Re: FreeRADIUS / PostgreSQL?

2013-09-03 Thread Mark DeCheser
Quick follow-up on this issue. It's resolved. I wanted to share the resolution with the community should anyone encounter a similar issue. One part of the equation was provided by Phil and Fajar below: Did you read Phil's excellent reply?

Re: FreeRADIUS / PostgreSQL?

2013-08-29 Thread Mark DeCheser
( cc-ing you directly since it seems you have trouble receiving mails from the list ) Apologies! My comcast.net account was bouncing mail from the list for reasons unknown. I saw the bounce rating jump from 1 to 3 over the course of this week, so I resubscribed with a proper e-mail address.

Re: FreeRADIUS / PostgreSQL?

2013-08-29 Thread Mark DeCheser
Did you read Phil's excellent reply? http://lists.freeradius.org/pipermail/freeradius-users/2013-August/067991.html After Fajar kindly forwarding the link to me, I was able to see the reply. Thanks you, Fajar, and Dan as well. s/Dan/Phil/ Please place my head in a vice and crank it shut

CHAP auth failure

2013-06-05 Thread Strong, Mark
have to redact so much. If this access request turns out to be ok, I can post the full debug. Mark. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

radiusd startup failure for EAP-AKA configuration

2013-02-04 Thread Mark Sincerbox
= 0xe0e0e0e0e0e0e0e0e0e0e0e0e0e0e0e0 + + # # This is an entry for a user with a space in their name. # Note the double quotes surrounding the name. Thanks, Mark - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

default Fall-Through = Yes for groups

2013-01-07 Thread Strong, Mark
groups, so he inherits the attibs from all three groups, thought there might be a setting in a config file for Fall-Through defaulting to Yes for groups, but couldn't see one. Regards Mark Strong - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: Failed to authenticate the user

2012-08-07 Thread Mark Holmes
to start somewhere but I'd suggest this list might not be the best place to ask basic Linux questions. There are some other really good places which I find very useful when I started out with this stuff http://www.linuxquestions.org/ is a good one. Mark -Original Message- From

Re: Configuring Freeradius with LDAP

2012-04-18 Thread Mark Holmes
I think http://wiki.freeradius.org/Rlm_ldap Has what you are after. Mark On 18 Apr 2012, at 18:53, Wassim Zaarour wassim.zaar...@navlink.commailto:wassim.zaar...@navlink.com wrote: Hi List, I have installed freeradius 2.1.12, and it's working well. Now I need to configure

Re: Freeradius rlm_pam

2012-02-12 Thread Mark
On Sun, Feb 12, 2012 at 1:34 AM, Alan DeKok al...@deployingradius.com wrote: Mark wrote:  Then read the comments in raddb/eap.conf.  Look for gtc.  It documents how to get GTC working with other methods. Thanks! It wasn't entirely clear to me at first from that documentation how to achieve my

Freeradius rlm_pam

2012-02-11 Thread Mark
as to what changes I need to make so that the inner-tunnel request from rad-test would successfully authenticate via PAM. Thanks in advance for your help! Mark - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Freeradius rlm_pam

2012-02-11 Thread Mark
event log. If I send the wrong password into the inner-tunnel with the rad-test command, I get an authentication failed in the system log. Thanks in advance for your help! Mark - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Distributing Certificates

2012-01-20 Thread Mark Holmes
already have the relevant root certificate and so will trust the certificate presented by the server. This is assuming he is using certificates for confirming identity of the server, not for EAP-TLS etc. Cheers, Mark On 6 Jan 2012, at 21:43, Sallee, Stephen (Jake) jake.sal...@umhb.edu wrote

Packet of Disconnect PHP

2011-08-02 Thread mark fennema
Hello, I'm working on getting a hotspot set up, and I need the ability to have a user log themselves out, so that they can connect on another computer. I have it set up so that the user can enter their information and have it log them out, but it doesn't disconnect them from the router, so they

