Re: RFC3576 traffic volume control

2004-12-03 Thread Josh Howlett
David Luyens wrote: Hi, Are there any plans to support RFC3576, more particularly the disconnect message? I would like to see it implemented for traffic volume control. Please don not tell me to write the code myself as I am not a programmer The other alternative is to sponsor a FreeRADIUS

auth from cisco to freeradius msql

2004-12-03 Thread Frog
Hi list I'm in the process of setting up my first radius server. Radius starts ok and auths with radtest but from cisco it does not. I'm running Fedora Core 2 with freeradius ver 1.0.1 using cisco 1601 (testing) here is the cisco setup followed by radius radiusd -f startup then when I

RE: auth from cisco to freeradius msql

2004-12-03 Thread Lim Han Shyong
Hi, Not understand what u want... radius already authenticate and send the Access accept packet back. HSL -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Frog Sent: Friday, December 03, 2004 4:53 PM To: [EMAIL PROTECTED] Subject: auth from cisco to

RE: RFC3576 traffic volume control

2004-12-03 Thread David Luyens
OK, then 2 questions: - who can do this and is available? - how much would that cost? David -Oorspronkelijk bericht- Van: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Namens Josh Howlett Verzonden: vrijdag 3 december 2004 9:17 Aan: [EMAIL PROTECTED] Onderwerp: Re: RFC3576 traffic volume

Reply attribute parameter

2004-12-03 Thread Vincent FONTENEAU
Hi, I'm working with FC2, freeradius-0.9.3-4 and Aruba Access Point. I've installed EAP-TLS configuration and everything seems to be good by reading the log file. The little problem I have is how to reply with attribute User-Name = test when the client has been authenticate. I mean how to send

rlm_sqlcounter - segmentation error

2004-12-03 Thread Neil Craig
Hi all I'm using Freeradius 1.0.1 on a Fedoura Core 3 box. Everything is working fine apart from the sqlcounter module. radiusd starts up and sits waiting for connections. As soon as an authentication request is sent it dies with an error - segmentation fault in module sqlcounter. I had

Re: another tack was RE: oh god please help me

2004-12-03 Thread Thor Spruyt
Brian Ammons wrote: Well...yes. Look, I wasn't the one that came up with this setup. It is the setup that I have to work with at this time, however. Although you I know that it's not very secure, the folks who are using it either a) don't know or b) don't care. Although I do appreciate you

Re: Segfault [was: Re: radcheck radreply - DB1, radacct - DB2?]

2004-12-03 Thread Thor Spruyt
Jason Lixfeld wrote: Good point. Now, I just have to learn how to use diff :) It's in the docs :) -- Regards, Thor Spruyt E: [EMAIL PROTECTED] W: www.thor-spruyt.com M: +32 (0)475 67 22 65 Bestel nu uw exemplaar van Operationele verkoop (Walter Spruyt - Liesbeth Huysmans) via www.salesguide.be

Re: (no subject)

2004-12-03 Thread Neil Craig
[EMAIL PROTECTED] 03/12/2004 17:37:45 I am testing my freeradius using NTRadPing Utility. I am running radius in debugger mode and I get this: rad_recv: Access-Request packet from host 10.192.1.11:3628, id=1, length=44 Ignoring request from unknown client 10.192.1.11:3628 In clients.conf I

Re: Using external program for authentication

2004-12-03 Thread Alan DeKok
Nick 'TARANTUL' Novikov [EMAIL PROTECTED] wrote: But in this case freeradius will fork process on every request. Yes. Possible configure freeradius for fork process at startup and send attributes through pipe? Does the external program support reading data through a pipe? If not,

Re: LOGOUT

2004-12-03 Thread Alan DeKok
[EMAIL PROTECTED] [EMAIL PROTECTED] wrote: I use a server radius with LDAP and PEAP. A client xp. When the client is the first time that he connect to radius, I can insert user and password. Now if the connession is down, when i relogin I can't insert user and password but the server

