Re: Zombie Clarification

2012-03-12 Thread Alan DeKok
Norman Elton wrote: Well, I understand how the alive/zombie/dead process SHOULD work, but I'm having trouble lining it up with what we're seeing. We're proxying to a windows NPS box. Here's the proxy config: Part of the issue is that the timers on the proxy are independent of the timers on

about multiple nas

2012-03-12 Thread Dagia Dorjsuren
Hello all,     Does anyone know how to configure the users on the multiple nas/clients in freeradius? for example : my nas type (client type) is chillispot access points. my first nas ip address is 192.168.1.1 my second nas ip address is 192.168.1.2 my third nas ip address is 192.168.1.3

Re: Freeradius-Users Digest, Vol 83, Issue 43

2012-03-12 Thread pamela pomary
Thank you Fajar, it works. i included sqlcounter.conf in module section of radiusd.conf. Then I inserted into radcheck a user with the attributes User-Password:=password Service-Type:=Framed-User Max-Daily-Session:=240 Debug logs. rlm_sqlcounter: (Check item - counter) is less than zero

Is this a possible project?

2012-03-12 Thread 甄鹏
Hello Everybody: Recently,I got a project,it requires set a Radius Server in the company,and 100 APs in 100 Restarants in the city,all the APs of course connected to its own router. I want to the customers who want to use wifi in any of these restarant need to get authentication through

Re: Is this a possible project?

2012-03-12 Thread Arran Cudbard-Bell
On 12 Mar 2012, at 15:32, 甄鹏 wrote: Hello Everybody: Recently,I got a project,it requires set a Radius Server in the company,and 100 APs in 100 Restarants in the city,all the APs of course connected to its own router. I want to the customers who want to use wifi in any of these

HP-Command-String in sql accounting

2012-03-12 Thread Marc Boisis-Delavaud
Hello, I've enabled command accounting of my HP procure switches. The information is sent to radius : rad_recv: Accounting-Request packet from host 10.10.0.138 port 1274, id=79, length=128 Acct-Session-Id = 00280016 Acct-Status-Type = Interim-Update Service-Type =

RE: HP-Command-String in sql accounting

2012-03-12 Thread Edvin Seferovic | Kolpinghaus Sankt Pölten
Just change the SQL schema of your table and adapt the SQL query in sql.conf! Best regards, E:S -Original Message- From: freeradius-users- bounces+edvin.seferovic=kolp...@lists.freeradius.org [mailto:freeradius-users- bounces+edvin.seferovic=kolp...@lists.freeradius.org] On Behalf

Re: HP-Command-String in sql accounting

2012-03-12 Thread Arran Cudbard-Bell
On 12 Mar 2012, at 15:55, Marc Boisis-Delavaud wrote: Hello, I've enabled command accounting of my HP procure switches. The information is sent to radius : rad_recv: Accounting-Request packet from host 10.10.0.138 port 1274, id=79, length=128 Acct-Session-Id = 00280016

Using DHCP

2012-03-12 Thread Franz
Hi, I was wondering if when using DHCP with freeradius we can control the lease time depending on the group the user belongs to. Thanks, Franz - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: FreeRADIUS 1.1.2 - 2.1.12 migration steps

2012-03-12 Thread Fred
Just a little remark : CentOS 5.8 has up-to-date freeradius 2.1.12 (binary and sources) CentOS 6.2 only has freeradius 2.1.10 from upstream (redhat 6.2). Best regards, Fred MAISON Le 6 mars 2012 13:06, Fajar A. Nugraha l...@fajar.net a écrit : On Tue, Mar 6, 2012 at 6:13 PM, Martin Mielke

Re: FreeRADIUS 1.1.2 - 2.1.12 migration steps

2012-03-12 Thread John Dennis
On 03/12/2012 11:33 AM, Fred wrote: Just a little remark : CentOS 5.8 has up-to-date freeradius 2.1.12 (binary and sources) CentOS 6.2 only has freeradius 2.1.10 from upstream (redhat 6.2). And we are expecting to ship freeradius 2.1.12 in the RHEL 6.3 update. -- John Dennis

