Re: openbsd dhcpd + freeradius

2008-07-03 Thread Nicolas Goutte
Am 03.07.2008 um 02:24 schrieb Raja Peer: Hi, Trying to get radiusd work with local dhcp server. [...] Checked to make sure dhcp module is included by radiusd -X. But does not that mean that you have 2 DHCP servers for your network? Does anyone have dhcp work with freeradius ?

Re: freeradius with multiple ldap servers

2008-07-03 Thread Ivan Kalik
Password (radius) attribute should be Crypt-Password not User-Password. Ivan Kalik Kalik Informatika ISP Dana 3/7/2008, Sambuddho Chakravarty [EMAIL PROTECTED] piše: Hello I set the password_header to = {crypt} and password_attribute to userPassword (Thats the name of the field in the

Can't find directory

2008-07-03 Thread Ivan Markic
Hy i'm beginner in Linux and freeradius. Can someone help pe because, when i finish my instalationn of freeradius i can't fint etc/raddb/ directory in etc???!!! Best regards! -- Ivan Markic - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Can't find directory

2008-07-03 Thread Marinko Tarlac
/usr/local/bin /usr/local/etc/raddb On Thu, Jul 3, 2008 at 11:44 AM, Ivan Markic [EMAIL PROTECTED] wrote: Hy i'm beginner in Linux and freeradius. Can someone help pe because, when i finish my instalationn of freeradius i can't fint etc/raddb/ directory in etc???!!! Best regards! --

Re: Can't find directory

2008-07-03 Thread Ivan Kalik
/usr/local/etc/raddb? Ivan Kalik Kalik Informatika ISP Dana 3/7/2008, Ivan Markic [EMAIL PROTECTED] piše: Hy i'm beginner in Linux and freeradius. Can someone help pe because, when i finish my instalationn of freeradius i can't fint etc/raddb/ directory in etc???!!! Best regards! -- Ivan

Re: Can't find directory

2008-07-03 Thread A . L . M . Buxey
Hi, Hy i'm beginner in Linux and freeradius. Can someone help pe because, when i finish my instalationn of freeradius i can't fint etc/raddb/ directory in etc???!!! where did you tell it to go - ie when you configured. by default it'd be /usr/local/etc/raddb certain distros etc will use

Re: Can't find directory

2008-07-03 Thread Nicolas Goutte
Am 03.07.2008 um 11:44 schrieb Ivan Markic: Hy i'm beginner in Linux and freeradius. Can someone help pe because, when i finish my instalationn of freeradius i can't fint etc/raddb/ directory in etc???!!! If you have installed in /usr/local (as you probably did, if you have compiled by

Re: openbsd dhcpd + freeradius

2008-07-03 Thread EvilEzh
Checked to make sure dhcp module is included by radiusd -X. To make it work: 1. ./configure --with-dhcp 2. in /usr/local/share/freeradius/dictionary file uncomment line $INCLUDE dictionary.dhcp 3. edit /usr/local/etc/raddb/site-available/dhcp (edit to match your needs, comment out or remove

Re: Can't find directory

2008-07-03 Thread Ivan Markic
I would like /etc/raddb/ - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Can't find directory

2008-07-03 Thread A . L . M . Buxey
Hi, I would like /etc/raddb/ well tell it to use that location during the ./configure stage of the build process then! ./configure --help for further information alan - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Using OTP authentication with Freeradius 2

2008-07-03 Thread Alan DeKok
Greg Woods wrote: What happens when I run radtest is, the first time, it always produces an Access-Reject response, whether or not I provide the correct passcode. The second time I run radtest, it sends radiusd into an infinite loop. ... I ran radiusd under 'strace', and it shows that it is

unix auth with mysql radreply

2008-07-03 Thread Oguzhan Kayhan
Hello, I setup a freeradius for chilli-coova. It uses both unix accounting (which main users are there) and mysql at the same time for accounting and logging. Just i have a little problem. If i create a user on mysql and give an attribute in radreply, it works

Re: unix auth with mysql radreply

2008-07-03 Thread Ivan Kalik
It uses both unix accounting (which main users are there) So it's not accounting then. You are using (unix) system accounts for authentication. and mysql at the same time for accounting and logging. Just i have a little problem. If i create a user on mysql and give an

FreeRadius crashing

2008-07-03 Thread Brooks, Kyle
Hello, We have been experiencing a weird crashing problem with FreeRadius 1.1.7 on fedora core 7 and was hoping someone would be able to help. The problem is that FreeRadius will crash several times each day and before each crash this error is displayed. error: rlm_eap: Either EAP-request

