Re: FreeRadius with Eduroam - Accounting

2011-10-05 Thread Arran Cudbard-Bell
On 5 Oct 2011, at 02:20, Mike Diggins wrote: I'm running FreeRadius 2.1.3 on RedHat Enterprise Linux configured as an Eduroam Radius proxy server. My Cisco Wireless Lan Controllers are constantly failing over the Accounting Servers, due to lack of response from the Home Servers, or so

Re: FreeRadius with Eduroam - Accounting

2011-10-05 Thread Alan Buxey
Hi, I'm running FreeRadius 2.1.3 on RedHat Enterprise Linux configured as an Eduroam Radius proxy server. My Cisco Wireless Lan Controllers are constantly failing over the Accounting Servers, due to lack of response from the Home Servers, or so says the log. However, I believe the issue is

Re: FreeRadius with Eduroam - Accounting

2011-10-05 Thread Phil Mayers
On 10/05/2011 07:16 AM, Arran Cudbard-Bell wrote: No i've talked about this with Alan. The proposed solution is an enhancement to the detail writer/reader functionality where the server automagically spawns new reader instances to listen on per domain detail files. I guess that's ok, in that

Re: FreeRadius with Eduroam - Accounting

2011-10-05 Thread Alan DeKok
Phil Mayers wrote: I guess that's ok, in that it stops an unresponsive realm blocking other realms, but wouldn't another solution be to add a config item to the detail reader to drop packets which are X seconds old? if (Acct-Delay-Time 3600) { ok } else { ... do proxy

Re: FreeRadius with Eduroam - Accounting

2011-10-05 Thread Phil Mayers
On 10/05/2011 09:26 AM, Alan DeKok wrote: Phil Mayers wrote: I guess that's ok, in that it stops an unresponsive realm blocking other realms, but wouldn't another solution be to add a config item to the detail reader to drop packets which areX seconds old? if (Acct-Delay-Time 3600) {

Re: FreeRadius with Eduroam - Accounting

2011-10-05 Thread Arran Cudbard-Bell
On 5 Oct 2011, at 10:40, Phil Mayers wrote: On 10/05/2011 09:26 AM, Alan DeKok wrote: Phil Mayers wrote: I guess that's ok, in that it stops an unresponsive realm blocking other realms, but wouldn't another solution be to add a config item to the detail reader to drop packets which areX

Re: MySQL and FreeRADIUS environment

2011-10-05 Thread tonimanel
Hi again, How can I do freeradius replication with radrelay? Do you know any tutorial or howto? I have a basic freeradius service installed and function!!! Thanks! -- View this message in context: http://freeradius.1045715.n5.nabble.com/MySQL-and-FreeRADIUS-environment-tp4845985p4872147.html

Re: FreeRadius with Eduroam - Accounting

2011-10-05 Thread Alan DeKok
Arran Cudbard-Bell wrote: It's a bad way of doing it. At least with replicate every accounting packet has a chance... Using Acct-Delay-Time you'll end up dumping anywhere between 1-15 seconds accounting data for all realms if one realm is unreachable. shrug if

Re: MySQL and FreeRADIUS environment

2011-10-05 Thread tonimanel
My FreeRADIU version is 2.1.10 on Debian. Suggest me update? Or is a valid verstion to work and implement freeradius replication with radrelay? Thanks, -- View this message in context: http://freeradius.1045715.n5.nabble.com/MySQL-and-FreeRADIUS-environment-tp4845985p4872269.html Sent from the

Re: FreeRadius with Eduroam - Accounting

2011-10-05 Thread Phil Mayers
On 05/10/11 09:56, Arran Cudbard-Bell wrote: On 5 Oct 2011, at 10:40, Phil Mayers wrote: On 10/05/2011 09:26 AM, Alan DeKok wrote: Phil Mayers wrote: I guess that's ok, in that it stops an unresponsive realm blocking other realms, but wouldn't another solution be to add a config item to the

Mac access mixed ldap access same NAS

2011-10-05 Thread Alejandro Gandara
Hi list, does someone know if Its possible mix MAC auth with ldap AUTH in the same NAS. I mean, I have multiple connection to one NAS but a few users will access through mac address, and others will access trhough auth ldap + passwords. Nowadays Ive configured ldap access but I dont know how to

