Re: Location of freeradius log file

2009-07-13 Thread Deepak
On Tue, Jul 14, 2009 at 12:25 AM, John Dennis wrote: > On 07/13/2009 11:35 AM, Deepak wrote: >> >> Hi, >> >> I have following installed. >> >> === >> OS: CentOS 5.3 >> freeradius 2.1.6 (rpm version) >> daloradius 0.9-8 >> mysql 5.0.45 >> === >> >> When I try to check the rad

Re: How to control users traffic ?

2009-07-13 Thread Eric
freeradius-1.1.3-1.4 !! Is it the reason of problem ? > I set reply-name = Session-Octets-Limit in sqlcounter > but freeradius sends Seesion-Timeout in reply with value equal to the > deduct of octets used until now from check-name = Max-Input-Octets. > How should change the session-timeout to

Re: SELinux and FreeRADIUS interplay

2009-07-13 Thread A . L . M . Buxey
Hi, > I recall running into this issue when the control socket was first added > and my recollection is that I contacted our SELinux policy guru (Dan > Walsh) to add support for it. However neither Dan nor myself has > specific memories on this but we think it might have been for Fedora >

MAC Address filtering from a file

2009-07-13 Thread Steven Carr
Hi list, Looking for some pointers if this is possible and to some documentation on howto if it is. I have EAP-PEAP working and would like a second layer of security by locking access to only allowed MAC addresses. Ideally a file containing a MAC address on each line. If the MAC address is in the

Re: SELinux and FreeRADIUS interplay

2009-07-13 Thread John Dennis
On 07/13/2009 12:15 PM, a.l.m.bu...@lboro.ac.uk wrote: hi, whilst working on a test/dev system i noted that the control-socket feature doesnt work if SELinux is runningponder if anyone has the policy for SELinux to allow this to operate otherwise I'll do some digging when I've next got time

Re: Location of freeradius log file

2009-07-13 Thread John Dennis
On 07/13/2009 11:35 AM, Deepak wrote: Hi, I have following installed. === OS: CentOS 5.3 freeradius 2.1.6 (rpm version) daloradius 0.9-8 mysql 5.0.45 === When I try to check the radius log file from daloradius interface, it give me following error: error readin

SELinux and FreeRADIUS interplay

2009-07-13 Thread A . L . M . Buxey
hi, whilst working on a test/dev system i noted that the control-socket feature doesnt work if SELinux is runningponder if anyone has the policy for SELinux to allow this to operate otherwise I'll do some digging when I've next got time to give this community the recipe to allow SELinux to be

Re: Location of freeradius log file

2009-07-13 Thread Nicolas Goutte
Am 13.07.2009 um 17:35 schrieb Deepak: Hi, I have following installed. === OS: CentOS 5.3 freeradius 2.1.6 (rpm version) daloradius 0.9-8 mysql 5.0.45 === When I try to check the radius log file from daloradius interface, it give me following error: error rea

Re: Location of freeradius log file

2009-07-13 Thread A . L . M . Buxey
Hi, > Where do freeradius keep the log file? on most of my systems its in /var/log/radius/ check where your package management put it - or if you run eg slocate then you can do 'locate radius.log' alan - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Location of freeradius log file

2009-07-13 Thread Deepak
Hi, I have following installed. === OS: CentOS 5.3 freeradius 2.1.6 (rpm version) daloradius 0.9-8 mysql 5.0.45 === When I try to check the radius log file from daloradius interface, it give me following error: error reading log file: looked for log file in /var

Re: Failed to find module "sql" Error

2009-07-13 Thread John Dennis
On 07/11/2009 03:37 AM, Deepak wrote: No, there wasn't, in part because the INSTALL, README, etc. don't install as part of the doc install. However, I've fixed this now and those files will now be installed in the doc directory. -- John Dennis Looking to carve out IT costs? www.redhat.com/carv

Re: FreeRadius 2.1.6 + EAP-PEAP issue

2009-07-13 Thread Anatoly Oreshkin
I've now enabled ntdomain in sites-available/inner-tunnel and after that modification, authorization of Vista user succeeded. Thank you very much. I would to like to add MAC address authorization. For this purpose I've added MAC address to users file like this: oreshkin Cleartext-Password := "

Re: Acct-Interim-Interval not working.

