Re: MySQL and postauth_query

2007-05-08 Thread Peter Nixon
--snip-- Compared to the wholesale hack and slash job I've had to do on the sqlippool queries to get them to work, it's no Big Whoop, LOL! Please forward them to me so that I may include them in cvs. (I generally try to avoid MySQL whereever possible, hence the reason sqlippool only

Re: rlm_sqlippool in freeradius 1.1.6

2007-05-08 Thread Peter Nixon
On Tue 08 May 2007, Hugh Messenger wrote: I said: Is the rlm_sqlippool in 1.1.6 known to work with MySQL 5? Actually, I'm fairly sure it's not even getting as far as talking to the db. No matter what I try, it just tells me 'missing pool_name'. Turns out I borked something else in the

Re: IP billing with freeradius

2007-05-08 Thread satish patel
thnks for reply dear But my requiremnt is a bit different means i explain u in depth i have datacenter in data center many customers and we are giving ip pool to our customer and terminate that pool on 6500 cisco core switch so i want bandwidth counter on that port wheather all

Re: IP billing with freeradius

2007-05-08 Thread Peter Nixon
On Tue 08 May 2007, satish patel wrote: thnks for reply dear But my requiremnt is a bit different means i explain u in depth i have datacenter in data center many customers and we are giving ip pool to our customer and terminate that pool on 6500 cisco core switch so i want

Re: eap-tls authentication with free radius 1.1.5

2007-05-08 Thread Alan DeKok
[EMAIL PROTECTED] wrote: Hi list I am tryinmg to do EAP_TLS certificate based authentication with free radius 1.1.5.The setup worked well with freeradius-snapshot-20021028.But as Windows vista is not supporting the same.So i am trying to do the authentication with 1.1.5 version

Re: FreeRadius crash

2007-05-08 Thread Alan DeKok
Doug Hardie wrote: FreeRadius 1.1.2 on FreeBSD 6.1 using libpthread. Upgrade to 1.1.6. It has a lot of fixes that may help. It looks like it's crashing when starting a new child thread. That may be a pthread issue in the underlying libraries. Alan DeKok. -- http://deployingradius.com

Re: IP billing with freeradius

2007-05-08 Thread tnt
This is nothing to do with radius. Use netflow. Ivan Kalik Kalik Informatika ISP Dana 8/5/2007, satish patel [EMAIL PROTECTED] piše: thnks for reply dear But my requiremnt is a bit different means i explain u in depth i have datacenter in data center many customers and we are

Re: IP billing with freeradius

2007-05-08 Thread Alexander V. Klepikov
Hello, [EMAIL PROTECTED] You wrote on Tue, 08 May 2007 09:38:19 +0100: t This is nothing to do with radius. Use netflow. What about dot1x auth + accounting? Though it may be not so good for servers. With best regards, Alexander V. Klepikov. E-mail: [EMAIL PROTECTED] - List

Re: eap-tls authentication with free radius 1.1.5 (Alan DeKok)

2007-05-08 Thread anoop_c
4750 Australia -- next part -- An HTML attachment was scrubbed... URL: https://lists.freeradius.org/pipermail/freeradius-users/attachments/20070508/56754559/attachment-0001.html -- Message: 2 Date: Tue, 8 May 2007 06:48:22 +0100

Re: FR with MySQL - Stored Procedures

2007-05-08 Thread cky
Hello Gunther, I've the same problems here. I use also a simple SP (just for testing) and I run into the same problems, like you. I've also patched the sql_mysql.c file and added the CLIENT_MULTI_STATEMENTS flag. After that, I get also the error 2014. After that, I added to every function, a

Att rewrite output missing last char.

2007-05-08 Thread Arran Cudbard-Bell
++[eap] returns updated radius_xlat: '([0-9a-f]{2})[-:]?([0-9a-f]{2})[-:]?([0-9a-f]{2})[-:]?([0-9a-f]{2,})[-:]?([0-9a-f]{2})[-:]?([0-9a-f]{2})' radius_xlat: '001438fb943e' rlm_attr_rewrite: Changed value for attribute Called-Station-Id from '00-14-38-fb-94-3e' to '001438fb943' rlm_attr_rewrite:

Long Access time

2007-05-08 Thread Josh Shamir
Hi all, I have implemented Freeradius with LDAP, all works without error but when the user log in the access time is too log (about 3,5 minutes). This access time isn't platform depended (we use Windows and Mac client). These are the log: proxy.conf proxy server { synchronous = yes

Re: dyndns.org domain in Clients.conf

2007-05-08 Thread AS Alex
How i can use nas identifier attribute?? client.conf needs an ip however ?? i'm very confused. - Original Message - *From:* YvesDM [EMAIL PROTECTED] *To:* FreeRadius users mailing list freeradius-users@lists.freeradius.org *Sent:* Friday, May 04, 2007 1:21 PM *Subject:* Re: dyndns.org

