Adding a ldap.attrb Dialuppassword to radius-ldap.schema

2007-07-19 Thread Jóhann B. Guðmundsson
RHEL5/FreeRadius freeradius-1.1.3-1.2.el5/Fedora Directory server. Scenario... Currently trying to move all our dial up user entry's from users file to ldap ( FDS ) and need to add an attribute in radius ldap schema which would contain clear text password of the dial in password for the dial

Re:Re: pptp + vpn + freeradius Acct-Status-Type Alive

2007-03-13 Thread Jóhann B. Guðmundsson
-CHAP,Pool-Name := staff,Simultaneous-Use := 1 Acct-Interim-Interval = 3600, --- set to one hour Fall-Through = no Best regards. Jóhann B Jóhann B. Guðmundsson wrote: Alan DeKok wrote: Jóhann B. Guðmundsson wrote: Is it possible to enable Acct-Status-Type Alive

Freeradius dies if it cant resolve clients...

2007-02-14 Thread Jóhann B. Guðmundsson
programming Best regards Johann B. -- Jóhann B. Guðmundsson. RHCE,CCSA Unix Kerfistjóri. Kerfistjórn. Reiknistofnun Háskóla Íslands. Tæknigarði, Dunhaga 5. Rafpóstur: [EMAIL PROTECTED] 107 Reykjavík. Sími: 525-4267 Ísland

Re:Re: Freeradius dies if it cant resolve clients...

2007-02-14 Thread Jóhann B. Guðmundsson
Alan DeKok. Yes. The answer is to not use DNS names for clients. Use IP addresses. True if the radiusd daemon doesnt die if cant reach the IP addresses :) Will test it tomorrow when I get back to work, and switch immidiedly if that's the case. If not then it's just bind on a *nix platform

Re:Re: Freeradius dies if it cant resolve clients...

2007-02-14 Thread Jóhann B. Guðmundsson
Dennis Skinner Or list them in /etc/hosts Wouldnt recommend it... Best regards Johann B. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

pptp + vpn + freeradius Acct-Status-Type Alive

2006-11-29 Thread Jóhann B. Guðmundsson
Is it possible to enable Acct-Status-Type Alive for pptp vpn? If so how.. Best regards Jóhann B. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: pptp + vpn + freeradius Acct-Status-Type Alive

2006-11-29 Thread Jóhann B. Guðmundsson
Alan DeKok wrote: Jóhann B. Guðmundsson wrote: Is it possible to enable Acct-Status-Type Alive for pptp vpn? If so how.. Read the VPN documentation. If it doesn't say how, it's impossible. Alan DeKok. -- http://deployingradius.com - The web site of the book http

Ldap attributes

2006-11-28 Thread Jóhann B. Guðmundsson
I was wondering what is the proper way to enable ldap attributes in radius.conf for example Ldap-Group groupmembership_attribute = radiusGroupName will then other ldap attributes be matched in the same way? Ldap-Callingstationid callingstationid_attribute = radiusCallingStationId Ldap-Realm

Re: Quarantining a System using Freeradius

2006-11-28 Thread Jóhann B. Guðmundsson
Dev Anand wrote: Hi All , Is it possible to quarantine a system by placing it in different vlan by OpenRadius ? If so can somebody guide me on the steps that can be tried . The situation is like this : System already having an IP address , but found to be infected with a virus-worm. So it

Re: Freeradius, EAP-TTLS ans eDirectory

2006-11-28 Thread Jóhann B. Guðmundsson
Mariano Morano wrote: Hi all, We are working in a RFP and one of the customer's requirement is that we must support EAP-TTLS with Freeradius integrated with eDirectory as back-end. We were reading the Novell documentation and at the Novell page, there appears How to integrate Novell®

Re: Problem with pam_radius_auth

2006-11-28 Thread Jóhann B. Guðmundsson
Maurizio Pederneschi wrote: Hi, I’m testing Freeradius in order to autenticate squid user trough PAM module. My architecture is: SQUID SERVER à PAM_AUTH_RADIUS à FREERADIUS à SQL DB All work fine but frequently in /var/log/messages I see this message: *Safesquid: pam_radius_auth: radius

Re: Freeradius, EAP-TTLS ans eDirectory

2006-11-28 Thread Jóhann B. Guðmundsson
Mariano Morano wrote: Thanks Jóhann !! Could you send me the documentation from were you cut it ? Thanks again Jóhann B. Guðmundsson [EMAIL PROTECTED] 11/28/2006 11:22 AM Mariano Morano wrote: Hi all, We are working in a RFP and one of the customer's requirement is that we must