Re: update reply problem

2012-03-26 Thread Ana Gallardo Gómez
Hello again, I can't reolve my problem and I don't know if is a bug o a configuration error... update reply { Codigo-Reject = Imposible-Contactar-Backend } Operator = act like := ¿ideas? thanks very much :: Ana Gallardo Gómez

Re: MAC-Auth issues with rlm_perl

2012-03-26 Thread Phil Mayers
On 03/26/2012 10:01 AM, Glen Harris wrote: Server: Debian 6 (Squeeze) 2.6.32-5-amd64 FreeRadius: 2.1.10 (Debian package) Client: HP E-MSM460 AP (MSCHAPv2, Use message authenticator) Authentication methods for the MSM460 are: MSCHAPv2, MSCHAP, CHAP, EAP MD5 and PAP. I'm trying to set up a

Re: newbiie

2012-03-26 Thread Khapare Joshi
Hello there, I am now progressing - i think. but got stucked. I enabled the ldap plugin. radiusd -X display all the correct info. but when try to connect vpn from windows client. here is the error i get. Maybe you guys have some tips on it. GRE: read(fd=6,buffer=611860,len=8196) from PTY failed:

Re: newbiie

2012-03-26 Thread Alan DeKok
Khapare Joshi wrote: I am now progressing - i think. but got stucked. I enabled the ldap plugin. radiusd -X display all the correct info. but when try to connect vpn from windows client. here is the error i get. Maybe you guys have some tips on it. ... Mar 26 10:58:17 blade201 pppd[21163]:

Re: TCP/TLS - radsec / application

2012-03-26 Thread Jason Rohm
I am a little concerned about the 'save some EAP stuff that I'm not using and was able to disable around' - you will need to ensure that OpenSSL-devel packages are installed so that you can compile in the TLS support. The EAP stuff was related to EAP-Pwd or something. It was a runtime problem

Re: update reply problem

2012-03-26 Thread Alan DeKok
Ana Gallardo Gómez wrote: I can't reolve my problem and I don't know if is a bug o a configuration error... update reply { Codigo-Reject = Imposible-Contactar-Backend } Is this only in Post-Auth-Type Reject? Operator = act like := ¿ideas? What

load balancing and if statements

2012-03-26 Thread Scott McLane Gardner
FR 2.1.10 on Linux I want to load balance my LDAP servers, but I also want to do some checking for group membership. Reading the documentation at http://wiki.freeradius.org/Load-balancing#Interaction+with+%22if%22+and+%22 else%22 makes me think I can use if and elsif statements in a load

RE: load balancing and if statements

2012-03-26 Thread Brian Julin
Scott McLane Gardner Wrote: Here is the configuration I am attempting: load-balance { ldap1 if (Ldap-Group == NET Staff) { I cannot answer your question about if statements, but this much is clear: the Ldap-Group check attribute will query the ldap module that was

Re: load balancing and if statements

2012-03-26 Thread Alan Buxey
hi, a quick glance at your question and i'd say you be better off using simple entries in the users file - simple check items (use huntgroups for your NAS addresses) with LDAP groups. match the good stuff, set reply match the bad stuff, set reject. alan - List info/subscribe/unsubscribe? See