Re: openbsd dhcpd + freeradius

2008-07-03 Thread Raja Peer
Alan DeKok-4 wrote: Raja Peer wrote: Trying to get radiusd work with local dhcp server. What does that mean? Autheticate user using radius and lease an ip address through dhcp daemon running in the server. Is that correct ? Does radius has its own dhcp server ? Does anyone have

Re: FreeRadius crashing

2008-07-03 Thread Alan DeKok
Brooks, Kyle wrote: We have been experiencing a weird crashing problem with FreeRadius 1.1.7 on fedora core 7 and was hoping someone would be able to help. Upgrade to 2.0.5. There are LOTS of bug fixes. Alan DeKok. - List info/subscribe/unsubscribe? See

sqlippool

2008-07-03 Thread Laar, Johan van de
Is it possible to use two sql instances (sql-instance-name) for the same IP pool? (with version 2.0.5) To achieve some redundancy when one of the databases crashes. Thank you in advance. Johan van de Laar - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

=?UTF-8?Q?freeradius-proxy_+_PAP_works, _PEAP_and_the_rest_doesn=C2=B4t?=

2008-07-03 Thread uni
Hi, I´m really going crazy with freeradius. I want to setup a working freeradius proxy. Well, everything should have been configured correctly. I have my certificates, I have installed everything, so freeradius tells me no more errors when starting. Well, what do I want? - External users should

Re: =?UTF-8?Q?freeradius-proxy_+_PAP_works, _PEAP_and_the_rest_doesn=C2=B4t?=

2008-07-03 Thread Alan DeKok
[EMAIL PROTECTED] wrote: Well, what do I want? - External users should be able to login on WLAN via 802.1X with MSCHAPv2/PEAP in Windows XP. That's relatively easy. In 2.0, just install it, configure a user/password (see the FAQ), start it in debug mode as root, and un-check validate

Re: =?UTF-8?Q?freeradius-proxy_+_PAP_works, _PEAP_and_the_rest_doesn=C2=B4t?=

2008-07-03 Thread uni
- External users should be able to login on WLAN via 802.1X with MSCHAPv2/PEAP in Windows XP. That's relatively easy. In 2.0, just install it, configure a user/password (see the FAQ), start it in debug mode as root, and un-check validate server certificate on the Windows box. Well, this is

Re: freeradius-proxy + PAP works, PEAP a nd the rest doesn´t

2008-07-03 Thread Alan DeKok
[EMAIL PROTECTED] wrote: - External users should be able to login on WLAN via 802.1X with MSCHAPv2/PEAP in Windows XP. That's relatively easy. In 2.0, just install it, configure a user/password (see the FAQ), start it in debug mode as root, and un-check validate server certificate on the

Re: freeradius-proxy + PAP works, PEAP and the rest doesn´t

2008-07-03 Thread Ivan Kalik
If pap works and peap (mschap) doesn't the reason is usually that the passwords kept on the home server are encrypted. If they are nothing apart from changing the passwords to cleartext ones will make peap, mschap or chap work. You will be able to get EAP-TTLS/PAP to work. Ivan Kalik Kalik

Re: sqlippool

2008-07-03 Thread Ivan Kalik
Yes. You will need to use database management to replicate them and keep them in sync. Ivan Kalik Kalik Informatika ISP Dana 3/7/2008, Laar, Johan van de [EMAIL PROTECTED] piše: Is it possible to use two sql instances (sql-instance-name) for the same IP pool? (with version 2.0.5) To achieve

Re: freeradius with multiple ldap servers

2008-07-03 Thread Sambuddho Chakravarty
Hello Ivan But I don't have a field in the database by that name . The name of the field is userPassword . This is what the openLDAP migration scripts generated. Please let me know what mistake I am doing . Also , my question on failover. Is the failover used when the first LDAP server is down /

Re: =?UTF-8?Q?freeradi us-proxy_+_PAP_works , _PEAP_and_the_rest_doesn=C2=B4t?=

2008-07-03 Thread A . L . M . Buxey
hi, if you really are using freeradius as a proxy, as you stated, then you dont need certificates...as the system will JUST proxy. if you mean you want to terminate EAP on your freeradius, then please dont call it a proxy. get the terminology correct. what did you do wrong? well, since 1.1.7