Re: Renaming during Machine Authentication

2011-06-06 Thread Mark Jones
I have enabled ldap in the inner-tunnel...here is the lastest debug log (part 1) Mark FreeRADIUS Version 2.1.10, for host i686-pc-linux-gnu, built on Mar 23 2011 at 11:28:44 Copyright (C) 1999-2009 The FreeRADIUS server project and contributors. There is NO warranty; not even

Re: Renaming during Machine Authentication

2011-06-04 Thread Mark Jones
Ok so where or how do I tell it? Mark Alan DeKok al...@deployingradius.com 6/3/2011 11:57 PM mjonesmcne wrote: Here is the rest of the debug ... [eap] EAP/mschapv2 [eap] processing type mschapv2 [mschapv2] # Executing group from file /etc/raddb/sites-enabled/inner-tunnel [mschapv2

Re: Renaming during Machine Authentication

2011-06-04 Thread Mark Jones
Ok Im going to try following that guide Monday morning, just one question before I get started...does it work with an edir backend and a samba server acting as a PDC on an OES2 server? Thanks for the advice Alan Mark Alan DeKok al...@deployingradius.com 6/4/2011 1:22 PM Mark Jones wrote

Re: Renaming during Machine Authentication

2011-05-24 Thread Mark Jones
Phil Mayers p.may...@imperial.ac.uk 5/21/2011 3:08 AM On 05/20/2011 10:33 PM, Mark Jones wrote: Here is the latest debug...Im not sure what to try next. Latest debug... ok, what has changed? I added the dns suffix to the computer name rad_recv: Access-Request packet from host

RE: AD Authentication + radius + foundryAP

2011-05-20 Thread Mark Pipkin
I don't like leaving things unresolved and just laying around like so many other post that I have ran across. I guess Alan DeKok scares them off with the It's in plain view dumb ass attitude. I'm sure after answering the questions over and over again, it is about the only response that someone

Re: Renaming during Machine Authentication

2011-05-19 Thread Mark Jones
This is on a samba domain Phil as per the cool solutions article I mentioned in an earlier post. I am looking into my Aruba settings now for termination Mark Phil Mayers p.may...@imperial.ac.uk 5/19/2011 1:58 AM User-Name = host/TECH-11501 Machines which are in the domain normally have

RE: AD Authentication + radius + foundryAP

2011-05-17 Thread Mark Pipkin
Post the debugging output into the form at: http://networkradius.com/freeradius.html And read the highlighted lines. It should be obvious what's going on. Module: Instantiating attr_filter.access_reject attr_filter attr_filter.access_reject { attrsfile =

RE: AD Authentication + radius + foundryAP

2011-05-17 Thread Mark Pipkin
to the Foundry AP controller. You just told me that it was the fault of the PC though. Mark Pipkin - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Renaming during Machine Authentication

2011-05-16 Thread Mark Jones
Thanks Phil. I am out of the office until Thursday but on my first message I posted the debug from bootup where it fails..is there more output I need to post later this week? Mark Sent from my Blackberry® wireless device -Original Message- From: Phil Mayers p.may...@imperial.ac.uk

AD Authentication + radius + foundryAP

2011-05-16 Thread Mark Pipkin
on! Seriously though.. I'm going to keep working at this, just didn't know if someone would be able to help me out. Thanks. Mark PIpkin Systems Administrator Air2Web Office:  +1 404 942 5365 E-mail:  mark.pip...@air2web.com Mobilize your business. Find out how at www.air2web.com Follow us

Re: Renaming during Machine Authentication

2011-05-15 Thread Mark Jones
is supposed to authenticate to edir or samba during bootup but the end result I want is the machine to authenticate on startup so the user has a single sign on experience like they would if they plugged into the network. Thanks again Mark Phil Mayers p.may...@imperial.ac.uk 05/14/11 2:50 AM On 05

Renaming during Machine Authentication

2011-05-13 Thread Mark Jones
to process requests. Thanks all Mark This communication is intended for the use of the recipient to which it is addressed and may contain confidential, personal and/or privileged information. If you received this e-mail in error, please advise me (by return e-mail or otherwise) immediately

