Dynamic VLAN Assignment based on a certificate, not a user.

2010-11-01 Thread Бисер Миланов
Hello! Some time ago Alan mentioned that the new 2.1.10 version will support such a thing. However, I can't seem to find it in the docs. Can anyone shed some light on how that can be done with the new functionality? - Вижте

Re: Re: Re: Re: FreeRADIUS with Samba3, AD(Samba4) and and Windows XP

2010-09-10 Thread Бисер Миланов
I have disabled certificate checking on the Windows machine. Here's the log from the XP client: Reason: An internal error has occurred. Reason code: 327685 Error code: -2147023537 On the switch I see this repeated several times. The ca58 MAC is the Windows MAC, so this means that it somehow

Re: Re: Re: Re: Re: FreeRADIUS with Samba3, AD(Samba4) and and Windows XP

2010-09-10 Thread Бисер Миланов
Guys, anyone? Do you need more config info? Can you help? - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

FreeRADIUS with Samba3, AD(Samba4) and and Windows XP

2010-09-09 Thread Бисер Миланов
Hello! We have a problem with a FreeRADIUS and Active Directory (Samba4) installation. After following: http://deployingradius.com/documents/configuration/active_directory.html ntlm_auth is working correctly when I try to authenticate a WinXP SP3 client, however, the authentication fails

Re: Re: FreeRADIUS with Samba3, AD(Samba4) and and Windows XP

2010-09-09 Thread Бисер Миланов
Ww, is THAT really the problem?! I will test it as soon as I finish writing this post. I have disabled the client to check the server and it still needs the FreeRADIUS certificate? - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Re: Re: FreeRADIUS with Samba3, AD(Samba4) and and Windows XP

2010-09-09 Thread Бисер Миланов
UPDATE: I istalled the FreeRADIUS certificate and selected it so that the client will check it when it authenticates. I still get the same error. Now I will recreate the same scenario with Samba3 to see if it works. By the way, I'm running FreeRADIUS 2.1.8 and Samba4.0.0alpha12 - List

FreeRADIUS VLAN Attributes per Certificate, not user.

2010-08-30 Thread Бисер Миланов
Greeting all! With the users file you can add three attributes that the RADIUS server passes to a switch and the switch dynamically assigns a VLAN to the port. However, can this be done when the client is authenticated via a certificate? Where can I specify these three attributes for the

Re: Re: FreeRADIUS VLAN Attributes per Certificate, not user.

2010-08-30 Thread Бисер Миланов
Splendid, thank you. I assume the feature will be documented, right? You will need to install 2.1.10 for that, which will be released sometime very soon. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html - List info/subscribe/unsubscribe?