2009-07-13 Thread Nirmal Patel
In FC-4 with radius version 0.9 it is working properly. now it is time to upgrade.   in FC-10 Even after making it 720 sec, it is not working. :-( --- On Mon, 7/13/09, Ivan Kalik wrote: From: Ivan Kalik Subject: Re: Acct-Interim-Interval not working. To: "FreeRadius users mailing list" Date

Re: Acct-Interim-Interval not working.

2009-07-13 Thread Ivan Kalik
> I have freeradius version 2.1.1-7 running on fedora core 10. with mysql > and rp-pppoe. >   > I am getting log entry in radacct table when i connect thro' pppoe dialer. > and it updates stoptime, input-octets, output-octets when i disconnect. >   > but during live session it is not updating acct-

Acct-Interim-Interval not working.

2009-07-13 Thread Nirmal Patel
Hi,   I have freeradius version 2.1.1-7 running on fedora core 10. with mysql and rp-pppoe.   In table radgroupreply     1 DEFAULT Service-Type == Framed-User 2 DEFAULT Framed-Protocol = PPP 3 DEFAULT Acct-Interim-Interval = 60 4 DEFAULT NAS-Port-Type = 15   5 DEFAULT Acct-Status-Ty

Re: FreeRadius 2.1.6 + EAP-PEAP issue

2009-07-13 Thread A . L . M . Buxey
hi, the client config means the machine name comes through - reconfigure the client ot NOT use the windows login/password - is under the PEAP settings for the client supplicant. then they'll log in as plain username / password rather than the additional junk. if you want to support random client

Re: Invalid octet string Error

2009-07-13 Thread Deepak
> > You need to list the sqlcounter in authorize (in virtual server) and > instantiate (in radiusd.conf). > > Ivan Kalik > Kalik Informatika ISP > Thanks for the info. Its working now. :-) Regards -- == Registered Linux User #460714 Currently Using Fedora 10, CentOS

Re: problem with checking dhcp-packet type

2009-07-13 Thread Alexander Kubatkin
On Понедельник 13 июля 2009 11:53:23 Alan DeKok wrote: > Alexander Kubatkin wrote: > > when it(fix) come to us? > > > >> If you want the latest version, use git. > > > > last changes 4 days ago > > Did you download the version using git, as I said? The fix was > available there when I sent my

Re: /etc/passwd

2009-07-13 Thread A . L . M . Buxey
Hi, > how i can in sshd pam_radius_auth to do authentication , without checking > the user in /etc/passwd? If i not define user with empty password, the > authentication with pam_radius_auth.so is failed. not a freeradius issue - this is a PAM issue (and SSHD?) the user must exist in the system

Re: problem with checking dhcp-packet type

2009-07-13 Thread Alexander Kubatkin
On Понедельник 13 июля 2009 11:53:23 Alan DeKok wrote: > Alexander Kubatkin wrote: > > when it(fix) come to us? > > > >> If you want the latest version, use git. > > > > last changes 4 days ago > > Did you download the version using git, as I said? The fix was > available there when I sent my

Re: How to control users traffic ?

2009-07-13 Thread Ivan Kalik
> I set reply-name = Session-Octets-Limit in sqlcounter > but freeradius sends Seesion-Timeout in reply with value equal to the > deduct of octets used until now from check-name = Max-Input-Octets. > How should change the session-timeout to Session-Octets-Limit in > auth-reply? That shouldn't

Re: problem with checking dhcp-packet type

2009-07-13 Thread Alan DeKok
Alexander Kubatkin wrote: > when it(fix) come to us? > >> If you want the latest version, use git. > > last changes 4 days ago Did you download the version using git, as I said? The fix was available there when I sent my message. Alan DeKok. - List info/subscribe/unsubscribe? See http://

Re: How to control users traffic ?

2009-07-13 Thread Eric
I set reply-name = Session-Octets-Limit in sqlcounter but freeradius sends Seesion-Timeout in reply with value equal to the deduct of octets used until now from check-name = Max-Input-Octets. How should change the session-timeout to Session-Octets-Limit in auth-reply? what does Session-Octets