Re: Thanks

2004-02-25 Thread Jean-Paul Chapalain
Great, but could you say more !!! José Luis Solano wrote: Thanks, my freeradius runs. José Luis Solano Jean-Paul. -- -- Jean-Paul Chapalain - GICM - Resp. Reseaux et Infrastructure -- 32 rue Mirabeau - Le Relecq-Kerhuon - 29808 Brest Cedex 9, FRANCE -- Tel +33298002873 - Fax

Re: EAP-TTLS and accounting

2004-02-25 Thread Rok Pape
Hello Tom! :) Tom Rixom wrote: -Original Message- From: Rok Pape [mailto:[EMAIL PROTECTED] Has anyone managed to solve the problem with anonymous user accounting ? I've only found this message: http://lists.cistron.nl/pipermail/freeradius-users/2003-September/023835.html Just return

RE: EAP-TTLS and accounting

2004-02-25 Thread Tom Rixom
Hi Rok, I must admit I haven't tested this on freeradius yet but I assumed there would be a way to return the username in the inner request I am just starting to use the freeradius server as I only noticed recently that SecureW2 is being used with this server ;) I guess if the functionality is

RE: AlfaAriss Client question

2004-02-25 Thread Tom Rixom
Hans, The big difference with Windows 2000 and XP is that Windows XP offer not only the 802.1X Client and EAP support but also a built-in WIFI client (Wireless Zero Config). Windows 2000 does not have this WIFI client and it will never have it as Windows 2000 service pack 4 was the last...

ignoring request from unknown client 127.0.0.1

2004-02-25 Thread Basile Mathieu
i use freeradius-snapshot-20040224 on a redhat 7.3 all seems to work fine but when i use radtest the server tell me Ignoring request from unknown client 127.0.0.1 i add the loopback in client and client.conf i don t understand thanks Starting - reading configuration files ... reread_config:

unknown host 127.0.0.1

2004-02-25 Thread Basile Mathieu
i reinstall freeradius-snapshot-20040224 and use the default radiusd.conf i just had 127.0.0.1 to client , and had a users but when i use radtest i have the same error Ignoring request from unknown client 127.0.0.1 does i forget to do something ? with older version all works fine basile - List

Re: Thanks

2004-02-25 Thread José Luis Solano
Hi alll ! Of course Jean-Paul, the problem was in my LDAP, I have changed my own LDAP configuration and freeradius works correctly with TTLS and TLS, but I have not changed anything in my freeradius configurations. So, thanks for your help!! José Luis Solano [EMAIL PROTECTED] (+34)

Re: Radius Start Errors

2004-02-25 Thread Alan DeKok
Daniel Baughman [EMAIL PROTECTED] wrote: I think what he was asking for is any other pertinent log entrys, or perhaps the 30 lines before and 30 after that line (more likely after). If you can block out sensitive info you could post more of your radiusd.conf Exactly. He posts a content-free

Re: Radius Start Errors

2004-02-25 Thread Alan DeKok
Alan DeKok [EMAIL PROTECTED] wrote: a) He can't read (I said I wasn't a mind reader, and I can't content-free questions) sigh And I can't type, either. 2 hours of rock climbing last night have turned my fingers into msuh. g Alan DeKok. - List info/subscribe/unsubscribe? See

Re: EAP-TTLS and accounting

2004-02-25 Thread Alan DeKok
=?windows-1252?Q?Rok_Pape=9E?= [EMAIL PROTECTED] wrote: use_tunneled_reply = yes ... This doesn't work as User-Name already exists in the outer tunnel. In the reply packet? It exists only if you added it in your configuration. If I add User-Name override to the

Problem with Cisco 2511 router

2004-02-25 Thread jahanbakhsh
Hi Guys, We would use a radius (freeradius version 8) proxy server for proxying users request to two radius servers that were used as authentication/authorization server. One of our NAS is Cisco 2511 router and this router has some problem with our radius proxy but other Cisco router types we use

[Fwd: gateway problem - Registration?]

