rlm_detail NFS

2002-10-31 Thread Thomas Jalsovsky
Hello, does anybody have any experience with saving detail files onto NFS partition sitting on a remote host? Maybe with another distributed filesystem under Linux? My goal will to make fail-over solution, so when RADIUS (rlm_detail) can't store files onto local filesystem let

IPPOOL configuration on freeradius-0.7.1

2002-10-31 Thread ian
Sir/Madam I have downloaded and installed freeradius-0.7.1 on a linux system It is all working except I am having trouble - allocating IP address dynamically it is my believe this is done using ippool which is where my problem is. I can't seem to set up ippool successfully. Do I need to

Error about:rlm_eap_md5: No password configured for this user.

2002-10-31 Thread smlin
Dear all, I encounter the error message about EAP-MD5 Configuration. I have no idea about which configuration I'd to modify. My environment RH8.0+FreeRadius 0.7.1+Cisco 350 AP with MD5 authentication mode only. Thanks! Sam Lin my radiusd.conf as following: prefix = /usr/local

Simultaneous-Use problem

2002-10-31 Thread Pascal Gloor
Hi all, I have setup three freeradius servers v0.7.1 - two authorization, authentication - one accounting the two servers for authentication are working with files. the accouting server is working with mysql. The NASes are using BOTH servers (load-balancing). The feature

compile problem (CVS): no clients symbol

2002-10-31 Thread Toni Mueller
Hello, while trying to compile the current CVS snapshot as of about one hour ago, I stumbled across a small glitch: gcc .libs/radiusdS.o -g -O2 -D_REENTRANT -D_POSIX_PTHREAD_SEMANTICS -Wall -D_GNU_SOURCE -g -Wshadow -Wpointer-arith -Wcast-qual -Wcast-align -Wwrite-strings -Wstrict-prototypes

Re: pap authentication problem

2002-10-31 Thread Kostas Kalevras
On 30 Oct 2002, Ulrich Walcher wrote: I have freeradius-0.7.1 working with ldap for autz/auth and mysql for acct. The passwords are stored SHA encrypted on the ldap. I can get the password but rlm_pap fails with SHA1 encryption. The password can be reproduced with the OpenLDAP tool

Re: freeRADIUS dialup admin

2002-10-31 Thread Kostas Kalevras
On Wed, 30 Oct 2002 [EMAIL PROTECTED] wrote: Hello, I was wondering if there was an oracle driver for the dialup admin. Thanks. Adam Joncas No there isn't. Patches are welcome though. It is quite easy, just create a corresponding lib/sql/drivers/oracle/functions.php3 file just like the

FreeRADIUS options with Wireless APs?

2002-10-31 Thread Owen Squires
Could anyone provide hints for using v.0.71 with wireless access points? I'm using it with a AP-500 and it works but can't get either a Cisco AP350 nor a Symbol AP4131 to work. I'm kinda stumbling around here I'm afraid... All suggestions and/or links welcome. Thx Owen G. Squires StanlyNet,

RE: FreeRADIUS options with Wireless APs?

2002-10-31 Thread McKay, Raymond
Could anyone provide hints for using v.0.71 with wireless access points? I'm using it with a AP-500 and it works but can't get either a Cisco AP350 nor a Symbol AP4131 to work. I'm kinda stumbling around here I'm afraid... All suggestions and/or links welcome. Adam Sulmicki has written a

Re: pap authentication problem

2002-10-31 Thread Ulrich Walcher
On Thu, 2002-10-31 at 15:34, Kostas Kalevras wrote: On 30 Oct 2002, Ulrich Walcher wrote: I have freeradius-0.7.1 working with ldap for autz/auth and mysql for acct. The passwords are stored SHA encrypted on the ldap. I can get the password but rlm_pap fails with SHA1 encryption. The

Re: FreeRADIUS options with Wireless APs?

2002-10-31 Thread Ulrich Walcher
On Thu, 2002-10-31 at 15:53, Owen Squires wrote: Could anyone provide hints for using v.0.71 with wireless access points? I'm using it with a AP-500 and it works but can't get either a Cisco AP350 nor a Symbol AP4131 to work. I'm kinda stumbling around here I'm afraid... All suggestions

how to make radiusd restart its log files?

2002-10-31 Thread Daniel Monjar
I want to rotate my logs at the first of the month. I want to rename the log files and then have radiusd start writing to a new set. I was hoping 'kill -1' would make it write to a new radius.log but apparently not. Starting and stopping radiusd does it but that seems excessive. Any other

Re: how to make radiusd restart its log files?

2002-10-31 Thread Angelos Karageorgiou
The Fine Manual says detailfile = ${radacctdir}/%{Client-IP-Address}/detail-%Y-%m On Thu, 31 Oct 2002, Daniel Monjar wrote: I want to rotate my logs at the first of the month. I want to rename the log files and then have radiusd start writing to a new set. I was hoping 'kill -1'

Re: how to make radiusd restart its log files?