Re: Renaming during Machine Authentication

2011-05-13 Thread Mark Jones
That sounds good...where exactly do I put that in the config files? Phil Mayers p.may...@imperial.ac.uk 5/13/2011 4:15 PM On 05/13/2011 11:03 PM, Mark Jones wrote: Hi all i have freeradius 2.1.10 setup on a SLES server. When the workstation boots it sends an mschapv2 request in the form host

RE: Dial up error and freeraius is down

2011-04-01 Thread Mark Holmes
only have 500 users. Cheers, Mark -Original Message- From: freeradius-users-bounces+mark.holmes=nuffield.ox.ac...@lists.freeradius.org [mailto:freeradius-users-bounces+mark.holmes=nuffield.ox.ac...@lists.freeradius.org] On Behalf Of Robin Sent: 01 April 2011 15:52 To: freeradius-users

Help retrieving sqlcounter values

2011-03-30 Thread Mark D. Montgomery II
way to call it to get the comparison we want. We have tried such things as counter-name:check-name and such but just get errors and the counter query never runs. Any insight? We have searched all over and have not been able to get this working yet. Thanks. Mark II -- Mark D. Montgomery II

Logging to Microsoft SQL

2011-02-27 Thread Mark Holmes
what I need to be doing, or point me in the direction of up to date instructions? Many thanks, Mark - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: PEAP MSCHAPv2 error..

2011-02-09 Thread Mark Holmes
Thanks, Alan - got it fixed now. On 8 Feb 2011, at 21:15, Alan Buxey a.l.m.bu...@lboro.ac.uk wrote: Hi, Entered bob as username, testing123 as password I get No such realm 'NULL' So added - realm test { authhost = LOCAL accthost = LOCAL } realm LOCAL { }

PEAP MSCHAPv2 error..

2011-02-08 Thread Mark Holmes
in future? The MSCHAP errors are line 901 onwards. I'm doing something silly, no doubt - but what? Should this config just work out of the box? Appreciate any help. Cheers Mark - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

FW: PEAP MSCHAPv2 error..

2011-02-08 Thread Mark Holmes
Ah - do I need to be authenticating against something like AD that does MS-CHAP? I have AD here and that is the eventual goal, but trying to change as little as possible and keep it simple to begin with... Mark -Original Message- From: freeradius-users-bounces+mark.holmes

Re: Storing of salt in freeradius

2011-01-19 Thread Mark
Hi Fajar, How did you generate that hash? md5sum of testpass doesn't return that value for me. On 19-Jan-2011, at 3:07 PM, Fajar A. Nugraha wrote: On Wed, Jan 19, 2011 at 12:39 PM, Mark m...@edgewire.sg wrote: Hi folks, Been trying to look for information on this but haven't been able

Re: Storing of salt in freeradius

2011-01-19 Thread Mark
Nevermind this, found the solution. http://blog.sam-pointer.com/2010/01/26/md5sum-vs-phps-md5-function Thanks all. On 19-Jan-2011, at 3:07 PM, Fajar A. Nugraha wrote: On Wed, Jan 19, 2011 at 12:39 PM, Mark m...@edgewire.sg wrote: Hi folks, Been trying to look for information

[no subject]

2011-01-19 Thread Mark Jones
- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Storing of salt in freeradius

2011-01-18 Thread Mark
to do that. Any advice would be much appreciated. Thanks in advance! Kind regards, Mark - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Storing of salt in freeradius

2011-01-18 Thread Mark
Alan, Fajar, Thank you both for your help and advice on this. On 19-Jan-2011, at 3:14 PM, Alan DeKok wrote: Mark wrote: In the event of using salted md5 hashes for passwords, where exactly does one store the salt? There doesn't seem to be a place within the FR config to do that. Any

failed radius proxy attempt

2010-11-10 Thread Mark Jones
or is it in my logic. Thanx for any help. Mark - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: FAQ and Wiki down?

