Re: Https + RADIUS

2003-09-16 Thread JM Fernandez
Zoilo [EMAIL PROTECTED] wrote: Of course, you can combine these, by providing Apache+SSL to present an certified login-web page to the client. On this login-page, the client can provide his User-Name and Password; the Submit-button would link to a page of cgi-bin where the NAS is called to

Re: Wi-fi hotspot

2003-09-16 Thread De Schrijver Peter
It too seem to be missing the obvious. A WiFi Hotspot should be easy to use, right ? -Authentication that requires user-certificates is too complicated. But we want some sort of standardized secure login for windows users ? -I only see PEAP here. Another solution would be the Portal approach:

Re: Wi-fi hotspot

2003-09-16 Thread Artur Hecker
hi But we want some sort of standardized secure login for windows users ? -I only see PEAP here. or ttls, it depends on available clients. but peap is more microsoft... you are probably right. Another solution would be the Portal approach: users will have to authenticate on a https webpage

dialup_admin web tool browsing problem.

2003-09-16 Thread Bernie Liwanag
I have been trying look for the solution in my problem for almost a week regarding installation of dialup_admin. Even for just a test without any change in configuration, I should view the the dialup admin webtool especially the diff function button on the left side. But when i browsed it

Re: Freeradius stops responding but still running

2003-09-16 Thread Oliver Graf
On Mon, Sep 15, 2003 at 05:47:39PM -0500, Josh Burks wrote: Please help! Our radius server has been acting funny the past 2 days. The radius server will quit sending accepts and responses back to the user trying to log in. The daemon still has an entry in the ps listing, so it hasn't crashed,

Radiusd service script + daemontools supervise

2003-09-16 Thread simon mackey
Hello all, I'm trying to setup radiusd to start when the computer boots up, and to get started again if it fails. I'm running Mandrake Linux 8.2. I've read a good few of the mailing list posts about this and have installed daemontools, which works fine :) I tried to run radiusd as a service

dialup_admin on different server

2003-09-16 Thread Bernie Liwanag
Can I run dialup_admin tool on a different server?I want to separate it from my radius and mysql server. TIA! Bernie

Re: Hotspot billing

2003-09-16 Thread Thor Spruyt
Well... the Gemtek P-360 lacks a lot of other important functionality! Thor. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Wi-fi hotspot

2003-09-16 Thread Thor Spruyt
- Original Message - From: Rio Martin [EMAIL PROTECTED] To: [EMAIL PROTECTED] Sent: Tuesday, September 16, 2003 6:13 AM Subject: Re: Wi-fi hotspot On Tuesday 16 September 2003 04:29, Alan DeKok wrote: Juliano Moises da Luz [EMAIL PROTECTED] wrote: Can someone point me some

Re: dialup-admin patch

2003-09-16 Thread Ulrich Walcher
Forgot one case... --- /usr/local/cvs/radiusd/dialup_admin/htdocs/show_groups.php3 2003-05-11 16:03 :37.0 +0200 +++ /usr/local/dialup_admin/htdocs/show_groups.php3 2003-09-16 15:17:24. 0 +0200 @@ -58,13 +58,23 @@ $link = @da_sql_pconnect($config); if ($link){

Re: dialup-admin patch2

2003-09-16 Thread Ulrich Walcher
and here also... --- /usr/local/cvs/radiusd/dialup_admin/lib/sql/defaults.php3 2003-01-28 15:14:53.0 +0100 +++ /usr/local/dialup_admin/lib/sql/defaults.php3 2003-09-16 15:18:27.0 +0200 @@ -121,10 +121,10 @@ $link = @da_sql_pconnect($config); if ($link){

Newsletter - Aktivierungslink

2003-09-16 Thread info
Hallo, Wenn sie diesen Newsletter erhalten wollen klicken sie bitte auf die Internet-Adresse. Falls sie diesen Newsletter nicht wollen löschen sie einfach diese E-Mail. Aktivierungslink: http://www.1a-network.de/cgi-bin/newsletter/newsletter.cgi?id=mcsmail[EMAIL

Re: Https + RADIUS

2003-09-16 Thread Alan DeKok
JM Fernandez [EMAIL PROTECTED] wrote: Alan can you tell me the details on how the NAS gets the end user username and password? It depends on the local implementation. I'm planning to nake a web based login with an access point that acts as a radius client. So have the NAS take the

RE: Wi-fi hotspot

2003-09-16 Thread Brynjar Hauksson
Hi Tom What prepaid system did you get? I've been searching for these systems with little success? Thanks in advance Kveja / Best regards / Brynjar Hauksson ICQ# 15512204 -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Tom Emerson Sent: Tuesday,

