Re[6]: semulteneius-use with cisco nas

2011-12-14 Thread tolik_shavlov...@mail.ru
-use-with-cisco-nas-tp5062116p5070360.html To unsubscribe from semulteneius-use with cisco nas, click here. NAML -- View this message in context: http://freeradius.1045715.n5.nabble.com/semulteneius-use-with-cisco-nas-tp5062116p5073878.html Sent from

Re: Re[6]: semulteneius-use with cisco nas

2011-12-14 Thread Fajar A. Nugraha
On Wed, Dec 14, 2011 at 3:34 PM, tolik_shavlov...@mail.ru tolik_shavlov...@mail.ru wrote: Hi Fajar, i made everything from: - enable sql in accounting section of sites-available/default - enable sql in session section of sites-available/default (and sites-available/inner-tunnel, if you use

Re: Re[6]: semulteneius-use with cisco nas

2011-12-14 Thread Alan Buxey
'..but it doesn't work' This is a meaningless statement without providing this list the important thing to help you with, ie the output of 'radius -X' - to show what happens when 1 client connects and then tries to connect simultaneously. There is really no point in just saying you've done xyz

Re: semulteneius-use with cisco nas

2011-12-14 Thread Alan DeKok
tolik_shavlov...@mail.ru wrote: i made everything from: - enable sql in accounting section of sites-available/default - enable sql in session section of sites-available/default (and sites-available/inner-tunnel, if you use EAP) - uncomment simul_count_query in sql /*/ dialup.conf but

Re[8]: semulteneius-use with cisco nas

2011-12-14 Thread Толик Шавловский
-Type = Wireless-802.11 Cisco-NAS-Port = 13495 NAS-Port = 13495 Service-Type = Framed-User NAS-IP-Address = 10.169.33.11 Acct-Delay-Time = 0 (50) # Executing section preacct from file /usr/local/etc/raddb/sites-enabled/default (50) group preacct { (50

Re[2]: semulteneius-use with cisco nas

2011-12-14 Thread tolik_shavlov...@mail.ru
/users.html -- If you reply to this email, your message will be added to the discussion below: http://freeradius.1045715.n5.nabble.com/semulteneius-use-with-cisco-nas-tp5062116p5073936.html To unsubscribe from semulteneius-use

Re: Re[8]: semulteneius-use with cisco nas

2011-12-14 Thread Fajar A. Nugraha
2011/12/14 Толик Шавловский tolik_shavlov...@mail.ru: Dear Fajar, here is the debug: Why on earth did you cut down the log? As Alan said, you need the output of 'radius -X' - to show what happens when 1 client connects and then tries to connect simultaneously. Your log only show ONE user

Re: semulteneius-use with cisco nas

2011-12-14 Thread Alan DeKok
tolik_shavlov...@mail.ru wrote: I just asked to indicate what exact is wrong, I supposed that maillist was created for such purposes. The whole point of asking questions is to read the responses. You have not been doing that. The point of mailing lists is to help people who want help.

Re: semulteneius-use with cisco nas

2011-12-14 Thread Alan DeKok
Толик Шавловский wrote: SQL doesn't SELECT COUNT(*) from radacct. Is this a problem of sql configuration? You have been told many, many, times what is necessary for accounting data to be put into SQL. *Weeks* later, you still don't understand. We cannot help you if you refuse to read

Re: semulteneius-use with cisco nas

2011-12-14 Thread Marinko Tarlać
I'm not sure why the Simultaneus-use is so hard to setup... 1. turn on sql inside accounting section 2. turn on sql inside session section 3. be sure that NAS works properly (sending Interim-Updates) 4. insert Simultaneus-Use := X (where X is number you want to allow) inside radcheck table..