2010-10-29 Thread Mark Holmes
Works for me also -Original Message- From: freeradius-users-bounces+mark.holmes=nuffield.ox.ac...@lists.freeradius.org [mailto:freeradius-users-bounces+mark.holmes=nuffield.ox.ac...@lists.freeradius.org] On Behalf Of Marinko Tarlac Sent: 29 October 2010 15:40 To: dcjea...@gmail.com;

RE: a lot of memory inuse

2010-10-27 Thread Strong, Mark
Strong, Mark wrote: http://github.com/alandekok/freeradius- server/blob/v2.1.x/doc/ChangeLog Yeah, gave that a look didn't see anything definite (as far as memory leaks go). Look for the work leak Alan DeKok. Verion 2.1.10 fixes my memory leak problem. Mark. - List info

RE: Removing domain name in freeradius

2010-10-13 Thread Mark Holmes
Thanks Phil. Final question: At the moment, I can authenticate with username, but not with usern...@mydomain.ox.ac.uk How do I tell freeradius to accept usern...@mydomain.ox.ac.uk (I don't mind if authenticating with just username without the domain fails) Thanks, Mark - List info

RE: Problem with MSCHAP

2010-10-12 Thread Mark Holmes
=%{mschap:User-Name:-None} --domain=%{%{mschap:NT-Domain}:-MYDOMAIN} --challenge=%{mschap:Challenge:-00} --nt-response=%{mschap:NT-Response:-00} Am I missing something in the MSCHAP config? Cheers, Mark - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: Problem with MSCHAP

2010-10-12 Thread Mark Holmes
configuration file /etc/raddb/modules/ntlm_auth Should I also see ntlm_auth being called during the authentication - presumably I should... Thanks, Mark -Original Message- From: freeradius-users-bounces+mark.holmes=nuffield.ox.ac...@lists.freeradius.org [mailto:freeradius-users-bounces

RE: Problem with MSCHAP

2010-10-12 Thread Mark Holmes
...@lists.freeradius.org] On Behalf Of Mark Holmes Sent: 12 October 2010 11:25 To: FreeRadius users mailing list Subject: RE: Problem with MSCHAP Alan, Thanks for your reply. how are you testing this - a real client, command line tool etc? when you run it in full debug mode - and you arent helping

MS-CHAP failing?

2010-10-12 Thread Mark Holmes
OK, getting somewhere, but still won't let me connect. I can't see in the debug output why it fails. I'm trying to authenticate against AD, using PEAP-MSCHAPv2 I have checked ntlm_auth is working by ntlm_auth --request-nt-key --domain=MYDOMAIN --username=testuser --password=password and I

RE: MS-CHAP failing?

2010-10-12 Thread Mark Holmes
} } The /path/to/ntlm_auth line is commented out in my config. Cheers Mark -Original Message- From: freeradius-users-bounces+mark.holmes=nuffield.ox.ac...@lists.freeradius.org [mailto:freeradius-users-bounces+mark.holmes=nuffield.ox.ac...@lists.freeradius.org] On Behalf Of Sallee

RE: MS-CHAP failing?

2010-10-12 Thread Mark Holmes
Alan, Well spotted! - yes there was a bit missing from the end of that line in mschap - response=%(mschap:NT-Response:-00} Twas indeed a cut-and-paste error. Thanks very much - it now works! Cheers, Mark -Original Message- From: freeradius-users-bounces+mark.holmes=nuffield.ox.ac

Removing domain name in freeradius

2010-10-12 Thread Mark Holmes
, as long as I DONT specify the domain it works - so I'm looking to strip out the domain name if they DO specify it. Cheers, Mark - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Problem with MSCHAP

2010-10-08 Thread Mark Holmes
, Mark Output from -X Waking up in 4.7 seconds. rad_recv: Access-Request packet from host 192.168.1.10 port 1286, id=39, length=267 Message-Authenticator = 0x2e5d3be1821aead988b3d37cba9afd08 Service-Type = Framed-User User-Name = firstname.lastn...@mydomain.ox.ac.uk

