Re: Basic question to authenticate switches and Linux boxes

2013-05-09 Thread Edvin Seferovic | Kolpinghaus St. Pölten
You need to rephrase your question. Do you want to: a.) authenticate and authorize users accessing the console of your switch? b.) authenticate a machine/user connected to a port of a switch (MAC auth or 801.x) c.) Linux boxes are machines... see B d.) authenticate users accessing the boxes...

RE: HP-Command-String in sql accounting

2012-03-12 Thread Edvin Seferovic | Kolpinghaus Sankt Pölten
Just change the SQL schema of your table and adapt the SQL query in sql.conf! Best regards, E:S -Original Message- From: freeradius-users- bounces+edvin.seferovic=kolp...@lists.freeradius.org [mailto:freeradius-users- bounces+edvin.seferovic=kolp...@lists.freeradius.org] On Behalf

RE: Locked account

2011-10-12 Thread Edvin Seferovic | Kolpinghaus Sankt Polten
access_attr = dialupAccess access_attr_used_for_allow = yes or you can use the ldap attribute in the filter (something)(nsAccountLock=true) Kind regards, E:S From: freeradius-users-bounces+edvin.seferovic=kolp...@lists.freeradius.org

RE: Strange problem regarding PPTP and FreeRADIUS

2010-09-11 Thread Edvin Seferovic | Kolpinghaus St .Pölten
Might this be a PopTop issue? What platform are you using? Please note those two highlighted lines, the User-Name is \000ila while what I have used as the username is ali. Also, NAS-IP-Address is somehow encrypted. I searched a lot, but I could not find any similar problem. Any ideas? Regards,

RE: Accounting into MySQL

2009-05-14 Thread Edvin Seferovic
1. Using NTRadPING, should I get entries in my radacct table? Are you sending accounting packets? If not - why should freeradius pass any request to accounting parts. 2. I have uncommented the sql_log, and all the detail log sections, and in the accounting section, and uncommented the sql in

RE: error too many open files error reading radiusd.conf

2009-04-27 Thread Edvin Seferovic
Open files 2048 ?? Man LSOF ?? Regards, E:S From: freeradius-users-bounces+edvin.seferovic=kolp...@lists.freeradius.org [mailto:freeradius-users-bounces+edvin.seferovic=kolp...@lists.freeradius.or g] On Behalf Of Angel Rivera Sent: Dienstag, 28. April 2009 00:51 To:

RE: Acct-Input-Gigawords

2008-09-24 Thread Edvin Seferovic
how do i use the Acct-Input-Gigawords and Acct-Output-Gigawords Attributes with FreeRADIUS Version 1.1.3 and FreeRADIUS Version 1.0.2 and PPP 2.4.4? I set up the fields in the mysql-table but they do not get filled with data. Those will be filled when the connection goes over the limit of the

RE: Acct-Input-Gigawords

2008-09-24 Thread Edvin Seferovic
Where can i set it up? I use rp-pppoe-server and ppp 2.4.4 on debian That attribute should be replied by the server in access-accept RADIUS packet. You can define it for each user in your user DB ( SQL, LDAP ) and freeradius should be able to add it to the above mentioned packet. Regards, E:S -

RE: Freeradius Usage

2008-09-05 Thread Edvin Seferovic
Hi, excuse me for asking, but why dont you set up the AppServer in your DMZ ? you could have ( what I call ) the T - structure --- INTERNET -- GATEWAY ( server1 ) --- LOCAL LAN I

RE: sqlcounters for traffic

2008-09-05 Thread Edvin Seferovic
rlm_sqlcounter: Sent Reply-Item for user scott, Type=Session-Traffic-Limit, value=12792 Which part don’t you understand? Sqlcounter returned it. How does the log part of the RADIUS Packet looks like? It should contain the “Session-Traffic-Limit” if it can be found in the dictionary, right?

RE: Freeradius Usage

2008-09-05 Thread Edvin Seferovic
without having to teach each new application how to use a DB. Freeradious also can authenicate my wireless users when would also be great as for all I know, half my bandwidth is being used by my neighbors. -Jesse On Fri, Sep 5, 2008 at 4:34 PM, Edvin Seferovic [EMAIL PROTECTED] wrote: Hi

RE: freeradius+pptpd+mysq - rc_avpair_new: unknown attribute 6

2008-03-19 Thread Edvin Seferovic
Nice one ! Should be really usefull ! Regards, E:S -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] g] On Behalf Of Thibault Le Meur Sent: Mittwoch, 19. März 2008 09:57 To: FreeRadius users mailing list Subject: Re: freeradius+pptpd+mysq - rc_avpair_new: unknown

RE: Newslists

2008-02-08 Thread Edvin Seferovic
Constructive answer like always is to analyze what you want to achieve with freeradius. Rethink the configuration, read the documentation for you setup needs and ask straight-forward question. You cannot just post the debug output and hope that someone can understand what you actually need.

