Have tried several version builds on Centos 5.x - currently using FR 2.1.12
rlm_mysql stops after the group check query and does not execute the group
reply query.
19:00:43 2012 : Info: [sql] expand: SELECT id, username, attribute, value,
op FROM radreply
Sun Sep 9 19:00:43 2012 : Info: [sql]
Works fine for me... All centos versions, all FR versions since 1.1.3...
On 9/9/2012 7:33 PM, Mada wrote:
Have tried several version builds on Centos 5.x - currently using FR 2.1.12
rlm_mysql stops after the group check query and does not execute the group
reply query.
19:00:43 2012 : Info:
On 9 Sep 2012, at 18:33, Mada m...@datacom.mw wrote:
Have tried several version builds on Centos 5.x - currently using FR 2.1.12
rlm_mysql stops after the group check query and does not execute the group
reply query.
19:00:43 2012 : Info: [sql] expand: SELECT id, username, attribute,
On 9 Sep 2012, at 20:39, Arran Cudbard-Bell a.cudba...@freeradius.org wrote:
On 9 Sep 2012, at 18:33, Mada m...@datacom.mw wrote:
Have tried several version builds on Centos 5.x - currently using FR 2.1.12
rlm_mysql stops after the group check query and does not execute the group
On Mon, Sep 10, 2012 at 12:33 AM, Mada m...@datacom.mw wrote:
Have tried several version builds on Centos 5.x - currently using FR 2.1.12
rlm_mysql stops after the group check query and does not execute the group
reply query.
19:00:43 2012 : Info: [sql] expand: SELECT id, username,
Hello List,
I am stuck with executing a script from my radgroupreply sql table and
hope someone can point me into the right direction, as I have been
fiddling around with this for days and lost my way.
I want to set a dynamic Session-Timeout for certain groups. For
testing purposes I created
I want to set a dynamic Session-Timeout for certain groups. For
testing purposes I created a TESTGROUP in the database table
radgroupreply with an entry like this:
id GroupName Attribute Value op
263TESTGROUP Session-Timeout `%{exec:/var/skripte/test.sh
lscrlstld schrieb:
I want to set a dynamic Session-Timeout for certain groups. For
testing purposes I created a TESTGROUP in the database table
radgroupreply with an entry like this:
id GroupName Attribute Value op
263TESTGROUP Session-Timeout `%{exec:/var
Andrew Long wrote:
In case you missed it, the debug from latest test is a couple messages
previous (our messages crossed). I have looked through it and with my
limited knowledge see nothing exceptional except that processing stops
with radgroupcheck and never moves to radgroupreply. Have you
Run the queries manually, and try to sort it out.
Alan DeKok.
Thank you. Just in case, I tested a build of 2.1.12 now avail through
the stock repos on a CentOS 5.8 VM. It's working correctly, so I'm
confident I can get there (an upgrade, to boot) without much too
difficulty.
- Andrew
-
with radgroupcheck and never moves to radgroupreply. Have you any
ideas?
- Andrew
I apologize if this is off-topic, but if someone wishes to take this
on as contractual work, please send email with brief references to
along[AT]escapewire[DOT]com. The job would simply be to find/fix the
problem with group
Platfrom: CentOS 5.8
FreeRADIUS: 2.1.8
Backend: MySQL
I am unable to get FreeRadius to reply with attributes assigned in the
radgroupreply table for some groups. When the same attributes are
assigned in radreply, the server sends them as expected. Adding a
Fall-Through entry for the user
For reference, here is a debug from another account's auth request
which successfully processes radgroupreply and sends the pairs from
that table. The attributes are different here because the NAS is
different and I don't want to confuse it by assigning another vendor's
attributes. I did
Andrew Long wrote:
I am unable to get FreeRadius to reply with attributes assigned in the
radgroupreply table for some groups. When the same attributes are
assigned in radreply, the server sends them as expected. Adding a
Fall-Through entry for the user in radreply makes no difference
failed when I tested with Fall-Through
enabled? I did it like this:
# radreply
account-to-test Fall-Through = yes
So, I removed the comment and restarted radiusd, but I get the same
results. Here is the radgroupreply:
4 xxx-guest-group Nomadix-Bw-Down:= 768
85 xxx
I should have said...