RE: Problem with MSCHAP

2010-10-08 Thread Mark Holmes
, Mark - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Problem with MSCHAP

2010-10-08 Thread Mark Holmes
to be appended. I want to switch to FreeRADIUS without too many changed being required client side - possibly even none if I moved the cert from the IAS box to the FreeRADIUS machine. Cheers, Mark On 8 Oct 2010, at 14:59, Alan Buxey a.l.m.bu...@lboro.ac.ukmailto:a.l.m.bu...@lboro.ac.uk wrote: do

RE: a lot of memory inuse

2010-09-15 Thread Strong, Mark
Hi Mark, * You haven't told us how much a lot of memory is. From top radiusd 16 0 218m 126m 1560 S 0.0 50.7 40:39.86 radiusd * Upgrade to 2.1.10 (release imminent) Going to give 2.1.9 a go * All I can offer is a comparison based on probably totally different configurations

a lot of memory inuse

2010-09-14 Thread Strong, Mark
started with this source rpm freeradius-2.1.6-2.fc10.src.rpm And has handled 430,000 requests since it started approx one month ago. Regards Mark Strong - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Authorization FreeRadius on Switches Extreme

2010-08-26 Thread Mark Ricardez Zarate
. Someone Know how could implement authorization with FreeRadius? or is necessary use a language Script like unlang (Perl, Python)? Best Regards Mark Ricardez - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: is there any book available for freeradius ??

2010-08-02 Thread Mark
I believe Alan is in the midst of getting one of these books out but last I've heard (from alan), the only book available on the market is one by o'reilly and it's outdated. Things may have changed since then. Mark On Aug 3, 2010, at 4:16 AM, ashish edkee wrote: Hi, I am new to using

RE: Restricting certain users access to certain NAS devices

2010-07-07 Thread Whitmarsh Mark (Leeds Teaching Hospitals NHS Trust)
OK Alan. I'll look into alternative strategies until a fix is in place. Thanks for your help in getting me this far. Mark Whitmarsh. From: freeradius-users-bounces+mark.whitmarsh=nhs@lists.freeradius.org [freeradius-users-bounces+mark.whitmarsh=nhs

DHCP server will not send DHCP-Boot-Filename

2010-07-07 Thread Mark Price
...c.Sc5...OP.3...Q -- Mark Price - List info/subscribe/unsubscribe? See http

Re: DHCP server will not send DHCP-Boot-Filename

2010-07-07 Thread Mark Price
of the packet where DHCP-Boot-Filename should be populated. Circled in pink is the section of the packet where DHCP-Boot-File-Name is being sent. Hope that helps. Thank you, Mark - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: Restricting certain users access to certain NAS devices

2010-07-05 Thread Whitmarsh Mark (Leeds Teaching Hospitals NHS Trust)
does freeradius translate them from it's internal format for display but not for lookups? If that is the case can you tell me what format they are stored in so I can put the correct values in my nas_group file? Or am I completely wrong? Thanks for your help, Mark Whitmarsh

RE: little sql help required

2010-06-06 Thread Strong, Mark
Strong, Mark wrote: I've got two servers, each with its own mysql db (replicated to each other), and I'd like freeradius to fail over to the other boxes mysql server if its local one dies. $ man unlang You can use a simpler config than that, I think. doc/configurable_failover

little sql help required

2010-06-03 Thread Strong, Mark
to the other boxes mysql server if its local one dies. So I'd like to understand what that group mysql example does, before I paste it into my configs. Looked at the docs, but can't find it (or something like it) described anywhere. I've got version 2.1.6, on Centos 4.7 Regards Mark Strong

RE: Restricting certain users access to certain NAS devices

2010-06-02 Thread Whitmarsh Mark (Leeds Teaching Hospitals NHS Trust)
,xxx.xxx.104.10 comms_nas_group:xxx.xxx.225.60 File sites-enabled/default - post-auth section etc_group nas_group exec #if (%{NAS-IP-Address} == xxx.xxx.225.59) { # update reply { # Reply-Message := Mark Whitmarsh not allowed here

