EAP-TLS authentication

2007-12-13 Thread anoop_c
HI I am using EAP_TLS authentication ie certificate based authentication with free radius.The setup is working fine . I have one query.Is there any way to lock the client certificate to a particular laptop MAC address so that the certificate cannot be used in another machine..Is there any

LOGs of free radius

2007-10-03 Thread anoop_c
Hi I am doing eap-tls authentication with free radius.I am getting tow log files which are radius.log and radwatch.log. Can anyone tell me how to rotate theses log file. I don\'t want the radwatch.log also .How can i remoce this radwach.log Regards Anoop - List info/subscribe/unsubscribe?

Re: Denying user from authentication

2007-09-19 Thread anoop_c
Hi Please explain brief about certificate revocation process as i am new to it.I have used openssl for creating certificates, Regards Anoop Message: 3 Date: Wed, 19 Sep 2007 10:36:18 +0100 From: [EMAIL PROTECTED] Subject: Re: Denying user from authentication To: \FreeRadius users mailing

Denying user from authentication

2007-09-18 Thread anoop_c
Hi I am using EAP_TLS authentication with free radius 1.1.7 .The authentication is a certificate based one. I want to reject one user .I have done config in users file anoop07Auth-Type := Reject Reply-Message = \Your account has been disabled.\

Denying user from authentication

2007-09-18 Thread anoop_c
HI Thank you for the response.But as per users file configuration it should deny the user if i include that user name-reject file.Do i need to do any config for this to work. Regards Anoop Message: 3 Date: Tue, 18 Sep 2007 11:30:53 +0100 From: [EMAIL PROTECTED] Subject: Re: Denying user

RE : LOGs of eap-tls authentication

2007-09-13 Thread anoop_c
hi I am not able to start server by service radiusd restart command/. I used to start by simply typing radiusd command Pls anyone no the command to stop the server Regards Anoop -- Message: 6 Date: Thu, 13 Sep 2007 10:01:53 +0200 (CEST) From: HBA BOX

RE : LOGs of eap-tls authentication

2007-09-12 Thread anoop_c
Dear Thanks for the information.I am getting the logs when stopped server in debug mode. But the commands service radiusd stop and service radiusd restart is not working.So i killed the process radiusd using kill command.Pls let me know the commands to stop and start the server in normal

RE : LOGs of eap-tls authentication (inelec communication)

2007-09-10 Thread anoop_c
Message: 3 Date: Mon, 10 Sep 2007 10:23:19 +0200 (CEST) From: inelec communication [EMAIL PROTECTED] Subject: RE : LOGs of eap-tls authentication To: FreeRadius users mailing list Hi Please find my result.The authentication is working well.The problem is logs are not in radius.log file.

LOGs of eap-tls authentication

2007-09-09 Thread anoop_c
Hi 1 I am using eap-tls authentication.My setup is working well with certificates. I am unable to get logs of user login ok or denied in the radius.log file [EMAIL PROTECTED] sbin]# radiusd -X -A Starting - reading configuration files ... reread_config: reading radiusd.conf Config:

Re: EAP-TLS authentication

2007-07-16 Thread anoop_c
Dear Alan I have been using Navis radius.Now i decided to move to free radius.In the navis radius there is a log file .So it will be shown as \Username\ login ok or \user login failed due to..\ So these logs will be very helpful for troubleshooting. In free radius thers is no log

Re: EAP-TLS authentication (Alan DeKok)

2007-07-16 Thread anoop_c
Message: 6 Date: Fri, 13 Jul 2007 14:25:43 +0200 From: Alan DeKok [EMAIL PROTECTED] Subject: Re: EAP-TLS authentication (Alan DeKok) To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Hi Everything is working fine.But the logs are not coming when user authenticates.

Re : EAP-TLS authentication

2007-07-16 Thread anoop_c
hi [EMAIL PROTECTED] sbin]# radiusd -X Starting - reading configuration files ... reread_config: reading radiusd.conf Config: including file: /etc/raddb/proxy.conf Config: including file: /etc/raddb/clients.conf Config: including file: /etc/raddb/snmp.conf Config: including file:

Re: EAP-TLS authentication (Alan DeKok)

2007-07-13 Thread anoop_c
pls find the attached n: lower_user = \no\ main: lower_pass = \no\ main: nospace_user = \no\ main: nospace_pass = \no\ main: checkrad = \/usr/local/sbin/checkrad\ main: proxy_requests = yes proxy: retry_delay = 5 proxy: retry_count = 3 proxy: synchronous = no proxy: default_fallback =

EAP-TLS authentication

2007-07-13 Thread anoop_c
Hi I have a set up of 802.1x authentication with free radius server .I am using EAP_TLS certificate based authentication.The certificates i generated was using OPENSSL tool.The setup is working fine. In my log file no logs are displaying.Pls help. pls find the server in debug mode [EMAIL

log file for eap-tls with free radius 1.1.6

2007-06-05 Thread anoop_c
Hi In log file i am not able to get anyhting.First time i got one log saying its started and all. After that if again i start the server no logs are coming.But if i run in debug mode (RADIUS -X) its throwing all procedure and user is able to connect also Due to this i am unabe to change my

Re: log file for free radius 1.1.6 eap-tls authentication

2007-05-30 Thread anoop_c
Hi I am getting the following message in log first it satatrts (radiud -X) [EMAIL PROTECTED] radius]# cat radius.log Wed May 30 11:24:14 2007 : Info: Using deprecated naslist file. Support for this will go away soon. Wed May 30 11:24:14 2007 : Info: rlm_exec: Wait=yes but no output defined.

