upgrade path to v1.1.1

2006-03-27 Thread jck-freeradius
I am running a version of FreeRadius 1.0.0. Is there a patch path to upgrade to v1.1.1? Or must I rebuild completely from source? --johnk - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: freeradius 1.0.4 and Cisco WLSE

2005-08-19 Thread jck-freeradius
On Thu, Aug 11, 2005 at 07:02:19PM -0400, Alan DeKok wrote: [EMAIL PROTECTED] wrote: I am trying to speak between my Freeradius server and a Cisco WLSE. I am seeing EAP timeouts while WLSE is trying to authenticate through Freeradius. Short summary: the supplicant is broken.

freeradius 1.0.4 and Cisco WLSE

2005-08-11 Thread jck-freeradius
I am trying to speak between my Freeradius server and a Cisco WLSE. I am seeing EAP timeouts while WLSE is trying to authenticate through Freeradius. I have setup the AAA details (server,port,username,password,eap protocol) in the WLSE, and enabled fault tracking, so that polling is able to take

XP supplicant and Secure Cerficate acceptance

2005-08-01 Thread jck-freeradius
I am running FreeRadius 1.0.4 and using XP supplicants. My problem is after authenticating against FreeRadius, XP asks me to OK the server certificate. I do not want to manually validate the server certificate. XP should be able to validte the certificate by itself, as long as the cert has been

Problems with Simultaneous-Use

2005-08-01 Thread jck-freeradius
= This is a re-post. I received no help from the previous posting = Hello, I am having problems with Simultaneous-Use and checkrad. I know that checkrad is not running because: grep debug /usr/local/sbin/checkrad # Config: $debug is the file you want to put debug

Problems with Simultaneous-Use

2005-07-29 Thread jck-freeradius
Hello, I am having problems with Simultaneous-Use and checkrad. I know that checkrad is not running because: grep debug /usr/local/sbin/checkrad # Config: $debug is the file you want to put debug messages in #$debug = ; $debug =

Re: problems authenticating

2005-07-12 Thread jck-freeradius
On Mon, Jul 11, 2005 at 08:12:09PM -0400, Alan DeKok wrote: [EMAIL PROTECTED] wrote: Try using just MS-CHAP with an NT password in SQL. Once that works, PEAP will work. I am not entirely sure what you mean, so I tried a two different combinations. Find a RADIUS client that

Re: problems authenticating

2005-07-12 Thread jck-freeradius
On Tue, Jul 12, 2005 at 10:30:22AM -0500, [EMAIL PROTECTED] wrote: What I find interesting, is if I use NT-Password and or LM-Password, in the radcheck table, the sql authorization complains: modcall[authorize]: module auth_log returns ok for request 18 radius_xlat: 'johnk' rlm_sql (sql):

Re: problems authenticating

2005-07-11 Thread jck-freeradius
On Mon, Jul 11, 2005 at 05:26:54PM -0400, Alan DeKok wrote: [EMAIL PROTECTED] wrote: rlm_mschap: Told to do MS-CHAPv2 for johnk with NT-Password rlm_mschap: FAILED: MS-CHAP2-Response is incorrect That's pretty definitive. I thought so as well. I am 99% sure that the NTLM passwords

Re: problems authenticating

2005-07-11 Thread jck-freeradius
On Mon, Jul 11, 2005 at 03:40:32PM -0600, Vladimir Vuksan wrote: I believe this is incorrect. You may want to split off the two password hashes and put them in separate variables ie. LM-Password and NT-Password. User-Password usually refers to either a crypted or cleartext password. I

Re: problems authenticating

2005-07-11 Thread jck-freeradius
On Mon, Jul 11, 2005 at 06:56:44PM -0400, Alan DeKok wrote: Try using just MS-CHAP with an NT password in SQL. Once that works, PEAP will work. Alan DeKok. I am not entirely sure what you mean, so I tried a two different combinations. johnk has only a NT-Password. testacct has

Re: self user registration

2005-07-10 Thread jck-freeradius
On Sun, Jul 10, 2005 at 08:40:46PM +0100, Jason Clifford wrote: How about simply firewalling unauthenticated connections and routing all access requests to a secured website running a registration script. This may not scale to a large deployment without a fair bit of work but for a small

Problems authenticating and assigning DHCP addresses

2005-07-09 Thread jck-freeradius
I am running Freeradius-1.0.4 from source. Radius is accessed by XP requesting through a Cisco AP. I am running PEAP (MS-CHAP-V2) w/ SQL. My first question is: How do I tie all of this together with a DHCPd server, so that they authenticated clients can be assigned an IP

Re: self user registration

2005-07-09 Thread jck-freeradius
Michael, On Sat, Jul 09, 2005 at 08:40:29PM +0100, Michael Fisher wrote: So how do i go about creating the self registration system and what im thinking is offering walled garden access for email Take a look into NetReg for doing what you want: http://www.netreg.org Alan DeKok wrote:

Re: Problems authenticating and assigning DHCP addresses

2005-07-09 Thread jck-freeradius
Zoltan, On Sat, Jul 09, 2005 at 06:21:37PM -0400, Zoltan A. Ori wrote: On Saturday 09 July 2005 16:45, [EMAIL PROTECTED] wrote: My first question is: How do I tie all of this together with a DHCPd server, so that they authenticated clients can be assigned an IP address. I am

Re: Problems authenticating and assigning DHCP addresses

2005-07-09 Thread jck-freeradius
On Sat, Jul 09, 2005 at 07:01:10PM -0400, Zoltan A. Ori wrote: On Saturday 09 July 2005 18:36, [EMAIL PROTECTED] wrote: We currently do dot-Q trunking of VLANS, and my testing AP has been setup to support the configuration. Let me know if you are referring to something else. That is

Problems with installing to /etc and /var

2005-07-08 Thread jck-freeradius
I am running freeradius-1.0.4 from source, on SLES 9.0. I want to install freeradius so that it uses /etc and /var, and not /usr/local/etc and /usr/local/var. If I do: /usr/local/src/freeradius-1.0.4 # make clean make distclean /usr/local/src/freeradius-1.0.4 # ./configure --disable-shared

Problems with installing to /etc and /var

2005-07-08 Thread jck-freeradius
Hello Michael, On Fri, Jul 08, 2005 at 05:36:26PM -0500, Michael Cooper wrote: Hello jck, I don't know what the proper permissions are, however My problem is not permissions related. I am trying to install FreeRADIUS so that it references /etc/raddb, and writes to /var/log/radius.

Re: EAP-TTLS w/ files - cert and username issues]

2005-07-07 Thread jck-freeradius
On Thu, Jul 07, 2005 at 01:33:31PM -0400, Alan DeKok wrote: [EMAIL PROTECTED] wrote: I am experiencing several barriers in getting the FreeRadius 1.0.2 port to work, in FreeBSD 5.4-RELEASE. The supplicant is XP SP2, requesting through a Cisco 1100 AP NAS. SP2 ha sknown