. But I
don't think that you can configure this on the BigIPs. The RADIUS protocol is
stateless, so there is no criteria in the application that a load balancer
could use to balance inside the application.
Greetings,
--
Mit freundlichen Grüßen,
Michael Schwartzkopff
--
[*] sys4 AG
http://sys4.de
reserved. 802 Limited. Registered in
the UK. Company Number. 7962864.
--
Mit freundlichen Grüßen,
Michael Schwartzkopff
--
[*] sys4 AG
http://sys4.de, +49 (89) 30 90 46 64, +49 (162) 165 0044
Franziskanerstraße 15, 81669 München
Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263
helper program.
http://deployingradius.com/documents/configuration/active_directory.html
Greetings,
--
Mit freundlichen Grüßen,
Michael Schwartzkopff
--
[*] sys4 AG
http://sys4.de, +49 (89) 30 90 46 64, +49 (162) 165 0044
Franziskanerstraße 15, 81669 München
Sitz der Gesellschaft: München
the
radius protocol, to get authorized, and get the IP address to respond with
to the DHCP request.
You want to try the DHCP relay agent feature implemented on every better
router or layer 3 switch.
Greetins,
--
Mit freundlichen Grüßen,
Michael Schwartzkopff
--
[*] sys4 AG
http://sys4.de, +49
..?
Zulu time. Equals GMT.
It's certainly not seconds since epoch or Jan 01 - 1601 which is seen in
certain other operating systems.
YYMMDDhhmmssZ
--
Mit freundlichen Grüßen,
Michael Schwartzkopff
--
[*] sys4 AG
http://sys4.de, +49 (89) 30 90 46 64, +49 (162) 165 0044
Franziskanerstraße 15
.
FRv1. But you do not want to use that.
--
Mit freundlichen Grüßen,
Michael Schwartzkopff
--
[*] sys4 AG
http://sys4.de, +49 (89) 30 90 46 64, +49 (162) 165 0044
Franziskanerstraße 15, 81669 München
Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263
Vorstand: Patrick Ben Koetter
commands, i.e. radmin, and passes the results as SNMP protocol
over the net. And mrtg, cacti or all the other monitoring systems do
understand SNMP very well.
--
Mit freundlichen Grüßen,
Michael Schwartzkopff
--
[*] sys4 AG
http://sys4.de, +49 (89) 30 90 46 64, +49 (162) 165 0044
BUT authorization.
No. How can you authorize somebody without beeing sure who that user is. Only
authentication provides that information. So you need authentication and
authorization.
--
Mit freundlichen Grüßen,
Michael Schwartzkopff
--
[*] sys4 AG
http://sys4.de, +49 (89) 30 90 46 64
smartphone. See:
http://sys4.de/en/blog/2013/03/16/otp-freeradius/
--
Mit freundlichen Grüßen,
Michael Schwartzkopff
--
[*] sys4 AG
http://sys4.de, +49 (89) 30 90 46 64
Franziskanerstraße 15, 81669 München
Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263
Vorstand: Patrick Ben
with consulting ;-)
Mit freundlichen Grüßen,
Michael Schwartzkopff
--
[*] sys4 AG
http://sys4.de, +49 (89) 30 90 46 64
Franziskanerstraße 15, 81669 München
Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263
Vorstand: Patrick Ben Koetter, Axel von der Ohe, Marc Schiffbauer
Am Mittwoch, 8. Mai 2013, 12:29:44 schrieb Nikolaos Milas:
On 7/5/2013 2:37 μμ, Michael Schwartzkopff wrote:
http://vuksan.com/linux/dot1x/802-1x-LDAP.html
Thank you Michael for your valuable feedback, esp. the link above.
By the way, I've been pointed to: http://www.packetfence.org
with 120.000 MAC
addresses ...
