradius.org/pipermail/freeradius-users/2008-November/033229.html Tomorrow i will try with Authorize section. Thank you. 2013/6/3 Roberto Ortega Ramiro roberto.ort...@esj.es Hi, i see this problem # Executing group from file /etc/raddb

Problems wpa2-tls eap mschapv2 ldap

2013-05-30 Thread Roberto Ortega Ramiro
I have read many times the deployingradius.com guide, i have visit this site many times too. I'm no able to enable wpa_supplicant, but every test with radtest are good i have config freeradius for ldap. I attach the debbug file radiusd -X I have take the file ca.pem in the validation asistan in

Problems wpa2-tls eap mschapv2 ldap

2013-05-30 Thread Roberto Ortega Ramiro
I have read many times the deployingradius.com guide, i have visit this site many times too. I'm no able to enable wpa_supplicant, but every test with radtest are good i have config freeradius for ldap. I attach the debbug file radiusd -X I have take the file ca.pem in the validation asistan in