Re: Voip database

2010-12-21 Thread miha-
Thank you @Johan Meiring for that. It is not my intend to spam the group and asking same question again and again. Belive me that I have done everything that you said (I changed secret on the NAS and ond the radius and I restarted both,...). So please help me out with this problem. I can see

Re: Voip database

2010-12-21 Thread Johan Meiring
On 2010/12/21 10:01 AM, miha- wrote: Thank you @Johan Meiring for that. It is not my intend to spam the group and asking same question again and again. Belive me that I have done everything that you said (I changed secret on the NAS and ond the radius and I restarted both,...). So please help

Re: Voip database

2010-12-21 Thread miha-
1. My ip 1.2.3.4 (if will not post right one for security reasons) 2. Configuration on NAS ##- Activate RADIUS connection setProperty com.centile.connectors.aaa.watchdog.enable false setProperty com.centile.connectors.aaa radius setProperty com.centile.connectors.aaa.localserv intraswitch

Re: Voip database

2010-12-21 Thread Alan DeKok
miha- wrote: ##- Activate RADIUS connection setProperty com.centile.connectors.aaa.watchdog.enable false setProperty com.centile.connectors.aaa radius setProperty com.centile.connectors.aaa.localserv intraswitch setProperty com.centile.connectors.aaa.localpass 1122 setProperty

Re: FreeRADIUS exiting with Signal 11 on FreeBSD

2010-12-21 Thread Alan DeKok
Danial wrote: Here's the full output from gdb: ..l. #4 0x0806c852 in rad_assert_fail (file=Could not find the frame base for rad_assert_fail. ) at util.c:365 #5 0x0806af44 in request_dequeue (request=0x28542b7c, fun=0xbf9fef8c) at threads.c:412 Ugh. Something is free'ing the request

RE: Voip database

2010-12-21 Thread Miha Zoubek
Belive me that I am asking centile people to. And to let you know I have begun asking centile.com before I made first post on this forum. thanks! Date: Tue, 21 Dec 2010 09:44:47 +0100 From: al...@deployingradius.com To: freeradius-users@lists.freeradius.org Subject: Re: Voip database

Re: Voip database

2010-12-21 Thread Alan DeKok
Miha Zoubek wrote: Belive me that I am asking centile people to. And to let you know I have begun asking centile.com before I made first post on this forum. OK, that's better. But FreeRADIUS works. It really does. Try it with ntradping on another machine. There *only* issues are

Re: Voip database

2010-12-21 Thread Johan Meiring
On 2010/12/21 10:26 AM, miha- wrote: ##- Activate RADIUS connection setProperty com.centile.connectors.aaa.watchdog.enable false setProperty com.centile.connectors.aaa radius setProperty com.centile.connectors.aaa.localserv intraswitch setProperty com.centile.connectors.aaa.localpass 1122

Re: Use Event-Timestamp for Accounting Start/Stop with MySQL

2010-12-21 Thread Alan DeKok
Juri Glaß wrote: I would like to write the Event-Timestamp from Accounting Start/Stop messages to my MySQL database instead of the server side time. I tried to configure the dialup.conf, but it doesn't work properly. I replaced %S with %{Event-Timestamp}, the result is -00-00 00:00:00

Re: Verify certificate - mac mapping in openldap..

2010-12-21 Thread Alan DeKok
Christ Schlacta wrote: so I've done some research, looking at how freeradius works now, it manages to identify hostnames from certificates which are issued to a given host, blah blah blah. suffice it to say when lain authenticates, it knows it's lain. I want to make sure that lain's MAC

FW: Huntgroups question.

2010-12-21 Thread Ramon Escriba
Ok,I 'll try to crarify the question. Does anybody know why in hungroups this match works: XXX NAS-IP-Address == X.Y.Z.W or XXX NAS-IP-Address == X.Y.Z.W, NAS-Port-Id == 1:33 But not this one: XXX NAS-IP-Address==X.Y.Z.W, NAS-Port=1033,

Re: PEAP/EAP-GTC proxy?

2010-12-21 Thread Alan DeKok
mgmitch wrote: OK, upgraded to 2.1.10 as suggested. Thanks. However, I have a different issue now -- seems that the passcode is not being proxied over to the home server. I only see a username, nas IP address and proxy state being proxied in the access-request packet but no user-password.