Re[2]: semulteneius-use with cisco nas

2011-12-12 Thread Толик Шавловский
Hi, this is my radwho output for 1st user (last string for 12-12-2011): freebsd# radwho Login Name What TTY When From Location user user shell 999 Thu 14:38 10.169.33.11 user user shell 999 Thu 15:03 10.169.33.11 user user shell 999 Thu 17:25 10.169.33.11 user user shell 999 Thu 17:26

Re[3]: semulteneius-use with cisco nas

2011-12-12 Thread Толик Шавловский
Also, I can add that i checked with sniffter and didn't see that freeradius connects to NAS via snmp. 12 декабря 2011, 13:25 от Толик Шавловскийtolik_shavlov...@mail.ru: Hi, this is my radwho output for 1st user (last string for 12-12-2011): eradius freebsd# radwho Login Name What TTY

Re[4]: semulteneius-use with cisco nas

2011-12-12 Thread Толик Шавловский
Dear all, can u help me with the problem?? 12 декабря 2011, 13:32 от Толик Шавловскийtolik_shavlov...@mail.ru: Also, I can add that i checked with sniffter and didn't see that freeradius connects to NAS via snmp. 12 декабря 2011, 13:25 от Толик Шавловскийtolik_shavlov...@mail.ru: Hi,

Re: Re[4]: semulteneius-use with cisco nas

2011-12-12 Thread Fajar A. Nugraha
2011/12/12 Толик Шавловский tolik_shavlov...@mail.ru: Dear all, can u help me with the problem?? (Hmmm ,,, I thought I wrote about this many times already?) There are two ways to have simultaneous limit working. First one, radutmp (+ checkrad). I've never used this. You might find more info

semulteneius-use with cisco nas

2011-12-09 Thread tolik_shavlov...@mail.ru
hi, i continue configuring simulteneous-use with cisco NAS. My configs: mysql select * from radcheck; ++--+++--+ | id | username | attribute | op | value

Re: semulteneius-use with cisco nas

2011-12-09 Thread Alan DeKok
tolik_shavlov...@mail.ru wrote: what can be an issue? As I said a few days ago: Simultaneous-Use checks are done if the server receives accounting packets, AND a user session is still open, AND that user tries to log in a second time from a different location. The debug log makes it

Re[2]: semulteneius-use with cisco nas

2011-12-09 Thread tolik_shavlov...@mail.ru
, your message will be added to the discussion below: http://freeradius.1045715.n5.nabble.com/semulteneius-use-with-cisco-nas-tp5062116p5062175.html To unsubscribe from semulteneius-use with cisco nas, click here. NAML -- View this message in context: http://freeradius

Re: semulteneius-use with cisco nas

2011-12-09 Thread Alan DeKok
tolik_shavlov...@mail.ru wrote: i am really not experienced with freeradius and mysql. I made everything with your website. I kindly ask you for help. i made test in the following manner: 1. connect 1st laptop via Ap (NAS) with user/user 2. connect second laptop simult-use feature

Cisco NAS

2010-02-18 Thread Fazal Ahmed Malik
Hi, I am having problem while user authenticate with cisco as NAS for freeradius.Freeradius is working fine with freebsd nas, but when i use cisco nas user can not get connected radius logs says,Auth: Login incorrect (rlm_pap: CLEAR TEXT password check failed) while same username and password

Re: Cisco NAS

2010-02-18 Thread Fajar A. Nugraha
On Thu, Feb 18, 2010 at 6:19 PM, Fazal Ahmed Malik f...@sky.net.pk wrote: Hi, I am having problem while user authenticate with cisco as NAS for freeradius.Freeradius is working fine with freebsd nas, but when i use cisco nas user can not get connected radius logs says,Auth: Login incorrect

Cisco NAS and server side ip pool management

2009-02-13 Thread Sebastian Krieger
Hi, for many hours now I am trying to configure a Cisco router as a NAS to authenticate dialup users against freeradius and provide the ip address dynamically from a server based ip pool. The authentication part works fine and the ip address also gets selected from the pool and sent as

Re: Cisco NAS and server side ip pool management

2009-02-13 Thread Thoralf Freitag
(0) 30 68905-2940 Mail: thoralf.frei...@biotronik.com From: Sebastian Krieger s...@ts.tsimail.de To: freeradius-users@lists.freeradius.org Date: 13.02.09 16:56 Subject: Cisco NAS and server side ip pool management Sent by: freeradius-users-bounces+thoralf.freitag=biotronik

Cisco NAS and 4GB Problem

2008-04-16 Thread Andreas M.
Hello, i have some troubles with a cisco NAS, with a 4GB problem in the Accounting Data. First i have gigawords enabled, also the sql queries, but this is not the reason. I have also accounting for the upstream interface enabled, but the error exists only for users, that are connected via

