Proxied Accounting

2010-04-12 Thread mr typo
hello all, i am currently trying to proxy accounting to another freeradius server. the accounting request receives the proxied server but i get the following message in with debug: +- entering group accounting {...} [sql_default] expand: packet has no accounting status type. [user '%{User-Name}',

Re: Windows Server 2008 R2 (was already working...)

2010-04-08 Thread mr typo
there was a bug with NT_STATUS_PIPE_DISCONNECTED from last year in the samba. i think i have tried 2 or 3 stable versions right now. ill gonna compile the latest from svn tree and report back after a view tests. -euro On Thu, Apr 8, 2010 at 4:03 PM, Alan DeKok wrote: > mr typo wrote: >

Re: Windows Server 2008 R2 (was already working...)

2010-04-08 Thread mr typo
humm, even when its not working with a mac or other devices? On Thu, Apr 8, 2010 at 8:49 AM, Alan DeKok wrote: > mr typo wrote: > > update: not working again. 4 or 5 requests were working, now it is the > > same problem again. > > > > stopping at the access-challenge..

Re: Windows Server 2008 R2 (was already working...)

2010-04-07 Thread mr typo
update: not working again. 4 or 5 requests were working, now it is the same problem again. stopping at the access-challenge.. -euro On Thu, Apr 8, 2010 at 8:36 AM, mr typo wrote: > so mschap is working again, but now radius stops processing at sending the > access-challenge to the acces

Re: Windows Server 2008 R2 (was already working...)

2010-04-07 Thread mr typo
= 0x State = 0x193fdf6a1034c6d4fb779767b11c2fbf Finished request 9. Going to the next request Waking up in 1.0 seconds. Cleaning up request 0 ID 65 with timestamp +7 On Wed, Apr 7, 2010 at 9:31 AM, mr typo wrote: > hello, > > i have added the with_nt_do

Re: Windows Server 2008 R2 (was already working...)

2010-04-07 Thread mr typo
ok MSCHAP Success ++[eap] returns handled but i never receive a access-accept. from my understanding it should work? the complete debug log is at: https://overlord.fh-salzburg.ac.at/~asartori/debug.txt i hope someone can help! kind regards -euro On Tue, Apr 6, 2010 at 8:02 PM, mr typo wrote:

Re: Windows Server 2008 R2 (was already working...)

2010-04-06 Thread mr typo
} so i configure ntlm_auth from the modules and put the directive ntlm_auth just before "Auth-Type MS-CHAP"? ill try that tomorrow, right now i have no chance to test it out. regards -euro On Tue, Apr 6, 2010 at 5:20 PM, Alan DeKok wrote: > mr typo wrote: > > [mschap] Told

Windows Server 2008 R2 (was already working...)

2010-04-06 Thread mr typo
hey all, we do have a freeradius server authenticating with ntml_auth against a win 2008r2 server. this was working for several months but for 2 weeks now the authentication does not work anymore. authenticating on the command line with ntlm_auth is still working: [r...@wlan ~]# ntlm_auth --reque

Re: "double" realm problem

2009-10-30 Thread mr typo
update reply { Reply-Message := "FHSCommon: Wrong Username" } reject } } maybe someone knows why the "failed to find module..." appears when using policy.conf kind regards -euro

Re: "double" realm problem

2009-10-28 Thread mr typo
when i put the "validate_username" direct after server eduroam { validate_username authorize { . i do not get an error. but it doesnt work. i am just trying around, i know that the "validate_username" doesnt make sense when NOT in the authorize section. so anyone has an idea redg

Re: "double" realm problem

2009-10-27 Thread mr typo
ts? -euro On Tue, Oct 27, 2009 at 11:09 AM, Alexander Clouter wrote: > mr typo wrote: > > > > i was trying to reject those "double" realm. > > but i cannot find the right syntax and/or where to put the lines. > > > > i was trying to put this lines in the u

Re: "double" realm problem

2009-10-27 Thread mr typo
t 7, 2009 at 5:36 PM, Alexander Clouter wrote: > mr typo wrote: > > > > i do have a problem with our freeradius configuration and i have no idea > how > > to solve it. > > > > we do have one realm configured domainname.com which works perfectly. > every > >

Re: "double" realm problem

2009-10-07 Thread mr typo
where would be the best place to deny those users? we do not have alot of practice with freeradius, so any help would be appreciated, kind regards -euroreg On Wed, Oct 7, 2009 at 3:03 PM, mr typo wrote: > hey, > yes we are talking about eduroam and after reading your post, it seems

Re: "double" realm problem

2009-10-07 Thread mr typo
hey, yes we are talking about eduroam and after reading your post, it seems like that it is the best to deny such users. thanks alot -euroreg On Wed, Oct 7, 2009 at 2:44 PM, Stefan Winter wrote: > Hi, > > > problem is, that we are a university, so they are "our" people. > > tousands of student

Re: "double" realm problem

2009-10-07 Thread mr typo
problem is, that we are a university, so they are "our" people. tousands of students and teachers. if we deny those users, our helpdesk will get more work. is there a way to remove the double entries or do i have to block those? -euroreg On Wed, Oct 7, 2009 at 1:50 PM, Alan Buxey wrote: > Hi, >

"double" realm problem

2009-10-07 Thread mr typo
Hello all, i do have a problem with our freeradius configuration and i have no idea how to solve it. we do have one realm configured domainname.com which works perfectly. every user who wants to authenticate with a different realm is proxied to an outside radius. server. the setup works fine. we