Pool-Name attribute issue WAS Re: Unknown Auth-Type LDAP in authenticate sub-section

2012-03-12 Thread up
On Sat, Mar 10, 2012 at 5:29 AM, u...@3.am wrote: So to save lots of time and configuration problem: does your LDAP store user passwords in clear text or any common hash (e.g. md5, unix)? If yes, AND you know what the LDAP attribute is, you don't even need an LDAP section in authenticate.

Re: Pool-Name attribute issue WAS Re: Unknown Auth-Type LDAP in authenticate sub-section

2012-03-12 Thread Phil Mayers
On 12/03/12 15:44, u...@3.am wrote: DEFAULT Group == FOO, Pool-Name :=FOO_pool Group is probably empty. I can't remember what module, if any, fills it out. What do you *think* Group will contain? It won't contain LDAP groups. - List info/subscribe/unsubscribe? See

Re: Pool-Name attribute issue WAS Re: Unknown Auth-Type LDAP in authenticate sub-section

2012-03-12 Thread up
On 12/03/12 15:44, u...@3.am wrote: DEFAULT Group == FOO, Pool-Name :=FOO_pool Group is probably empty. I can't remember what module, if any, fills it out. What do you *think* Group will contain? It won't contain LDAP groups. I was about to post about this..I just did a test with

Re: Pool-Name attribute issue WAS Re: Unknown Auth-Type LDAP in authenticate sub-section

2012-03-12 Thread Alan Buxey
Hi, DEFAULT Group == FOO, Pool-Name :=FOO_pool Group is probably empty. I can't remember what module, if any, fills it out. # The Group and Group-Name attributes are automatically created by # the Unix module, and do checking against /etc/group automatically. # This means that

custom AVPs from LDAP in AccessAccept packet

2012-03-12 Thread Stefano Zanmarchi
hi, we have a central radius server (LDAP user store) talking to a department radius server connected to an AP. I can't change the LDAP, so I can't use the radiusprofile objectclass. I'd like to configure the central radius server to send custom AVPs fetched from the LDAP to the

Re: Is this a possible project?

2012-03-12 Thread Jan Hugo Prins
On 03/12/2012 03:32 PM, 甄鹏 wrote: Hello Everybody: Recently,I got a project,it requires set a Radius Server in the company,and 100 APs in 100 Restarants in the city,all the APs of course connected to its own router. I want to the customers who want to use wifi in any of these restarant

Re: Pool-Name attribute issue WAS Re: Unknown Auth-Type LDAP in authenticate sub-section

2012-03-12 Thread up
Hi, DEFAULT Group == FOO, Pool-Name :=FOO_pool Group is probably empty. I can't remember what module, if any, fills it out. # The Group and Group-Name attributes are automatically created by # the Unix module, and do checking against /etc/group automatically. # This means

Re: Pool-Name attribute issue WAS Re: Unknown Auth-Type LDAP in authenticate sub-section

2012-03-12 Thread Phil Mayers
On 12/03/12 18:23, u...@3.am wrote: ...and you just hit on something that solved the problem. It seems that FR was getting the group info from LDAP indirectly, through the PAM module, which was Actually, probably not. It probably gets the groups via nss_ldap, through nssswitch. - List

Re: FreeRADIUS 1.1.2 - 2.1.12 migration steps

2012-03-12 Thread Norman Elton
And we are expecting to ship freeradius 2.1.12 in the RHEL 6.3 update. Any chance you can post the 2.1.12 packages to test? I can compile FR by hand, but testing the RPM would be good. Thanks, Norman Elton - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: FreeRADIUS 1.1.2 - 2.1.12 migration steps

