Re: the newbie on radiustesting strikes again

2008-04-20 Thread Si St
- Original Message - From: David Wood [EMAIL PROTECTED] To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Subject: Re: the newbie on radiustesting strikes again Date: Sun, 20 Apr 2008 01:00:42 +0100 Hi, Ivan has already given you much good advice. I

Re: the newbie on radiustesting strikes again

2008-04-20 Thread David Wood
Hi there, n message [EMAIL PROTECTED], Si St [EMAIL PROTECTED] writes - Original Message - From: David Wood [EMAIL PROTECTED] To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Subject: Re: the newbie on radiustesting strikes again Date: Sun, 20 Apr 2008 01:00:42

Re: the newbie on radiustesting strikes again

2008-04-19 Thread Si St
- Original Message - From: Ivan Kalik [EMAIL PROTECTED] To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Subject: Re: the newbie on radiustesting strikes again Date: Sat, 19 Apr 2008 00:15:09 +0100 You need to sort out some basic things: - your user

Re: the newbie on radiustesting strikes again

2008-04-19 Thread Ivan Kalik
You need to sort out some basic things: - your user sits at the laptop and connects to - what? What service is router controlling? A: to internett via the router for example What service is router controlling? A:The traffic through the DSL-modem (You mean to say: Which service is the router

Re: the newbie on radiustesting strikes again

2008-04-19 Thread Si St
- Original Message - From: Ivan Kalik [EMAIL PROTECTED] To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Subject: Re: the newbie on radiustesting strikes again Date: Sat, 19 Apr 2008 17:34:36 +0100 You need to sort out some basic things: - your user

Re: the newbie on radiustesting strikes again

2008-04-19 Thread Ivan Kalik
DHCP-server can be deactivated on the router but I had some problems making a deactivation work for the WinOSs. If the 4 machines have IPs 192.168.0.193-199 I could set DHCP reservations range on the router to the same and thus stop the server,is this safe, or does it disturb the radius DHCP

Re: the newbie on radiustesting strikes again

2008-04-19 Thread David Wood
Hi, Ivan has already given you much good advice. I wanted to add a few comments. In message [EMAIL PROTECTED], Si St [EMAIL PROTECTED] writes The Router supports EAP/WPA-Enterprise(has a box for this choice;) Automatic (WPA or WPA2), TKIP and AES I would be very surprised if the RADIUS

the newbie on radiustesting strikes again

2008-04-18 Thread Si St
WILL THE DEFAULT ROUTER FIREWALL CONFIGURATION BELOW WORK WITH THE RADIUS? Below you have the default setup of my router firewall section. I have not changed anything there yet. Could the router firewall stay as this? I have been looking through the SuSE-firewall settings in YaST too, and cannot

Re: the newbie on radiustesting strikes again

2008-04-18 Thread Ivan Kalik
You need to sort out some basic things: - your user sits at the laptop and connects to - what? What service is router controlling? - your router is most likely the only (radius) client on your network. User machines should be removed from clients.conf. - don't use Auth-Type and User-Password.

Re: newbie on radiustesting

2008-04-17 Thread Si St
- Original Message - From: [EMAIL PROTECTED] To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Subject: Re: newbie on radiustesting Date: Wed, 16 Apr 2008 21:52:38 +0100 Hi, A: All running, both radiusd -X and rcradiusd start, is done as root

Re: newbie on radiustesting !

2008-04-17 Thread Si St
- Original Message - From: Si St [EMAIL PROTECTED] To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Subject: Re: newbie on radiustesting Date: Thu, 17 Apr 2008 11:04:46 +0100 - Original Message - From: [EMAIL PROTECTED] To: FreeRadius users

Re: newbie on radiustesting

2008-04-17 Thread Ivan Kalik
freeradius-users@lists.freeradius.org Subject: Re: newbie on radiustesting Date: Wed, 16 Apr 2008 21:52:38 +0100 Hi, A: All running, both radiusd -X and rcradiusd start, is done as root, and unfortunately all messages comes from the user root. okay. so definately a permission issue for a non

Re: newbie on radiustesting !

2008-04-17 Thread A . L . M . Buxey
Hi, By the way does this excerpt from the top page of radiusd.conf tell anything about the problem? you are not getting undefined symbols...your uid and gid arent above 6000 etc etc so none of it applies While changing the eap.conf by accident the group was changed to root instead

Re: newbie on radiustesting ! Now, Buxey!

