Re: (RADIATOR) Re: IP restriction

2001-09-06 Thread Hugh Irvine
Hello 'Tunde - You usually do this by specifying a suitable Framed-IP-Netmask in the reply attributes, but you will have to check with the vendor what is correct for a Netserver. Here is what usually works however: Framed-IP-Netmask = 255.255.255.254 regards Hugh On Thursday 06 S

Re: (RADIATOR) Strange Problem

2001-09-06 Thread Hugh Irvine
Hello Ujwol - Thanks for sending the configuration file - it looks fine. When you do get a trace 4 debug, please send it to me so I can have a look. regards Hugh On Thursday 06 September 2001 19:24, Ujwol wrote: > > Hi Hugh, > Our minimal configuration file is written below. It's har

Re: (RADIATOR) AuthBy File: Same user with different passwords

2001-09-06 Thread Hugh Irvine
Hello Ralph - On Thursday 06 September 2001 19:36, [EMAIL PROTECTED] wrote: > Hi everybody > Is it possible to have a user with different passwords? I have such a > requirement but I don't know how to achieve this. > > > The users File should look like > > user1 Password = "pass1" > pass1 Passw

(RADIATOR) Re: Authentication BY SQL

2001-09-06 Thread Hugh Irvine
Hello 'Tunde - Could you please send me a copy of the configuration file (no secrets) together with an example user record from your SQL database and the table definition for the users table. thanks Hugh On Friday 07 September 2001 00:25, 'Tunde Ogedengbe wrote: > We are setting our RADIUS

Re: (RADIATOR) AuthLog

2001-09-06 Thread Hugh Irvine
Hello Quintin - I am confused by your question - what exactly do you want to do? thanks Hugh On Friday 07 September 2001 01:37, Quintin Lam wrote: > Hi Hugh, > > I can and generate a "reply message" by an external > program if access failure. > > The configuration file: > > Identif

Re: (RADIATOR) 2.18.3 & EAP

2001-09-06 Thread Hugh Irvine
Hello Anne - On Thursday 06 September 2001 20:51, Anne Bennett wrote: > Hugh, > > > My apologies, but I am still unclear as to what you are trying to do. > > > > From what you describe below, I understand you to mean that you want the > > wireless base station to point to the ACS, which then poi

Re: (RADIATOR) Problem using Radiator to authenticate VPN access via a Cisco VPN 5001

2001-09-06 Thread Hugh Irvine
Hello Jc - What you describe is not correct. The radius packets themselves are not encrypted, neither from the NAS nor from Radiator. The shared secret is only used for the encryption of the password, and it is the configuration of the NAS that determines this (either PAP or CHAP authenticat

Re: (RADIATOR) I'm back from far north tropical Queensland (it was lovely...)

2001-09-06 Thread Hugh Irvine
Hello Michael - You would do something like this: # define AuthBy and AuthLog clauses Identifier LogToSQL DBSource DBUsername DBAuth . LogFailure 1 # define Table and FailureQuery if required # Table . # Failure

Re: (RADIATOR) I'm back from far north tropical Queensland (it was lovely...)

2001-09-06 Thread Michael Saunders
I had a read of the reference manual. It didn't go into alot of detail. Would it be possible for you to give me a quick example Michael Saunders - Original Message - From: "Hugh Irvine" <[EMAIL PROTECTED]> To: "Michael Saunders" <[EMAIL PROTECTED]> Cc: <[EMAIL PROTECTED]> Sent: Thursday,

Re: Fwd: (RADIATOR) remote radiator restart

2001-09-06 Thread Mike McCauley
Hi Mariano, On Thu, 6 Sep 2001 23:58, Mariano Absatz wrote: > Well, the point is... it didn't work, Radiator receives the request, but > doesn't do anything about it. > > I tried with the three sets of OID's (the draft ones, RFC2619 & RFC2621), > but to no avail. > > In the requesting machine, I

RE: (RADIATOR) Problem using Radiator to authenticate VPN access via a Cisco VPN 5001

2001-09-06 Thread Reynoso, Jc
Hello! I may have experienced a similar problem. Radiator sends encrypted radius packets to the cs5001 The cs5001 cannot understand the encrypted packet. This is the "shared secret" between radiator and the cs5001. You will have to send the packet in the clear (bad defeats purpose of pw in the

Re: (RADIATOR) Forced URL

2001-09-06 Thread Viraj Alankar
- Forwarded message from Viraj Alankar <[EMAIL PROTECTED]> - Date: Thu, 6 Sep 2001 12:36:55 -0400 From: Viraj Alankar <[EMAIL PROTECTED]> To: Amit Anand <[EMAIL PROTECTED]> Subject: Re: (RADIATOR) Forced URL On Thu, Sep 06, 2001 at 11:15:08AM -0400, Amit Anand wrote: > Hello all: > > I