RE: Restricting certain users access to certain NAS devices

2010-05-27 Thread Whitmarsh Mark (Leeds Teaching Hospitals NHS Trust)
177 to xxx.xxx.xxx.xx port 50600 Finished request 0. Going to the next request Waking up in 4.9 seconds. The User_Group_Name attribute doesn't seem to get created/populated so when I check it in post-auth it is null. What have I missed? Thanks, Mark Whitmarsh

Restricting certain users access to certain NAS devices

2010-05-26 Thread Whitmarsh Mark (Leeds Teaching Hospitals NHS Trust)
and works fine but I'm stumped on how to handle the others. I have tested the following OK in sites-enabled/default: if (%{User-Name} == loweruser1) { update reply { Reply-Message := Mark Whitmarsh not allowed here } reject } If I login

Recommended books on freeradius

2010-05-17 Thread Mark
Hi all, Trying to get my hands on a freeradius book for reading. Anyone might have any recommendations for this? Mark - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Re[2]: freenibs

2010-05-09 Thread Mark
ahh. Ok. I'll take a look at it. Thanks! On 09-May-2010, at 2:54 PM, Коньков Евгений wrote: Hi, Mark. I do not think that freenibs is alive Use this instead http://abills.net.ua/wiki/doku.php/abills:docs_03:install:ru 2010 г., 6:02:01: M Hello list, M I'd like to find out

RE: freenibs

2010-05-08 Thread Mark
doesn't seem to be turning up anything. Feel free to drop me an email off list regarding this issue. Thanks in adv. Mark - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: radiusd -X

2010-05-02 Thread Mark
Quite evident that the port is in use. On 02-May-2010, at 11:38 PM, dorra aa wrote: HI I try to test freeradius with this command radiusd -X. but i get that error: radiusd: Opening IP addresses and Ports listen { type = auth ipaddr = * port = 0 Failed binding to

Re: radiusd -X

2010-05-02 Thread Mark
That or a ps aux | grep radius to see if you already have another radius instance running. Unlikely that it's another service. On 03-May-2010, at 9:55 AM, Jason 'XenoPhage' Frisvold xenopha...@gmail.com wrote: On May 2, 2010, at 9:39 PM, Mark wrote: Quite evident that the port

Re: Unresponsive child for request

2010-03-19 Thread Mark Jones
for request Mark Jones wrote: I am getting this error in my logs and I understand it is do to likley an issue with sql but was wondering what the criteria for this error to be generrated is. Error: WARNING: Unresponsive child for request 271737, in module sqlzuul component accounting Basically I

Unresponsive child for request

2010-03-18 Thread Mark Jones
is sent and if there is no response in x seconds this error is generated. Or am I completly wrong here? Mark Jones - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: fradius v2.1.7 Simultaneous-Use

2010-03-12 Thread Mark
the Simultaneous-Use option in on my radius server's sql.conf. Does anyone know if that may have been moved to somewhere else or did I miss something on the installation? The distro for the server in question is fedora11. Any help would be much appreciated. Kind regards, Mark - List info/subscribe

Freeradius with Active Directory

2010-03-10 Thread Whitmarsh Mark (Leeds Teaching Hospitals NHS Trust)
]: Errors parsing authenticate section. Errors initializing modules Can anybody tell me where I am going wrong? Thanks, Mark. This message may contain confidential information

RE: Freeradius with Active Directory

2010-03-10 Thread Whitmarsh Mark (Leeds Teaching Hospitals NHS Trust)
Hi, Not built from source, installed using freeradius-server-2.1.6-6.1.i586.rpm Mark. From: freeradius-users-bounces+mark.whitmarsh=nhs@lists.freeradius.org [freeradius-users-bounces+mark.whitmarsh=nhs@lists.freeradius.org] On Behalf Of Alan

RE: Freeradius with Active Directory

2010-03-10 Thread Whitmarsh Mark (Leeds Teaching Hospitals NHS Trust)
or PEAP # tunnels. # ## # Session database, used for checking Simultaneous-Use. Either the radutmp === Thanks, Mark. From: freeradius-users-bounces