2008-04-17 Thread Si St
- Original Message - From: [EMAIL PROTECTED] To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Subject: Re: newbie on radiustesting ! Date: Thu, 17 Apr 2008 14:21:44 +0100 Hi, By the way does this excerpt from the top page of radiusd.conf tell

Re: newbie on radiustesting, Buxey and Hood

2008-04-17 Thread Si St
be the same? .. - Original Message - From: Andrew Hood [EMAIL PROTECTED] To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Subject: Re: newbie on radiustesting Date: Thu, 17 Apr 2008 13:34:08 +1000 Si St wrote

Re: newbie on radiustesting, Buxey and Hood; NÂș 2

2008-04-17 Thread Si St
472 2008-03-31 22:53 ./ . - Original Message - From: Si St [EMAIL PROTECTED] To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Subject: Re: newbie on radiustesting, Buxey and Hood Date: Thu, 17 Apr 2008 17:29:36 +0100

Re: newbie on radiustesting, Buxey and Hood

2008-04-17 Thread A . L . M . Buxey
Hi, By the way: What would be the difference having the proposal of Andrew Hood performed: find /etc/raddb/ -type d -exec chmod ug+x {} \; compared to the proposal of Alan Buxey: chmod -R ugo+x /etc/raddb/certs I am not so familiar with the /-type d/ part of the find command Would

Re: newbie on radiustesting ! Now, Buxey!

2008-04-17 Thread A . L . M . Buxey
Hi, Now we are getting somewhere: yep. Listening on authentication *:1812 Listening on accounting *:1813 Listening on proxy *:1814 Ready to process requests. ^ this means its all alive and working! What do you think about this? You must have done something

Re: newbie on radiustesting, Buxey and Hood

2008-04-17 Thread Andrew Hood
[EMAIL PROTECTED] wrote: Hi, By the way: What would be the difference having the proposal of Andrew Hood performed: find /etc/raddb/ -type d -exec chmod ug+x {} \; compared to the proposal of Alan Buxey: chmod -R ugo+x /etc/raddb/certs I am not so familiar with the /-type d/ part of the

Re: newbie on radiustesting

2008-04-16 Thread A . L . M . Buxey
Hi, FreeRADIUS Version 1.0.4, for host , built on Sep 13 2005 I might not know what I am doing, but what is the first thing for me do to here? ...update to 2.0.3? ;-) But changing no other tings, leaving the test-setup (unchanged files in /etc/raddb/certs from the installation of

newbie on radiustesting

2008-04-16 Thread Si St
FreeRADIUS Version 1.0.4, for host , built on Sep 13 2005 I might not know what I am doing, but what is the first thing for me do to here? (take a look at the /linux:~ # radiusd -X / part further down) Are these errors in the debugmode caused by not running the script saying in eap.conf: ##

Re: newbie on radiustesting

2008-04-16 Thread Si St
- Original Message - From: [EMAIL PROTECTED] To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Subject: Re: newbie on radiustesting Date: Wed, 16 Apr 2008 18:51:12 +0100 Hi, FreeRADIUS Version 1.0.4, for host , built on Sep 13 2005 I might not know

Re: newbie on radiustesting

2008-04-16 Thread A . L . M . Buxey
Hi, linux:/etc/raddb # id radiusd uid=105(radiusd) gid=104(radiusd) Gruppen=104(radiusd) ls -l: drw-r- 3 root radiusd 472 2008-03-31 22:53 certs/ and the files within? alan - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: newbie on radiustesting

2008-04-16 Thread Si St
- Original Message - From: [EMAIL PROTECTED] To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Subject: Re: newbie on radiustesting Date: Wed, 16 Apr 2008 19:37:44 +0100 Hi, linux:/etc/raddb # id radiusd uid=105(radiusd) gid=104(radiusd) Gruppen=104

Re: newbie on radiustesting

2008-04-16 Thread A . L . M . Buxey
Hi, Does the rlm_eap message tell you anything: yes, no EAP-Message - but thats just talking about the incoming packet. are you running SELinux by any chance (just thinking about the file permissions and why the servers cannot read the cert) does it all work fine when you, as root, run

Re: newbie on radiustesting

2008-04-16 Thread Si St
- Original Message - From: [EMAIL PROTECTED] To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Subject: Re: newbie on radiustesting Date: Wed, 16 Apr 2008 20:11:11 +0100 Hi, Does the rlm_eap message tell you anything: yes, no EAP-Message - but thats

Re: newbie on radiustesting

2008-04-16 Thread A . L . M . Buxey
Hi, A: All running, both radiusd -X and rcradiusd start, is done as root, and unfortunately all messages comes from the user root. okay. so definately a permission issue for a non root user. ...its late now so if noone else steps in you'll have to wait to hear from me again. (in radiusd.conf

Re: newbie on radiustesting

2008-04-16 Thread Andrew Hood
Si St wrote: linux:/etc/raddb/certs # l insgesamt 53 drw-r- 3 root radiusd 472 2008-03-31 22:53 ./ drwxr-xr-x 5 root root 728 2008-04-16 20:40 ../ -rw-r- 1 root radiusd 721 2005-09-13 04:15 cert-clt.der -rw-r- 1 root radiusd 1741 2005-09-13 04:15 cert-clt.p12