Re: log file for free radius 1.1.6 eap-tls authentication

2007-05-28 Thread anoop_c
Hi all I have two quieres 1 I have changed the log_auth= yes Still i am not able to get logs.Pls find my configs prefix = /usr/local exec_prefix = ${prefix} sysconfdir = /etc localstatedir = ${prefix}/var sbindir = ${exec_prefix}/sbin logdir = /usr/local/var/log/radius raddbdir =

Re: log file for free radius 1.1.6 eap-tls authentication

2007-05-28 Thread anoop_c
Hi pls find the o/p of radius -X.Also the log file is not coming. [EMAIL PROTECTED] sbin]# radiusd -X Starting - reading configuration files ... reread_config: reading radiusd.conf Config: including file: /etc/raddb/proxy.conf Config: including file: /etc/raddb/clients.conf Config:

Re: log file for free radius 1.1.6 eap-tls authentication

2007-05-28 Thread anoop_c
Hi 1 I know its eap-tls and certificate based. Earlier i was using Navis radius .In that for eap-tls we have to add certificate name to a specific user file. Like that here also user file is there can i make use of the user file so that only that user get authenticated, 2 Logs are

Re: Freeradius-Users Digest, Vol 25, Issue 106

2007-05-23 Thread anoop_c
Hi all I am doing eap-tls with fr 1.1.6 I am not getting anything in the log file.I am able to authenticate and connect. Wat are the config to be done for getting log Regards Anoop - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

free radius 1.1.6 -eap-tls authentication

2007-05-16 Thread anoop_c
Dear all My EAPTLS is working with free radisu 1.1.6 as i did every installation starts from zero Thanks for all for the help. I have few quires for free radius as i was using navis radius. 1 Where will i find the log of the authentication like username login ok...or

free radius 1.1.6 -eap-tls authentication

2007-05-13 Thread anoop_c
Dear all I am using the same AP,same widows client and same root certificate for testing navis as well as free raduis .Root certificate is also installed. Is ther any clue in the debug message? [EMAIL PROTECTED] wrote: Dear all Thank you for the responses I am using openssl

free radius 1.1.6 -eap-tls authentication

2007-05-11 Thread anoop_c
Hi list While doing eap-tls authentication i am getting the following debug message.Anybody please clarify. TLS_accept: Need to read more data: SSLv3 read client certificate A In SSL Handshake Phase In SSL Accept mode eaptls_process returned 13 eaptls_verify returned 1

Re: free radius 1.1.6 -eap-tls authentication

2007-05-11 Thread anoop_c
Dear all Thanks for the information.I am not able to do successful authentication still. These are my configurations I have copied my root.pem and server.pem to /etc/raddb/certs directory 1.My eap.conf file is like this eap {

Re: free radius 1.1.6 -eap-tls authentication

2007-05-11 Thread anoop_c
The FAQ, README, INSTALL, etc. all say to run the server in debugging mode to see what\'s going on. Dear all I run the radius server in debug mode and the output is as follows. I didn;t get any clue for the problem. [EMAIL PROTECTED] raddb]# radiusd -X Starting - reading

Re: free radius 1.1.6 -eap-tls authentication

2007-05-11 Thread anoop_c
Dear all Thank you for the responses I am using openssl tool for certificate generation.I have inclided the file xpextensions while generating certificates.The same certificates worked well with Navis radius server and windows xp as client.So this may not be the problem here Anoop hi,

Re: eap-tls authentication with free radius 1.1.5

2007-05-10 Thread anoop_c
Dear all With free radius 1.1.6 i am getting the following debug messages.Still authnticationi is not happenig [EMAIL PROTECTED] raddb]# radiusd -X Starting - reading configuration files ... reread_config: reading radiusd.conf Config: including file: /etc/raddb/proxy.conf Config:

Re: eap-tls authentication with free radius 1.1.6

2007-05-10 Thread anoop_c
Hi all I am trying to do eap-tls authentication with 1.1.6.My xp client is saying attempting to authenticate. So in the output i got when i tried to connect in debug mode is Starting - reading configuration files ... reread_config: reading radiusd.conf Config: including file:

Re: eap-tls authentication with free radius 1.1.5 (Alan DeKok)

2007-05-08 Thread anoop_c
Hi i didn\'t get the exact problem. I have gone through eap.conf. Pls make little bit clear abt the problem Anoop [EMAIL PROTECTED]: Send Freeradius-Users mailing list submissions to freeradius-users@lists.freeradius.org To subscribe or unsubscribe via the World Wide Web,

Re: eap-tls authentication with free radius 1.1.5

2007-05-08 Thread anoop_c
Quoting [EMAIL PROTECTED]: Send Freeradius-Users mailing list submissions to freeradius-users@lists.freeradius.org To subscribe or unsubscribe via the World Wide Web, visit http://lists.freeradius.org/mailman/listinfo/freeradius-users or, via email, send a message with subject

eap-tls authentication with free radius 1.1.5

2007-05-07 Thread anoop_c
Hi list I am tryinmg to do EAP_TLS certificate based authentication with free radius 1.1.5.The setup worked well with freeradius-snapshot-20021028.But as Windows vista is not supporting the same.So i am trying to do the authentication with 1.1.5 version Pls find the debug message.