Re: Ignoring request from unknown client

2004-12-03 Thread Michael Basso
On Fri, 03 Dec 2004 13:43:11 -0500 Alan DeKok [EMAIL PROTECTED] wrote: Michael Basso [EMAIL PROTECTED] wrote: I tried : ... STILL NO LUCK. Is the server reading the clients.conf file you're editing? How can I know for sure? I was editing the client.conf file in /etc/raddb. There is also one in

Re: Ignoring request from unknown client

2004-12-03 Thread Alan DeKok
Michael Basso [EMAIL PROTECTED] wrote: Is the server reading the clients.conf file you're editing? How can I know for sure? Read the first few lines of the debug output. It prints out the full path to the clients.conf file it's using. Alan DeKok. - List info/subscribe/unsubscribe?

radwho from field

2004-12-03 Thread Juan Manuel Garcia Carral
I just upgraded from freeradius 0.8 to 0.9.1. Everything works fine but when I run radwho the From field shows the IP Address of the NAS instead of the corresponding shortname I loaded in naslist file. I know naslist is deprecated and that I should use clients.conf but I can't find how to make

Help with Cisco 1200 AP and FreeRadius

2004-12-03 Thread Carl
I found a partial answer to this in the list archives, but it didn't help me much I'm using a Cisco 1200 AP and freeradius 1.0.1 for authentication. I have Radius set up fine, but I can't get the AP to foward the packets on to the server. Does anyone have any ideas? - List

Re: Bug with dead_time and max_request_time?

2004-12-03 Thread Alan DeKok
John Horne [EMAIL PROTECTED] wrote: The problem is that if the first server fails and the local server receives a request then it tries to talk to the first DEFAULT server and fails, eventually marking it as 'dead'. This is fine but the local server also sends back to the client a reject

How to add a field to the reply that contains data from the request?

2004-12-03 Thread Peter T. Breuer
freeradius 1.0.1 on FreeBSD 4.10 I believe I want to add a ARAP-Security-Data = FOO field to the reply, where I receive Login-LAT-Node = FOO How can I do this? I believe I want to use the exec echo module, but I see no clear example of how. I have set program = /bin/echo

huntgroup + MySQL : User-Name works, Group does not

2004-12-03 Thread Jason Lixfeld
modcall: entering group authorize for request 0 Invalid operator for item User-Name: reverting to '==' modcall[authorize]: module preprocess returns ok for request 0 radius_xlat: '/var/log/radius/radacct/127.0.0.1/auth-detail-20041203' rlm_detail: /var/log/radius/radacct/%{Client-IP-Address

Re: How to add a field to the reply that contains data from the request?

2004-12-03 Thread Jason Lixfeld
Pardon my possible stupidity, but in looking at how to solve my own problems, I came across this from man 5 users: DEFAULT Service-Type == Framed-User, Framed-Protocol == PPP Service-Type = Framed-User, Framed-Protocol = PPP, Fall-Through = Yes

Re: How to add a field to the reply that contains data from the request?

2004-12-03 Thread Peter T. Breuer
Also sprach Jason Lixfeld: Pardon my possible stupidity, but in looking at how to solve my own problems, I came across this from man 5 users: Hi. I don't presently know where all this stuff should go, since I have only been using the server for 30 mins, and am pleased to be able to get it to

Re: How to add a field to the reply that contains data from the request?

2004-12-03 Thread Peter T. Breuer
Also sprach Jason Lixfeld: joeuser Login-LAT-Node == FOO ARAP-Security-Data = FOO Well, I think you are right in principle, but it doesn't seem to quite work for me. I have ptb Auth-Type := Local, User-Password == XX, Login-LAT-Node ==

Re: How to add a field to the reply that contains data from the request?

2004-12-03 Thread Alan DeKok
Peter T. Breuer [EMAIL PROTECTED] wrote: I don't presently know where all this stuff should go, since I have only been using the server for 30 mins, and am pleased to be able to get it to work and respond! (I tried gnu-radius and gave up in horror). Any particular reason why? If the

Radwho questions

2004-12-03 Thread Mike Cisar
I have a couple of radwho questions... First, I seem to remember seeing a patch somewhere for radwho that expanded the width of the from field but now that I want it, can't find it anywhere :-) Anybody have it floating around? And second, regarding the name field... my system is configured