Re: DHCP in FreeRADIUS 2

2009-02-09 Thread Michael Schwartzkopff
Am Dienstag, 10. Februar 2009 08:25:36 schrieb Andrew Rikhlivsky: > Hi all. > > Where I can read information about using DHCP opt. 82 in FreeRADIUS 2 ? > - > List info/subscribe/unsubscribe? See > http://www.freeradius.org/list/users.html raddb/sites-available/dhcp -- Dr. Michael Schwartzkopff M

DHCP in FreeRADIUS 2

2009-02-09 Thread Andrew Rikhlivsky
Hi all. Where I can read information about using DHCP opt. 82 in FreeRADIUS 2 ? - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

outer identity anonymous is being rejected

2009-02-09 Thread Godfrey Peart
My FR 2.1 is set to authenticate users via PEAP + EAP-TTLS, this works fine but some users are being rejected because their wireless client allows the setting of an outer identity: anonymous or something else, which is not a valid username. So it's being rejected. How do I get the inner identity

PEAP/MS-CHAPv2 for some, Kerberos (or PAM) for others...

2009-02-09 Thread sth
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi folks, First off, thanks to Alan and the "Configuring Authentication against Active Directory" HOWTO[1] for assistance in getting 802.1X authenticating against AD for WPA2 Enterprise. I currently have PEAP/MS-CHAPv2 authenticating against AD, TTLS

Re: Installation Problem

2009-02-09 Thread Will D. Spann
Alan DeKok, Marcelo Freitas, >> I'm getting the same Make error when I try to compile this version >> (v2.1.3) on openSUSE 11.1 (x64). I took your advice to Marcelo & >> restarted from a fresh source tree, but got the same result both times. >> The ./configure script ran without errors. Here's

Re: Problem with udpfromto in version 2.1.1 - please help

2009-02-09 Thread Will D. Spann
Alan DeKok, >> Unfortunately, I'm getting the same negative results when running the >> recommended initial radtest test "radtest test test localhost 0 >> testing123". The following is the output I get. >> >> radclient: socket: cannot initialize udpfromto: Function not implemented >> >> I'm

Override pam_auth in virtual server

2009-02-09 Thread Markus Gaugusch
Hi, I'm using freeradius 2.1.1 (openSUSE 11.1 version). I want to implement two virtual hosts, both using pam authentication, but different pam config. According to the comments in modules/pam, pam_auth can be overridden in authorize config, but unfortunately I don't know how. I just wrote t

Re: Error binding port to ipv6 address

2009-02-09 Thread Leigh Martell
Try just 'ps -e|grep radius' that will catch freeradius aswell as radiusd which it is called on some. -- Leigh On Mon, Feb 9, 2009 at 12:02 PM, D'AVELLA STEFANO < stefano.dave...@alcatel-lucent.com> wrote: > *Be sure that no other freeradius is running and also that you have > enough rights to

RE: Error binding port to ipv6 address

2009-02-09 Thread D'AVELLA STEFANO
Be sure that no other freeradius is running and also that you have enough rights to open such a port. Look in your inet.d or similar to avoid that another service is run instead of the planned freeradius. Thanks for the quick answer. I have thought the same because also some old mailing list po

Re: PAP authentication and multiple LDAP userpassword attributes

2009-02-09 Thread Alan DeKok
Christophe Saillard wrote: > I'm working on upgrading from FR 1.1.7 to FR 2.1.3. > > I use FR for EAP-TTLS/PAP authentication with LDAP. > > FR 1.1.7 successfully authenticates users with multiple LDAPuserpassword > attributes which are stored with crypt and/or MD5 hash, the passwords > are not t

Re: Error binding port to ipv6 address

2009-02-09 Thread Nicolas Goutte
Am 09.02.2009 um 17:17 schrieb D'AVELLA STEFANO: Hello, I am new to Freeradius. I am running Freeradius 2.1.0 on Ubuntu 8.10, built from source. I have already read all the documentation I could find in the config files and in the wiki. The machine has two network interfaces, eth0 and e

Error binding port to ipv6 address

2009-02-09 Thread D'AVELLA STEFANO
Hello, I am new to Freeradius. I am running Freeradius 2.1.0 on Ubuntu 8.10, built from source. I have already read all the documentation I could find in the config files and in the wiki. The machine has two network interfaces, eth0 and eth1, the first configured with ipv4 and the second with i

Re: Reading triplets from HLR

2009-02-09 Thread Alan DeKok
bruno.fa...@indt.org.br wrote: > I'm trying to use EAP-SIM authentication for interworking between > WLAN/3G networks. > We have a 2G/3G HLR wich operates both SS7 and SIGTRAN. > I'm wondering if FreeRadius has any mechanism to fecth authentication > vectors from the HLR. No. You will have to s

Re: Inner identity in accounting logs

2009-02-09 Thread Jonathan Gazeley
Arran Cudbard-Bell wrote: As far as i'm aware this has never worked, which is why I still return attributes from the inner tunnel and get it that way. eap { peap { use_tunneled_reply = yes virtual_server = "local.user.inner" } } server local.u

Reading triplets from HLR

2009-02-09 Thread bruno.faria
Hi Users of FreeRadius, I'm trying to use EAP-SIM authentication for interworking between WLAN/3G networks. We have a 2G/3G HLR wich operates both SS7 and SIGTRAN. I'm wondering if FreeRadius has any mechanism to fecth authentication vectors from the HLR. I've seen a topic this the same question b

Re: sqlippool : undefined symbol: rlm_sql_query

2009-02-09 Thread Alan DeKok
Sebastian Krieger wrote: > I want to get freeradius running with the sqlippool module and mysql > backend on Ubuntu 8.04 LTS Server. > Everything works so far, but it seems still impossible to enable the > sqlippool on Debian based systems. This should be fixed in 2.1.4 when it's released. Or,

sqlippool : undefined symbol: rlm_sql_query

2009-02-09 Thread Sebastian Krieger
Hi, I want to get freeradius running with the sqlippool module and mysql backend on Ubuntu 8.04 LTS Server. Everything works so far, but it seems still impossible to enable the sqlippool on Debian based systems. At first I tried the freeradius 1.1.7-1build4 packages supplied by the distribut

users

2009-02-09 Thread qrt
Hello, This is my users file. It works. But I have the impression that this could be optimized. Any suggestions? DEFAULT Auth-Type = opendirectory Fall-Through = 1 DEFAULT Ldap-Group == "wlan_test", Airespace-Wlan-Id == 4 Auth-Type := opendirectory, Service-Type = Login