RE: SNMP error

2008-02-05 Thread Edvin Seferovic
Hello, I am also curious about the answer on this question ! Are there any plans to implement AgentX protocol into freeradius project? Alan? Kind regards, E:S -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] g] On Behalf Of Amr el-Saeed Sent: Dienstag, 05. Februar

RE: Freeradius-Users Digest, Vol 34, Issue 16

2008-02-04 Thread Edvin Seferovic
It is probably turkish and since the guy had week knowledge of english language, maybe this guy can help him ! Regards, E:S -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] g] On Behalf Of Mike Puchol Sent: Montag, 04. Februar 2008 10:49 To: FreeRadius users mailing

RE: not Accountint

2008-02-03 Thread Edvin Seferovic
Those are access-request and access-accept packets. No accounting request is being received ! Your NAS isn't sending any accounting messages ? Maybe you should disable all those modules that you don't need ! Regards, E:S -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL

RE: Help me please!!

2008-02-03 Thread Edvin Seferovic
What do you want to do? What do you want to achieve? What authentication are you planning to use ? Regards, E:S From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] g] On Behalf Of aziz yucelen Sent: Montag, 04. Februar 2008 07:35 To: freeradius-users@lists.freeradius.org Subject: Help me

RE: Traffic volume accounting

2008-01-18 Thread Edvin Seferovic
Is it possible to have a counter setup to achieve this? Yes. It is. I'd like to know if someone has implemented realtime upload/download limitations and what methods were used. Realtime traffic accounting would have to be supported by your NAS. Any kind of traffic/bandwidth

RE: Help Needed Please freeradius traffic limiting

2008-01-15 Thread Edvin Seferovic
What are you using as NAS ?? Regards, E:S From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] g] On Behalf Of Keith Dovale Sent: Dienstag, 15. Jänner 2008 17:41 To: 'FreeRadius users mailing list' Subject: FW: Help Needed Please freeradius traffic limiting Regards Keith Dovale

RE: MAC or user auth

2007-12-12 Thread Edvin Seferovic
Authorization via MAC Address (with no username required) This is being done by your NAS ! Username is usually the MAC address. if the machine is using a valid IP Address, it is automatically allowed to surf. (I know there is a Calling-Station-id attribute in radcheck) IP address has to be

RE: powerfull manager?

2007-12-11 Thread Edvin Seferovic
Let me develop one for you :) Features :) Joke = OFF :) I would still like to hear the features for a billing manager since I am developing one as a project at TU Vienna. I am willing to publish some of the work under GPL.. just make it open source ( I hate law stuff !! ). Regards, E:S

RE: powerfull manager?

2007-12-11 Thread Edvin Seferovic
I love GPL, but unfortunatelly there is too few software being developed for Radius... That was my problem too ! All I need is actually: - bandwith, time, volume limitation - username/password authentication - MAC authentication (but here is a trick - few MAC's for a one billing user) - card

RE: freeradius2 CVS - hostname lookup has no effect

2007-12-10 Thread Edvin Seferovic
Likely just an issue in -pre2. I don't see it in CVS head. Well I do. Just got the CVS version. Tried hostname_lookups = off / no ! No help. Only when the client is being entered in the clients.conf it is recognised. In the other hand I get Mon Dec 10 08:58:52 2007 : Error: Trying to look up

RE: freeradius2 CVS - hostname lookup has no effect

2007-12-10 Thread Edvin Seferovic
Well I do. Just got the CVS version. Tried hostname_lookups = off / no ! No help. Only when the client is being entered in the clients.conf it is recognised. In the other hand I get Ok... the issue isn't related to hostname lookups. The server keeps known clients internally, which are

freeradius-pre2 - hostname lookup

2007-12-09 Thread Edvin Seferovic
Hi, my freeradius does always a hostname lookup although hostname_lookup = no AND if the client is not found in the clients.conf... Mon Dec 10 05:29:43 2007 : Error: Trying to look up name of unknown client 172.19.10.160. Mon Dec 10 05:29:43 2007 : Auth: Login OK: [00:09:34:14:ad:57] (from

FW: MS-CHAP-v2 and CHAP with different passwords in LDAP

2007-12-08 Thread Edvin Seferovic
Hello list members, before somebody yells not again - I just wish to ask if it is possible to use MS-CHAP and CHAP authentication with a LDAP backend which contains clear-text passwords as well as NT-Password ( used for MS-CHAP ) ??? Alan - yes/no answer please :) If positive - can somebody give

RE: FW: MS-CHAP-v2 and CHAP with different passwords in LDAP

2007-12-08 Thread Edvin Seferovic
http://deployingradius.com/documents/protocols/compatibility.html Read it ! If you're doing bind as user in LDAP, read this: Nope - just using LDAP as storage and accessing it with a privileged user that has R/O access to the user profiles You don't do attribute mappings. See the ldap