RE: Freeradius with Active Directory

2010-03-10 Thread Whitmarsh Mark (Leeds Teaching Hospitals NHS Trust)
local auth with a user on the freeradius server but now comes the tricky bit I think. Thanks again for your help, Mark. From: freeradius-users-bounces+mark.whitmarsh=nhs@lists.freeradius.org [freeradius-users-bounces+mark.whitmarsh=nhs

Radius auth with LDAP back-end

2010-03-02 Thread Mark Watts
of this kind of setup please advise on the best way forward? Regards, Mark. -- Mark Watts BSc RHCE MBCS Senior Systems Engineer, Managed Services Manpower www.QinetiQ.com QinetiQ - Delivering customer-focused solutions GPG Key: http://www.linux-corner.info/mwatts.gpg signature.asc Description

Re: Radius auth with LDAP back-end

2010-03-02 Thread Mark Watts
On Tue, 2010-03-02 at 17:31 +0100, Alan DeKok wrote: Mark Watts wrote: Getting the Unix/Linux - LDAP authentication working is something I'm reasonably familiar with. RADIUS is not. Install 2.1.8. Read raddb/modules/ldap. Configure it. Uncomment references to ldap in raddb/sites

Re: monitoring freeradius

2010-02-24 Thread Mark Jones
...@deployingradius.com To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Sent: Wednesday, February 24, 2010 4:45 AM Subject: Re: monitoring freeradius Mark Jones wrote: I am not looking to see if radius is failing or not running but as to how many of the options under the thread pool

reply_log issue

2010-02-24 Thread Mark Jones
I have turned on reply_log option in the post-auth area. for both accepted and rejected packets. It is logging to the file successfully but it does not log the username or password. Wed Feb 24 10:06:47 2010 Packet-Type = Access-Accept Framed-Address = x.x.x.x

buffered proxied accounting packets

2010-02-24 Thread Mark Jones
Is it possible to have the accounting packets that you would normally proxy to another server wrote to a file and then sent from the file. The same concept as we get with the buffered-sql config. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: reply_log issue

2010-02-24 Thread Mark Jones
AM Subject: Re: reply_log issue Mark Jones wrote: I have turned on reply_log option in the post-auth area. for both accepted and rejected packets. It is logging to the file successfully but it does not log the username or password. Does the reply contain the username and password? Likely

Re: reply_log issue

2010-02-24 Thread Mark Jones
Message - From: Alan DeKok al...@deployingradius.com To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Sent: Wednesday, February 24, 2010 11:14 AM Subject: Re: reply_log issue Mark Jones wrote: ok but in the same post-auth section if i use the sql_log facility

monitoring freeradius

2010-02-23 Thread Mark Jones
How does one go about monitoring freeradius in that to see if it is reaching process limits or max clients etc.. If I run it in debug mode it laces limits on it hat are not in normal mode. Is snmp the only way? - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: monitoring freeradius

2010-02-23 Thread Mark Jones
: Re: monitoring freeradius Mark Jones wrote: How does one go about monitoring freeradius in that to see if it is reaching process limits or max clients etc.. If I run it in debug mode it laces limits on it hat are not in normal mode. Err... what does that mean? For general OS CPU

RE: Duplicating results for radtest

2010-01-28 Thread Mark Smith
Hello Alan, Attached is a dump file with auth requests included. Mark Smith Systems Engineer Abel Alarm Co Ltd 4 Vaughan Way Leicester LE1 4ST web: www.abelalarm.co.uk email: mark.sm...@abelalarm.co.uk -Original Message- From: freeradius-users-bounces+mark.smith=abelalarm.co

Duplicating results for radtest

2010-01-27 Thread Mark Smith
that it is happening? Mark Smith Systems Engineer Abel Alarm Co Ltd - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: Duplicating results for radtest

2010-01-27 Thread Mark Smith
Please see attached radiusd -X dump file as requested. Mark Smith Systems Engineer -Original Message- From: Alan Buxey [mailto:a.l.m.bu...@lboro.ac.uk] Sent: 27 January 2010 14:39 To: mark.sm...@abelalarm.co.uk; FreeRadius users mailing list Subject: Re: Duplicating results for radtest

test suite simulating NAS for development?