Re: MySQL and FreeRADIUS environment

2011-10-05 Thread Fajar A. Nugraha
On Wed, Oct 5, 2011 at 4:57 PM, tonimanel antoniofernan...@fabergames.com wrote: Hi again, How can I do freeradius replication with radrelay? Do you know any tutorial or howto? Have you READ the suggested documentation? For example, Alan said Also,

Re: MySQL and FreeRADIUS environment

2011-10-05 Thread tonimanel
I'm going to read this example file. I don't know if I will understand it but I will try it. Thanks, -- View this message in context: http://freeradius.1045715.n5.nabble.com/MySQL-and-FreeRADIUS-environment-tp4845985p4872336.html Sent from the FreeRadius - User mailing list archive at

MySQL and FreeRADIUS environment

2011-10-05 Thread tonimanel
I have readed the example file. I have some doubts. Do I get with this example file? I don't have a radrelay.conf example (or is this?) ... I have readed in Internet that in radiusd.conf I should to define a detail block information like detail detail-name {some information} to get two binary

Re: MySQL and FreeRADIUS environment

2011-10-05 Thread Alan DeKok
tonimanel wrote: I have readed the example file. I have some doubts. Do I get with this example file? I don't have a radrelay.conf example (or is this?) Yes, you do. See the raddb/ directory. ... I have readed in Internet that in radiusd.conf I should to define a detail block

Re: MySQL and FreeRADIUS environment

2011-10-05 Thread tonimanel
I have readed the sites-available/example file that contains an example of how to define a client and a server. I should to define a client and a server in both machines (serverA's client is server B AND serverB's client is server A). Do you understand me? Thanks again. -- View this message in

Re: MySQL and FreeRADIUS environment

2011-10-05 Thread Alan DeKok
tonimanel wrote: I have readed the sites-available/example file that contains an example of how to define a client and a server. i.e. you didn't do what you were told to do. I should to define a client and a server in both machines (serverA's client is server B AND serverB's client is

Re: FreeRadius with Eduroam - Accounting

2011-10-05 Thread Mike Diggins
On Wed, 5 Oct 2011, Arran Cudbard-Bell wrote: On 5 Oct 2011, at 02:20, Mike Diggins wrote: I'm running FreeRadius 2.1.3 on RedHat Enterprise Linux configured as an Eduroam Radius proxy server. My Cisco Wireless Lan Controllers are constantly failing over the Accounting Servers, due to

Re: FreeRadius with Eduroam - Accounting

2011-10-05 Thread Arran Cudbard-Bell
On 5 Oct 2011, at 12:50, Phil Mayers wrote: On 05/10/11 09:56, Arran Cudbard-Bell wrote: On 5 Oct 2011, at 10:40, Phil Mayers wrote: On 10/05/2011 09:26 AM, Alan DeKok wrote: Phil Mayers wrote: I guess that's ok, in that it stops an unresponsive realm blocking other realms, but

Re: FreeRadius with Eduroam - Accounting

2011-10-05 Thread Arran Cudbard-Bell
Thanks for your suggestion. Do I drop this into my existing ..sites-available/default file? Does this add to what's there already, or do I replace what's there with this (and does the order matter)? Sorry, I have a very basic configuration and haven't had to delve into this. Add it to

Reply-Message in freeradius

2011-10-05 Thread Dagia Dorjsuren
Hello, How to add Reply-Message in freeradius? anyone advise me pls. For example : I would like to send Your username or password is wrong message to NAS if the someone to access to my freeradius via wrong password from that NAS Thanks, - List info/subscribe/unsubscribe? See

[no subject]

2011-10-05 Thread Alex rsm
Hi, I just installed freeradius 2.1.12 on ubuntu server from src file and got the following error: # radiusd -X radiusd: error while loading shared libraries: libfreeradius-radius-2.1.12.so: cannot open shared object file: No such file or directory Thanks, ASM

Re: Reply-Message in freeradius

2011-10-05 Thread Arran Cudbard-Bell
On 5 Oct 2011, at 16:23, Dagia Dorjsuren wrote: Hello, How to add Reply-Message in freeradius? anyone advise me pls. For example : I would like to send Your username or password is wrong message to NAS if the someone to access to my freeradius via wrong password from that NAS

