-use-with-cisco-nas-tp5062116p5070360.html
To unsubscribe from semulteneius-use with cisco nas, click here.
NAML
--
View this message in context:
http://freeradius.1045715.n5.nabble.com/semulteneius-use-with-cisco-nas-tp5062116p5073878.html
Sent from
On Wed, Dec 14, 2011 at 3:34 PM, tolik_shavlov...@mail.ru
tolik_shavlov...@mail.ru wrote:
Hi Fajar,
i made everything from:
- enable sql in accounting section of sites-available/default
- enable sql in session section of sites-available/default (and
sites-available/inner-tunnel, if you use
'..but it doesn't work'
This is a meaningless statement without providing this list the important thing
to help you with, ie the output of 'radius -X' - to show what happens when 1
client connects and then tries to connect simultaneously. There is really no
point in just saying you've done xyz
tolik_shavlov...@mail.ru wrote:
i made everything from:
- enable sql in accounting section of sites-available/default
- enable sql in session section of sites-available/default (and
sites-available/inner-tunnel, if you use EAP)
- uncomment simul_count_query in sql /*/ dialup.conf
but
-Type = Wireless-802.11
Cisco-NAS-Port = 13495
NAS-Port = 13495
Service-Type = Framed-User
NAS-IP-Address = 10.169.33.11
Acct-Delay-Time = 0
(50) # Executing section preacct from file
/usr/local/etc/raddb/sites-enabled/default
(50) group preacct {
(50
/users.html
--
If you reply to this email, your message will be added to the discussion below:
http://freeradius.1045715.n5.nabble.com/semulteneius-use-with-cisco-nas-tp5062116p5073936.html
To unsubscribe from semulteneius-use
2011/12/14 Толик Шавловский tolik_shavlov...@mail.ru:
Dear Fajar,
here is the debug:
Why on earth did you cut down the log?
As Alan said, you need the output of 'radius -X' - to show what
happens when 1 client connects and then tries to connect
simultaneously.
Your log only show ONE user
tolik_shavlov...@mail.ru wrote:
I just asked to indicate what exact is wrong, I supposed that maillist
was created for such purposes.
The whole point of asking questions is to read the responses. You
have not been doing that.
The point of mailing lists is to help people who want help.
Толик Шавловский wrote:
SQL doesn't SELECT COUNT(*) from radacct. Is this a problem of sql
configuration?
You have been told many, many, times what is necessary for accounting
data to be put into SQL. *Weeks* later, you still don't understand.
We cannot help you if you refuse to read
I'm not sure why the Simultaneus-use is so hard to setup...
1. turn on sql inside accounting section
2. turn on sql inside session section
3. be sure that NAS works properly (sending Interim-Updates)
4. insert Simultaneus-Use := X (where X is number you want to allow)
inside radcheck table..
Hi,
this is my radwho output for 1st user (last string for 12-12-2011):
freebsd# radwho
Login Name What TTY When From Location
user user shell 999 Thu 14:38 10.169.33.11
user user shell 999 Thu 15:03 10.169.33.11
user user shell 999 Thu 17:25 10.169.33.11
user user shell 999 Thu 17:26
Also, I can add that i checked with sniffter and didn't see that freeradius
connects to NAS via snmp.
12 декабря 2011, 13:25 от Толик Шавловскийtolik_shavlov...@mail.ru:
Hi,
this is my radwho output for 1st user (last string for 12-12-2011):
eradius
freebsd# radwho
Login Name What TTY
Dear all,
can u help me with the problem??
12 декабря 2011, 13:32 от Толик Шавловскийtolik_shavlov...@mail.ru:
Also, I can add that i checked with sniffter and didn't see that freeradius
connects to NAS via snmp.
12 декабря 2011, 13:25 от Толик Шавловскийtolik_shavlov...@mail.ru:
Hi,
2011/12/12 Толик Шавловский tolik_shavlov...@mail.ru:
Dear all,
can u help me with the problem??
(Hmmm ,,, I thought I wrote about this many times already?)
There are two ways to have simultaneous limit working.
First one, radutmp (+ checkrad). I've never used this. You might find
more info
hi,
i continue configuring simulteneous-use with cisco NAS.
My configs:
mysql select * from radcheck;
++--+++--+
| id | username | attribute | op | value
tolik_shavlov...@mail.ru wrote:
what can be an issue?
As I said a few days ago:
Simultaneous-Use checks are done if the server receives accounting
packets, AND a user session is still open, AND that user tries to log in
a second time from a different location.
The debug log makes it
, your message will be added to the discussion below:
http://freeradius.1045715.n5.nabble.com/semulteneius-use-with-cisco-nas-tp5062116p5062175.html
To unsubscribe from semulteneius-use with cisco nas, click here.
NAML
--
View this message in context:
http://freeradius
tolik_shavlov...@mail.ru wrote:
i am really not experienced with freeradius and mysql. I made everything
with your website.