2002-10-31 Thread Alan DeKok
Daniel Monjar [EMAIL PROTECTED] wrote: I want to rotate my logs at the first of the month. I want to rename the log files and then have radiusd start writing to a new set. I was hoping 'kill -1' would make it write to a new radius.log but apparently not. Starting and stopping radiusd does

Re: how to make radiusd restart its log files?

2002-10-31 Thread markcapelle
Hi, I just wrote a small Perl script... here it is... I am no Perl expert, but it gets the job done... #!/usr/bin/perl -w # This perl script should be put in the monthly cron rotation. # It will move the radius.log file to the archive folder and compress it use strict; my $day; my $month;

Re: AIX and PAM authentication

2002-10-31 Thread Alan DeKok
Ricardo Gadea [EMAIL PROTECTED] wrote: Does anyone now if AIX supports PAM authentication? Have you tried reading your AIX documentation? And the PAM to RADIUS authentication module? I don't know of any system which ships with a PAM to RADIUS module. Alan DeKok. - List

Re: rlm_detail NFS

2002-10-31 Thread Alan DeKok
Thomas Jalsovsky [EMAIL PROTECTED] wrote: does anybody have any experience with saving detail files onto NFS partition sitting on a remote host? Maybe with another distributed filesystem under Linux? It's a bad idea. NFS may go away without really going away. That is, it will look to

Re: compile problem (CVS): no clients symbol

2002-10-31 Thread Alan DeKok
Toni Mueller [EMAIL PROTECTED] wrote; I can stick a random RADCLIENT *clients in somewhere, but am not convinced that this would be an appropriate solution. FWIW, in .../radiusd.h there is a structure that contains such a component, but that should apparently be aliased to a global, no? No.

Re: Simultaneous use works beautifully

2002-10-31 Thread Alan DeKok
Joshua Corbin [EMAIL PROTECTED] wrote: I got Simultaneous-Use working with a MySQL setup and though I would tell you all how I got it to work in case anyone has any questions: That's good to hear. Just make sure that checkrad works with your setup; I had to change my SNMP read community,

Re: compile problem (CVS): no clients symbol

2002-10-31 Thread Toni Mueller
Hi Alan, On Thu, Oct 31, 2002 at 11:22:11AM -0500, Alan DeKok wrote: Toni Mueller [EMAIL PROTECTED] wrote; I can stick a random RADCLIENT *clients in somewhere, but am not convinced that this would be an appropriate solution. FWIW, in No. I've been going through the code the past few

Reporting minor bugs/fixes

2002-10-31 Thread Chris Krusch
How do I best report a bug I found and fixed in the 0.7.1 release? Is there somewhere I can look to see if fixes of this sort have already been made? There's a bug in valuepair.c with parsing of octets. In my users file, when I attempt to set the class attribute to a string value (e.g. class =

MAC authentication - was: FreeRADIUS options with Wireless APs

2002-10-31 Thread Owen Squires
Thanks all for hints... I think the problem I may be having is due to all the suggestions relate to also turning on EAP/MD5/WEP or some such as well. I've got 260 iBooks that I don't want to do anything other than force MAC address authentication for. If the MAC address is in the table, let the

Re: how to make radiusd restart its log files?

2002-10-31 Thread Daniel Monjar
I love perl but sometimes the shell is just as good: #!/usr/bin/bash EXT=`date +%y%m` cd /usr/local/var/log/radius/archive mv radius.log $EXT.log gzip -9 $EXT.log - and if you use gnu date then you can run this thing right after midnight

Re: how to make radiusd restart its log files?

2002-10-31 Thread Daniel Monjar
Excellent! All of the files? (detail, radwtmp, ...) --On Thursday, October 31, 2002 11:09 AM -0500 Alan DeKok [EMAIL PROTECTED] wrote: Daniel Monjar [EMAIL PROTECTED] wrote: I want to rotate my logs at the first of the month. I want to rename the log files and then have radiusd start

Re: how to make radiusd restart its log files?

2002-10-31 Thread Alan DeKok
Daniel Monjar [EMAIL PROTECTED] wrote: The server always opens the log file by name, so moving it out of the way will cause a new one to be created. Excellent! All of the files? (detail, radwtmp, ...) The 'detail' file is rotated automatically. Read the configuration file to see why.

Re: how to make radiusd restart its log files?