Re: =?UTF-8?Q?freeradi us-proxy_+_PAP_works , _PEAP_and_the_rest_doesn=C2=B4t?=

2008-07-03 Thread A . L . M . Buxey
Hi, ... that Radius Server is an FreeRadius server. I called the administrator of it. And it is running great with all other Radius server within the rest of the sharing WLAN access community. It is in fact running now for years. So, must be another error, I guess? are you filtering

Re: FreeRadius crashing

2008-07-03 Thread A . L . M . Buxey
Hi, We have been experiencing a weird crashing problem with FreeRadius 1.1.7 on fedora core 7 and was hoping someone would be able to help. yeh, it doesnt that with EAP - thats why 2.0.x came along. 2.0.5 HIGHLY recommended. read the Changelog to note all the errors fixed etc if you feel an

freeradius 2.0.5 problem

2008-07-03 Thread Egi
Hello! I have a problem with my freeradius server. The schema is the following... Mikrotik Router freeradius server Mysql Server From time to time (Maybe once in 4-5 days) i get this error repeated for many many times: Thu Jul 3 17:39:33 2008 : Error: Discarding duplicate request from

Re: freeradius 2.0.5 problem

2008-07-03 Thread A . L . M . Buxey
Hi, Mikrotik Router freeradius server Mysql Server From time to time (Maybe once in 4-5 days) i get this error repeated for many many times: your MySQL is too slow to respond to the requests - check your SQL queries and see how you can optimise them. I've been able to go from queries

Re: Freeradius-Users Digest, Vol 39, Issue 18 topic 5: freeradius with multiple ldap servers

2008-07-03 Thread Andy An
Hi Sambuddho: I met similar problem a few weeks ago. You need to set the ldap identity/password for your freeRadius server at modules/ldap: e.g. mine is like: server = ldap.xxx.ca identity = cn=radius,ou=Applications,dc=xxx,dc=ca password = password basedn =

Re: freeradius with multiple ldap servers

2008-07-03 Thread Ivan Kalik
But I don't have a field in the database by that name . No, you don't. I am talking about ldap section of radiusd.conf. You need to set the appropriate radius password attribute. http://wiki.freeradius.org/index.php/Rlm_ldap Also , my question on failover. Is the failover used when the first

Re: Freeradius-Users Digest, Vol 39, Issue 18 topic 5: freeradius with multiple ldap servers

2008-07-03 Thread Sambuddho Chakravarty
Hi Andy Thanks a lot. The problem is that I have a file named ldap inside /etc/raddb/modules directory and it has two ldap modules , ldap1 and ldap2. ldap ldap1 { server = identity = (set the appropriate CN) password = password for the above CN basedn =

Re: Freeradius-Users Digest, Vol 39, Issue 18 topic 5: freeradius with multiple ldap servers

2008-07-03 Thread Sambuddho Chakravarty
Hello Some progress. Added to ldap.attrmap --- checkItem Crypt-Password userPassword Added to modules/ldap ldap ldap1{ identity = (root DN) password = (password for the root DN) password_header={crypt}

Re: Freeradius-Users Digest, Vol 39, Issue 18 topic 5: freeradiuswith multiple ldap servers

2008-07-03 Thread Ivan Kalik
Added to ldap.attrmap --- checkItem Crypt-Password userPassword Don't do that. userPassword is already mapped in ldap module: # password_attribute: Define the attribute which contains the user # password. # While integrating FreeRADIUS with Novell

Re: Freeradius-Users Digest, Vol 39, Issue 18 topic 5: freeradiuswith multiple ldap servers

2008-07-03 Thread Sambuddho Chakravarty
Hello Ivan Problem still the same I changed :- On Thu, 2008-07-03 at 22:20 +0100, Ivan Kalik wrote: Added to ldap.attrmap --- checkItem Crypt-Password userPassword Removed this from ldap.attrmap Don't do that. userPassword is already

Re: Freeradius-Users Digest, Vol 39, Issue 18 topic 5:freeradiuswith multiple ldap servers

2008-07-03 Thread Ivan Kalik
ldap ldap1{ identity = (root DN) password = (password for the root DN) password_header={crypt} password_attribute=Crypt-Password Yes changed this to password_radius_attribute=Crypt-Password However , if I change the password_attribute=userPassword, the auth type is

Re: freeradius with multiple ldap servers

2008-07-03 Thread Sambuddho Chakravarty
Hello Ivan Problem still persists. What do you mean by the {crypt} header. These are simple /etc/passwd file converted into a ldif database using LDAP Migration Scripts from padl.com This is what the logs look like (supplied clear