Dialup admin

2005-04-20 Thread Angelo Gelmi [Web3king]
I've configured freeradius+dialupadmin in order to authenticate users through an access point 3com 7250. All is fine but that Dialup admin does not record the username of the user connected, it seems that for freeradius or dialupadmin the user is simply the access point. Is that its normal

RE: ip-pool

2005-04-20 Thread Tom Fritz
Hi, I really don't know what i'm doing wrong. Probably I have misunderstood something. I'm using ttls/md5 authentication it's working fine and I get an ip address from a dhcp server. To get the ip address from an ippool I have made the following configurations: - user file: user_name

Attributes Missing - Auth with ldap

2005-04-20 Thread Andre Herkenrath
Hi, I have a very strange problem. I authenticate a user agains a Novell 6 Server, which is not the problem. But I need some Attributes from the authentication brought back to the NAS I put these in the users file and it worked with another server: Users (complete) - DEFAULT

TLS Alert write:fatal:certificate revoked

2005-04-20 Thread freeradius
hello the certificate listened below isn't revoked, but the following error occured during authentication rlm_eap_tls: Done initial handshake rlm_eap_tls: TLS 1.0 Handshake [length 0782], Certificate -- verify error:num=23:certificate revoked chain-depth=0, error=23 -- User-Name = Kom --

Re: Attributes Missing - Auth with ldap

2005-04-20 Thread Michael Mitchell
Firstly, run freeradius is debug mode (radiusd -X) and it will tell you exactly what it is doing. You should be able to see which attribute it has retrieved from the directory to add to the reply. A few things to look at would be: 1) Do you have ldap configured in the authorize section of

Radrelay stops sending data

2005-04-20 Thread David Jones
Good day all, I fired up radrelay yesterday morning and it begin to send accounting data to by usage accounting server like it but for some reason there is no more data being passed from my FR 1.0.1 server. Radrelay has ran the entire time and my FR server is still righting to my

RE: ip-pool

2005-04-20 Thread Dustin Doris
Hi, I really don't know what i'm doing wrong. Probably I have misunderstood something. I'm using ttls/md5 authentication it's working fine and I get an ip address from a dhcp server. To get the ip address from an ippool I have made the following configurations: - user file: user_name

Re: rlm_perl and perl modules

2005-04-20 Thread Boian Jordanov
On Wed, Apr 20, 2005 at 01:41:21AM +0200, Emil Wilmanski wrote: All of normal scripts work perfect with any module... Only radius say that have problem with libs. I don't know why.maybe somebody have any idea... Maybe perl 5.8.4 is not for this, or I have to compile freeradius with some

AW: Attributes Missing - Auth with ldap

2005-04-20 Thread Andre Herkenrath
Hi, I looked at a few things: 1. the authorize section contains ldap 2. I bind with an existing user 3. I want to return Filter-Id and this is in teh ldap.attrmap The strange thing is the following: I run the Freeradius on a Virtual machine. I tried this first with Novell Server A There I had

Re: AW: Attributes Missing - Auth with ldap

2005-04-20 Thread Dustin Doris
On Wed, 20 Apr 2005, Andre Herkenrath wrote: Hi, I looked at a few things: 1. the authorize section contains ldap 2. I bind with an existing user 3. I want to return Filter-Id and this is in teh ldap.attrmap rlm_ldap: ldap_get_conn: Checking Id: 0 rlm_ldap: ldap_get_conn: Got Id: 0

detail logs aren't using the client IP address

2005-04-20 Thread David E. Smith
My radiusd.conf has several sections like this: detail { detailfile = ${radacctdir}/%{Client-IP-Address}/detail-%Y%m%d detailperm = 0600 } Based on all the other compiled-in settings, this looks like it should put logs in /usr/radius/var/log/radius/radacct/ip.add.re.ss/(logs here) The ip

Re: xlat LDAP woes

2005-04-20 Thread Alan DeKok
Jan-Piet Mens [EMAIL PROTECTED] wrote: The LDAP attribute is supposed to be an IP address, not a string that requires more processing before it becomes an IP address. Would it be possible and can you please give me a hint, perhaps a pointer to documentation? I'm not sure what else you