2004-02-25 Thread Lokotes
sorry - not this group :) Original Message Subject: gateway problem - Registration? Date: Wed, 25 Feb 2004 15:24:00 +0100 From: Lokotes [EMAIL PROTECTED] To: [EMAIL PROTECTED] hi, i have just connected a gateway to my LAN. My GK is set to auth with radius (RRQ) and everything

PEAP / MSCHAP2 / LDAP

2004-02-25 Thread Arthur EBEL
I would like to use PEAP / MSCHAP2 / LDAP But I have got this kind of erros and my users cant authenticate rlm_mschap: No User-Password configured. Cannot create LM-Password. rlm_mschap: No User-Password configured. Cannot create NT-Password. rlm_mschap: No LM-Password or NT-Password

Re: PEAP / MSCHAP2 / LDAP

2004-02-25 Thread Michael Griego
See many many previous discussions in this list on the requirement of cleartext passwords for MS-CHAP. --Mike On Wed, 2004-02-25 at 08:30, Arthur EBEL wrote: I would like to use PEAP / MSCHAP2 / LDAP But I have got this kind of erros and my users cant authenticate rlm_mschap: No

(no subject)

2004-02-25 Thread geoffroy . arnoud
Hello, I am training at FreeRADIUS, and I'm writting my own module to make different stuff on request. It works well. I use FreeRADIUS snapshot-20040102. I think I've found an error in the libradius, in the file valuepair.c, into the function pairreplace. My valuepair.c is in version 1.74, but

Re: unknown host 127.0.0.1

2004-02-25 Thread Alan DeKok
Basile Mathieu [EMAIL PROTECTED] wrote: i reinstall freeradius-snapshot-20040224 and use the default radiusd.conf i just had 127.0.0.1 to client It's included by default. but when i use radtest i have the same error Ignoring request from unknown client 127.0.0.1 does i forget to do

Freeradius, shiva users file, and mysql.

2004-02-25 Thread donnie
Hello. Currently, I am using an intel Shiva access switch for Radius AAA. I would like to try to move to freeradius for the AAA, and use mysql as a database backend for user authorization. My problem is that the current shiva users file that I have has all the passwords encrypted, thus I cannot

Re: PEAP / MSCHAP2 / LDAP

2004-02-25 Thread Chris Wieringa
On Wed, 2004-02-25 at 08:30, Arthur EBEL wrote: I would like to use PEAP / MSCHAP2 / LDAP My password is stored in my LDAP directory using Crypt. See many many previous discussions in this list on the requirement of cleartext passwords for MS-CHAP. OK, time for some user education has to

Re: unknown host 127.0.0.1

2004-02-25 Thread Basile Mathieu
A 10:18 25/02/2004 -0500, vous avez écrit : Basile Mathieu [EMAIL PROTECTED] wrote: i reinstall freeradius-snapshot-20040224 and use the default radiusd.conf i just had 127.0.0.1 to client It's included by default. but when i use radtest i have the same error Ignoring request from unknown

Auth-Type SecurID - failed to validate the user

2004-02-25 Thread Suhr, Gunnar
Hello, we're testing freeradius 0.9.3 on HP-UX 11.0. The compilation of rlm_krb5 failed and for this reason i compile freeradius without this module. Now we're testing freeradius using the Auth-Type SecurID 2, but it failed with the following message in the log-file: failed to validate the

Re: Radius - Giganews

2004-02-25 Thread Natter
Ok, everything is working great now...except one thing... In my clients.conf file I have my test box in there as: test.mydomain.com. Well, when I run radtest from that box, it says ignoring request from ip address. But, that ip address resolves to test.mydomain.com. I turned hostname lookups on

Problem with LDAP attributes checking

2004-02-25 Thread Sergio Sagliocco
Hello to the list I configured my Freeradius to authenticate users with LDAP. When one of the clients send a request it includes this attribute: Cisco-AVPair = h323-ivr-out=terminal-alias:5854; This attribute depends from the user: so for user U1 it could be Cisco-AVPair =

PPTP + LDAP + freeradius (Attribute User-Password is required for authentication)

2004-02-25 Thread Raval, Jabal
I've got the radius server up on a unix box and got it to authenticate users off of a active directory and that part is working fine. The problem now is that I'd like to have our linux pptp server (running poptop) authenticate users via radius. I've been able to get the pptp server make requests

Sending NAS-IP-Address to proxied realm

2004-02-25 Thread [EMAIL PROTECTED]
Hi, I am running freeradius 0.9.3 on redhat 9.0. My radius server is used primarily for proxying to other ISP's. I currently have over 30 external ISP's set up in my radius and most seem to be working well. However for those ISP's that are using ICradius, it seems to be very unhappy about the

