dictionary handling

2007-05-23 Thread Wolfgang Rosenauer
Hi, since I just begun to use freeradius in production I found some strangeness. The default configuration is to include all dictionaries but I wonder how they are evaluated? I have a Cisco NAS which sends (at least I think) VSA records and so I configured the Cisco VSA hack. For accounting

Re: NAS ignoring Access-Accept

2007-05-22 Thread Wolfgang Rosenauer
[EMAIL PROTECTED] wrote: debug radius (This will activate debugging) show log (To read logged requests/answers) Hmm, got no output. I enabled debug radius, made a dialin attempt (what failed) but haven't seen any radius log message on the Cisco with show log and also not on the remote

Re: NAS ignoring Access-Accept

2007-05-22 Thread Wolfgang Rosenauer
Hi, [EMAIL PROTECTED] wrote: Check logging in your config. Debug information has lowest priority so requires highest level of logging (7). got an output now: May 23 07:42:25 dialin1 274: May 23 05:42:25: RADIUS: Received from id 214 1.1.1.1:1812, Access-Accept, len 20 May 23 07:42:25 dialin1

NAS ignoring Access-Accept

2007-05-21 Thread Wolfgang Rosenauer
Hi, I'm not sure if I run into a Cisco or Freeradius issue here. I try to migrate from icradius to freeradius and everything worked in the new configuration when I tried with NTRadPing and so I'm switched the Cisco NAS to the new server. Unfortunately the NAS is ignoring the Access-Accept

Re: NAS ignoring Access-Accept

2007-05-21 Thread Wolfgang Rosenauer
[EMAIL PROTECTED] wrote: Run debug radius on Cisco. You are missing a key (shared secret) in radius-server host ... statement. See if that is the problem. The shared secret is in another config line which I've left out. radius-server key XX How can I get debug output on a Cisco? (I'm

Re: NAS ignoring Access-Accept

2007-05-21 Thread Wolfgang Rosenauer
Hugh Messenger wrote: Wolfgang Rosenauer [EMAIL PROTECTED] said: I ran radiusd -X and saw that freeradius sent an Access-Accept reply to the NAS' ip address and source port. Could you post the entire -X log for an example request? rad_recv: Access-Request packet from host 1.1.1.7:1645, id

Re: NAS ignoring Access-Accept

2007-05-21 Thread Wolfgang Rosenauer
[EMAIL PROTECTED] wrote: You are not sending any reply attributes to the NAS. Your client probably needs things like Framed-IP-Address etc. from it. Or do you have DHCP on the NAS? But I would expect Framed-IP-Address to be in the request then. Hmm, I don't think that the old server was

Re: (err=2)! (Shared secret is incorrect.)

2006-01-06 Thread Wolfgang Rosenauer
On 2006-01-06 at 12:51:51 -0800, Richard Marriner II wrote (shortened): I have setup freeradius to authincate against my postgresql database. But I am getting odd errors about my secrets. They are the same every where. Can someone help me out with this? Here is the output from my login

Re: Authenticate to eDirectory

2005-06-07 Thread Wolfgang Rosenauer
On 2005-06-06 at 22:04:41 -0400, [EMAIL PROTECTED] wrote (shortened): Hello! Well, now i am completely confused..I have tried to install openldap2 before on sles9/oes-linux and last time edirectory did not start and i had to reinstall from scratch. And again, when selecting the

Re: Trouble installing 1.0.3

2005-06-07 Thread Wolfgang Rosenauer
On 2005-06-07 at 09:18:08 -0400, Nicolas Ross wrote (shortened): When I install 1.0.3, I get at the end : /var/dev/freeradius-1.0.3/install-sh -c -m 755 -s radwho /usr/local/bin strip: /usr/local/bin/#inst.22560#: File format not recognized gmake[4]: *** [install] Error 1 (...) My

Re: New Version of tinyca usable for FreeRADIUS

2004-07-15 Thread Wolfgang Rosenauer
On 2004-07-15 at 13:55:04 +0200, Michael Schwartzkopff wrote (shortened): This version can be used to create certificates with extendedKeyUsage as nescessary for certificate usage in windows. For extendedKeyUsage do: Setup - OpenSSL - ServerCertificate - extendedKeyUsage- AskUser Setup -

RE: how to compile 0.9.3 at suse 9.0

2004-01-21 Thread Wolfgang Rosenauer
Hi, On Wed, 21 Jan 2004, carlos collart wrote: I have SuSE 8.2 and 9.0 both with the RPM that comes with SuSE and a found that the file rml_sqlcounter wasn't at the adress /usr/lib/freeradius Where supose to be rlm_sqlcounter rlm_sqlcounter is an experimental module which we do not