AW: AW: Attributes Missing - Auth with ldap

2005-04-20 Thread Andre Herkenrath
Hi, I did the ldapsearch and here is the output: herkenra # extended LDIF # # LDAPv3 # base OU=Abteilungen,O=FKEL, with scope sub # filter: uid=herkenra # requesting: ALL # # search result search: 2 result: 80 Internal (implementation specific) error text: NDS error: no referrals (-634) #

Re: ip-pool

2005-04-20 Thread Alan DeKok
Tom Fritz [EMAIL PROTECTED] wrote: I really don't know what i'm doing wrong. Probably I have misunderstood something. I'm using ttls/md5 authentication it's working fine and I get an ip address from a dhcp server. That's the way that wireless works. You can't change it. Authentication is

Re: detail logs aren't using the client IP address

2005-04-20 Thread Alan DeKok
David E. Smith [EMAIL PROTECTED] wrote: The ip address part isn't being honored, though. Logs are just going to /usr/radius/var/log/radius/radacct/(logs here). To my untrained eyes, everything in radiusd.conf, clients.conf (just a list of a half-dozen NASes), and proxy.conf looks normal and

Re: AW: AW: Attributes Missing - Auth with ldap

2005-04-20 Thread Mearl Danner
Probably in the NDS setup - where the replicas are and which replica the info you're trying to get is on. Check this TID. It explains the referral process. http://support.novell.com/cgi-bin/search/searchtid.cgi?/10061859.htm Mearl [EMAIL PROTECTED] 4/20/2005 11:58 AM Hi, I did the

Users classes

2005-04-20 Thread Anderson Alves de Albuquerque
How can I create classes of users in Radius? - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Question concerning vp_prints

2005-04-20 Thread Wolfgang Hottgenroth
Hi, I see in lib/print.c: static const char *vp_tokens[] = { ?, /* T_INVALID */ EOL,/* T_EOL */ {, }, (, ), ,, ;, +=, -=, :=, =, !=, =, , =, , =~, !~, =*, ~*, ==, #, BARE-WORD, \STRING\,

Re: Question concerning vp_prints

2005-04-20 Thread Wolfgang Hottgenroth
I'm sorry for not being very exact. This is about 1.0.2. I've checked CVS, it is there too. Wolfgang At Wed, 20 Apr 2005 22:36:32 +0200, Wolfgang Hottgenroth wrote: Hi, I see in lib/print.c: static const char *vp_tokens[] = { ?,/* T_INVALID */

Calling Station Id not working

2005-04-20 Thread Joel n.solanki
Dear all, I want to use mac authentication in radius. I am struggling for 2 days for Calling Station Id setup. I am using pppoe + freeradius + mysql. I have setup dialup admin too. I have manually entered Calling-Station-Id in /usr/local/dialup-admin/conf/admin.conf. So now i have the

Re: Calling Station Id not working

2005-04-20 Thread Alan DeKok
Joel n.solanki [EMAIL PROTECTED] wrote: I am not getting Calling-Station-Id in the request info. Can anybody help me. If the NAS isn't sending it, there's nothing you can do to the RADIUS server to get that data. Alan DeKok. - List info/subscribe/unsubscribe? See

Re: rlm_perl and perl modules

2005-04-20 Thread Emil Wilmanski
Check output of perl -V, see if it does include useshrplib=true? and libperl=libperl.so. $perl -V | grep -i useshrplib config_args='-Dusethreads -Duselargefiles -Dccflags=-DDEBIAN -Dcccdlflags=-fPIC -Darchname=i386-linux -Dprefix=/usr -Dprivlib=/usr/share/perl/5.8

Re: rlm_perl and perl modules

2005-04-20 Thread Emil Wilmanski
Check against which libperl is linked rlm_perl ldd rlm_perl-1.0.2.so libperl.so.5.8 = /usr/lib/libperl.so.5.8 (0xb7ec3000) libdl.so.2 = /lib/tls/i686/cmov/libdl.so.2 (0xb7ebf000) libm.so.6 = /lib/tls/i686/cmov/libm.so.6 (0xb7e9d000) libc.so.6 =

Freeradius EAP-TLS client/server certificate

2005-04-20 Thread Beat Meier
Hi This question is rather a certificate question but ... How does EAP-TLS certificate authentification work? As I know the server sends his certificate first with his public key to the client. The client sends his certificate to the radius server. I had first the username of the client