Re: LDAP and CHAP

2004-07-15 Thread Oliver Graf
On Thu, Jul 15, 2004 at 03:07:44PM +0200, Oliver Graf wrote: On Thu, Jul 15, 2004 at 02:35:03PM +0200, Daniel Eyholzer wrote: Mitchell, Michael [EMAIL PROTECTED] wrote: Well its not a standard feature of freeRADIUS, and quite possibly shouldn't be, so probably never will be. ;-) Why

Re: Antwort: Re: Open Radius and Novell Certification Server

2004-07-20 Thread Oliver Graf
On Tue, Jul 20, 2004 at 10:11:17AM +0200, [EMAIL PROTECTED] wrote: Excuse me which is the right one ? It's no good sign if you don't know the radius server you want to use... ;) Google thinks this is openradius: http://www.xs4all.nl/~evbergen/openradius/index.html Oliver. - List

Re: Antwort: Re: Antwort: Re: Open Radius and Novell Certification Server

2004-07-20 Thread Oliver Graf
On Tue, Jul 20, 2004 at 11:26:41AM +0200, [EMAIL PROTECTED] wrote: Ok i like to use http://www.xs4all.nl/~evbergen/openradius/index.html ;) Is it possible that it works with Novell Certificate Server . I think thats a very heavy scenario ... ;) The Server manage and create Certifactes and

Double quoting in sql?

2004-09-24 Thread Oliver Graf
Hi! I've upgraded recently from 0.9.3 to 1.0.1. There seems to be one small problem in the sql module: a Username seems to be quoted two times, first when setting sql_user_name, then when doing the xlat on the whole query. Am I just missing a config change? From the sample config I can see no

Re: Double quoting in sql?

2004-09-24 Thread Oliver Graf
On Fri, Sep 24, 2004 at 09:39:07AM +0200, Oliver Graf wrote: I've upgraded recently from 0.9.3 to 1.0.1. There seems to be one small problem in the sql module: a Username seems to be quoted two times, first when setting sql_user_name, then when doing the xlat on the whole query. Am I just

Re: Double quoting in sql?

2004-09-24 Thread Oliver Graf
On Fri, Sep 24, 2004 at 02:31:47PM +0400, Alexander M. Pravking wrote: On Fri, Sep 24, 2004 at 09:39:07AM +0200, Oliver Graf wrote: Hi! I've upgraded recently from 0.9.3 to 1.0.1. There seems to be one small problem in the sql module: a Username seems to be quoted two times, first when

Re: Double quoting in sql?

2004-09-24 Thread Oliver Graf
On Fri, Sep 24, 2004 at 03:04:56PM +0400, Alexander M. Pravking wrote: On Fri, Sep 24, 2004 at 12:39:09PM +0200, Oliver Graf wrote: It does not seem that the change which causes this is in rlm_sql.c. I guess it is to search in variable expansion of main/xlat.c. But I currently fail to see

Re: Ascend MAX 6000 Problems

2004-10-12 Thread Oliver Graf
On Sun, Oct 10, 2004 at 06:07:43PM -0400, Corey Jarvis wrote: If anyone has experienced something similar or can help it would be appreciated. I get those packets too. I just ignore them. Works like a charm. Oliver. - List info/subscribe/unsubscribe? See

Re: NAS-Identifier check

2004-10-12 Thread Oliver Graf
On Mon, Oct 11, 2004 at 06:56:01AM -0700, Alex wrote: Hello, I want TTLS users to be authenticated using their login/pwd _AND_ the NAS-Identifier attribute from the Access-Req packet. It works fine with User-Password, but when I add NAS-Identifier == 'my_router' to radcheck table,

Re: NAS-Identifier check

2004-10-12 Thread Oliver Graf
On Tue, Oct 12, 2004 at 02:11:02AM -0700, Alex wrote: If Auth-Type is Accept, no EAP negociation occurs. What I want is TTLS established and user credentials checked and also NAS-Identifier value checked. Thai is, block some TTLS users from connecting from behind other NAS than its own. I

Re: NAS-Identifier check

2004-10-12 Thread Oliver Graf
On Tue, Oct 12, 2004 at 07:10:47AM -0700, Alex wrote: OK, I defined a huntgroup testNAS-Identifier == my_nas in huntgroups file and added | eap_user| Huntgroup-Name | == | test | to radcheck table. It says No matching entry in the database for request from user [eap_user]

Re: radius client

2004-10-13 Thread Oliver Graf
On Wed, Oct 13, 2004 at 03:52:08PM +0800, Yyc wrote: hi all, i will write a radius client which will be embeded in some NAS device. some one know about what program environment will be offered to me? Does the radclient of freeradius can run there? If you want to write something

Re: Double quoting in sql?

2004-09-29 Thread Oliver Graf
On Fri, Sep 24, 2004 at 10:24:09AM -0400, Alan DeKok wrote: Oliver Graf [EMAIL PROTECTED] wrote: I've upgraded recently from 0.9.3 to 1.0.1. There seems to be one small problem in the sql module: a Username seems to be quoted two times, first when setting sql_user_name, then when doing

Re: Double quoting in sql?

