Re: [RADIATOR] Radiator / Radmin - bulk add users

2014-06-12 Thread Hugh Irvine

Hello Michael -

See buildsql in the main Radiator distribution directory.

See also section 10.0 in the Radiator 4.13 reference manual (“doc/ref.pdf”).

Here is the help for buildsql:


Radiator-4.13 hugh$ perl buildsql -h

usage: buildsql [-h] -dbsource dbi:drivername:option
[-dbusername dbusername] [-dbauth auth] [-password | -dbm | -flat]
[-z] [-u] [-f] [-d username] [-l username] [-t dbmtype]
[-tablename name] [-v]
[-username_column columnname]
[-password_column columnname]
[-encryptedpassword]
[-checkattr_column columnname]
[-replyattr_column columnname] filename ...



regards

Hugh


On 12 Jun 2014, at 12:45, Michael Bellears mbelle...@gcomm.com.au wrote:

 Hi,
  
 We have a need to add ~150users to Radmin – Doing this via the (Radmin) web 
 interface would be tedious/error-prone – Is anyone aware of a script to bulk 
 add users?
  
 Cheers.
 ___
 radiator mailing list
 radiator@open.com.au
 http://www.open.com.au/mailman/listinfo/radiator


--

Hugh Irvine
h...@open.com.au

Radiator: the most portable, flexible and configurable RADIUS server 
anywhere. SQL, proxy, DBM, files, LDAP, NIS+, password, NT, Emerald, 
Platypus, Freeside, TACACS+, PAM, external, Active Directory, EAP, TLS, 
TTLS, PEAP, TNC, WiMAX, RSA, Vasco, Yubikey, MOTP, HOTP, TOTP,
DIAMETER, SIM, etc. 
Full source on Unix, Linux, Windows, MacOSX, Solaris, VMS, NetWare etc.

___
radiator mailing list
radiator@open.com.au
http://www.open.com.au/mailman/listinfo/radiator


[RADIATOR] Limits on EAPTLS_PrivateKeyPassword

2014-06-12 Thread Michael Hulko
We have just renewed our certificates on our servers, and windows clients are 
unable to authenticate.

Without having to select “Validate server certificate” in a wireless profile, 
Windows usually presents a security box informing you that the certificate may 
no be trusted and /  or is not bound as the root anchor.  From there you can 
continue and access is granted.

However, since implementing our new certificates, 

Windows7 is not presenting any warnings, the radiator log files continue with 
challenges and requests continually.  

Windows8 just rejects the authentication outright:  Thu Jun 12 11:05:43 2014: 
ERR: EAP PEAP TLS read failed:  19984: 1 - error:14094419:SSL 
routines:SSL3_READ_BYTES:tlsv1 alert access denied

Thu Jun 12 11:05:43 2014: ERR: EAP PEAP TLS read failed:  19984: 1 - 
error:14094419:SSL routines:SSL3_READ_BYTES:tlsv1 alert access denied


If I take our original certificate that DOES work with Windows7 / 8, and I 
remove the PrivateKeyPassword or change it, I get the same behaviour on both 
OS’s.

So.. two things are likely the culprit,  either the private key provided to 
create the cert is wrong… or Radiator limits what characters can be used for 
the private key.

Any assistance would be grateful

Michael Hulko
Network Analyst

Western University Canada
Network Operations Centre
Information Technology Services
1393 Western Road, SSB 3300CC
London, Ontario  N6G 1G9

tel: 519-661-2111 x81390
e-mail: mihu...@uwo.ca 





___
radiator mailing list
radiator@open.com.au
http://www.open.com.au/mailman/listinfo/radiator