FreeRADIUS ( 2 ) and SNMP - broken pipe error - password not accepted

2007-12-02 Thread Edvin Seferovic
Hello, I have set up FreeRADIUS ( pre2 ) and activated SNMP ( rebuilt it with --with-snmp ... ). The snmpd is also configured with the smuxpeer and the correct password, but password seems to be rejected. I am using snmpd-5.3.1 on Debian Etch ( AMD64 ). Both passwords are the same. Does anyone

RE: 64-bit issues ( SNMP issues )

2007-12-02 Thread Edvin Seferovic
:[EMAIL PROTECTED] Sent: Sonntag, 02. Dezember 2007 17:44 To: Edvin Seferovic Subject: 64-bit issues I don't know if the net-snmp libraries are 64-bit clean, either. In any case, I've cleaned up src/main/smux.c. Please try downloading building CVS head. Maybe that will fix it... Alan DeKok

RE: Packets in Accounting ?

2007-12-01 Thread Edvin Seferovic
. Dezember 2007 16:14 To: [EMAIL PROTECTED]; FreeRadius users mailing list Subject: Re: Packets in Accounting ? Edvin Seferovic wrote: what happened to the Acct-Input/Output-Packets in Accounting. MySQL schema doesn’t have those fields anymore. Any special reason ? Were they ever in the schema? I

Packets in Accounting ?

2007-11-30 Thread Edvin Seferovic
Hello, what happened to the Acct-Input/Output-Packets in Accounting. MySQL schema doesn't have those fields anymore. Any special reason ? Regards, E:S - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

freeradius-pre2 .. unknown client appears in log !

2007-11-27 Thread Edvin Seferovic
Hi, Ive just installed freeradius-pre2 and configured it for MAC auth... when I define my clients in the virtual host file like server mac-auth { client IP { name... } ... } I get following in the log Login OK: [00:e0:7d:75:ca:31] (from client UNKNOWN-CLIENT port 14 cli

RE: Shared secret is incorrect - but it is identical!

2007-07-03 Thread Edvin Seferovic
Does this have anything to do with the authentication method and AD ? I don't think so. Ken are you using 64bit OS maybe? I had the same problem ( shared secret was incorrect ) due a broken library on 64bit version of SuSE 9.1. Regards, E:S -Original Message- From: [EMAIL PROTECTED]

RE: mysql database limit

2007-05-25 Thread Edvin Seferovic
Use the latest stable version of freeradius. I am using MySQL5 for accouting of 200 users and LDAP for 200 users and ca. 400 machines. No performance issues although my machine is slower. Be nice to your DB and add another 512MB of RAM to the machine ;) Regards, E:S From: [EMAIL

RE: bandwidth and volume limit

2007-03-22 Thread Edvin Seferovic
Change it in the sqlcounter code ! First functionality shouldn’t be a problem if you know your NAS ! Regards, E:S -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] g] On Behalf Of Mathieu Lemaitre Sent: Donnerstag, 22. März 2007 12:31 To:

RE: Freeradius and vlan assignment

2007-03-11 Thread Edvin Seferovic
configuration for the user test in the users file seem to be correct ? 2007/3/9, Edvin Seferovic [EMAIL PROTECTED]: http://wiki.freeradius.org/Operators   Hint +=  for Tunnel-Type !   Regards,   E:S   From: [EMAIL PROTECTED] [mailto: [EMAIL PROTECTED] ] On Behalf

RE: 802.1x-radius VLAN assignment

2007-03-08 Thread Edvin Seferovic
Attribute Mapping ( attr.map file ) - AFAIK ! Regards, E:S _ From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] g] On Behalf Of Ryan Kramer Sent: Donnerstag, 08. März 2007 23:07 To: freeradius-users@lists.freeradius.org Subject: 802.1x-radius VLAN assignment Hello! I am

RE: Freeradius and vlan assignment

2007-03-08 Thread Edvin Seferovic
http://wiki.freeradius.org/Operators Hint += for Tunnel-Type ! Regards, E:S _ From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] g] On Behalf Of Bruno Mardirossian Sent: Freitag, 09. März 2007 03:49 To: freeradius-users@lists.freeradius.org Subject: Freeradius and vlan

RE: Some problem

2007-03-05 Thread Edvin Seferovic
Hi, do you need rlm_perl to be build? If not - just remove the rlm_perl directory from the modules directory and it should be fine. In other case - I have no solution :-( Regards, E:S _ From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] g] On Behalf Of zhangxianshi Sent:

RE: Why Freeradius and Mysql dont work?

2007-01-28 Thread Edvin Seferovic
rlm_sql_mysql: Mysql error 'Can't connect to local MySQL server through socket '/var/lib/mysql/mysql.sock' (2)' rlm_sql (sql): Failed to connect DB handle #0 rlm_sql (sql): Failed to connect to any SQL server. your socket file is not in the place.. maybe you should use an IP in your sql.conf