Re: MAC Address and Username Binding on FreeRADIUS - Resolved

2011-04-15 Thread syharash
Hi, Thanking each and everyone who helped me with their useful hints and suggestions in implementing FreeRADIUS for authenticating, accounting and authorizing my WiFi clients. I used the huntgroups to bind the username and mac addresses. Special thanks to Alan. Regards, Syed -- View this

Re: MAC Address and Username Binding on FreeRADIUS

2011-04-13 Thread syharash
I am trying to lock a single user to a single laptop. -- View this message in context: http://freeradius.1045715.n5.nabble.com/MAC-Address-and-Username-Binding-on-FreeRADIUS-tp4297874p4300485.html Sent from the FreeRadius - User mailing list archive at Nabble.com. - List

MAC Address and Username Binding on FreeRADIUS

2011-04-12 Thread syharash
Hi, My FreeRadius is working fine, my wireless clients are able to authenticate with username and password from the /etc/raddb/users file and dynamic vlan assignment is working fine too. Need to now configure to restrict a user to get authenticated only from a single mac address, so the dynamic

Re: problem in assigning Tunnel-Private-Group-ID

2011-04-11 Thread syharash
Dear Alan, Thank you so much. God Bless you all, its working! REgards, Syed -- View this message in context: http://freeradius.1045715.n5.nabble.com/problem-in-assigning-Tunnel-Private-Group-ID-tp4290798p4295526.html Sent from the

Re: Mac Authorization

2011-04-11 Thread syharash
Joren, This is how my policy looks, could you please let me know what changes do i need to make, to make the mac-authentication work; policy { # # Rewrite called station id attribute into a standard format. # rewrite_calling_station_id {

problem in assigning Tunnel-Private-Group-ID

2011-04-08 Thread syharash
Hi, My freeradius is set and working fine, the authentication is successful on a windows XP machine on the wireless network. I am using Cisco Switches and Ruckus Zone Director 1000 with Ruckus AP's. They are connected to the switches on the trunk ports with all vlans allowed. I get the

mschapv2 and peap not working, please help

2011-04-07 Thread syharash
Hi, I am a newbee on Linux and RAdius stuff. I am trying to authenticate WinXP and Win 7 machines on wireless using Freeradius, LDAP authentication. Please help. Module: Instantiating module digest from file /etc/raddb/modules/digest Module: Linked to module rlm_unix Module: Instantiating

how to generate certificate with xpextension for PEAP on FreeRAdius

2011-04-07 Thread syharash
Hi, Can somebody tell me, how to include the OID's while generating the client and root certificates. These instructions are in the xpextensions file, it says # Add this to the PKCS#7 keybag attributes holding the client's private key # for machine authentication. How does one do this? Please

Re: mschapv2 and peap not working, please help

2011-04-07 Thread syharash
Dear Alan, I am doing this all for the very first time. Could you please help me out? I do not understand what seems to be wrong? I have added that user mahendra in linux, ldap and also in the raddb/users file. The file contents are here; /etc/passwd mahendra:x:516:516::/home/mahendra:/bin/bash

Re: mschapv2 and peap not working, please help

2011-04-07 Thread syharash
Dear Alan, I am doing this all for the very first time. Could you please help me out? I do not understand what seems to be wrong? I have added that user mahendra in linux, ldap and also in the raddb/users file. The file contents are here; /etc/passwd mahendra:x:516:516::/home/mahendra:/bin/bash

Re: mschapv2 and peap not working, please help

2011-04-07 Thread syharash
Great Phil, I've changed my /etc/raddb/users file and it worked, could you please help me if i can make a particular user login only from a single machine using the MAC Address of that machine. my existing /etc/raddb/users file looks like this DEFAULT Auth-Type = System Fall-Through = 1

Re: mschapv2 and peap not working, please help

2011-04-07 Thread syharash
Hi Alan, Thanks, everything is set. works fine just that my client pc is not getting an IP address leased from that particular vlan's dhcp scope. It just worked once but after that its baffling that the client's are not getting an IP address leased from the dhcp scope. my routing is fine, on the