Re: Radiusd service script + daemontools supervise

2003-09-16 Thread Alan DeKok
simon mackey [EMAIL PROTECTED] wrote: When I boot up I can see the message Starting radiusd [OK] amongst all the other services like httpd, etc., so I presume it's running, but when I log in and type lsof -i at the command line I don't see any radiusd processes running :( 'ps' is the

RE: Wi-fi hotspot

2003-09-16 Thread Jeremy Davis
I recommend the Colubris CN3000 and the Zyzel 4000 for multi-AP deployments and the AP2500 or StarOS for single AP deployments. It is relatively easy to build a prepaid card engine due to the modular approach of FreeRadius. I have built one, and have another customer in the queue for this

RE: Hotspot billing

2003-09-16 Thread Jeremy Davis
Like a radius client capable of PAP or CHAP authentication would be a good start. It only has an 802.1x client, so the only password enable authentication revolves around EAP-MD5 which has yanked from XP SP1. Jeremy -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]

(no subject)

2003-09-16 Thread hernan.gonzalez-pablo
Hi... I can't compile freeradius.0.9.1 in freeBSD 4.8.- But when I compile this version in freeBSD 5.0 this problems are fixs.- What can I do with this bugs??? Regards.- Hernan.-

Newsletter: Vielen dank für ihre Anmeldung!

2003-09-16 Thread info
Hallo, Ihre E-Mailadresse [EMAIL PROTECTED] wurde in den Newsletterverteiler hinzugefügt. URL: http://www.1a-network.de/cgi-bin/newsletter/newsletter.cgi?id=mcsmail Mit freundlichen Grüssen Ihr Newsletter-Team - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

EAP/SIM ... when?

2003-09-16 Thread Marcos Vázquez
Hi there! I've heard some rumors claiming that EAP/SIM will be available with FreeRadius in the near future. Can anyone tell me what is the current status of this project and an estimated release date? Thanks a lot, Marcos - Original Message - From: [EMAIL PROTECTED] To: [EMAIL

Newsletter: Vielen dank für ihre Anmeldung!

2003-09-16 Thread info
Hallo, Ihre E-Mailadresse [EMAIL PROTECTED] wurde in den Newsletterverteiler hinzugefügt. URL: http://www.1a-network.de/cgi-bin/newsletter/newsletter.cgi?id=mcsmail Mit freundlichen Grüssen Ihr Newsletter-Team - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Hotspot billing

2003-09-16 Thread Alan DeKok
Jeremy Davis [EMAIL PROTECTED] wrote: Like a radius client capable of PAP or CHAP authentication would be a good start. It only has an 802.1x client, so the only password enable authentication revolves around EAP-MD5 which has yanked from XP SP1. The latest CVS snapshot supports TTLS. As a

Re: EAP/SIM ... when?

2003-09-16 Thread Alan DeKok
=?iso-8859-1?Q?Marcos_V=E1zquez?= [EMAIL PROTECTED] wrote: I've heard some rumors claiming that EAP/SIM will be available with FreeRadius in the near future. Can anyone tell me what is the current status of this project and an estimated release date? It's being worked on. No estimated

Re: Wi-fi hotspot

2003-09-16 Thread Alan DeKok
Rio Martin [EMAIL PROTECTED] wrote: Perhaps if i succeed, would you allow me to share my documentation about it to this list Alan ? Sure. If it's useful to a wider audience, we can include it with the server. Alan DeKok. - List info/subscribe/unsubscribe? See

Re: EAP/SIM ... when?

2003-09-16 Thread Michael Richardson
-BEGIN PGP SIGNED MESSAGE- I expect to complete an alpha patch by the end of the month, and then it will have to be tested against other implementations. There is a day or two of work left, but there are other priorities for a while. ] Out and about in Ottawa.hmmm... beer.

Re: module failure with multiple accounting methods

2003-09-16 Thread Alan DeKok
Dave Mason [EMAIL PROTECTED] wrote: I have a Freeradius server (v0.8.1) where I may configure multiple accounting methods in radiusd.conf. These could be any of the ones supplied with Freeradius, like detail, radutmp, etc, or a new one that I wrote. My new one may succeed or fail in

RE: [eap] non-wire related comments on eap-sim-11.txt

2003-09-16 Thread henry.haverinen
Michael, Many thanks for your comments. I agree the document could use some restructuring and clarification. It's a result of cumulative revisioning, and we haven't really thought about the structure since the beginning. It's very hard to structure the document so that you can understand

RE: FreeRADIUS 0.9.1. under FreeBSD^ making errors

2003-09-16 Thread Paul Hampson
From: andrew bogorodsky Sent: Sunday, 14 September 2003 8:28 PM Making static dynamic in rlm_dbm... gmake[5]: Entering directory `/usr/local/soft/freeradius-0.9.1/src/modules/rlm_dbm' gcc -g -O2 -pthread -D_THREAD_SAFE -Wall -D_GNU_SOURCE -DNDEBUG -I../../include -DHAVE_NDBM_H -c

FreeRadius 0.9.1 on Redhat 8

2003-09-16 Thread Patrick Forsythe
rad_recv: Access-Request packet from host 127.0.0.1:32769, id=110, length=57 User-Name = steve User-Password = testing I am building out a new server. The old server had the Livingston version of radius I believe 1.16. with about 100 users. The new server is a RedHat 8 box.

