Re: Freeradius and Active directory

2008-05-21 Thread Janec(ek [EMAIL PROTECTED]
Hi. Because we can authenticate against AD only (not only, but...) using MS-CHAP, I had to extend the system to its final form (I don't know any MS-CHAP testing utility): [WinXP] - [AP] - [FreeRadius] - [AD server] (ie. I'm using wireless interface in Windows to connect to AP and

Re: Dynamic VLAN and FreeRadius

2008-05-21 Thread A . L . M . Buxey
Hi, I am trying to get the RADIUS server to not only authenticating the supplicant, but providing the NAS with a VLAN ID. I have tried certain resources and haven't been able to receive the VLAN ID. Can any provide any help in this area? depends on your NAR - you need to send back the

Trouble with missing CiscoNASPort

2008-05-21 Thread Kai Arne Bjørnenak
Hello We run Freeradius 1.1.7 against a postgresql-database, and for some auth-sessions Cisco NAS Port does not get stored in the database. I have checked the freeradius detail-logs to see that the server really has these values, so I'm a bit stumped as to why this happens. The SQL-queries

How To Create Authentication Request Packet to pass as input to RADCLIENT

2008-05-21 Thread Dana Blanaru
Hi, Does anyone know where can I find documentation about radclient? I am trying to figure out how to test EAP-MD5 using radclient. I want to use it to send Authentication Request packets to my AAA server where the authentication method is EAP-MD5. But I don't know how to create these packets

FR2.0.3 - UCD-SNMP 4.2.7 communication does not work on 64 bits Freebsd (but does on 32 bit Freebsd)

2008-05-21 Thread Thomas Fagart
Hello, I've got several Freeradius servers running on Freebsd. I'd like to get them discuss with SNMP agent for statistics (using SMUX). I've notice that this is working on 32 bits Freebsd portable-taf# snmpwalk -v 1 -m /usr/local/share/snmp/mibs/RADIUS-AUTH-SERVER-MIB.txt

Re: FR2.0.3 - UCD-SNMP 4.2.7 communication does not work on 64 bits Freebsd (but does on 32 bit Freebsd)

2008-05-21 Thread A . L . M . Buxey
Hi, Do you know if this is a know bug ? Or I missed something. I've tested this behaviour on differents releases (6.3, 6.1 and 7.0) of Freebsd. Seems this is always the same issue (non complete value on 64 bits OS, and behaviour ok on 32 bits. there are a couple of small SNMP patches you may

EAP-TTLS w/MS-CHAPv2

2008-05-21 Thread Bram Matthys (Syzop)
Hi all, I'd like to use EAP-TTLS with MS-CHAP(v2), so I can use SecureW2 with Freeradius. To be more exact, I'd be using ntlm_auth, so that wireless users will be able to get on the wireless network using their usual windows username / password. I'm using FreeRadius 2.0.3. I've seen several

post-auth section entered twice?

2008-05-21 Thread Martin v. Wittich
Hello, I'm trying to modify my radiusd.conf so that it will log Rejects and Accepts in a simple log that shall look like this: 2008-05-21 15:18:51 REJECT invalid.user 2008-05-21 15:19:44 ACCEPT valid.user 2008-05-21 15:25:23 ACCEPT another.user 2008-05-21 15:31:33 REJECT bad.guy To accomplish

EAP TLS testing using eapol_test

2008-05-21 Thread Naunidh S Chadha
Hi All I am attempting to authenticate an EAP-TLS using eapol_test tool against FreeRADIUS Version 2.0.3. From last two days I am getting stumped by certificate issues. Currently I have the following error in my Freeradius log that seems to be the problem. Wed May 21 19:31:19 2008 : Debug:

Re: How To Create Authentication Request Packet to pass as input

2008-05-21 Thread Naunidh S Chadha
/pipermail/freeradius-users/attachments/20080521/7a05b111/attachment-0001.html -- Naunidh - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: post-auth section entered twice?

2008-05-21 Thread Phil Mayers
post-auth { # rejected requests Post-Auth-Type REJECT { log_reject } # accepted requests log_accept } But unfortunately, post-auth seems to be entered twice, and the log looks like this: 2008-05-21 15:18:51 REJECT radius.test

Re: FR2.0.3 - UCD-SNMP 4.2.7 communication does not work on 64 bits Freebsd (but does on 32 bit Freebsd)

2008-05-21 Thread Thomas Fagart
Hello, Do you know if this is a know bug ? Or I missed something. I've tested this behaviour on differents releases (6.3, 6.1 and 7.0) of Freebsd. Seems this is always the same issue (non complete value on 64 bits OS, and behaviour ok on 32 bits. there are a couple of small SNMP

RE: Freeradius 2.04 + python + mysqldb python module on Debian 4.0

2008-05-21 Thread Jester
That's good to know. And not something I need to do anymore, because of your advice I checked out the EXEC module, and that is working great. YAAY!! Now I just have It executing a script that dumps the attributes into stdout, from a python script, its perfect, thanks for the direction. --Jester

Re: post-auth section entered twice?

2008-05-21 Thread Alan DeKok
Martin v. Wittich wrote: I'm trying to modify my radiusd.conf so that it will log Rejects and Accepts in a simple log that shall look like this: 2008-05-21 15:18:51 REJECT invalid.user Use rlm_linelog. It does this without forking an external program. Alan DeKok. - List

Re: Freeradius and Active directory

2008-05-21 Thread Alan DeKok
Tomás wrote: Everything looks good. I can see the request from AP and authentication activities it entails between FreeRadius and AD. But the authentication is never successful. ... auth: No authenticate method (Auth-Type) configuration found for the request: You have deleted all

mysql simultaneous login detection

2008-05-21 Thread Gabriel J Marais
Hi I have been trying to setup freeradius with mysql to detect and reject simultaneous logins for the past two days and been reading up, but I can't get it working at all. Perhaps someone here has some more information on a working example for me... ? mysql select UserName, GroupName from

Re: freeradius not working with AD

2008-05-21 Thread Karthik R
All, I'm trying to configure freeradius to authenticate wireless users against AD. Initially i generated the ssl certificate it had only 30 days validity period, so modified the openssl command to include -days 730. I followed the steps as mentioned in http://deployingradius.com/ and

Re : EAP-TTLS w/MS-CHAPv2

2008-05-21 Thread Joel MBA OYONE
You'll also need a raddb/sites-enabled/inner-tunnel file. It's not installed in 2.0.3. This was fixed in 2.0.4. what is inner-tunnel file intend for ?? __ Do You Yahoo!? En finir avec le spam? Yahoo! Mail vous offre la meilleure protection