Re: Memory leak or misunderstanding - rlm_perl?

2009-10-08 Thread Alexander Clouter
Alan DeKok al...@deployingradius.com wrote: I am running freeradius-2.1.6 with all AAA logick hidden in perl module, thus using rlm_perl. Having about 1000-1 client connections per day radiusd consumes about 1Gb of memory per day (I restart it daily). The only (possibly) important

Re: Memory leak or misunderstanding - rlm_perl?

2009-10-08 Thread Mihail Vasiliev
Alexander Clouter Alan DeKok al...@deployingradius.com wrote: I am running freeradius-2.1.6 with all AAA logick hidden in perl module, thus using rlm_perl. Having about 1000-1 client connections per day radiusd consumes about 1Gb of memory per day (I restart it daily). The only

Freeradius can't authenticate pptp users from Windows XP to LDAP

2009-10-08 Thread tede
Hi, Sorry to bother, I've been reading almost every post here that talks about the same problem that I'm encountering, but I didn't find any solution for my trouble. Here is the thing, I'm using freeradius + LDAP + pptpd, to authenticate windows VPN Users. When I put users Cleartext-password

Re: Freeradius can't authenticate pptp users from Windows XP to LDAP

2009-10-08 Thread Ivan Kalik
Debug: rlm_ldap: performing search in ou=vpn,dc=home, with filter (uid=light) Debug: rlm_ldap: No default NMAS login sequence Debug: rlm_ldap: looking for check items in directory... Debug: rlm_ldap: looking for reply items in directory... Debug: WARNING: No known good password was found in

Manage IPv6 pools using freeradius

2009-10-08 Thread Ram Akuka
Hi , I want to manage my ipv6 users using ip_pool from FreeRadius. And I have few question regarding this. 1. how can I use ip_pool to allocate ipv6 address to a users? 2. How can I assign ipv6 address to client based on the NAS he came from?(different prefix for different NAS).

Re: Freeradius can't authenticate pptp users from Windows XP to LDAP

2009-10-08 Thread tede
Ivan Kalik wrote: Debug: rlm_ldap: performing search in ou=vpn,dc=home, with filter (uid=light) Debug: rlm_ldap: No default NMAS login sequence Debug: rlm_ldap: looking for check items in directory... Debug: rlm_ldap: looking for reply items in directory... Debug: WARNING: No known good

Re: Freeradius can't authenticate pptp users from Windows XP to LDAP

2009-10-08 Thread nf-vale
You can add NT / LM pairs to each LDAP user object. You must include the samba.schema into the ldap server schemas. Ex: sambaNTPassword: CAF13D4F321E608B27FD75D2549BA53C sambaLMPassword: 02D093CE93038E2FAAD3B435B51404EE This way pptp MSCHAP auth will work. Nelson Vale On Thursday 08

Re: Freeradius can't authenticate pptp users from Windows XP to LDAP

2009-10-08 Thread Ivan Kalik
Just had a look at your ldap antries again. This doesn't look right: userPassword:: dGVzdGVy Shouldn't there be just one colon? Ivan Kalik Kalik Informatika ISP You can add NT / LM pairs to each LDAP user object. You must include the samba.schema into the ldap server schemas. Ex:

EAP-GTC supplicant for Windows XP

2009-10-08 Thread Vincenzo Agosti
Hello, anyone have to suggest a free EAP-GTC supplicant for Windows XP? -- Vincenzo Agosti Università degli Studi di Salerno Ufficio Sistemi Tecnologici Coordinamento Servizi Informatici Via Ponte don Melillo, s.n.c. 84084 -

Re: Freeradius can't authenticate pptp users from Windows XP to LDAP

2009-10-08 Thread nf-vale
On Thursday 08 October 2009 15:05:24 Ivan Kalik wrote: Just had a look at your ldap antries again. This doesn't look right: userPassword:: dGVzdGVy Shouldn't there be just one colon? Two colons means that it's a BASE64 encoded field. Ivan Kalik Kalik Informatika ISP You can add NT /

over 30 radiusd processes

2009-10-08 Thread Craig Campbell
21400 0 03:31 ?00:00:00 /usr/local/sbin/radiusd Thanks, -craig __ Information from ESET Smart Security, version of virus signature database 4490 (20091008) __ The message was checked by ESET Smart Security. http://www.eset.com - List info/subscribe/unsubscribe

radiusExpiration attirbute declared in the LdapGroup

2009-10-08 Thread aangles
Hello, I would Like to know if there is a way to define an expiration time for all those users which belong to an LDAP Group, instead of defining this attribute for each of those users? Moreover, after expiration time , RADIUS send an access-reject to the user. Is there any tool or something

Re: over 30 radiusd processes

2009-10-08 Thread Craig Campbell
__ Information from ESET Smart Security, version of virus signature database 4490 (20091008) __ The message was checked by ESET Smart Security. http://www.eset.com __ Information from ESET Smart Security, version of virus signature database 4490 (20091008

Re: radiusExpiration attirbute declared in the LdapGroup

2009-10-08 Thread Ivan Kalik
I would Like to know if there is a way to define an expiration time for all those users which belong to an LDAP Group, instead of defining this attribute for each of those users? if(Ldap-Group == some_group) { update control { Expiration := when } } Moreover, after

Help with freeradius

2009-10-08 Thread Jason Berenson
Greetings, I am migrating from Solaris 8 to Solaris 10 and in the process upgrading freeradius from 0.9.3 to 2.1.7. I'm having some difficulty in getting it to work. I've pretty much copied the users and radiusd.conf files over from the old server. Here's some output with debugging turned on.

Re: Help with freeradius

2009-10-08 Thread Ivan Kalik
I am migrating from Solaris 8 to Solaris 10 and in the process upgrading freeradius from 0.9.3 to 2.1.7. I'm having some difficulty in getting it to work. I've pretty much copied the users and radiusd.conf files over from the old server. Here's some output with debugging turned on. This is

Re: Help with freeradius

2009-10-08 Thread Jason Berenson
Except it's not. That's what I used to login to the box. It's a temp password of course. -Jason Ivan Kalik wrote: I am migrating from Solaris 8 to Solaris 10 and in the process upgrading freeradius from 0.9.3 to 2.1.7. I'm having some difficulty in getting it to work. I've pretty much

Re: EAP-GTC supplicant for Windows XP

2009-10-08 Thread Fajar A. Nugraha
2009/10/8 Vincenzo Agosti vago...@unisa.it: Hello, anyone have to suggest a free EAP-GTC supplicant for Windows XP? These are what I tested (with freeradius + LDAP + PEAP + GTC) and works on my setup: - http://www.securew2.com/ (a little confusinng to setup for me, but it works) -

Re: Freeradius can't authenticate pptp users from Windows XP to LDAP

2009-10-08 Thread Edgard NDOUNA
Hi Nelson , Thank you to you all, for your help. I've lost so much time trying to find a solution for this. Just by adding NT/LM pairs to each LDAP users object, everything works fine now :) How come couldn't I get this tip before ? That would have saved me a lot of time. Anyway, now

when to use exec / echo external script query

2009-10-08 Thread cory
freeradius 1.1.3-1.1 freeradius mysql Redhat Linux Fedora 6 I was looking for information on at what point i would fire an external script. What i wish to do is once a client is authenticated and a framed-ip address allocated to fire an external script to push the IP address into my postfix