RE: (no subject)

2003-09-16 Thread Paul Hampson
From: [EMAIL PROTECTED] Sent: Wednesday, 17 September 2003 12:42 AM I can't compile freeradius.0.9.1 in freeBSD 4.8.- But when I compile this version in freeBSD 5.0 this problems are fixs.- What can I do with this bugs??? Stick with FreeBSD 5? Actually, if you read the mailing list archives,

RE: Logging Failed Attempts to MySql database

2003-09-16 Thread Paul Hampson
From: Nicolas Baradakis Sent: Saturday, 13 September 2003 2:12 AM Thor Spruyt wrote: The second point is you'll only get the login / password in the database. For example the hotline staff may need the Calling-Station-Id too. Therefore you need the rlm_sql module to execute the SQL

Re: FreeRadius 0.9.1 on Redhat 8

2003-09-16 Thread Alan DeKok
Patrick Forsythe [EMAIL PROTECTED] wrote: I am building out a new server. The old server had the Livingston version of radius I believe 1.16. with about 100 users. The new server is a RedHat 8 box. After many failed attempts to install the livingston radius I downloaded and installed

Re: Logging Failed Attempts to MySql database

2003-09-16 Thread Alan DeKok
Paul Hampson [EMAIL PROTECTED] wrote: In fact I posted on freeradius-devel a set of patches: one adds support for Post-Auth-Type REJECT I'll get on to adding this to CVS over the weekend. Sorry, I've been a little busy with the 0.9.1 release, and then the stuff I was ignoring while

Limiting time to connect

2003-09-16 Thread Narasimha Reddy Gujja
Hi all I have a wireless set up, where I authenticate the clients (wireless card) with RADIUS, request coming via NAS(Orinoco AP2000). Is there a way to limit the time, client connected to the network. I think we can limit the time to connect by changing some configuration within NAS(Orinoco

Limiting time to connect

2003-09-16 Thread Narasimha Reddy Gujja
Hi all I have a wireless set up, where I authenticate the clients (wireless card) with RADIUS, request coming via NAS(Orinoco AP2000). Is there a way to limit the time, client connected to the network. I think we can limit the time to connect by changing some configuration within NAS(Orinoco

libpam not found

2003-09-16 Thread Mark Moody
I'm trying to install Freeradius 0.9.1 on a Debian system (2.4.30), everything is fine except for the following: configuring in src/modules/rlm_pam running /bin/sh ./configure --prefix=/usr --sysconfdir=/etc --localstatedir=/var --with-experimental-modules --with-snmp

Re: Limiting time to connect

2003-09-16 Thread Michael Griego
I haven't had a chance to thoroughly test it yet, but Proxim support tells me that they support the Session-Timeout attribute. So, if you add a Session-Timeout attribute to the access accept packet, it should give a per-client timeout on the AP. --Mike On Tue, 2003-09-16 at 16:41, Narasimha

defaulting a user's Realm

2003-09-16 Thread Ron Wahler
We have had this working with earlier version of FreeRadius. When A User-Name does not have a Realm we want to default its realm. In the users file we have the following lines: DEFAULT Realm == Site, Autz-Type := Site, Auth-Type := Site, PostAuth-Type := Site-postauth DEFAULT

FreeRadius and md5 hash passwords

2003-09-16 Thread Martin Jessa
Hi guys. I have set up freeradius with authentication agains MySQL. I have poptop talking to the radius server and in that way authenticating my users. The problem is I cannot make the radius server read md5 encrypted passwords, only plain text. Any idea what to do to make it read md5 passwords?

Re: POSTGRESQL + FREERADIUS 0.9.1 configuration help

2003-09-16 Thread boggss
guy, my reason of using fr 0.9.1 for pgsql 7.3.2 is that pgsql has triggers and functions that i am using on. i am implementing a lot of stored procedures on it. can you send me the config files of fr + pgsql? i'll be delighted to study it.

Re: FreeRadius and md5 hashed passwords

2003-09-16 Thread Martin Jessa
Hi Marius, guys I am stucked. I made some changes in the config file and added Auth-Type to the radgroupcheck table (which was previously empty) and now I cannot authenticate at all. Seems like the problem is somewhere else. My radiusd.conf: modules { mschap { authtype