2012-03-12 Thread John Dennis
On 03/12/2012 03:34 PM, Norman Elton wrote: And we are expecting to ship freeradius 2.1.12 in the RHEL 6.3 update. Any chance you can post the 2.1.12 packages to test? I can compile FR by hand, but testing the RPM would be good. No, I'm sorry I cannot pre-release packages. However if you are

How to configure FreeRadius as Captive Portal

2012-03-12 Thread ulislam.raihan
Hi All, I am a new person using freeRadius server. I have a wireless access point with WPA authentication option. It does not have any support for 802.1x or configuring Radius server.But i want to implement some central security using Radius server.Is it possible to configure the FreeRadius

Re: Conditional attributes with AD

2012-03-12 Thread Scott McLane Gardner
Okay, I am a couple steps closer, but still having trouble. My radius server is saying my test user is not in the group I'm filtering for, however I know that it is. My sites-available/default config looks like: authorize ... ldap if (Ldap-Group == PWHC Secure Wireless) {

Re: Using DHCP

2012-03-12 Thread Fajar A. Nugraha
On Mon, Mar 12, 2012 at 10:25 PM, Franz flam...@gmail.com wrote: Hi, I was wondering if when using DHCP with freeradius we can control the lease time depending on the group the user belongs to. Possible, but you need to create the rule yourself. If you use v2.1.x branch from git, the lease

Re: How to configure FreeRadius as Captive Portal

2012-03-12 Thread Alan Buxey
Hi, I am a new person using freeRadius server. I have a wireless access point with WPA authentication option. It does not have any support for 802.1x or configuring Radius server.But i want to implement some central security using Radius server.Is it possible to configure the FreeRadius

Re: FreeRADIUS 1.1.2 - 2.1.12 migration steps

2012-03-12 Thread Marinko Tarlac
I don't see any differences... Just save your config files and replace them later when rpm goes live On 3/12/2012 8:34 PM, Norman Elton wrote: And we are expecting to ship freeradius 2.1.12 in the RHEL 6.3 update. Any chance you can post the 2.1.12 packages to test? I can compile FR by hand,

Re: How to configure FreeRadius as Captive Portal

2012-03-12 Thread ulislam.raihan
Hi Alan, Thanks for your advice. Is it possible to configure the DHCP module in freeRadius in such a way that at first the DHCP will gave ip address of from one subnet like 192.168.1.X and afterwards after authentication is done then DHCP will force to change the IP address to different IP

Add Users in MySQL database

2012-03-12 Thread Fabricio Flores
Hi everyone... I have a little problem... I want to add users in the MySQL database, but before everything (before AAA) what module i need to edit o configuring to add a script that manage the mysql? -- Fabricio A. Flores G. - List info/subscribe/unsubscribe? See

Re: Conditional attributes with AD

2012-03-12 Thread Matthew Newton
Hi, On Mon, Mar 12, 2012 at 09:07:23PM +, Scott McLane Gardner wrote: ++? if (Ldap-Group == PWHC Secure Wireless) [ldap] Entering ldap_groupcmp() expand: ou=usersusers,dc=example,dc=com - ou=users,dc=example,dc=com expand:

Re: How to configure FreeRadius as Captive Portal

2012-03-12 Thread Tim White
On 13/03/12 07:33, ulislam.raihan wrote: 192.168.2.X. I am planing to write a small module in Java . Whn a device attached to Access Point. It will get IP from192.168.1.X and all the request from this ip range will go to the java program. It will get the user name and password from the user

Detail log file .CSV format

2012-03-12 Thread Shreya Shah
Hi, Is it possible to get the detail file under radacct in .CSV or text format ? Thanks in advance. -Shreya. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Detail log file .CSV format

2012-03-12 Thread Alan DeKok
Shreya Shah wrote: Hi, Is it possible to get the detail file under radacct in .CSV or text format ? No. The detail file has a fixed format, which isn't CSV. If you change it to CSV, then it's no longer the detail file. If you want CSV format, see the linelog module. You can change