There is also the oddity that even though the line was commented
previously, groups were being processed as I would see in the reply
packets pairs that existed only in radgroupreply. JUST NOT THE ONES I WANT.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org
and restarted radiusd, but I get the same
results. Here is the radgroupreply:
4 xxx-guest-group Nomadix-Bw-Down:= 768
85xxx-guest-group Nomadix-Bw-Up := 256
Again...
My packet capture shows none of the group items being returned.
And debug mode will tell you what's going
authorize_group_check_query = SELECT id, groupname,
attribute, Value, op FROM radgroupcheck
WHERE groupname = '%{Sql-Group}' ORDER BY id
authorize_group_reply_query = SELECT id, groupname,
attribute, value, op FROM radgroupreply
WHERE groupname
I think we crossed each other across the water...
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
In case you missed it, the debug from latest test is a couple messages
previous (our messages crossed). I have looked through it and with my
limited knowledge see nothing exceptional except that processing stops
with radgroupcheck and never moves to radgroupreply. Have you any
ideas?
- Andrew
I have the read_groups setting set to yes in sql.conf and the debug log
would make it appear that it's reading it in correctly. The mac is found in
radcheck and any attributes in radreply are correctly returned, but rlm_sql
never checks for any group memberships at all. I've done a
Arran,
Yea - I did give that a try. I'm not sure if fall-through appears in the reply
list at the end of the transaction like the other attributes do, but it didn't
show up, nor did the group attributes show up.
JD
Re: rlm_sql not checking radgroupreply
To: FreeRadius users mailing list
list at the end of the transaction like the other attributes do, but
it didn't show up, nor did the group attributes show up.
JD
Re: rlm_sql not checking radgroupreply
--
- *To*: FreeRadius users mailing list
freeradius-users@lists.freeradius.org
radgroupreply
To: FreeRadius users mailing list freeradius-users@lists.freeradius.org (
mailto:freeradius-users%40lists.freeradius.org )
Subject: Re: rlm_sql not checking radgroupreply
From: Arran Cudbard-Bell a.cudba...@freeradius.org (
mailto:a.cudbardb%40freeradius.org )
Date: Mon, 26 Sep 2011 18:50
show up, nor did the group attributes show up.
JD
Re: rlm_sql not checking radgroupreply
--
- *To*: FreeRadius users mailing list
freeradius-users@lists.freeradius.org
- *Subject*: Re: rlm_sql not checking radgroupreply
- *From*: Arran Cudbard-Bell
: rlm_sql not checking radgroupreply
To: FreeRadius users mailing list freeradius-users@lists.freeradius.org (
mailto:freeradius-users%40lists.freeradius.org )
Subject: Re: rlm_sql not checking radgroupreply
From: Arran Cudbard-Bell a.cudba...@freeradius.org (
mailto:a.cudbardb%40freeradius.org )
Date
Hi All; I am using chillispor on a router with dd-wrt and I wanted to use the
follwoing parameters, but dont know where to load them in my Freeradius Mysql
config, pls: Session-Timeout = 3600Idle-Timeout = 600
Acct-Interim-Interval = 60WISPr-Redirection-URL = http://www.google.com/
On 4 Sep 2011, at 14:28, Lucio Godoy wrote:
Hi All;
I am using chillispor on a router with dd-wrt and I wanted to use the
follwoing parameters, but dont know where to load them in my Freeradius Mysql
config, pls:
Session-Timeout = 3600
Idle-Timeout = 600
Acct-Interim-Interval = 60
- Radgroupcheck or Radgroupreply
On 4 Sep 2011, at 14:28, Lucio Godoy wrote:
Hi All;
I am using chillispor on a router with dd-wrt and I wanted to use the follwoing
parameters, but dont know where to load them in my Freeradius Mysql config, pls:
Session-Timeout = 3600
Idle-Timeout = 600
Acct-Interim
Hello.
I am having problems getting the radgroupreply attributes to work.
radreply works fine when adding reply attributes to users.
Now i have a user defined that belongs to a group (for example. SSL).
This group has groupreply attributes rfc 2865. (Class).
But when trying with radtest it does
Hello again.
Forget about this post. I found it. From the debug.
Seems it was checking for radusergroup instead of usergroup...
Sorry.
Regards
M
--
View this message in context:
http://www.nabble.com/radgroupreply-issue-with-freeradius%2Cmysql-and-daloradius-tp24184189p24184245.html
Sent
Arlinelson Fernandes dos Santos wrote:
The pre1 version is buggy!!!
