FreeRadius with radiusclient-ng and Cisco h323 VoIP attributes

2009-01-06 Thread Dean Elwood
Hi there, I'm having real trouble getting FreeRadius and radiusclient-ng to talk to each other with Cisco h323 attributes. I believe I have set up FreeRadius correctly. I can connect using radiusclient-ng and do standard AUTH commands and all works fine. As soon as I try to add an

Re: FreeRadius with radiusclient-ng and Cisco h323 VoIP attributes

2009-01-06 Thread Luciano Afranllie
Dean, Do you see that error on client side, right? Some very stupid thing I can tell you is remove the empty line between VENDOR line and first attribute. I have the same config (without the empty line) and is working fine. How and where do you added cisco attributes? Just a tip, you can create

Radreply Table

2009-01-06 Thread Marcelo Henique Cabral Ariza
Hi! I have 2 freeradius servers running, one at 2.0.4 version and other at 2.0.5. On 2.0.4 i can use radreply without problem, but in 2.0.5 i can`t, the freeradius server don`t read the table. The two server have the same configuration. I need help. Tks Marcelo - List

Re: Radreply Table

2009-01-06 Thread Marinko Tarlac
We cant see your debug ! Maybe mr Ivan Kalik and his crystal ball know something :) By the way, Happy new year :) Marcelo Henique Cabral Ariza wrote: Hi! I have 2 freeradius servers running, one at 2.0.4 version and other at 2.0.5. On 2.0.4 i can use radreply without problem, but in

Re: Radreply Table

2009-01-06 Thread tnt
I have 2 freeradius servers running, one at 2.0.4 version and other at 2.0.5. On 2.0.4 i can use radreply without problem, but in 2.0.5 i can`t, the freeradius server don`t read the table. The two server have the same configuration. It obviously isn't the same. Post the debug of server

radiusd logs good passwords even when told not to?

2009-01-06 Thread Tim Eberhard
the authorize section of radiusd.conf modcall: entering group authorize for request 0 modcall[authorize]: module preprocess returns ok for request 0 radius_xlat: '/etc/radacct/10.10.10.10/auth-detail-20090106' rlm_detail: /etc/radacct/%{Client-IP-Address}/auth-detail-%Y%m%d expands to /etc/radacct

Re: radiusd logs good passwords even when told not to?

2009-01-06 Thread tnt
Free radius installed via a RPM: # rpm -qa | grep radius freeradius-1.0.1-3.RHEL4.5 # radiusd -v radiusd: FreeRADIUS Version 1.0.1, for host , built on Apr 25 2007 at 08:19:46 That was years out of date even when installed. See about upgrading: http://wiki.freeradius.org/Red_Hat_FAQ Our

Re: radiusd logs good passwords even when told not to?

2009-01-06 Thread A . L . M . Buxey
Hi, Background info: yes, ancient version Our /etc/raddb/radiusd.conf clearly states to not log passwords: # allowed values: {no, yes} # log_auth_badpass = no log_auth_goodpass = no correct - in the main log However it's logging good password auth's still.. no, this is the detail

Re: Freeradius process dies with some (bad?!) EAP requests

2009-01-06 Thread A . L . M . Buxey
Hi, and we're facing a strange and very critical problem. Occasionally radius server just dies with no apparent reason. When I look at I've had similar issues and would recommend upgrading to latest issue - many many EAP issues were addressed during the more to 2.1.x alan - List

Re: radiusd logs good passwords even when told not to?

2009-01-06 Thread Tim Eberhard
I have no need for a details log the data stored in /var/log/radius.log is more than sufficient for me. So by commenting out detail { } in the radiusd.conf file should stop this? I know I'm running a ancient version of free radius.. sadly it's what RHEL came with and it's what we have as

Re: Radreply Table

2009-01-06 Thread A . L . M . Buxey
Hi, Hi! I have 2 freeradius servers running, one at 2.0.4 version and other at 2.0.5. On 2.0.4 i can use radreply without problem, but in 2.0.5 i can`t, the freeradius server don`t read the table. The two server have the same configuration. they talking to same database? are the

Re: radiusd logs good passwords even when told not to?

2009-01-06 Thread A . L . M . Buxey
Hi, I have no need for a details log the data stored in /var/log/radius.log is more than sufficient for me. So by commenting out detail { } in the radiusd.conf file should stop this? you will also need to remove the calls to that detail config in various other places in the config. I know

Re: Freeradius process dies with some (bad?!) EAP requests

2009-01-06 Thread Alexander Clouter
Nelson Vale nelsonduv...@gmail.com wrote: We have several machines running freeradius 2.0.2 as authentication server, and we're facing a strange and very critical problem. Occasionally radius server just dies with no apparent reason. When I look at the logs, the last lines I see before it

Re: Digest authentication and perl authorization

2009-01-06 Thread Luciano Afranllie
Hi, On Mon, Jan 5, 2009 at 2:23 PM, t...@kalik.net wrote: I am thinking in something like this: - Radius client (b2bua) sends an access-request with Service_type = Authorize-Only - Adding perl module to authorization section. - In authorize function of perl module check if the balance is enough

Framed-IP-Address override NAS pool?

2009-01-06 Thread up
Hi: In my years running a dialup ISP, I used Cistron Radius and Cisco and Lucent NAS's. I am no using FreeRadius and a Cisco router to authenticate pptp VPN users. The default IP address pool is defined in the Cisco like this (parsed): interface Virtual-Template1 peer default ip address

Some help with etc_smbpasswd auth and eap ttls

2009-01-06 Thread Josh Hiner
Trying to configure eap ttls with mschapv2 using Freeradius version Version 1.1.3 in Redhat enterprise Linux 5. I have configured everything and gotten free radius to authenticate off /etc/samba/smbpasswd via the etc_smbpasswd module. The problem I have run into is when I switch the securew2

Authentication failed from Radius server

2009-01-06 Thread Aravind Arjunan
hi Radius(freeradius) server has configured and integrated with Openldap server for user authentication in RHEL 5. Using radtest, NTRadPing and Radiustest (Utility) it is working fine. I got Access-Acept by using this utility. When i try from enduser through Wireless access point i may not

Re: Authentication failed from Radius server

2009-01-06 Thread Alan DeKok
Aravind Arjunan wrote: ... You already asked this question, and it was already answered. If you are not going to read the replies to your questions, then you shouldn't be asking questions. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Some help with etc_smbpasswd auth and eap ttls

2009-01-06 Thread Alan DeKok
Josh Hiner wrote: Trying to configure eap ttls with mschapv2 using Freeradius version Version 1.1.3 in Redhat enterprise Linux 5. I suggest upgrading. It's not hard to build an RPM of the latest version of the server. Upgrading will get you a lot. I have configured everything and gotten

Radius (freeradius) server integrated with openldap for user authentication

2009-01-06 Thread Aravind Arjunan
hi Radius(freeradius) server has configured and integrated with Openldap server for user authentication. Using radtest, NTRadPing and Radiustest (Utility) it is working fine. I got Access-Acept by using this utility. When i try from enduser through Wireless access point i may not able to