XSupplicant client with TTLS

2004-02-25 Thread José Luis Solano
Hi all, I'm here again ;) Anybody uses XSupplicant client with TTLS? Anybody knows if XSupplicant works OK with TTLS? Please, if there is some guy who works with XSupplicant, I need help!!! Thanks José Luis Solano SGI - Soluciones Globales Internet S.A. Delegación Regional Sur [EMAIL

Re: XSupplicant client with TTLS

2004-02-25 Thread Alan DeKok
=?iso-8859-1?Q?Jos=E9_Luis_Solano?= [EMAIL PROTECTED] wrote: Anybody knows if XSupplicant works OK with TTLS? So far as I know. See the list archives. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: how to return proper reply attributes per nas type

2004-02-25 Thread Alan DeKok
Kevin Jeoung [EMAIL PROTECTED] wrote: I am wondering if there is a way to return proper reply attributes per nas type. The server doesn't have the concept of NAS type that you can use in the users file. In short, I need to return some sort of pre-listed attributes not by users but by

Re: Sending NAS-IP-Address to proxied realm

2004-02-25 Thread Alan DeKok
[EMAIL PROTECTED] [EMAIL PROTECTED] wrote: Perhaps NAT is the wrong term? NAT is what firewalls do when the proxy packets with one visible IP. Everything is behind a firewall and we have only one external IP address which actually points to a load balancer and all of the accelerator

pap encryption

2004-02-25 Thread Ossama Suleiman
Dear all, i am using freeradius-ldap-mysql, which is working just fine. the question is: in LDAP i have the users stored with different encryption schemes, some are CRYPT, some are CLEAR and some are MD5, is there a way to let FR use all of them and not just one specific scheme?? each

Overwritten Perl Module

2004-02-25 Thread Support
Dear Freeradius users: I'm using freeradius 0.9.3 and I've written 2 basic perl scripts to use them depending on the huntgroup and the Auth-Type (quintum.pl and gnugk.pl). Both modules are specified in the radiusd.conf and are loaded when freeradius starts. I've noticed that the last loaded

(no subject)

2004-02-25 Thread Clinton J Wooton
List, I am new to this so I may not provide all that is needed so please feel free to ask. I am running Free radius 0.9.3 on a redhat 9.0 box with mysql 0.4.3. When attempting to start the radius server using radiusd xxyz I get the following error:

Re: (no subject)

2004-02-25 Thread Kevin Bonner
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On Wednesday 25 February 2004 18:05, Clinton J Wooton wrote: I believe that the [1636] refers to the actual line in the file. I looked at this exact spot using gedit and found that it is the last line of the file and it has nothing in it. I would

Re: Freeradius Testing

2004-02-25 Thread Jeff Warnica
It is just something I hacked together last week in an hour or so, but attached is something of a radius test client. It is undocumented, not itself tested, and possibly slightly Ascend specific. It is a wrapper around radtest that randomly generates (well, chooses from a list) some data values,

HELP please.

2004-02-25 Thread wEiRDo
can anybody help me please.. HOW CAN I CONNECT/CONFIGURE/BRIDGE freeRadius with HostAP Driver/HostAPd. thanks a lot. _ Leonardo D. Pabroquez Jr. 00-51582 Department of Computer Science, College of Engineering University of the Philippines Diliman, Quezon City - List

What the unit of AcctInputOctets, AcctOutputOctets

2004-02-25 Thread Raymond
Hi Would anyone tell me what is the unit of AcctInputOctets, AcctOutputOctets in table radacct? Is it byte, kbyte, mbyte? Thanks, Raymond

Re: HELP!!!! Translate h323-setup/connect/disconnect to ...

2004-02-25 Thread Norguhtar
Help me pls. How can I translate Translate h323-setup/connect/disconnect to normal sql like date? Now my VoIP proxy(Mera XPGK) send me Cisco VSA( 25): h323-setup-time=17:42:00.000 MSK Fri Feb 13 2004 How I can translate it to SQL Like fromat - 13.02.2004 17:42:00.000 ? Simple. You can

Re: What the unit of AcctInputOctets, AcctOutputOctets

2004-02-25 Thread Chris Linstruth
Octets :) -- Chris Linstruth [EMAIL PROTECTED] QNET 1031 West Avenue M14 #A Palmdale, CA 93551 (661) 538-2028 On Thu, 26 Feb 2004, Raymond wrote: Hi Would anyone tell me what is the unit of AcctInputOctets, AcctOutputOctets in table radacct? Is it byte, kbyte, mbyte?