--
Mit freundlichen Grüßen,
Michael Schwartzkopff
--
[*] sys4 AG
http://sys4.de, +49 (89) 30 90 46 64
Franziskanerstraße 15, 81669 München
Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263
Vorstand: Patrick Ben Koetter, Axel von der Ohe, Marc
to improve the situation. I am really
looking forward when Cisco will implement it.
Greetings,
--
Michael Schwartzkopff
--
[*] sys4 AG
http://sys4.de, +49 (89) 30 90 46 64
Franziskanerstraße 15, 81669 München
Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263
Vorstand: Patrick
,
--
Dr. Michael Schwartzkopff
Guardinistr. 63
81375 München
Tel: (0163) 172 50 98
Fax: (089) 620 304 13-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
the baseDN in the ldap module configuration of FR to
dc=example,dc=org.
--
Dr. Michael Schwartzkopff
Guardinistr. 63
81375 München
Tel: (0163) 172 50 98
Fax: (089) 620 304 13-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
you follow the accounting packets with tcpdump on the line? did you
try to run your radius server in debug mode?
--
Dr. Michael Schwartzkopff
Guardinistr. 63
81375 München
Tel: (0163) 172 50 98
Fax: (089) 620 304 13-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
attribute in your Access-
Request packet.
And according to the protocol compatibility matrix you mentioned, SSHA and
*EAP will not work.
--
Dr. Michael Schwartzkopff
Guardinistr. 63
81375 München
Tel: (0163) 172 50 98
Fax: (089) 620 304 13
signature.asc
Description: This is a digitally signed
and Also enable
accounting) – how?
No. not authenticated - no information in RADIUS.
3. GUI: is there a management GUI for FreeRadius and if so how do I
install it?
dialupadmin, daloradius. Please see the documentation of these packages.
--
Dr. Michael Schwartzkopff
Guardinistr. 63
81375
for the
central one)
EAP tunnel will end on the end system. Attributes from inside the tunnel can
be copied to the outside RADIUS protocol. This attributes can be seen from the
NAS. So they can react as configured.
Greetings,
--
Dr. Michael Schwartzkopff
Guardinistr. 63
81375 München
Tel: (0163) 172 50 98
. Michael Schwartzkopff
Guardinistr. 63
81375 München
Tel: (0163) 172 50 98
Fax: (089) 620 304 13
signature.asc
Description: This is a digitally signed message part.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
FreeRadius?
Install freeradius. Nearly everything works out of the box.
--
Dr. Michael Schwartzkopff
Guardinistr. 63
81375 München
Tel: (0163) 172 50 98
Fax: (089) 620 304 13
signature.asc
Description: This is a digitally signed message part.
-
List info/subscribe/unsubscribe? See http
,
--
Dr. Michael Schwartzkopff
Guardinistr. 63
81375 München
Tel: (0163) 172 50 98
Fax: (089) 620 304 13
signature.asc
Description: This is a digitally signed message part.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
to get the interesting figures:
http://wiki.freeradius.org/config/Status
With a simple script/cronjob you can feed these data into a RRD and generate
nice graphs.
Greetings,
--
Dr. Michael Schwartzkopff
Guardinistr. 63
81375 München
Tel: (0163) 172 50 98
Fax: (089) 620 304 13
signature.asc
not created.
Thanks to assist
According to you log you messed up your config.
Please restore the users file with the help of the original file. Then add the
correct entries copying the samples from the original file.
Greetings,
--
Dr. Michael Schwartzkopff
Guardinistr. 63
81375 München
Tel
!
Andreas
-
List info/subscribe/unsubscribe? See
http://www.freeradius.org/list/users.html
See section Security Settings - WPA-802.1x or section Security Settings -
802.1x of the ALLNET manual.
--
Dr. Michael Schwartzkopff
Guardinistr. 63
81375 München
Tel: (0163) 172 50 98
Fax: (089) 620 304
. Any recommendations to the backup policy?
Ordinary backup solution of the SQL database.
--
Dr. Michael Schwartzkopff
Guardinistr. 63
81375 München
Tel: (0163) 172 50 98
Fax: (089) 620 304 13
signature.asc
Description: This is a digitally signed message part.