I kindly ask you for help.
i made test in the following manner:
1. connect 1st laptop via Ap (NAS) with user/user
2. connect second laptop
simult-use feature
Hi,
I am having problem while user authenticate with cisco as NAS for
freeradius.Freeradius is working fine with freebsd nas, but when i use cisco
nas user can not get connected radius logs says,Auth: Login incorrect (rlm_pap:
CLEAR TEXT password check failed) while same username and password
On Thu, Feb 18, 2010 at 6:19 PM, Fazal Ahmed Malik f...@sky.net.pk wrote:
Hi,
I am having problem while user authenticate with cisco as NAS for
freeradius.Freeradius is working fine with freebsd nas, but when i use cisco
nas user can not get connected radius logs says,Auth: Login incorrect
Hi,
for many hours now I am trying to configure a Cisco router as a NAS to
authenticate dialup users against freeradius and provide the ip address
dynamically from a server based ip pool.
The authentication part works fine and the ip address also gets selected
from the pool and sent as
(0) 30 68905-2940
Mail: thoralf.frei...@biotronik.com
From:
Sebastian Krieger s...@ts.tsimail.de
To:
freeradius-users@lists.freeradius.org
Date:
13.02.09 16:56
Subject:
Cisco NAS and server side ip pool management
Sent by:
freeradius-users-bounces+thoralf.freitag=biotronik
Hello,
i have some troubles with a cisco NAS, with a 4GB problem in the Accounting
Data.
First i have gigawords enabled, also the sql queries, but this is not the
reason.
I have also accounting for the upstream interface enabled, but the error exists only for users, that
are connected via
Hi,
your accounting packets don't include the Gigawords attributes. Try adding
aaa accounting gigawords
to your IOS config. This may require a NAS reboot on some IOS versions(!!!).
Greetings,
Stefan Winter
--
Stefan WINTER
Stiftung RESTENA - Réseau Téléinformatique de l'Education
I never saw the gigaword attribute, i think they are only send, when it is
necessary, or is this wrong ?
I'm not sure. I think I saw them filled with 0 as appropriate. Did IOS tell
you to reboot the NAS before the setting takes effect? Did you do that?
If that doesn't help, read your NAS
Hello,
yes i rebooted the router, i was also not able to find similiar proplems on
cisco pages.
Maybe it is easier to report this to cisco, i thought anyone had same troubles.
thanks so far.
r,
Andreas M.
Stefan Winter schrieb:
I never saw the gigaword attribute, i think they are only send,
Hello,
I have the NAS login and enable passwords (for cisco equipment) working fine
with freeradius using mysql, but I am considering splitting my NAS equipment
into 6 huntgroups and would like to have a different enable password for each
of the 6 different huntgroups.
If I were using the
Hello:
I am new to using Freeradius, and I am using Freeradius 1.1.6 that comes with
Ubuntu Server 7.10
I have set up Freeradius with MySQL as the backend database.
I set up one of my Cisco 3550 switches to use Radius as the login method.
This worked fine, authentication was running
On Thursday 25 October 2007 17:26:10 John Morris wrote:
I then added a second switch to the freeradius client configuration (nas
table), and encountered a problem. The password was being rejected. So I
ran Freeradius -X so I could see what was going on.
On the failed password attempt
Debug output like this usually points to non-matching RADIUS secrets. Check
the radius secret in your switch config as well as the secret configured in
your nas SQL table. Freeradius only reads the nas table on startup, so if
you make changes to that table, you must restart the daemon for those
Is there a way to define NAS info / secrets in a SQL database and have
it as part of the standard queries? Am guessing the perl / python
options would let you do it from that (pls correct me tho if not
right!) but can it just be done without writing code?
Tia
Andy
On 25/10/2007, John Morris
John Morris wrote:
It surprises me that the debug output doesn't appear to mention the
failure of the NAS secret.
It does. There's a big WARNING during the authentication portion.
I would have thought I would have gotten
then that message and that the auth would have stopped there.
It
Paul,
You are not going to believe this but the error was a in the clients.conf
file. I had put a uppercase 'C' instead of a lower case one!!
T
-- Original Message --
From: Paul [EMAIL PROTECTED]
To: [EMAIL PROTECTED]
Subject: Re: Cisco NAS not authenticating
Reply-To: [EMAIL PROTECTED]
Date
Guys,
I cannot get my cisco 5300 to get authentication from the radius box. I
would appreciate any help.
Thanks
Tariq
Output from the radiusd -X gives:
Listening on authentication *:1812
Listening on accounting *:1813
Ready to process requests.
rad_recv: Access-Request packet from host
[EMAIL PROTECTED] wrote:
Listening on authentication *:1812
Listening on accounting *:1813
Ready to process requests.
rad_recv: Access-Request packet from host 172.10.30.10:1645, id=110, length=59
Ignoring request from unknown client 172.10.30.10:1645
I'm new at this and this is just a guess,
You have to instert a record in the naslist file with the ip of your
NAS. That's what is missing and thats why the radius says that is an
unknown client
Also you have to do the same with the file acct_users so you will have
accounting too.
mtcu Guys,
mtcu I cannot get my cisco 5300 to get
36 matches
Mail list logo