2002-10-31 Thread Daniel Monjar
it is 0.7.1... should I upgrade? --On Thursday, October 31, 2002 2:47 PM -0500 Alan DeKok [EMAIL PROTECTED] wrote: Daniel Monjar [EMAIL PROTECTED] wrote: I don't mean to be dense but the config file does tell me much concerning this... I have ... An older version of the server. but this

Strange Accounting Problem

2002-10-31 Thread WA Support
Hello, I use freeradius-0.5 on a linux box. I am getting strange accounting behavior. I noticed weird client IP directories being created in my /usr/adm/radacct directory. My normal clients are 192.168.192.22 and 192.168.192.23. I have two directories, 192.168.192.22 and 192.168.192.23, in my

Re: Strange Accounting Problem

2002-10-31 Thread Alan DeKok
WA Support [EMAIL PROTECTED] wrote: I use freeradius-0.5 on a linux box. Huh? 0.7 was released nearly 3 months ago. I noticed weird client IP directories being created in my /usr/adm/radacct directory. My normal clients are 192.168.192.22 and 192.168.192.23. I have two directories,

Re: how to make radiusd restart its log files?

2002-10-31 Thread Alan DeKok
Daniel Monjar [EMAIL PROTECTED] wrote: it is 0.7.1... should I upgrade? Wait a week or so. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: pre- and postproxying

2002-10-31 Thread Alan DeKok
ah ok, i didn't actually take a loot at pre-, i kind of wrongly supposed you would do both at the same time or neither. and anyway, i need both... but ok, thank you so far. Pre-proxy was easy to do and simple. Post-proxy is a little more difficult. Try the latest CVS, and add the patch

0.8 pre-release announcement

2002-10-31 Thread Alan DeKok
The FreeRADIUS team is about to release the next version of the FreeRADIUS authentication server. While we do our best to test the server under many different configurations, we are unable to test it in all situations. Therefore, before we issue the next release, we would like your assistance.

Re: Strange Accounting Problem

2002-10-31 Thread WA Support
My bad, I am thoroughly scolded! Murrah Boswell Alan DeKok wrote: WA Support [EMAIL PROTECTED] wrote: I use freeradius-0.5 on a linux box. Huh? 0.7 was released nearly 3 months ago. I noticed weird client IP directories being created in my /usr/adm/radacct directory. My normal

Re: Cannot get EAP-TLS to work with FreeRADIUS 0.7

2002-10-31 Thread Aron Silverton
Alan DeKok wrote: Jason Haar [EMAIL PROTECTED] wrote: I've compiled up 0.7 successfully under Redhat 7.2 with openssl-0.9.6b, but when I try to use xsuplicant on a WLAN Linux client, radiusd crashes: Uh, no. Your shared libraries are set up wrong. The server asks to do run-time

Re: Cannot get EAP-TLS to work with FreeRADIUS 0.7

2002-10-31 Thread Aron Silverton
Ok, I read the original post more closely and maybe he was having both problems: wrong OpenSSL at first and then linker problems after that. I know that I wasn't having the linker issues. The necessary OpenSSL functions were not added until 0.9.7 as found in the SSL_CTX_set_msg_callback.pod.

authenticating with openldap 2.1

2002-10-31 Thread Mike Denka
I have been authenticating just fine with openldap 2.0.25 and just upgraded to 2.1.8. Now my authentication fails with a rlm_ldap: Bind as user failed error. I didn't change anything in my radius configuration. Of course openldap 2.1 is very different from 2.0. I recognize that this is

Re: Simultaneous use works beautifully

2002-10-31 Thread Jorge Minassian
Hi all !, Joshua, I tried that, it works OK !. Thank you, Jorge. JC Greetings, JC I got Simultaneous-Use working with a MySQL setup and though I would JC tell you all how I got it to work in case anyone has any questions: JC Read http://www.freeradius.org/radiusd/doc/Simultaneous-Use JC I

Re: blackmusic.ch mailing list memberships reminder

2002-10-31 Thread Mattt
Well, I don't quite know where to begin with what's wrong with this. It's not my password, I'm not on the blackmusic.ch list, and the username part of the given address for responses, etc, doesn't exist... What the?!? On Fri, 2002-11-01 at 14:17, [EMAIL PROTECTED] wrote:

Re: blackmusic.ch mailing list memberships reminder

2002-10-31 Thread Chris A. Kalin
I took the liberty of unsubscribing the list from the newsletter. Figured it would curb discussion about it and keep the noise down. :) Chris Kalin - Original Message - From: [EMAIL PROTECTED] To: [EMAIL PROTECTED] Sent: Thursday, October 31, 2002 10:17 PM Subject: blackmusic.ch

Re: rlm_detail NFS

2002-10-31 Thread Thomas Jalsovsky
On Thu, 31 Oct 2002, Alan DeKok wrote: Thomas Jalsovsky [EMAIL PROTECTED] wrote: does anybody have any experience with saving detail files onto NFS partition sitting on a remote host? Maybe with another distributed filesystem under Linux? It's a bad idea. NFS may go away without