-
List info/subscribe
startup-config
?
Greetings,
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: mi...@multinet.de
web: www.multinet.de
Sitz der Gesellschaft: 85630
.
Greetings,
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: mi...@multinet.de
web: www.multinet.de
Sitz der Gesellschaft: 85630 Grasbrunn
Am Montag, 3. Mai 2010 16:56:23 schrieb Alan DeKok:
Michael Schwartzkopff wrote:
Strange. I added a line
Access-Accept = Accepted %{User-Name}
But I only see entries from the Access-Request part of the linelog
module.
You have the reference line as Packet-Type? Change
Am Montag, 3. Mai 2010 13:29:24 schrieb Alan DeKok:
Michael Schwartzkopff wrote:
Am Sonntag, 2. Mai 2010 12:22:57 schrieb Jens Link:
I also got problems logging Access-Accept details through linelog. Is it
possible at all?
Yes... what's going wrong?
Strange. I added a line
Access
?
rlm_linelog
Either I'm to tired or to stupid to get it up an running. Is there an
example on how to use it?
thanks
Jens
hi,
I also got problems logging Access-Accept details through linelog. Is it
possible at all?
thanks.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse
access would be working. ;-)
Jens
Port authentication also works with mac addresses. You just have to pass back
on the correct attributes to the cisco. AND your IOS has to be able to
interprete them.
Greetings,
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer
authentication to vlan1
autthentication is based in users file (not mac auth)
thanks u
(...)
Perhaps Cisco IOS can do this. Check it.
If not, make a default login that always authenticates but also sends the
vlan1 attributes. Be aware that this might be a security risk!
Greetings,
--
Dr. Michael
support or if it has any
dependency on the hardware.
Thanks,
Regards,
Divya Shah
Hi,
have you read
http://freeradius.org/features/fast.html
400 req/sec seems to be very low. I think you have a large potential for
optimization in your setup.
Greetings,
--
Dr. Michael Schwartzkopff
database
I'm don't found a solution yet
What about load balancing the SQL queryies? And make them asynchronous?
Greetings,
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49
on?
Thanx
Hi,
somehow your setup is messed up. I have several 100 auths/sec on a quite
standard hardware.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: mi...@multinet.de
web: www.multinet.de
Sitz der Gesellschaft: 85630 Grasbrunn
Registergericht: Amtsgericht
:
http://wiki.freeradius.org/FreeRADIUS_Wiki:FAQ#Does_FreeRADIUS_Support_IPv6.3F
RTFM!
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: mi
our lives easier
too :)
--
Dan Meyers
Hi,
I never tried it myself, but I know the author. He is quite good. so my advise
would be cybercluster. See:
http://www.postgresql.at/english/pr_cybercluster_e.html
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7
behind the scenes even for
large providers.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: mi...@multinet.de
web: www.multinet.de
Sitz der
are happy. We are very satisfied with it. Take care that you get a quite recent
version.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: mi
Am Dienstag, 14. April 2009 19:51:36 schrieb Michael Schwartzkopff:
On Tuesday 14 April 2009 19:42:17 Alan DeKok wrote:
Due to a HD loss, bugs.freeradius.org is down, and won't be coming
back. Unfortunately, this means a loss of patches, reports, user
accounts, etc.
Before we put
. No bandwidth, but
something like auth/sec or auth/sec.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: mi...@multinet.de
web: www.multinet.de
Sitz der
attributes in the reply in users file, sql howto etc.
Ivan Kalik
Kalik Informatika ISP
-
List info/subscribe/unsubscribe? See
http://www.freeradius.org/list/users.html
See dictionary.rfc2868. Perhaps it's Tunnel-Preference?
MfG,
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
understands the Siemens vendor spec
attributes.
3) create a unlang (only FR version 2!) config to also check for the new essid
attribute and according group membership should do the job.