Re: (RADIATOR) Forced URL

2001-09-06 Thread Viraj Alankar
On Thu, Sep 06, 2001 at 11:15:08AM -0400, Amit Anand wrote: > Hello all: > > I was wondering if there is a way within Radius to make users goto a > particular URL after they have been authenticated. Sort of like a filter > designed to make people visit a certain website first, and then after they

(RADIATOR) Re: Authentication BY SQL

2001-09-06 Thread 'Tunde Ogedengbe
We are setting our RADIUS to authenticate via SQL Database. The Radius is communicating properly with the SQL database. However, The Radius server is rejecting all password even though the passwords are correct (Pls see log below) Pls help. 'Tunde ---

(RADIATOR) AuthLog

2001-09-06 Thread Quintin Lam
Hi Hugh, I can and generate a "reply message" by an external program if access failure. The configuration file: Identifier authlog Filename %L/authlog LogSuccess 0 LogFailure 1 FailureFormat %l:%U:%{Reply:Reply-Message}:FAIL Trace Record Code: Ac

(RADIATOR) Forced URL

2001-09-06 Thread Amit Anand
Hello all: I was wondering if there is a way within Radius to make users goto a particular URL after they have been authenticated. Sort of like a filter designed to make people visit a certain website first, and then after they can go out into the world. I would really appreciate any input any of

(RADIATOR) Authentication BY SQL

2001-09-06 Thread 'Tunde Ogedengbe
We are setting our RADIUS to authenticate via SQL Database. The Radius is communicating properly with the SQL database. However, The Radius server is rejecting all password even though the passwords are correct (Pls see log below) Pls help. -

Re: Fwd: (RADIATOR) remote radiator restart

2001-09-06 Thread Mariano Absatz
Well, the point is... it didn't work, Radiator receives the request, but doesn't do anything about it. I tried with the three sets of OID's (the draft ones, RFC2619 & RFC2621), but to no avail. In the requesting machine, I send: snmpset -Ir -p 16146 192.168.19.1 met-pert-rad37 1.3.6.1.3.79.1.

RE: (RADIATOR) LDAP-Radiator hangs

2001-09-06 Thread Rolando Riley
I am running Radiator-2.15 and Openldap-2.0.7 on a Sun netra with Solaris 7. Radiator-2.15 openldap-2.0.7 R. Riley -Mensaje original- De: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]En nombre de Hugh Irvine Enviado el: Wednesday, September 05, 2001 5:21 PM Para: Rolando Riley; [EMAIL P

Re: (RADIATOR) Re: IP restriction

2001-09-06 Thread 'Tunde Ogedengbe
Hugh: We have series of Netservers that assign specific range of IP to connecting customers. We want to force compliance from within Radius. This means that specifying in RADIUS what IP range the Netserver can assign to the customer. 'Tunde Ogedengbe Linkserve Limited 22 Akin Adesola Street Vi

Re: (RADIATOR) 2.18.3 & EAP

2001-09-06 Thread Anne Bennett
Hugh, > My apologies, but I am still unclear as to what you are trying to do. > > From what you describe below, I understand you to mean that you want the > wireless base station to point to the ACS, which then points to Radiator, > which then authenticates from a UNIX box. > > Is this corr

(RADIATOR) AuthBy File: Same user with different passwords

2001-09-06 Thread r . helfenberger
Hi everybody Is it possible to have a user with different passwords? I have such a requirement but I don't know how to achieve this. The users File should look like user1 Password = "pass1" pass1 Password = "user1" user1 Password = "user1" pass1 Password = "pass1" I know that I could put t

Re: (RADIATOR) 2.18.3 & EAP

2001-09-06 Thread Mark O'Leary
On 6 Sep 2001, at 8:02, Hugh Irvine wrote: > Note that EAP/LEAP support is being added to Radiator in stages, with > EAP/LEAP proxy support being the first. Additional support will be introduced > in future revisions. Can I put in a request for EAP-TLS to be one of the next 'stages' to be ad

Re: (RADIATOR) Strange Problem

2001-09-06 Thread Ujwol
 Hi Hugh,     Our minimal configuration file is written below.  It's hard to capture trace report because it happens all of a sudden. Well it occured even while I was writing earlier. During that time, I could see nothing wrong with in the server, except for the radiusd. It was taking almost

Re: Re[2]: (RADIATOR) 2.18.3 still has bugs ???

2001-09-06 Thread Hugh Irvine
Hello Pavel - Sorry about that. The log shown below shows the insert into the RADONLINE table failing because of a unique constraint violation on one of the indexes. You should check the index(s) and/or the AddQuery that you are using. regards Hugh On Thursday 06 September 2001 16:44, Pav

Re: (RADIATOR) I'm back from far north tropical Queensland (it was lovely...)

2001-09-06 Thread Hugh Irvine
Hello Michael - You would use an AuthLog ... clause (probably AuthLog SQL if you are already using an SQL database). Have a look at section 6.47 in the Radiator 2.18.3 reference manual. regards Hugh On Thursday 06 September 2001 16:48, Michael Saunders wrote: > Thanks Hugh, > > I have a cu