Re: Use Event-Timestamp for Accounting Start/Stop with MySQL

2010-12-21 Thread Eddie Stassen
On Tue, Dec 21, 2010 at 11:26 AM, Alan DeKok al...@deployingradius.com wrote: Juri Glaß wrote: I would like to write the Event-Timestamp from Accounting Start/Stop messages to my MySQL database instead of the server side time. I tried to configure the dialup.conf, but it doesn't work

Re: Voip database

2010-12-21 Thread Fajar A. Nugraha
On Tue, Dec 21, 2010 at 3:52 PM, Miha Zoubek miha_zou...@hotmail.com wrote: Belive me that I am asking centile people to. And to let you know I have begun asking centile.com before I made first post on this forum. I noticed from you earlier debug output that the NAS is sending different

RE: Voip database

2010-12-21 Thread Miha Zoubek
Thank you very much for you help!!! I will ask them that and that I will report back! Thanks guys! miha Date: Tue, 21 Dec 2010 18:11:21 +0700 Subject: Re: Voip database From: w...@fajar.net To: freeradius-users@lists.freeradius.org On Tue, Dec 21, 2010 at 3:52 PM, Miha Zoubek

Re: Use Event-Timestamp for Accounting Start/Stop with MySQL

2010-12-21 Thread Alan DeKok
Eddie Stassen wrote: 2.1.10 allows you to use {%Event-Timestamp#} to get date type attributes printed in numeric format. It doesn't seem to be documented, but its in the code. $ man unlang It's there. There's enough stuff in the server that I'm starting to forget what it can do.

Re: Use Event-Timestamp for Accounting Start/Stop with MySQL

2010-12-21 Thread Eddie Stassen
On Tue, Dec 21, 2010 at 3:28 PM, Alan DeKok al...@deployingradius.com wrote: Eddie Stassen wrote: 2.1.10 allows you to use {%Event-Timestamp#}  to get date type attributes printed in numeric format.  It doesn't seem to be documented, but its in the code. $ man unlang  It's there. Thanks,

tolower seems to result in unneeded reject of mac address, or I am using it wrong

2010-12-21 Thread Schaatsbergen, Chris
Hi all, I am not very used to working with freeradius unfortunately and I am using the Mac Auth solutionhttp://wiki.freeradius.org/Mac-Auth as described on your website and other then the case sensitivity it was working correctly. I was looking for a way to change the Calling station id to

AW: tolower seems to result in unneeded reject of mac address, or I am using it wrong

2010-12-21 Thread Schaatsbergen, Chris
Hi again all, Sorry, stupid me. Not key = %{tolower:%{Calling-Station-ID}} But key = %{tolower:%{Calling-Station-ID}} Now it works again properly. Apologies, Chris Schaatsbergen Von: freeradius-users-bounces+chris.schaatsbergen=aleo-solar...@lists.freeradius.org

dont distribute certificate

2010-12-21 Thread Julian Labus
Hi, I am setting up a FreeRADIUS server for our wireless network and I was asked if I can disable the distribution of the public certificate I search around in the www but could not find a solution for this. Is there a way to implement this feature in my setup? I am using FreeRADIUS 2.1.10

Re: dont distribute certificate

2010-12-21 Thread John Dennis
On 12/21/2010 09:43 AM, Julian Labus wrote: Hi, I am setting up a FreeRADIUS server for our wireless network and I was asked if I can disable the distribution of the public certificate I search around in the www but could not find a solution for this. Is there a way to implement this feature in

Re: dont distribute certificate

2010-12-21 Thread Alan Buxey
Hi, I am setting up a FreeRADIUS server for our wireless network and I was asked if I can disable the distribution of the public certificate I search around in the www but could not find a solution for this. Is there a way to implement this feature in my setup? I'm seeking clarification of

Re: dont distribute certificate

2010-12-21 Thread Julian Labus
Yes, I was talking about the TLS public certificate, sorry for leaving this out. The reason for that is that you only have the ability to connect to the hotspot if you have manually installed the public cert on your client before connecting. On 12/21/2010 04:10 PM, John Dennis wrote: On

Re: dont distribute certificate

2010-12-21 Thread John Dennis
On 12/21/2010 10:22 AM, Julian Labus wrote: Yes, I was talking about the TLS public certificate, sorry for leaving this out.The reason for that is that you only have the ability to connect to the hotspot if you have manually installed the public cert on your client before connecting. No, I

Re: dont distribute certificate

2010-12-21 Thread Alan Buxey
Hi, Yes, I was talking about the TLS public certificate, sorry for leaving this out.The reason for that is that you only have the ability to connect to the hotspot if you have manually installed the public cert on your client before connecting. No, I think you're confused. Perhaps

freeradius and /etc/apsswd

2010-12-21 Thread gahn
hi, how could i use /etc/passwd to authenticate users? here is my config in users and radiusd doesn't like it: dougService-Type := System Juniper-Local-User-Name = ops manpage for radiusd states: users Here the users are defined. On a typical setup, this file mainly

Re: Verify certificate - mac mapping in openldap..