Yes... which is why 2.0.0 was released.
Now, I'm working to solver this: rlm_acct_unique: WARNING: Attribute
Client-IP-Address was not found in request, unique ID MAY be inconsistent
Grab the latest version from CVS. It
OK, since that's correct I had a look at the debug. You are not doing
group checking at all. You have done something to sql.conf to break it.
Go back to the original sql.conf and just alter the connection details
(user, pass, server). Leave rest as it is (we will sort out sumultaneous
use later).
Oh my God!!! This problem is killing me!I back the original sql.conf and
have no Auth-Type in radcheck and other no in tables too.I put := in
Simultaneous-Use.I test the connection and no groups table was read. The
radius log is the same.I did install freeradius in other server and do the
same. No
2.0 an need to load radcheck, radreply, radgroupcheck
and radgroupreply tables. But radcheck and radreply work. To load
radgroupcheck e need to set Fall-Through = Yes, but radgroupreply don't work.
The read_groups directive is 'Yes' but not appers in the radius debug
mode.How can I do freeradius load
something in usergroup table to link users and groups?
Ivan Kalik Kalik Informatika ISP Dana 14/1/2008,
Arlinelson Fernandes dos Santos: Hi,I am
usind freeradius 2.0 an need to load radcheck, radreply, radgroupcheck
and radgroupreply tables. But radcheck and radreply work. To load
| = | 1 |+++++---+ ##
radgroupreply
++--+---++--+|
id | GroupName | Attribute
| op |
Value
|++--+---++--+|
13 | f_pppoe_250k
| = | 1
|+++++---+ ##
radgroupreply
++--+---++--+|
id | GroupName| Attribute
| op |
Value
| op | Value
|+++++---+| 5 |
f_pppoe_250k | Auth-Type | = | PAP|| 6 | f_pppoe_250k
| Simultaneous-Use | = | 1
|+++++---+ ##
radgroupreply
Did you put something in usergroup table to link users and groups?
Ivan Kalik
Kalik Informatika ISP
Dana 14/1/2008, Arlinelson Fernandes dos Santos [EMAIL PROTECTED]
piše:
Hi,I am usind freeradius 2.0 an need to load radcheck, radreply,
radgroupcheck and radgroupreply tables. But radcheck
pie: Hi,I am
usind freeradius 2.0 an need to load radcheck, radreply, radgroupcheck
and radgroupreply tables. But radcheck and radreply work. To load
radgroupcheck e need to set Fall-Through = Yes, but radgroupreply don't work.
The read_groups directive is 'Yes' but not appers in the radius debug
Hi,I am usind freeradius 2.0 an need to load radcheck, radreply,
radgroupcheck and radgroupreply tables. But radcheck and radreply work. To load
radgroupcheck e need to set Fall-Through = Yes, but radgroupreply don't work. The
read_groups directive is 'Yes' but not appers in the radius debug
is a member of both groups he gets
both attributes sent back from radgroupreply.
User Sally is a member of the NetworkGroup so I only want radgroupreply to
send just the attributes for the NetworkGroup.
User Bob is a ServerGroup so I only want bob to get the attributes from
in through 192.168.0.1 I need to pass
him Class = OU=NetworkGroup. The way it stands no matter which
NAS-IP-Address he comes from because he is a member of both groups he gets
both attributes sent back from radgroupreply.
User Sally is a member of the NetworkGroup so I only want radgroupreply
The problem is: If the Freeradius don't find the UserName on the table
radcheck it doesn't return the attributes that are on the table
radreply, just the records of the table radgroupreply are returned. I
need to return the reply different for each client because this
parameter is the speed
don't find the UserName on the table
radcheck it doesn't return the attributes that are on the table
radreply, just the records of the table radgroupreply are returned. I
need to return the reply different for each client because this
parameter is the speed of upload and download and this values
N White [EMAIL PROTECTED] wrote:
Can anyone explain to me the purpose and usage of the 'prio' column in
the radgroupreply table?
Order. SELECT ... by prio
See the users file for examples:
DEFAULT ...
Foo-Stuff = 1
Bar-Junk = 2
is *not* the same as
DEFAULT
Alan DeKok wrote:
N White [EMAIL PROTECTED] wrote:
Can anyone explain to me the purpose and usage of the 'prio' column in
the radgroupreply table?
Order. SELECT ... by prio
See the users file for examples:
DEFAULT ...