Greetings,
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn
.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: mi...@multinet.de
web: www.multinet.de
Sitz der Gesellschaft: 85630 Grasbrunn
Registergericht
= testing2
shortname = nas2
}
(...)
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: mi...@multinet.de
web: www.multinet.de
Sitz der
to process requests.
Hi,
well, FR ist quit clear where the problem is. It does not know you client
172.30.10.71. Did you enter it in the clients.conf? Did you restart FR?
What about the debug output of raduisd -X?
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7
38509
You don't need to bee Shelok Holms to find out that your client is not defined.
Please do not send passwords, when debugging with freeradius -X. Please also
change your shared secrets NOW!
Greetings,
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630
you inserted the new NAS and why radiusd doesn't use it.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: mi...@multinet.de
web: www.multinet.de
Sitz
are optional, but may be used by
# # checkrad.pl for simultaneous usage checks
nastype = cisco
# login = !root
# password= someadminpas
}
keyword client with a small caps c in the beginning.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse
/default)?
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: mi...@multinet.de
web: www.multinet.de
Sitz der Gesellschaft: 85630 Grasbrunn
://deployingradius.com/documents/protocols/oracles.html
Please read what people write! You also can use google for searching.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343
://wiki.freeradius.org/FreeRADIUS_Active_Directory_Integration_HOWTO
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: mi...@multinet.de
web
.
But the solution is not included in the new version.
Greetings,
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: mi...@multinet.de
web: www.multinet.de
...
Maybe because it was written 6 years ago,
Is someone aare of any up to date one?
Feel free to submit an updated one.
Alan DeKok.
-
List info/subscribe/unsubscribe? See
http://www.freeradius.org/list/users.html
If I have time I will write something.
Michael.
--
Dr. Michael
Am Montag, 16. Februar 2009 08:46:17 schrieb Mihamina Rakotomandimby (R12y):
Michael Schwartzkopff wrote:
http://freeradius.org/radiusd/doc/ldap_howto.txt
For some reason it doesn't seem to be linked to on any main website
or wiki page - bizarrely including the HOWTO page...
Maybe
Am Freitag, 13. Februar 2009 11:00:10 schrieb Paul Dealy:
On Fri, Feb 13, 2009 at 6:37 PM, Michael Schwartzkopff
mi...@multinet.de wrote:
Am Freitag, 13. Februar 2009 07:17:17 schrieb Paul Dealy:
I have a working radius server (ver 1.1.3). which I am using for
802.1x authentication
Am Freitag, 13. Februar 2009 11:54:29 schrieb Paul Dealy:
On Fri, Feb 13, 2009 at 9:12 PM, Michael Schwartzkopff
mi...@multinet.de wrote:
Am Freitag, 13. Februar 2009 11:00:10 schrieb Paul Dealy:
On Fri, Feb 13, 2009 at 6:37 PM, Michael Schwartzkopff
mi...@multinet.de wrote:
Am
Am Freitag, 13. Februar 2009 12:36:09 schrieb Paul Dealy:
On Fri, Feb 13, 2009 at 10:16 PM, Michael Schwartzkopff
mi...@multinet.de wrote:
Am Freitag, 13. Februar 2009 11:54:29 schrieb Paul Dealy:
On Fri, Feb 13, 2009 at 9:12 PM, Michael Schwartzkopff
mi...@multinet.de wrote:
Am
Am Freitag, 13. Februar 2009 12:36:09 schrieb Paul Dealy:
On Fri, Feb 13, 2009 at 10:16 PM, Michael Schwartzkopff
mi...@multinet.de wrote:
Am Freitag, 13. Februar 2009 11:54:29 schrieb Paul Dealy:
On Fri, Feb 13, 2009 at 9:12 PM, Michael Schwartzkopff
mi...@multinet.de wrote:
Am
Am Freitag, 13. Februar 2009 13:39:49 schrieb Paul Dealy:
On Fri, Feb 13, 2009 at 11:22 PM, Michael Schwartzkopff
mi...@multinet.de wrote:
Am Freitag, 13. Februar 2009 12:36:09 schrieb Paul Dealy:
On Fri, Feb 13, 2009 at 10:16 PM, Michael Schwartzkopff
mi...@multinet.de wrote:
Am
Am Freitag, 13. Februar 2009 12:36:09 schrieb Paul Dealy:
On Fri, Feb 13, 2009 at 10:16 PM, Michael Schwartzkopff
mi...@multinet.de wrote:
Am Freitag, 13. Februar 2009 11:54:29 schrieb Paul Dealy:
On Fri, Feb 13, 2009 at 9:12 PM, Michael Schwartzkopff
mi...@multinet.de wrote:
Am
these attributes to the user object in LDAP.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: mi...@multinet.de
web: www.multinet.de
Sitz der Gesellschaft
Hi,
I am trying to get dialup_admin running. I have ldap directory and FR+LDAP
works.
