redundant-load-balance for AD ntlmauth

2013-04-29 Thread FreeRadius List
.. mschapadN } } } Is this along the lines that others follow? if not how does ntlmauth handle the AD server being down. Does ntlmauth/winbind handle AD being down so freeradius does not have to? Thanks, Neil - List info/subscribe/unsubscribe? See http

Re: redundant-load-balance for AD ntlmauth

2013-04-29 Thread FreeRadius List
Thank you I'll check with the samba people and get a better understanding of how ntlm_auth works. On 29 Apr 2013 13:58, Alan DeKok al...@deployingradius.com wrote: FreeRadius List wrote: I use redundant-load-balance for ldap user auth to authenticate users to a pool of active directory

freeradius retransmit of EAP-TTLS start packet with incorrect packet id

2012-11-19 Thread list
resumption enabled and the config is very basic. Furthermore this does not happen all the time leading me to believe this might be a retransmit issue between the access point and freeradius, maybe during high load. Thanks, SecureW2 - List info/subscribe/unsubscribe? See http://www.freeradius.org

Re: freeradius retransmit of EAP-TTLS start packet with incorrect packet id

2012-11-19 Thread list
it. There are patches going into 3.0 which will detect RADIUS retransmits over multiple proxy hops. That is a rare case, but more likely in the case of eduroam. Fixing it is good. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html - List info/subscribe

Not responding when a user is unknown

2012-07-10 Thread perl-list
I have no access to the servers that this happens on. The servers are owned by customers of ours. So basically, is there a setting that causes the FreeRADIUS server to not respond to Access-Request packets if the username contained there-in is not found in whatever database it is using? - List

Re: Not responding when a user is unknown

2012-07-10 Thread perl-list
Thank you, Fajar. - Original Message - From: Fajar A. Nugraha l...@fajar.net To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Sent: Tuesday, July 10, 2012 10:13:27 AM Subject: Re: Not responding when a user is unknown On Tue, Jul 10, 2012 at 8:56 PM, perl

Upgrade from 1.3 to 2.0

2010-02-05 Thread Account for FreeRadius mail list
num_answers_to_alive = 3 } I had tried the ipaddr = command as well. Anyway the authentication request to the wendy.somedomain.net server is not getting through using this new home_server entry. What am I doing wrong Thanks, Ken - List info/subscribe/unsubscribe? See http://www.freeradius.org/list

what is this ?

2009-01-30 Thread Freeradius Mail List
is the reason and how to solve ? Thx. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: what is this ?

2009-01-30 Thread Freeradius Mail List
Freeradius Mail List пишет: Have some error in freeradius log: Fri Jan 30 03:32:55 2009 : Info: rlm_sql (sql): There are no DB handles to use! skipped 0, tried to connect 0 Fri Jan 30 03:32:55 2009 : Info: rlm_sql (sql): There are no DB handles to use! skipped 0, tried to connect 0 Fri Jan 30

freeradius 2.0 + snmp

2009-01-27 Thread Freeradius Mail List
. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: PAP what password encryption is used?

2008-08-08 Thread SecureW2 (List)
encryption is used. Rg, Arnaud Loonstra -- View this message in context: http://www.nabble.com/PAP-what-password- encryption-is-used--tp18887393p18890180.html Sent from the FreeRadius - User mailing list archive at Nabble.com. - List info/subscribe/unsubscribe? See http://www.freeradius.org

Radius server request from new server.

2008-08-05 Thread User for Free Radius mail list
the authentication for a news server but not the dialup servers without using separate radius servers. Did that make any sense? Thanks, Ken - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Freeradius proxy accounting

2008-08-03 Thread Mailing List
) is down, (A) will also not respond back to the NAS and the NAS keeps on retrying. (A) is configured to put the accounting in a mysql database. Basically, I want that (A) always sends an ACK back to the NAS regardless the state of (B). Thx, Kurt - List info/subscribe/unsubscribe? See http

Re: Freeradius proxy accounting

2008-08-03 Thread Mailing List
, you have to clarify what you want to do - if you want your radius server (A) to respond if the home server (B) is down or not. But both scenarios are possible and can be achieved with freeradius. kind regards Pshem 2008/8/4 Mailing List [EMAIL PROTECTED]: Hi, I have freeradius (A) up

RE: PEAP or TTLS and Microsoft Vista.

2008-07-24 Thread SecureW2 (List)
it is not sent, I don't know how to do this though... ;) Tom -Oorspronkelijk bericht- Van: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Namens Lech Karol Pawlaszek Verzonden: donderdag 24 juli 2008 13:23 Aan: FreeRadius users mailing list Onderwerp: Re: PEAP or TTLS and Microsoft Vista

RE: PEAP or TTLS and Microsoft Vista.

2008-07-23 Thread SecureW2 (List)
with Vista SP0/SP1. -Oorspronkelijk bericht- Van: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Namens Phil Mayers Verzonden: woensdag 23 juli 2008 16:40 Aan: FreeRadius users mailing list Onderwerp: Re: PEAP or TTLS and Microsoft Vista. Alan DeKok wrote: Lech Karol Pawłaszek

RE: xp sp3 and freeradius 2.0.5

2008-07-07 Thread SecureW2 (List)
= 0xbc92e431af5c7ffb4d5b7995391751603d37b0f0ff4b90fbfecd1785d2d987b9 MS-MPPE-Send-Key = 0x298436d731ecef7178d901f10b1654124cb4b52e1e1ed23fd33b1ec32476b480 EAP-Message = 0x03090004 Message-Authenticator = 0x Ivan Kalik Kalik Informatika ISP - List info

RE: EAP-TLS with different CA per user?