2010-01-22 Thread Mark McWiggins
it. -- Mark McWiggins Client Integration Engineer mark.mcwigg...@messagesystems.com 443-656-3311 ext 344 - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

How to store multiple Cisco-AVPair to sql database

2009-11-13 Thread Mark Jones
= Timestamp = 1258127783 Mark Jones London Operations Managed Network Systems Desk 519-679-5207 - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Dictionary problem preventing startup..(AudioCodes)

2009-09-29 Thread mark smith
://www.audiocodes.com/filehandler.ashx?fileid=36358 is the guide I was using for reference. Thanks in advance for any pointers. Mark - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Dictionary problem preventing startup..(AudioCodes)

2009-09-29 Thread mark smith
That was actually not what was really in the users file. I had changed that to the Cleartext syntax. I copied that straight out of the manual, so I'm starting to wonder if they wrote their docs for an old version of freeradius. But the dictionary still seems to be causing a stop. #Line 36 #

LDAP bind as user

2009-08-05 Thread Mark Saner
you have for a more secure way of binding to the LDAP server? -- Mark Saner - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Wind XP supplicant Domain//Username

2009-08-04 Thread Mark Saner
On 08/03/2009 04:13 PM, Ivan Kalik wrote: ... filter = (uid=%u) ... Put ldap filter back to what it was. Enable ntdomain in inner-tunnel. Create local realm LINUX in proxy.conf: realm LINUX { } Ivan Kalik Kalik Informatika ISP Thanks Ivan this worked great. -- Mark Saner

Re: Wind XP supplicant Domain//Username

2009-08-03 Thread Mark Saner
people on the mailing list. How do I tell which user name I am using for auth? (do you mean authorize or authenticate when you use abbreviate as auth?) Also how do I specify one or the other to use for auth? -- Mark Saner System Administrator Hustler Turf Equipment msa...@hustlerturf.com IS ext

Re: How to control users traffic ?

2009-07-11 Thread Mark Elkins
/| /| / /__ m...@posix.co.za - Mark J Elkins, Cisco CCIE / |/ |ARK \_/ /__ LKINS Tel: +27 12 807 0590 Cell: +27 82 601 0496 - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Two Simultaneous-Use on Same NAS Port

2009-03-25 Thread Smith, Mark J
is needed. Thank you, Mark **DISCLAIMER This e-mail message and any files transmitted with it are intended for the use of the individual or entity to which they are addressed and may contain information that is privileged, proprietary and confidential. If you are not the intended recipient, you may

RE: ldap authentication works on v1.1.4 but fails on 2.1.3

2009-03-16 Thread Leese, MJ (Mark)
again, Mark. -Original Message- From: Leese, MJ (Mark) Sent: 15 March 2009 18:41 To: 'freeradius-users@lists.freeradius.org' Subject: ldap authentication works on v1.1.4 but fails on 2.1.3 Hi, I've been successfully using FreeRADIUS 1.1.4 to authenticate users against

ldap authentication works on v1.1.4 but fails on 2.1.3

2009-03-15 Thread Leese, MJ (Mark)
that the anonymous bind and search work ok. Does any one have any ideas? Have I made a stupid configuration error, or did I miss something in the latest documentation? Thanks in advance for any help, Mark. This is the debug output for version 1.1.4... rad_recv: Access-Request packet from

Re: rlm_sql ignoring fall-through attripute in radreply

2009-01-28 Thread Mark Jones
ISP Dana 28/1/2009, Mark Jones mjo...@mnsi.net piše: Ok at least I know it does work. I will post the debug tommorrow. But in the mean time can you confirm what the exact attribute you have in your rad reply table is? - Original Message - From: t...@kalik.net To: FreeRadius users mailing

  1   2   3   >