Re: Removing domain prefix from login

2011-11-14 Thread Alejandro Gandara
Administrator OptareSolutions 2011/11/11 Phil Mayers p.may...@imperial.ac.uk On 11/11/11 09:52, Alejandro Gandara wrote: this is the short view: [peap] The users session was previously rejected: returning reject (again.) [peap] *** This means you need to read the PREVIOUS messages

Re: Removing domain prefix from login

2011-11-11 Thread Alejandro Gandara
2011/11/11 Phil Mayers p.may...@imperial.ac.uk On 11/11/2011 07:46 AM, Alejandro Gandara wrote: I got erros anyways. I've attached debug output The debug output didn't make it through; I guess it was too big. Use a pastebin, or put it inline in the email? this is the short view

Re: Removing domain prefix from login

2011-11-10 Thread Alejandro Gandara
Hi Alan, Thanks for your answers and excuse me for my english fill of mistakes. 2011/11/10 Alan DeKok al...@deployingradius.com Alejandro Gandara wrote: I'm authenticating users in RADIUS against LDAP, if I login from computer with 802.1x configured and users and password taken from domain

Re: Removing domain prefix from login

2011-11-10 Thread Alejandro Gandara
could give. Tell me. 2011/11/10 Alan DeKok al...@deployingradius.com Alejandro Gandara wrote: This is my debug output: Well... you deleted a lot of the default configuration. It now doesn't work. I'm not sure why. Use the default configuration. It works. Change as little as possible

Re: Removing domain prefix from login

2011-11-10 Thread Alejandro Gandara
2011/11/10 Phil Mayers p.may...@imperial.ac.uk On 10/11/11 08:15, Alejandro Gandara wrote: Hi Alan, Thanks for your answers and excuse me for my english fill of mistakes. 2011/11/10 Alan DeKok al...@deployingradius.com mailto:aland@deployingradius.**com al...@deployingradius.com

Re: Removing domain prefix from login

2011-11-10 Thread Alejandro Gandara
2011/11/10 Alan Buxey a.l.m.bu...@lboro.ac.uk Hi, rad_recv: Access-Request packet from host 172.20.40.11 port 1025, id=21, length=218 snip User-Name = OPTARE\\brouco I know this, thats why i need try to remove this prefix. At first i thought i could do with module/realm. But I

Re: Removing domain prefix from login

2011-11-10 Thread Alejandro Gandara
2011/11/10 Phil Mayers p.may...@imperial.ac.uk Ok, your debug says: rad_recv: Access-Request packet from host 172.20.40.11 port 1025, id=21, length=218 Framed-MTU = 1480 NAS-IP-Address = 172.20.40.11 NAS-Identifier = SW-Priv-1-1 User-Name = OPTARE\\brouco

Removing domain prefix from login

2011-11-09 Thread Alejandro Gandara
I'm authenticating users in RADIUS against LDAP, if I login from computer with 802.1x configured and users and password taken from domain automatic. Im getting wrong authenticated because the login has the following chain. DOMAIN\\Users How can i avoid that radius read the prefix? I've tried to

Ippool giving gateway addresses

2011-10-17 Thread Alejandro Gandara
Hi List, I have two doubts which I couldn't resolv properly. I'll be so pleased if someone could give me a hand. 1º There is any way to configure ippool to give a gateway for each configured pool? 2º How I could check the bind addresses in db.* files? 3º Radiuis-Framed-Routing is used to

Re: Ippool giving gateway addresses

2011-10-17 Thread Alejandro Gandara
2011/10/17 Fajar A. Nugraha l...@fajar.net On Mon, Oct 17, 2011 at 2:18 PM, Alejandro Gandara agand...@optaresolutions.com wrote: Hi List, I have two doubts which I couldn't resolv properly. I'll be so pleased if someone could give me a hand. 1º There is any way to configure

Re: Ippool giving gateway addresses

2011-10-17 Thread Alejandro Gandara
2011/10/17 Fajar A. Nugraha l...@fajar.net On Mon, Oct 17, 2011 at 4:21 PM, Alejandro Gandara agand...@optaresolutions.com wrote: 2º How I could check the bind addresses in db.* files? try http://wiki.freeradius.org/Rlm_ippool_tool I'd recommend you use rlm_sqlippool instead though

Re: Multiple NAS freeradius

2011-10-17 Thread Alejandro Gandara
2011/10/4 Arran Cudbard-Bell a.cudba...@freeradius.org On 4 Oct 2011, at 13:32, Alejandro Gandara wrote: Hi list, Im using freeradius 2.1.10 with ldap and I have a doubt. Im testing radius with two NAS , first one an openvpn service and the other one is a switch Procurve. My question

Framed-IP-Address null value

2011-10-17 Thread Alejandro Gandara
Hello all! Im testing freeradius in a preproduction machine. I've configured It with freeradius + Ldap. At this moment I only need read from ldap these attributes: user, password and Framed-IP-Address to assing an IP to an specific User. The problem cames when i use this: in

Re: Framed-IP-Address null value

2011-10-17 Thread Alejandro Gandara
2011/10/17 Alan DeKok al...@deployingradius.com Alejandro Gandara wrote: The problem cames when i use this: .. update reply { Framed-IP-Address := %{Client-IP-Address} } Sorry I meantFramed-IP-Address := %{Framed-IP-Address

Mac access mixed ldap access same NAS

2011-10-05 Thread Alejandro Gandara
Hi list, does someone know if Its possible mix MAC auth with ldap AUTH in the same NAS. I mean, I have multiple connection to one NAS but a few users will access through mac address, and others will access trhough auth ldap + passwords. Nowadays Ive configured ldap access but I dont know how to

Multiple NAS freeradius

2011-10-04 Thread Alejandro Gandara
Hi list, Im using freeradius 2.1.10 with ldap and I have a doubt. Im testing radius with two NAS , first one an openvpn service and the other one is a switch Procurve. My question is the following: Can I configure the openvpn nas to read some attribute from the ldap ( as framedipaddress)

Re: Multiple NAS freeradius

2011-10-04 Thread Alejandro Gandara
Thanks very much for the fastest and efectivest answer. 2011/10/4 Arran Cudbard-Bell a.cudba...@freeradius.org On 4 Oct 2011, at 13:32, Alejandro Gandara wrote: Hi list, Im using freeradius 2.1.10 with ldap and I have a doubt. Im testing radius with two NAS , first one an openvpn

Re: Documentation about Freeradius + Openldap

2011-08-25 Thread Alejandro Gandara
Hi Alan DeKok, Thanks for your answer and your patience. Ive read what you said and I will apply it as better as i can. regards, Alejandro Gándara Álvarez 2011/8/24 Alan DeKok al...@deployingradius.com Alejandro Gandara wrote: We need to learn how assign IP or HOSTNAME ACCESS LIST

Documentation about Freeradius + Openldap

2011-08-24 Thread Alejandro Gandara
Hi list, Im new in this list and implementig Freeradius. Im installing and configuring Freeradius 2.1.10 over Linux Debian Squeeze. We have designed a quite difficult architecture to authenticate users. I've been looking for many hours for advance and specific documentation to manage freeradius,

Re: Documentation about Freeradius + Openldap

2011-08-24 Thread Alejandro Gandara
System Administrator 2011/8/24 Alan DeKok al...@deployingradius.com Alejandro Gandara wrote: Im new in this list and implementig Freeradius. Im installing and configuring Freeradius 2.1.10 over Linux Debian Squeeze. We have designed a quite difficult architecture to authenticate users. I've