Re: dyndns.org domain in Clients.conf

2007-05-08 Thread alessio
How i can use nas identifier attribute?? client.conf needs an ip however ?? i'm very confused. - Original Message - From: YvesDM To: FreeRadius users mailing list Sent: Friday, May 04, 2007 1:21 PM Subject: Re: dyndns.org domain in Clients.conf On 5/4/07, AS Alex

Biometria

2007-05-08 Thread Fábio Roberto da Silva
Good Morning I am verifying the possibility to use freeradius with authentication server being used biometria, using data base Mysql, would like to know as to implement this type of authentication Fábio Roberto da Silva __ Fale com seus amigos

Re: Long Access time

2007-05-08 Thread Alan DeKok
Josh Shamir wrote: I have implemented Freeradius with LDAP, all works without error but when the user log in the access time is too log (about 3,5 minutes). Perhaps you could explain what you mean by that. What's a long access time? This access time isn't platform depended (we use Windows

Re: Att rewrite output missing last char.

2007-05-08 Thread Arran Cudbard-Bell
Alan DeKok wrote: Arran Cudbard-Bell wrote: ... rlm_attr_rewrite: Changed value for attribute Calling-Station-Id from '00-17-f2-31-b4-81' to '0017f231b48' Seems to be missing last char of value... Try the attached patch. Alan DeKok. -- http://deployingradius.com - The

Date expansion fails for inner encryption tunnel log files.

2007-05-08 Thread Arran Cudbard-Bell
And another... PEAP: Sending tunneled request EAP-Message = 0x020800061a03 FreeRADIUS-Proxied-To = 127.0.0.1 User-Name = [EMAIL PROTECTED] State = 0x0b97599351abde4fc473bdaa8ad158b3 Framed-MTU = 1466 NAS-IP-Address = 139.184.135.33

Re: Date expansion fails for inner encryption tunnel log files.

2007-05-08 Thread Alan DeKok
Arran Cudbard-Bell wrote: And another... ... expands to /usr/local/freeradius/var/log/19700101/auth-detail-01:00 radius_xlat: 'Thu Jan 1 01:00:00 1970' ... well it doesn't strictly fail. I've committed a fix. Alan DeKok. -- http://deployingradius.com - The web site of the

Re: How to configure multiple LDAPs with different DN's ?

2007-05-08 Thread Eric Martell
I will be really appreciated if someone points me to the right direction or archive of the thread. Thanks in advance. Regards. __ Do You Yahoo!? Tired of spam? Yahoo! Mail has the best spam protection around http://mail.yahoo.com - List

Machine-Authentication against SaMBa account in LDAP Directory

2007-05-08 Thread Christian Hohmann
Hi members, I have a problem with the name of hosts. Here is the situation: I have an LDAP Directory which is filled by samba-Deamon, for example with hosts that are added to my domain. Samba signs every host-account with a $ at the end. If my laptop would be named christian, the entry created

Re: Machine-Authentication against SaMBa account in LDAP Directory

2007-05-08 Thread Joe Vieira
in my experience, i have seen the hosts PASS their name as host/HOST$.domain.domain.domain what version of samba are you using? Christian Hohmann wrote: Hi members, I have a problem with the name of hosts. Here is the situation: I have an LDAP Directory which is filled by samba-Deamon, for

Re: FR with MySQL - Stored Procedures

2007-05-08 Thread cky
so...after a while I found a workaround for the SP problem..well, is quick and dirty and probably not the best solution. I've added to the function sql_fetch_row in sql_mysql.c a simple sql_free_result(sqlsocket, config);...see the diff below. Now my Stored Procedure works correct and as expected

Re: dyndns.org domain in Clients.conf

2007-05-08 Thread Marcel . De_Boer
Hi! YvesDM wrote: How i can use nas identifier attribute?? client.conf needs an ip however ?? i'm very confused. In clients.conf use 0.0.0.0/0 and make sure your shared secret is long and strong. A small note if you really want to do this: in 2.0, this will only match for the

Re: Date expansion fails for inner encryption tunnel log files.

2007-05-08 Thread Arran Cudbard-Bell
Alan DeKok wrote: Arran Cudbard-Bell wrote: And another... ... expands to /usr/local/freeradius/var/log/19700101/auth-detail-01:00 radius_xlat: 'Thu Jan 1 01:00:00 1970' ... well it doesn't strictly fail. I've committed a fix. Alan DeKok. -- http://deployingradius.com

Re: Date expansion fails for inner encryption tunnel log files.