2004-09-29 Thread Oliver Graf
On Wed, Sep 29, 2004 at 08:10:45AM +0200, Oliver Graf wrote: On Fri, Sep 24, 2004 at 10:24:09AM -0400, Alan DeKok wrote: Oliver Graf [EMAIL PROTECTED] wrote: Something is escaping '#' to '=23', probably in the SQL module. Yeah. The Problem is that the allowed_chars string in 0.9.3

Re: Freeradius logs Connections 4 times with Acct-Delay-Time

2004-11-11 Thread Oliver Graf
On Thu, Nov 11, 2004 at 12:48:38PM +0100, Dominik Sennfelder wrote: the connecion Start and Stop ist logged 4 Times. That means the the Start is listed 4 times with the same Acct-Session-Id and the Stop is listet 4 times with the same for example a part of the log and my radiusd.conf

Re: radclient??

2005-06-01 Thread Oliver Graf
On Wed, Jun 01, 2005 at 11:07:13AM +0200, Sylvain Clerc wrote: I have to use radclient with another soft but I can't arrive to run it . When I do : radclient 192.168.1.1 auth secret nothing happens, it stays always empty. radtest works successful and depends of radclient, that's why I

Re: radclient??

2005-06-02 Thread Oliver Graf
On Wed, Jun 01, 2005 at 11:44:07AM +0200, Sylvain Clerc wrote: On 6/1/05, Oliver Graf [EMAIL PROTECTED] wrote: On Wed, Jun 01, 2005 at 11:07:13AM +0200, Sylvain Clerc wrote: I have to use radclient with another soft but I can't arrive to run it . When I do : radclient 192.168.1.1

Re: freeradius and max4000

2005-06-02 Thread Oliver Graf
On Wed, Jun 01, 2005 at 02:37:04PM +0300, Dmitriy Milashenko wrote: When I try to connect using MAX4000, I get ip address = Framed-IP-Address+NAS-Port, but MAX4000 sends NAS-Port like 20102, so my ip address is 195.68.222.64+20102=195.69.44.198. In the same time I have analog modem pool,

Re: MAX_PACKET_LEN setting limiting number of Cisco- Avpair's

2005-06-29 Thread Oliver Graf
On Tue, Jun 28, 2005 at 03:10:51PM -0700, Niall Browne wrote: Apart from this is there any other way to increase the number of Cisco-Avpair's within freeradius to be pushed to a firewall or is this the maximum ? You already seem to know the way for creating acl via radius: inacl#X An input

Re: Error getting data from database

2005-07-22 Thread Oliver Graf
On Thu, Jul 21, 2005 at 11:34:17PM -0700, Nirmal wrote: Hi, i have installed freeradius 1.0.4 on linux 7.3 with postgresql i m getting following error !! what could be the reason ? rlm_sql: Failed to create the pair: Unknown attribute User-Password Perhaps that space at the end

Re: Error getting data from database

2005-07-22 Thread Oliver Graf
On Fri, Jul 22, 2005 at 04:32:56AM -0700, Nirmal wrote: Thanks for your help which file i should look into in order to remove this space ? It's in your SQL database. Oliver. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Defining whole networks for huntgroups matching!

2005-07-25 Thread Oliver Graf
On Mon, Jul 25, 2005 at 01:36:19PM +0200, Erling Paulsen wrote: I'm using huntgroups to group our NAS-boxes, and I'm wondering if it is possible to designate whole networks ala. A.B.C.D/24 - instead of listing all boxes with multiple NAS-IP-Address statements? If you can write the network as

Re: Colubris-AVPairs

2005-07-27 Thread Oliver Graf
On Wed, Jul 27, 2005 at 03:07:00PM -0400, Andrey wrote: When I attempt to authenticate the AP, the Access-Accept response has only the first Colubris-AVPair, whichever it might be (i've tried different orders). Is there any reason for this kind of behaviour? Do attributes have to have unique

Re: freeradius + MySQL not working after upgrade from 1.0.1

2005-08-24 Thread Oliver Graf
On Tue, Aug 23, 2005 at 06:30:16PM -0700, [EMAIL PROTECTED] wrote: Problem solved. I had been compiling versions 1.0.1 without enabling Ascend binary support. Are you sure you didn't edit the dictionaries? Are you sure there's no other attribute 242, of type octets? Are you sure

Re: OT: Freeradius and Redback SMS 1800

2005-10-19 Thread Oliver Graf
On Tue, Oct 18, 2005 at 05:11:54PM +0200, Dominik Sennfelder wrote: We are using Freeradius with two Redback SMS 1800 Authorizing and accounting works with mysql. Is it possible to log the IP-Address at the beginging of the accounting? see AOS Command Reference, AAA and Radius commands.

Re: 802.1x

2005-11-02 Thread Oliver Graf
On Tue, Nov 01, 2005 at 09:27:57PM -0500, Alex M wrote: What is the difference between plain Radius identification compare to 802.1x? Basically 802.1x is between client and NAS, and radius is between NAS and AAA server. So how would you compare them? Oliver. - List

Re: I have MySql. Do I need CHAP, PAP, EAP or rlm_unix??

2004-01-25 Thread Oliver Graf
On Sat, Jan 24, 2004 at 10:07:11AM -0800, Jeff wrote: I have Freeradius 0.9.3 up and running with Gentoo Linux on x86 hardware. I had to comment out every instance of the unix module in radiusd.conf to get Freeradius to compile on Gentoo (for some reason 'rlm_unix' module doesn't compile on

Re: I have MySql. Do I need CHAP, PAP, EAP or rlm_unix??

2004-01-25 Thread Oliver Graf
On Sun, Jan 25, 2004 at 03:24:50PM +0100, Ciolo_-^DusT^-_WebMaster wrote: the secret... the secret word is given or I have to create it on my own... and if I have have to create it or declare it... where... there are some particular suggestions in how to create a secret key... Well... Let