Re: freeRADIUS 1.0.1 and Cisco PIX 515 version 6.1

2004-12-09 Thread Kaczmarek, Thaddeus
On Thu, 2004-12-09 at 09:23 -0500, Zachary Fortna wrote: We recently migrated over to freeRADIUS 1.0.1 (Redhat ES 3 RPM) from Steel Belted RADIUS for authentication of our VPN. I set it up to use System authentication, and it works like a charm for a day or two, but then all of a sudden just

Re: Radius administrtion - adding a user

2004-12-08 Thread Kaczmarek, Thaddeus
On Wed, 2004-12-08 at 19:45 +0100, Vaclav Mikolasek wrote: Hello, I'm bit confused. Is there any command line administration tool to add, delete etc. users at freeradius? I know I can edit users file, but I donn't want to keep they passwords unciphered. Beside the command line admin, how

Re: recommended appliance

2004-11-26 Thread Kaczmarek, Thaddeus
On Nov 26, 2004 03:48 PM, Omar Armas [EMAIL PROTECTED] wrote: What VPN appliance would you recommend to use with Freeswan to have host-to-host tunnels? We will put dumb terminals in kiosks of commercial centers(malls) connected through ADSL. So I need an appliance that be able to start the ADSL

Re: command authorization facility

2004-11-05 Thread Kaczmarek, Thaddeus
On Fri, 2004-11-05 at 07:33 -0800, Mike Donnelly wrote: All, Newbie ish question.. I would like to use FreeRadius to authorize cli users for specific commands entered on my cisco routers. I can set up my cisco's to look to radius for command authorization using the aaa

Re: HP Procurve 5300XL and Privilege Levels

2004-10-29 Thread Kaczmarek, Thaddeus
On Fri, 2004-10-29 at 14:57 +0300, Ville Leinonen wrote: Hi all, Has anyone have some information how i handle priv levels in 5300xl's and freeradius? Id like to make account wich have priv level 14 access (Operator RO) and couple level 15 access (Manager RW). I get aaa working, but i

Re: Solaris 9 and pam_radius 1.3.16

2004-09-15 Thread Kaczmarek, Thaddeus
On Fri, 2004-09-03 at 02:41, Chew, Darren wrote: Hi All, I am having trouble compiling pam_radius 1.3.16 on Solaris 9. [EMAIL PROTECTED] # CC=gcc;export CC [EMAIL PROTECTED] # make gcc -Wall -Wshadow -Wstrict-prototypes -Wmissing-prototypes -Wnested-externs -Waggregate-return -c

Re: Solaris 9 and pam_radius 1.3.16

2004-09-15 Thread Kaczmarek, Thaddeus
On Wed, 2004-09-15 at 12:13, Kaczmarek, Thaddeus wrote: On Fri, 2004-09-03 at 02:41, Chew, Darren wrote: Hi All, I am having trouble compiling pam_radius 1.3.16 on Solaris 9. [EMAIL PROTECTED] # CC=gcc;export CC [EMAIL PROTECTED] # make gcc -Wall -Wshadow -Wstrict-prototypes

Re: Not authenticating only bad guys

2004-09-13 Thread Kaczmarek, Thaddeus
On Mon, 2004-09-13 at 08:55, Mike Markowski wrote: For a very open wireless network, we'd like to allow everyone to connect unless we know the MAC is a bad guy. That is, if the MAC address is *in* the postgres db, don't authenticate. If it's not in the db, authenticate. Can anyone think

Re: Not authenticating only bad guys

2004-09-13 Thread Kaczmarek, Thaddeus
On Mon, 2004-09-13 at 09:16, Mike Markowski wrote: On Mon 13-Sep-04 at 859 EDT, Kaczmarek, Thaddeus wrote: On Mon, 2004-09-13 at 08:55, Mike Markowski wrote: For a very open wireless network, we'd like to allow everyone to connect unless we know the MAC is a bad guy

Re: what is NAS

2004-08-24 Thread Kaczmarek, Thaddeus
On Tue, 2004-08-24 at 08:59, jassim El-mansori wrote: hi I'm not sure about NAS I'm evaluating freeradius and i have this 2 figures below (WIN2K)---ethernet-(radius) and wirless one (WIN2K)---AP(3com)---(radius) so, does need to be a phsical item please

Re: Remove these errors/info

2004-06-22 Thread Kaczmarek, Thaddeus
On Tue, 2004-06-22 at 14:42 +0100, jihad Jaafar wrote: How do I stop these infos Cumming up Tue Jun 22 09:43:21 2004 : Info: Using deprecated naslist file. Support for this will go away soon. Tue Jun 22 09:43:21 2004 : Info: rlm_exec: Wait=yes but no output defined. Did you mean

Re: Cisco config to use two radius servers

2004-04-28 Thread Kaczmarek, Thaddeus
Title: Re: Cisco config to use two radius servers On Wed, 2004-04-28 at 10:53, RH List Account wrote: Morning folks, Im trying to get accounting data to go to our billing radius server, and our authentication/authorization to go to be requested. I tried inputting:

Re: configuring the NAS

2004-04-28 Thread Kaczmarek, Thaddeus
Title: Re: configuring the NAS Try setting the ports on the switches config, I will bet you are running on 1812 and 1813 and the switch is using 1645 and 1646. Ted On Wed, 2004-04-28 at 10:53, deborha malka wrote: Hello, I have the freeradius server v0.9.3 installed. It works with PAM

radiusi.log question

2004-04-20 Thread Kaczmarek, Thaddeus
Title: radiusi.log question Is their a way to run freeradius so the passwords in radiusd.log are encrypted? Auth-Type := System Sorry about asking this again, but I suspect I was not clear in my first port on this. Thanks, Ted DISCLAIMER e-mail, and any attachments thereto, is intended

Encrypting password

2004-04-15 Thread Kaczmarek, Thaddeus
Title: Encrypting password Is their a way to run Freeradius that will encrypt the users passwords in the radius.log? Thanks, Ted DISCLAIMER e-mail, and any attachments thereto, is intended only for use by the addressee(s) named herein and may contain legally privileged and/or

Re: Freeradius/Alan

2004-04-01 Thread Kaczmarek, Thaddeus
Title: Re: Freeradius/Alan On Wed, 2004-03-31 at 22:31, Steve OBrien wrote: I don't in any way wish to be derogatory. I applaud what all you guys are doing. It's just that I have posted several questions and seen several other questions posted that get no response. Granted these may be

rlm_smb status

2004-03-31 Thread Kaczmarek, Thaddeus
Title: rlm_smb status What is the present status of rlm_smb? I see some posts where people are trying to use it, and other posts saying it should not be used. Having illusions of authenticating users against a Win32 PDC, using a recent snapshot on Redhat 9 and before I totally spin my