2007-05-08 Thread Alan DeKok
Arran Cudbard-Bell wrote: Is that a fix for the attr_rewrite stuff too ? That was committed, too. Alan DeKok. -- http://deployingradius.com - The web site of the book http://deployingradius.com/blog/ - The blog - List info/subscribe/unsubscribe? See

Re: Long Access time

2007-05-08 Thread Josh Shamir
On 5/8/07, Alan DeKok [EMAIL PROTECTED] wrote: Perhaps you could explain what you mean by that. What's a long access time? Excuse my english. I mean the time that passed between the user sends login information and the success authentication by the supplicant. Which doesn't include

Re: FreeRadius crash

2007-05-08 Thread Doug Hardie
On May 8, 2007, at 00:49, Alan DeKok wrote: Doug Hardie wrote: FreeRadius 1.1.2 on FreeBSD 6.1 using libpthread. Upgrade to 1.1.6. It has a lot of fixes that may help. It looks like it's crashing when starting a new child thread. That may be a pthread issue in the underlying

Re: Long Access time

2007-05-08 Thread Alan DeKok
Josh Shamir wrote: Excuse my english. I mean the time that passed between the user sends login information and the success authentication by the supplicant. Sounds like the supplicant or access point has issues. rad_recv: Access-Request packet from host 192.168.181.1:32806 ... Which

Re: Long Access time

2007-05-08 Thread Josh Shamir
On 5/8/07, Alan DeKok [EMAIL PROTECTED] wrote: Sounds like the supplicant or access point has issues. It can be an access point problem? About the communication with Coovachilli or Radius? Or proxy.conf bad configured? Which doesn't include a final Access-Accept, or Access-Reject. Here it

Re: Date expansion fails for inner encryption tunnel log files.

2007-05-08 Thread Arran Cudbard-Bell
Alan DeKok wrote: Arran Cudbard-Bell wrote: Is that a fix for the attr_rewrite stuff too ? That was committed, too. Alan DeKok. -- http://deployingradius.com - The web site of the book http://deployingradius.com/blog/ - The blog - List info/subscribe/unsubscribe? See

Re: Machine-Authentication against SaMBa account in LDAP Directory

2007-05-08 Thread Phil Mayers
Christian Hohmann wrote: Hi members, I have a problem with the name of hosts. Here is the situation: I have an LDAP Directory which is filled by samba-Deamon, for example with hosts that are added to my domain. Samba signs every host-account with a $ at the end. If my laptop would be named

Sig HUP?

2007-05-08 Thread Kevin J
I saw some email threads about HUP. Can we use kill -HUP pid in the latest version or is it still not stable? Thanks, Kevin - Ahhh...imagining that irresistible new car smell? Check outnew cars at Yahoo! Autos.- List info/subscribe/unsubscribe?

RE: FR with MySQL - Stored Procedures

2007-05-08 Thread Gunther
I added this patch to sql_mysql.c and started testing. 1. When I do not call any SPs, it works fine 2. When I call a SP for the first time, it works fine 3. When I call a SP for the second and more time, the 2014 error shows again It seems that these errors happen whenever any SP is called a

Re: dyndns.org domain in Clients.conf

2007-05-08 Thread YvesDM
On 5/8/07, [EMAIL PROTECTED] [EMAIL PROTECTED] wrote: Hi! YvesDM wrote: How i can use nas identifier attribute?? client.conf needs an ip however ?? i'm very confused. In clients.conf use 0.0.0.0/0 and make sure your shared secret is long and strong. A small note if you really

Re: Machine-Authentication against SaMBa account in LDAP Directory

2007-05-08 Thread Jacob Jarick
Christan, You may be able to overcome / work around the problem by specifying a 2nd ldap module. Have one that appends the $ and checks and one that doesnt. On 5/9/07, Phil Mayers [EMAIL PROTECTED] wrote: Christian Hohmann wrote: Hi members, I have a problem with the name of hosts. Here is

Re: How to configure multiple LDAPs with different DN's ?

2007-05-08 Thread Jacob Jarick
It will be postauth that you need. Unfortunately Im still learning that part myself (when I have spare time). On 5/8/07, Eric Martell [EMAIL PROTECTED] wrote: I will be really appreciated if someone points me to the right direction or archive of the thread. Thanks in advance. Regards.

Wrong Realm in the detail files

2007-05-08 Thread Rio Yang
Hi, Recently, I found the wrong realm in the detail files. This log is captured from detail file. Tue May 8 17:46:41 2007 Class = 0x417074696c6f313a313a31383030 User-Name = ABC/[EMAIL PROTECTED] Acct-Status-Type = Start Acct-Session-Id = 464046fecc9c08a5

Re: eap-tls authentication with free radius 1.1.5

2007-05-08 Thread anoop_c
part -- An HTML attachment was scrubbed... URL: https://lists.freeradius.org/pipermail/freeradius-users/attachments/20070508/56754559/attachment-0001.html -- Message: 2 Date: Tue, 8 May 2007 06:48:22 +0100 From: [EMAIL PROTECTED