Foo-Stuff = 1
Bar-Junk = 2
N White [EMAIL PROTECTED] wrote:
I see. So, for example, if a user belongs to two groups, which group has
the priority. So is a lower number a higher priority? 0 being highest?
Thanks!
See your SQL docs for what priority means. The SQL queries use it,
but other than that, FreeRADIUS
Can anyone explain to me the purpose and usage of the 'prio' column in
the radgroupreply table? Much Googling has returned nothing, accept
other questions.
--
---
| Nick White |
| Network Administrator |
| Tele-NET Internet |
| http://www.tele
Hie all,
Could you all please enlighten me whether if radius would send both
replies to the NAS?
For instance: X user in group TEST
radreply
1 test Reply-Message = Hello, there X!
Whereas
radgroupreply
seehoe yee [EMAIL PROTECTED] wrote:
Could you all please enlighten me whether if radius would send both
replies to the NAS?
Read doc/rlm_sql.
Alan DeKok.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Hi All
I am having a problem setting up a TX/RX for a user using Ascend-Data-Rate in
Radgroupreply.
I need to set them under group if i set them up for a single user it works fine.
in Table radgroupreply
I have group 1 Ascend-Data-Rate := rxspeed
2 Ascend-Data-Rate
Hi,
I know I'm a bit stressing but is this something new about radgroupreply
?
Thx a lot
-Message d'origine-
De : [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] De la part de EROS
Envoyé : lundi 4 octobre 2004 19:31
À : [EMAIL PROTECTED]
Objet : RE : RE : radgroupreply
Hi,
Thx for you
On Sun, 3 Oct 2004, EROS wrote:
I'm still trying to make the radgroupreply work but it doesn't want
Is somebody has it working (which freeradius version...) and how do I do
to succeed ?
thx
modcall: entering group redundant for request 0
radius_xlat: 'test001'
rlm_sql (sql1
# Allow for storing data after authentication
postauth_table = radpostauth
authcheck_table = radcheck
authreply_table = radreply
groupcheck_table = radgroupcheck
groupreply_table = radgroupreply
usergroup_table = usergroup
I'm still trying to make the radgroupreply work but it doesn't want
Is somebody has it working (which freeradius version...) and how do I do
to succeed ?
thx
-Message d'origine-
De : [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] De la part de EROS
Envoyé : vendredi 1 octobre 2004
I've tried to change the request between user and group in sql.conf but
it doesn't work.
Somebody's some idea's ?
-Message d'origine-
De : [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] De la part de EROS
Envoyé : jeudi 30 septembre 2004 23:03
À : [EMAIL PROTECTED]
Objet : radgroupreply
Hi,
I've put in the radgroupreply table (mysql) some reply item like
idle-timeout. But in the radius accept response there is none of those
items.
If I put those same items on the radreply itworks.
So anyone any idea ?
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list
On Thu, 30 Sep 2004, EROS wrote:
Hi,
I've put in the radgroupreply table (mysql) some reply item like
idle-timeout. But in the radius accept response there is none of those
items.
If I put those same items on the radreply itworks.
So anyone any idea ?
Have you also configured group
Yes I have it
I have the user test001 with group1 in usergroup
And group1 Idle-Timeout = 600 in radgroupreply
I have some items in radreply for this user but none about idle-timeout
So...
-Message d'origine-
De : [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] De la part de
Kostas
On Thu, 30 Sep 2004, EROS wrote:
Yes I have it
I have the user test001 with group1 in usergroup
And group1 Idle-Timeout = 600 in radgroupreply
I have some items in radreply for this user but none about idle-timeout
So...
...so run the server in debug to see what happens
Kostas Kalevras
Envoyé : jeudi 30 septembre 2004 16:13
À : [EMAIL PROTECTED]
Objet : Re: radgroupreply
On Thu, 30 Sep 2004, EROS wrote:
Yes I have it
I have the user test001 with group1 in usergroup
And group1 Idle-Timeout = 600 in radgroupreply
I have some items in radreply
On Fri, 17 Sep 2004, Scott A. H. Phillips wrote:
Hi all,
I'm upgraded to FreeRADIUS from an old version of ICRADIUS but having
trouble migrating my old tables. To start with, the radgroupreply table of
FreeRADIUS has two fields, op CHAR(2) and prio INT(10) not present in my
older ICRADIUS
64 matches
Mail list logo