(URGENT!!!!) How to configure freeradius for windows 2000 users?

2003-12-20 Thread Shashidhara S Bapat
Hello all,
I am running FreeRadius 'radiusd' on Linux machine which should
authenticate wireless Windows-2000 users (through AP600 access point (it
supports RADIUS protocol)).
I am failing to add a windows user (or machine) as a user to the server.
Everything works fine when I try with 'radtest' command.
Following is my setup:
   (Linux)  (NAS)(user)
+--+  +--++++-+
+ Internet +| Radius   |  | AP-600 | wireless |Win-2000 |
+--+  +--++++-+

Please let me know what setup I have to make to make above thing
working. In case anyone has example 'users', 'radiusd.conf',
'clients.conf' files, please forward it to me.
FYI:
1   Server: Redhat Linux v9.0 (Kernel 2.4.20-8)
 NAS : AP-600 (this supports RADIUS protocol)
 wireless users; Windows 2000 professional.
2 I have enabled EAP.
3 have added windows user in 'users' file.
4 have added AP-600 entry in the 'clients.conf' file.

(I dont know exactly which Auth-Type I have to use. I have tried with
'Local', 'System', 'eap', 'ms-chap'..etc)
Thanks in advance for all the help. Please reply asap.


-- 
=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=
--Best Regards,
  Shashi.
  \\\///
  \  ~  ~  /
  |  @  @  |
  oOo(_)---oOo
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=


- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re: Help me !!!

2003-12-20 Thread Julius Igugu
Can you give more details of your setup?Prasad Yaramti [EMAIL PROTECTED] wrote:

Hi there,
 
  I am new this radius authentication Concept,actually my requirement is to check User name and Passsword via Radius server.In this aspect I have to pass user name and Password to Radius and to get authenticate.
 Help me how store the username and password in the server,how to authneticate ? How to pass the my username and password to server 

Thanks inadvance for your help

Regards,Prasad.


Do you Yahoo!?Free Pop-Up Blocker - Get it now
Do you Yahoo!?
New Yahoo! Photos - easier uploading and sharing

FreeRadius Vs Supllicant. EAP-TLS Certificates problem

2003-12-20 Thread Yosi Corcia
Hi guys!

I am triying to create the client and server certificates. I am following 
the Howtos:

http://www.missl.cs.umd.edu/wireless/eaptls/
http://www.impossiblereflex.com/8021x/eap-tls-HOWTO.htm
When I try to create the CA hierarchy ( usin CA.pl -newca), I suppose taht 
the program can´t create the cacert.pem certificate, because In the 
followings lines I must execute an orden with the argument demoCA/cacert.pem 
and the program says me that the file doesn´t exist.

if someone could help me, I would be very greated.

Thanks for all

_
Deja tu CV y recibe ofertas personalizadas de trabajo en tu buzón. 
http://www.msn.es/Empleo/

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re: FreeRadius Vs Supllicant. EAP-TLS Certificates problem

2003-12-20 Thread Alan DeKok
Yosi Corcia [EMAIL PROTECTED] wrote:
 I am triying to create the client and server certificates. I am following 
 the Howtos:

  See 'scripts/CA.all'.  It's a script taken from the Howto's, which
will create the certificates for you.

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re: conflicting packet problem

2003-12-20 Thread Alan DeKok
Simon Allard [EMAIL PROTECTED] wrote:
 So if I have 100 NAS's behind a proxy, since the source is the same for
 all of the NAS's does it compare NAS-IP-Address or does it use the IP of
 the proxy?

  It uses the IP of the proxy.  The IP's of the NAS boxes are totally
irrelevant.

 What is the most common cause for conflicting packet's and are there any
 easy fixes?

  The most common cause is that the server is taking a long time to
process requests.  The only fix is to find out what's taking so long,
and correct the problem.

 I am using freeradius 0.9.0 with LDAP on a dual 2Ghz mahine. I have 3 of
 these load balanced behind a L4 Switch.

  You should upgrade to 0.9.3, bu those machines are definitely
powerful enough.

 I am even getting dupulate records with accounting which is odd
 because all its doing is writing the accounting record straight to
 the disk.

  If the NAS sends two accounting packets, the server logs two.

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re: Radius not responding to the user request

2003-12-20 Thread Alan DeKok
Shashidhara S Bapat [EMAIL PROTECTED] wrote:
 Please let me know what all changes I have to do for my network to work.

  See the FAQ, and run the server in debugging mode.

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re: Help me !!!

2003-12-20 Thread Alan DeKok
Prasad Yaramti [EMAIL PROTECTED] wrote:
Help me how store the username and password in the server,how to
 authneticate ?  How to pass the my username and password to server ???

  Read the FAQ.  It explains how to do this.

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re: Easy User Interface?

2003-12-20 Thread Peter Nixon

As for configuring the server... {scratching head} ...that isn't available.
Once the servr is configured, it shouldn't require very much fiddling
with, but it would be nice to be able to change more than just user
accounts. Eventualy it would be nice to be able to maintain realms, and
NAS configurations as well.
Yes. this would be trivially possible by way of storing this information 
in SQL, however as has been discussed previously on the list this can 
open the server up to a DoS attack, therefore the NAS and realms info 
should be stored in SQL, but not accessed in real time but rather loaded 
once on server start up and SIGHUP.
As yet no-one has stepped up to the plate with code to impliment this :-)

Cheer

Peter



- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re:Make your friends Jealous

2003-12-20 Thread Linda F. Kemp