Re: Reply-Message in freeradius

2011-10-05 Thread Fajar A. Nugraha
On Wed, Oct 5, 2011 at 9:23 PM, Dagia Dorjsuren dagmi...@yahoo.com wrote: Hello, How to add Reply-Message in freeradius? anyone advise me pls. post-auth { ... update reply { Reply-Message = Your message here\r\n } ... } For example : I would like to send Your username or password

Re:

2011-10-05 Thread Fajar A. Nugraha
On Wed, Oct 5, 2011 at 9:32 PM, Alex rsm alex-...@hotmail.com wrote: Hi, I just installed freeradius 2.1.12 on ubuntu server from src file and got the following error: # radiusd -X radiusd: error while loading shared libraries: libfreeradius-radius-2.1.12.so: cannot open shared object

Re: (No subject)

2011-10-05 Thread Alan Buxey
ldconfig -v ?? alan -- Message may be brief as it has been sent from my mobile - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Trying to configure Cisco WLC 5500 for radius auth

2011-10-05 Thread Jefferson Davis
Hi all, Trying to configure our cisco WLC's to play nice with freeradius... Looking for some pointers to get the two of them talking. Will have windows, linux, and personal devices like smartphones connecting, though I suspect the bulk will be smartphones. I would rather not hand out the PSK

Re: FreeRadius with Eduroam - Accounting

2011-10-05 Thread Alan Buxey
Roll on RADSEC. Ha ha ha cough splutter coffee everywhere now. Thanks for the laugh the uptake of IPv6 and DNSSEC looks absolutely ravenous and rapid compared to that of DNSSEC. I've had a couple of sites ask about it and go no further (they are running RADIUS servers that can do RADSEC

Re: Trying to configure Cisco WLC 5500 for radius auth

2011-10-05 Thread Phil Mayers
On 05/10/11 15:49, Jefferson Davis wrote: Hi all, Trying to configure our cisco WLC's to play nice with freeradius... Looking for some pointers to get the two of them talking. Will have windows, linux, and personal devices like smartphones connecting, though I suspect the bulk will be

Re: Rewriting wimax calling-station-id with perl

2011-10-05 Thread James T Mugauri
?ndara Junior System Administrator -- next part -- An HTML attachment was scrubbed... URL:https://lists.freeradius.org/pipermail/freeradius-users/attachments/20111005/89d60099/attachment.html -- Message: 5 Date: Wed, 5 Oct 2011 18:12:15 +0700

radius dhcp

2011-10-05 Thread Alexandre Chapellon
Hello, I have a setup where th user initiates DHCP request to the NAS. The NAS then tries to authenticate the user using regular radius requests (basicilly Access-Request with username=macaddr). If authenticated the NAS relay the dhcp request to a dhcp server That works. I want to know if

Re: radius dhcp

2011-10-05 Thread Alan DeKok
Alexandre Chapellon wrote: That works. I want to know if there is any *standardized* way to specify the NAS the DHCP server to relay the DHCP request to, using attributes in the radius Access-Accept? No. I have found dhcp dictionnary (talking about gateway DHCP to RADIUS) but am not sure

Re: Rewriting wimax calling-station-id with perl

2011-10-05 Thread Johan Meiring
On 2011/10/05 08:15 PM, James T Mugauri wrote: Hi, As you are undoubtedly aware, the ubuntu/debian package of freeradius comes without the wimax module (despite having the wimax module) installed. My own attempts to compile/install/build deb package for ubuntu always die with the infamous

RE: password in EAP request

2011-10-05 Thread Tim Sylvester
In example.pl perl script $RAD_REQUEST{'User-Name'} returns the username of the EAP request message. How can I get the password of the EAP request? $RAD_REQUEST{'User-Password'} won't return the password. [Tim] You can't. RADIUS Access-Request packets that use EAP do not send the password to the

Re: password in EAP request

2011-10-05 Thread Alan Buxey
Hi, In example.pl perl script $RAD_REQUEST{'User-Name'} returns the username of the EAP request message. How can I get the password of the EAP request? $RAD_REQUEST{'User-Password'} won't return the password. it certainly wont for PEAPv0/MSCHAPv2 which is what your request looks like

Re: Reply-Message in freeradius

2011-10-05 Thread gary
Hi One more question. How about if user name is wrong? eg: send reply message user name not found Best Regards Gary - Original Message - From: Arran Cudbard-Bell To: Dagia Dorjsuren ; FreeRadius users mailing list Sent: Wednesday, October 05, 2011 10:34 PM Subject: Re: