Re: Termination when there is no traffic

2006-04-06 Thread Zoltan A. Ori
On Thursday 06 April 2006 04:29, Johnny wrote: I do not know which parameter I have to change so that connections wont be terminated automatically anymore. That's a function of the NAS and/or the user's PC. Read NAS docs on session timeout value. Zoltan Ori - List info/subscribe

Re: Can Juniper router or firewall configured on Free radius

2006-04-06 Thread Zoltan A. Ori
; retry number; timeout seconds; } On freeRADIUS make entries for the router as you would for any NAS in clients.conf and user using any of the applicable attributes. Zoltan Ori - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: NAS MAC Addres Atribute

2006-03-11 Thread Zoltan A. Ori
On Friday 10 March 2006 22:25, Alex M wrote: Hi Is the attribute for NAS MAC address is: NAS-Identifier? Examine what your NAS sends, read the NAS docs. My devices send the NAS MAC address as Called-Station-Id. Yours may be different or not send it at all. Zoltan Ori - List info

Re: rlm_eap_tls not found

2006-01-14 Thread Zoltan A. Ori
. Zoltan Ori - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: FreeRadius and Openldap authentication

2006-01-02 Thread Zoltan A. Ori
in your source doc directory, www.freeradius.org and wiki.freeradius.org. Zoltan Ori - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: FreeRADIUS with PEAP problems

2006-01-02 Thread Zoltan A. Ori
? Zoltan Ori - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: FreeRADIUS with PEAP problems

2006-01-02 Thread Zoltan A. Ori
manifest itself as an error when dependencies are required. Zoltan Ori - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: FreeRADIUS with PEAP problems

2006-01-02 Thread Zoltan A. Ori
On Monday 02 January 2006 07:34, Alhagie Puye wrote: rlm_eap: No such sub-type for default EAP type peap Bus error (core dumped) bash-2.05b# I take it all back. It shouldn't have dumped core. I looked right over that. Zoltan Ori - List info/subscribe/unsubscribe? See http

Re: FreeRadius +TLS (base on openssl)

2005-12-31 Thread Zoltan A. Ori
On Saturday 31 December 2005 17:29, Bustamante David wrote: Disculpas, en este momento estoy de vacaciones y no podré responder los mensajes. David Can someone unsubscribe him? He's auto-responding to his own auto-responses. - List info/subscribe/unsubscribe? See

Re: XP auth + PEAP

2005-12-06 Thread Zoltan A. Ori
On Tuesday 06 December 2005 04:10, debik wrote: The problem is that i connect to the netowrk but i don't se the network. Ican't not ping any hosts. And what have you done to troubleshoot your connection? You must check your network. If the supplicant connects as you say, then either the

Re: WLAN 802.1x FreeRadius with LDAP

2005-11-27 Thread Zoltan A. Ori
On Sunday 27 November 2005 06:52, Christian Poessinger wrote: Yes, I'm trying to use PEAP, I have configured MS-CHAPv1 as described in many Howtos. MS-CHAP V2 is in the Howtos of PEAP that I have read. In any case, there is no mschap info in the tunnel which is indicated in the error

Re: WLAN 802.1x FreeRadius with LDAP

2005-11-26 Thread Zoltan A. Ori
: Handler failed in EAP/peap rlm_eap: Failed in EAP select modcall[authenticate]: module eap returns invalid for request 5 modcall: group authenticate returns invalid for request 5 auth: Failed to validate the user. The lines just before the reject hold the clue. Zoltan Ori - List info

Re: WLAN 802.1x FreeRadius with LDAP

2005-11-26 Thread Zoltan A. Ori
On Saturday 26 November 2005 12:27, Christian Poessinger wrote: Zoltan A. Ori wrote: On Saturday 26 November 2005 08:50, Christian Poessinger wrote: rlm_eap_peap: Session established. Decoding tunneled attributes. rlm_eap_tls: TLS 1.0 Alert [length 0002], fatal access_denied TLS

Re: WLAN 802.1x FreeRadius with LDAP

2005-11-26 Thread Zoltan A. Ori
On Saturday 26 November 2005 13:58, Christian Poessinger wrote: Zoltan A. Ori wrote: I'm not an expert and am often wrong, but I don't think FreeRADIUS is the problem here. Everything is working up to that point. Does it break at the same place every time? Double check the NAS

Re: freeradius WPA Problèm

2005-11-23 Thread Zoltan A. Ori
of the reception area or there is interference from other APs and Ad-Hoc networks on the same or adjacent channel. Obstructions like walls, metal file cabinets, bodies, etc., must also be considered. Zoltan Ori - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: parsing detail files myself

2005-11-22 Thread Zoltan A. Ori
of record has gw-final-xlated-cdn? Then you will know that Apples + Oranges Brie Zoltan Ori - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Intel PEAP client Roaming Identity

2005-09-15 Thread Zoltan A. Ori
On Thursday 15 September 2005 12:25, Ben Thompson wrote: Hi We have a 802.1x/PEAP wireless network using freeRADIUS 1.0.1 on RedHat AS 4. It is important for us to know who is using the network at any given time so the accounting logs are very useful to us. The other day someone came along

Re: Pb with EAP/MD5

2005-08-08 Thread Zoltan A. Ori
On Monday 08 August 2005 03:54, Rafael DiazMaurin wrote: Hello, Cna someone help me ? I use : freeradius 1.0.4, and a switch CISCO 2950 I'm trying to configure EAP/MD5, but the client can't show the window of login/password, it's connected to the network without asking for the

Re: rewriting the User-Name attr

2005-08-05 Thread Zoltan A. Ori
My problem is now that I want to change the User-Name attr for students only, to [EMAIL PROTECTED] before proxying it to the other radius server. attr_rewrite studenti { attribute = User-Name # may be packet, reply, proxy, proxy_reply or config

Re: Problems authenticating and assigning DHCP addresses

2005-07-09 Thread Zoltan A. Ori
permits. Build a DHCP scope for each VLAN address range, then assign the gateway and helper address to each virtual interface of the trunks on your router. This has nothing to do with RADIUS and should be covered in your router, switch and access point manuals. Zoltan Ori - List info

Re: Problems authenticating and assigning DHCP addresses

2005-07-09 Thread Zoltan A. Ori
. In addition, I also am wondering why I can only use Attribute=Password for successful authentication, and not Attribute=Crypt-Password. Crypt-Password works fine when tested through radtest. As far as I know, PEAP doesn't support crypt passwords. Try TTLS. Zoltan ori - List info/subscribe

Re: Authenticate/Attributes based on NAS-IP-Address

2005-06-08 Thread Zoltan A. Ori
On Wednesday 08 June 2005 15:54, N White wrote: That link doesn't give me anything. Page Not Found. I've done a lot of searching through the archives though and haven't really found anything like this. -Nick Mike Lampson wrote: Nick,

Re: Freeradius and mschapv2

2005-05-21 Thread Zoltan A. Ori
/intro.html and read each page. Zoltan Ori - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: running external script in FreeRadius

2005-01-21 Thread Zoltan A. Ori
On Thursday 20 January 2005 19:15, Schoggins, George wrote: Could someone give me an example of the exec and how it is configured to run. See the 'exec-program-wait' script in your freeradius source. It has examples of use and quick explanation. Zoltan - List info/subscribe/unsubscribe?

Re: running external script in FreeRadius

2005-01-21 Thread Zoltan A. Ori
On Friday 21 January 2005 05:52, Zoltan A. Ori wrote: On Thursday 20 January 2005 19:15, Schoggins, George wrote: Could someone give me an example of the exec and how it is configured to run. See the 'exec-program-wait' script in your freeradius source. It has examples of use and quick

Re: Permission denied on certificate-files

2005-01-13 Thread Zoltan A. Ori
On Thursday 13 January 2005 06:39, Hedenborg Thomas wrote: Does somebody have a clue to why I get permission denied when trying to open the cacert.pem file? See the file-permissions below. ls -la cacert.pem -rw-r- 1 root radiusd 1346 Oct 5 02:14 cacert. try -rw-r--r-- instead. Zoltan

Re: Configure 802.1x on Mac OS X

2004-12-30 Thread Zoltan A. Ori
Anyone plz help me. I don't know how to configure 802.1x on Mac OS X. I already update the latest airport 4.0 but still cannot authenticate. Windows XP 2000 can but not Mac OS X. TQ Try google 'mac osx 802.1x' https://onlineservices.artic.edu/guides/public/wireless/configure.shtml

Re: Authorizing user to assign a particular VLAN

2004-12-23 Thread Zoltan A. Ori
then decide what is appropriate for your situation. Zoltan Ori - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: WRT54G and Freeradius

2004-12-04 Thread Zoltan A. Ori
the documentation of the AP and freeradius. Freeradius works fine for this and will most likely work immediately upon install after only some very small configuration. Whether you use WPA AES or TKIP is between your AP and supplicant. Radius doesn't care about that. Zoltan Ori - List info

Re: WRT54G and Freeradius

2004-12-04 Thread Zoltan A. Ori
On Saturday 04 December 2004 14:33, Panagiotis Mavros wrote: AP and freeradius use EAP over Radius when i configure the AP to use WPA-Radius authentication ?I dont get it. Check the documentation on the AP to be sure, but that's usually the way it is. I have windows XP as client , WRT54G as

Re: An Enterasys - Freeradius Question Again

2004-06-09 Thread Zoltan A. Ori
On Wednesday 09 June 2004 04:41, Manuel Stadelmann wrote: We played with the Enterasys E1 Switch and Freeradius to get 802.1x to work. The latest firmware should be installed. Enable eapol on the swith and for each port you must set the auth-mode. set eapol enable set eapol