Re: Cisco NAS and 4GB Problem

2008-04-16 Thread Stefan Winter
Hi, your accounting packets don't include the Gigawords attributes. Try adding aaa accounting gigawords to your IOS config. This may require a NAS reboot on some IOS versions(!!!). Greetings, Stefan Winter -- Stefan WINTER Stiftung RESTENA - Réseau Téléinformatique de l'Education

Re: Cisco NAS and 4GB Problem

2008-04-16 Thread Stefan Winter
I never saw the gigaword attribute, i think they are only send, when it is necessary, or is this wrong ? I'm not sure. I think I saw them filled with 0 as appropriate. Did IOS tell you to reboot the NAS before the setting takes effect? Did you do that? If that doesn't help, read your NAS

Re: Cisco NAS and 4GB Problem

2008-04-16 Thread Andreas M.
Hello, yes i rebooted the router, i was also not able to find similiar proplems on cisco pages. Maybe it is easier to report this to cisco, i thought anyone had same troubles. thanks so far. r, Andreas M. Stefan Winter schrieb: I never saw the gigaword attribute, i think they are only send,

Cisco NAS enable password

2007-11-25 Thread J M
Hello, I have the NAS login and enable passwords (for cisco equipment) working fine with freeradius using mysql, but I am considering splitting my NAS equipment into 6 huntgroups and would like to have a different enable password for each of the 6 different huntgroups. If I were using the

Cisco NAS Password problem

2007-10-25 Thread John Morris
Hello: I am new to using Freeradius, and I am using Freeradius 1.1.6 that comes with Ubuntu Server 7.10 I have set up Freeradius with MySQL as the backend database. I set up one of my Cisco 3550 switches to use Radius as the login method. This worked fine, authentication was running

Re: Cisco NAS Password problem

2007-10-25 Thread Kevin Bonner
On Thursday 25 October 2007 17:26:10 John Morris wrote: I then added a second switch to the freeradius client configuration (nas table), and encountered a problem. The password was being rejected. So I ran Freeradius -X so I could see what was going on. On the failed password attempt

RE: Cisco NAS Password problem

2007-10-25 Thread John Morris
Debug output like this usually points to non-matching RADIUS secrets. Check the radius secret in your switch config as well as the secret configured in your nas SQL table. Freeradius only reads the nas table on startup, so if you make changes to that table, you must restart the daemon for those

Re: Cisco NAS Password problem

2007-10-25 Thread Andy Billington
Is there a way to define NAS info / secrets in a SQL database and have it as part of the standard queries? Am guessing the perl / python options would let you do it from that (pls correct me tho if not right!) but can it just be done without writing code? Tia Andy On 25/10/2007, John Morris

Re: Cisco NAS Password problem

2007-10-25 Thread Alan DeKok
John Morris wrote: It surprises me that the debug output doesn't appear to mention the failure of the NAS secret. It does. There's a big WARNING during the authentication portion. I would have thought I would have gotten then that message and that the auth would have stopped there. It

Re: Cisco NAS not authenticating

2004-10-20 Thread mahmo_t
Paul, You are not going to believe this but the error was a in the clients.conf file. I had put a uppercase 'C' instead of a lower case one!! T -- Original Message -- From: Paul [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject: Re: Cisco NAS not authenticating Reply-To: [EMAIL PROTECTED] Date

Cisco NAS not authenticating

2004-10-19 Thread mahmo_t
Guys, I cannot get my cisco 5300 to get authentication from the radius box. I would appreciate any help. Thanks Tariq Output from the radiusd -X gives: Listening on authentication *:1812 Listening on accounting *:1813 Ready to process requests. rad_recv: Access-Request packet from host

Re: Cisco NAS not authenticating

2004-10-19 Thread Paul
[EMAIL PROTECTED] wrote: Listening on authentication *:1812 Listening on accounting *:1813 Ready to process requests. rad_recv: Access-Request packet from host 172.10.30.10:1645, id=110, length=59 Ignoring request from unknown client 172.10.30.10:1645 I'm new at this and this is just a guess,

Re: Cisco NAS not authenticating

2004-10-19 Thread Costas Christonis
You have to instert a record in the naslist file with the ip of your NAS. That's what is missing and thats why the radius says that is an unknown client Also you have to do the same with the file acct_users so you will have accounting too. mtcu Guys, mtcu I cannot get my cisco 5300 to get