2010-12-21 Thread Christ Schlacta
I read most of what you said, and spend a few hours with the wifi down for maintenance while noone was on, and got it working. it now authenticates macAddress == Calling-Station-ID when the mac is available, and doesn't fail when it's not available, and works when it is available. There's

Re: SQL modul

2010-12-21 Thread Norman Diamond
I have the same problem as Miha Zoubek. Alan DeKok wrote: Miha Zoubek wrote: at the end of this file I am getting massage Failed to load module sql. Does your system have the rlm_sql library? Did you configure the SQL module? In freeradius-server 2.1.9-1.7 in OpenSuse 11.3, directory

Re: SQL modul

2010-12-21 Thread Fajar A. Nugraha
On Wed, Dec 22, 2010 at 9:07 AM, Norman Diamond n0diam...@yahoo.co.jp wrote: radiusd -XC can't load the module for SQL. What else changed?  Why did it break?  And most importantly, how can I fix it? What does the debug log show? Does it complain about missing library or incorrect

Re: SQL modul

2010-12-21 Thread Norman Diamond
Fajar A. Nugraha wrote: On Wed, Dec 22, 2010 at 9:07 AM, Norman Diamond wrote: radiusd -XC can't load the module for SQL. What else changed? \xA0Why did it break? \xA0And most importantly, how can I fix it? What does the debug log show? OK, I ran radiusd -XXXC and it's the same. Output

Re: SQL modul

2010-12-21 Thread Fajar A. Nugraha
2010/12/22 Norman Diamond n0diam...@yahoo.co.jp: Fajar A. Nugraha wrote: What does the debug log show? OK, I ran radiusd -XXXC and it's the same.  Output lines now have the word Debug in them but the contents are the same.  It successfully links to rlm_realm and configures that, as used by

Re: SQL modul

2010-12-21 Thread Norman Diamond
Fajar A. Nugraha wrote: Norman Diamond wrote: Fajar A. Nugraha wrote: What does the debug log show? OK, I ran radiusd -XXXC and it's the same. \xA0Output lines now have the word Debug in them but the contents are the same. \xA0It successfully links to rlm_realm and configures that, as

Re: FreeRADIUS exiting with Signal 11 on FreeBSD

2010-12-21 Thread Hugh Blandford
Hi Alan, Daniel and all, On 21/12/2010 19:46, Alan DeKok wrote: Danial wrote: Here's the full output from gdb: ..l. #4 0x0806c852 in rad_assert_fail (file=Could not find the frame base for rad_assert_fail. ) at util.c:365 #5 0x0806af44 in request_dequeue (request=0x28542b7c,

Re: SQL modul

2010-12-21 Thread Fajar A. Nugraha
2010/12/22 Norman Diamond n0diam...@yahoo.co.jp: Fajar A. Nugraha wrote: Norman Diamond wrote: Fajar A. Nugraha wrote: What does the debug log show? OK, I ran radiusd -XXXC and it's the same.  Output lines now have the word Debug in them but the contents are the same.  It successfully

Re: SQL modul

2010-12-21 Thread Norman Diamond
Fajar A. Nugraha wrote: Norman Diamond wrote: Fajar A. Nugraha wrote: Norman Diamond wrote: Fajar A. Nugraha wrote: What does the debug log show? OK, I ran radiusd -XXXC and it's the same. Output lines now have the word Debug in them but the contents are the same. It successfully links

Re: freeradius and /etc/apsswd

2010-12-21 Thread Alan DeKok
gahn wrote: how could i use /etc/passwd to authenticate users? List unix in the authorize section of raddb/sites-available/default. here is my config in users and radiusd doesn't like it: dougService-Type := System That makes no sense. Juniper-Local-User-Name = ops

Re: SQL modul

2010-12-21 Thread Fajar A. Nugraha
2010/12/22 Norman Diamond n0diam...@yahoo.co.jp: /etc/raddb/sites-enabled/inner-tunnel[118]: Failed to load module sql. ... and if you've included the debug output from start you'd see that sql.conf was never loaded. YOU saw that and I thank you.  I would not have known to look for that.