2008-06-07 Thread SecureW2 (List)
. What I need is to tell freeradius that certificates presented by user A should only be checked against CA X, and similarly B only by Y. Putting both X and Y in the same CA list won't work in this case due to what appears to be a limitation in OpenSSL. I've been over all the existing docs I

MySql Data base and FreeRadius

2007-08-08 Thread User for Free Radius mail list
get Slave: Error 'Duplicate entry errors. So we commented out the sql line in the post-auth section of the radiusd.conf file and that solved the problem. My question?? Should I be looking for any other got-yas before putting these servers into production? Thanks, Ken - List info

Re: ttls problem

2007-05-10 Thread SecureW2 (List)
to 10.10.7.203 port 1645 EAP-Message = 0x010300061520 Message-Authenticator = 0x State = 0x0aacb6009ffcc2e6b40b7487d9b49dce Finished request 0 Going to the next request --- Walking the entire request list --- Waking up in 6 seconds

Re: Realm and users file.

2006-01-25 Thread User for Free Radius mail list
Kevin, I did run this in debug mode before I posted on the list, and could not quite figure it out. So here is part of the debug out below. Thanks, Ken On Tue, 24 Jan 2006, Kevin Bonner wrote: On Monday 23 January 2006 20:37, User for Free Radius mail list wrote: The result is domain2

REPOST: Realms and users file.

2006-01-24 Thread User for Free Radius mail list
in a while they will have the same username on each system. The result is domain2.net will Auth OK them but they cannot get on line because domain1.com will reject them because of the users file. How do I fix this problem? Thanks! Ken - List info/subscribe/unsubscribe? See http

Realm and users file.

2006-01-23 Thread User for Free Radius mail list
in a while they will have the same username on each system. The result is domain2.net will Auth OK them but they cannot get on line because domain1.com will reject them because of the users file. How do I fix this problem? Thanks! Ken - List info/subscribe/unsubscribe? See http://www.freeradius.org

Re: Fallback Auth if forwarding fails

2006-01-22 Thread Freeradius Users Mailing List
Hi Alan, thanks for your fast answer. Alan DeKok wrote: Freeradius Users Mailing List [EMAIL PROTECTED] wrote: But for a short period of time I need to have a fallback strategy if forwarding fails (remote RADIUS server is dead). Is there a way to match on a different entry i.e

Fallback Auth if forwarding fails

2006-01-21 Thread Freeradius Users Mailing List
on a different entry i.e. in the users file after recognizing that the remote RADIUS server is dead? Thanks a lot for help :-) - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: questions about the clients.conf file

2005-02-25 Thread Luca Lafranchi list
informations to a Mysql table ? Thank you Luca - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: realm-based auth?

2004-07-14 Thread RH List Account
, RH List Account wrote: ... working off the same password file. I would like to differentiate services based on the realm - ie The following should work: DEFAULT Realm == c.com, Auth-Type := System cisco-avpair = ip:addr-pool=private Kevin Bonner - List info/subscribe

realm-based auth?

2004-07-13 Thread RH List Account
on the realm - ie [EMAIL PROTECTED] Auth-Type := System cisco-avpair = ip:addr-pool=private What's the best way to go about this? Thanks Rob - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: radtest problem

2004-06-04 Thread RH List Account
12:39 PM Subject: radtest problem Hi List, please I am facingthe following problem: when I attempt to use the radtest tool withe args.: radtest [EMAIL PROTECTED] wilma 172.16.10.5:1645 123 MYSECRET I have the message: radclient:failed to get

User Authentication: 1st by Username then, if not matched, by Framed-IP-Address

2004-05-25 Thread Freeradius-List
Hello List, I have a question - I need to Authenticate users with different options. It looks as below: 1) Receive User-name Password, 2) If not exist or not matched - check Framed-IP-Address 3) If both not matched - Access-Reject What I need to do? Manipulations with username will choice a one

RE: Auth-Problem

2004-05-21 Thread RH List Account
, 2004 5:59 AM To: [EMAIL PROTECTED] Subject: Auth-Problem Hi, i´v e got a authentication-problem with a MAX2000 and freeradius. Connetions-profiles configured on freeradius with CLID a working very well. Only those with username and passwort are making trouble: (snip) - List info/subscribe

Problem with Huntgroups

2004-05-14 Thread RH List Account
NAS-IP-Address == (name of localhost) # The DSL Pop (s) dslpop NAS-IP-Address == (IP of DSLAM) Any ideas on why it's not working? Thanks Rob - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Cisco config to use two radius servers

2004-04-28 Thread RH List Account
Morning folks, Im trying to get accounting data to go to our billing radius server, and our authentication/authorization to go to be requested. I tried inputting: radius-dev(config)#radius-server host 4.3.2.1 auth 1812 radius-dev(config)#radius-server host 1.2.3.4 acct 1813 but

RE: Cisco config to use two radius servers

2004-04-28 Thread RH List Account
] auth 1812 acct 0 radius-server host [ip-fallback-auth] auth 1812 acct 0 radius-server host [ip-first-acct] auth 0 acct 1813 radius-server host [ip-fallback-acct] auth 0 acct 1813 -- gerald - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html