--- Forwarded mail from [EMAIL PROTECTED]
Date: Tue, 7 Nov 2000 04:40:20 +1100 (EST)
From: [EMAIL PROTECTED]
To: [EMAIL PROTECTED]
Subject: BOUNCE [EMAIL PROTECTED]: Non-member submission from [David
Purnell <[EMAIL PROTECTED]>]
>From mikem Tue Nov 7 04:40:17 2000
Received: by oscar.open.com.au (8.9.0/8.9.0) id EAA19754
for [EMAIL PROTECTED]; Tue, 7 Nov 2000 04:40:16 +1100 (EST)
>Received: from mail-gw.dmv.com (mail-gw.dmv.com [146.145.96.3]) by
perki.connect.com.au with ESMTP id EAA20666
(8.8.8/IDA-1.7 for <[EMAIL PROTECTED]>); Tue, 7 Nov 2000 04:36:02 +1100
(EST)
Received: from mail-gw.dmv.com (mail-gw.dmv.com [146.145.96.3]) by
perki.connect.com.au with ESMTP id EAA20666
(8.8.8/IDA-1.7 for <[EMAIL PROTECTED]>); Tue, 7 Nov 2000 04:36:02 +1100
(EST)
Received: from pololei.dmv.com (pololei.dmv.com [64.45.129.242])
by mail-gw.dmv.com (8.9.3/8.9.3) with ESMTP id MAA60233
for <[EMAIL PROTECTED]>; Mon, 6 Nov 2000 12:36:00 -0500 (EST)
(envelope-from [EMAIL PROTECTED])
Date: Mon, 6 Nov 2000 12:35:48 -0500 (EST)
From: David Purnell <[EMAIL PROTECTED]>
To: [EMAIL PROTECTED]
Subject: NASTYPE in ClientListSQL
Message-ID: <[EMAIL PROTECTED]>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Hi,
I want to be conservative with simultaneous use checking and have radiator
snmp query my NAS whenever simultaneous use limits are exceeded during a
login.
I'm using ClientListSQL to keep my client definitions. I'm using the
default mysql database structure from the goodies directory. My
GetClientListSQL query is "SELECT NASIDENTIFIER, SECRET, NASTYPE,
SNMPCOMMUNITY from RADCLIENTLIST"
This is working fine for announcing to radiator which clients are allowed
to connect but is not working to announce the NASTYPE so that I can use
snmpget for simultaneous use checking.
Here's a level 4 trace snippet:
Mon Nov 6 12:00:45 2000: DEBUG: Radius::AuthSQL looks for match with gale
Mon Nov 6 12:00:45 2000: DEBUG: Query is: select NASIDENTIFIER, NASPORT,
ACCTSESSIONID, FRAMEDIPADDRESS from RADONLINE where USERNAME='gale'
Mon Nov 6 12:00:45 2000: DEBUG: Checking if user is still
online: unknown, gale, 64.45.132.7, 19, c60c207c 64.45.133.36
Mon Nov 6 12:00:45 2000: DEBUG: Radius::AuthSQL REJECT: Simultaneous-Use
of 1 exceeded
I'm seeing "unknown" where I should be seeing "Bay" (I'm using Baynetworks
5399 boxes), which is the value for NASTYPE in my mysql table.
I've also tried using "Bay5399SNMP" for the NASTYPE value in the table.
Since the nastype is getting set to unknown, the snmpget is never called.
Hints and suggestions would be greatly appreciated.
thanks,
David.
PS. here's my cfg file:
Foreground
LogDir /var/log
LogFile /var/log/radiusd.log
DbDir /etc/raddb
PidFile /etc/raddb/radiusd.pid
Trace 3
SnmpgetProg /usr/local/bin/snmpget
<ClientListSQL>
DBSource dbi:mysql:radius:radbar.dmv.com
DBUsername user
DBAuth ****
GetClientQuery SELECT NASIDENTIFIER,SECRET,NASTYPE,SNMPCOMMUNITY
from RADCLIENTLIST
</ClientListSQL>
<Log SQL>
DBSource dbi:mysql:radius:radbar.dmv.com
DBUsername user
DBAuth ****
Trace 3
</Log>
<Realm DEFAULT>
<AuthBy RADIUS>
NoForwardAuthentication
Host radbar.dmv.com
Secret ****
</AuthBy>
<AuthBy SQL>
DBSource dbi:mysql:cistron:acctbar.dmv.com
DBUsername user
DBAuth ****
AuthSelect SELECT * FROM auth WHERE username='%n'
AuthColumnDef 1, Encrypted-Password, check
AuthColumnDef 4, Simultaneous-Use, check
AuthColumnDef 2, GENERIC, reply
AuthColumnDef 3, Port-Limit, reply
</AuthBy>
PasswordLogFileName /var/log/radius.log
SessionDatabase radonline
</Realm>
<SessionDatabase SQL>
DBSource dbi:mysql:radius:radbar.dmv.com
DBUsername user
DBAuth ****
Identifier radonline
</SessionDatabase>
---End of forwarded mail from [EMAIL PROTECTED]
--
Mike McCauley [EMAIL PROTECTED]
Open System Consultants Pty. Ltd Unix, Perl, Motif, C++, WWW
24 Bateman St Hampton, VIC 3188 Australia http://www.open.com.au
Phone +61 3 9598-0985 Fax +61 3 9598-0955
Radiator: the most portable, flexible and configurable RADIUS server
anywhere. SQL, proxy, DBM, files, LDAP, NIS+, password, NT, Emerald,
Platypus, Freeside, TACACS+, PAM, external, Active Directory etc etc
on Unix, Win95/8, 2000, NT, MacOS 9, MacOS X
===
Archive at http://www.starport.net/~radiator/
Announcements on [EMAIL PROTECTED]
To unsubscribe, email '[EMAIL PROTECTED]' with
'unsubscribe radiator' in the body of the message.