I have the webserver running, see the start page and Check Server works.
When I click New User I see a blank page. Nothing in the /var/log/apache2
files.
Any help or hints? Thanks.
--
Dr. Michael
Am Dienstag, 10. Februar 2009 13:02:11 schrieb Michael Schwartzkopff:
Hi,
I am trying to get dialup_admin running. I have ldap directory and FR+LDAP
works.
I have the webserver running, see the start page and Check Server works.
When I click New User I see a blank page. Nothing in the /var
Am Dienstag, 10. Februar 2009 08:25:36 schrieb Andrew Rikhlivsky:
Hi all.
Where I can read information about using DHCP opt. 82 in FreeRADIUS 2 ?
-
List info/subscribe/unsubscribe? See
http://www.freeradius.org/list/users.html
raddb/sites-available/dhcp
--
Dr. Michael Schwartzkopff
Hi,
First of all: Sorry that I post the bug report here and not in
bugs.freeradius.org, but that site doen't seem to answer.
create-users.pl create a users file of the form:
username Cleartext-Password := some string
Class=0x0
where Class counts from 0x0 on.
When I include
Michael Schwartzkopff schrieb:
Hi,
First of all: Sorry that I post the bug report here and not in
bugs.freeradius.org, but that site doen't seem to answer.
create-users.pl create a users file of the form:
username Cleartext-Password := some string
Class=0x0
where Class counts from
help.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: mi...@multinet.de
web: www.multinet.de
Sitz der Gesellschaft: 85630 Grasbrunn
Registergericht
to FreeFRADIUS.
For the time beeing: Use the virtual status server (see doc there) and start
the snmp-proxy perl script. See scripts/snmp-proxy/README in the source dir
for more info.
Greetings,
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn
Hi,
is there anybody having Foxpro as a backend database. Is this possible?
Thanks for sharing your experiences.
Michael Schwartzkopff.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
to see, what your NAS (Switch) sends.
Greetings,
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: [EMAIL PROTECTED]
web: www.multinet.de
Sitz der
or rlm_ldap, or ...
2) I can't make groups, such bob has the rights to log on Linux, Ted
on Linux, Unix and Fred on The Switch is it possible?
Yes.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89
/subscribe/unsubscribe? See
http://www.freeradius.org/list/users.html
RTFM rlm_sql in the doc dir. Please read also the comments in the config
files.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45
/Freeradius_802.1X.pdf
Greetings,
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: [EMAIL PROTECTED]
web: www.multinet.de
Sitz der Gesellschaft
. Thanks for any hints.
Sincerely,
Michael Schwartzkopff.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
.
The Wiki is OK, it's just the website at freeradius.org.
Regards, K.
Works from here. No problem.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail
/
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: [EMAIL PROTECTED]
web: www.multinet.de
Sitz der Gesellschaft: 85630 Grasbrunn
Registergericht
Am Dienstag, 17. Juni 2008 15:05 schrieb Alan DeKok:
Michael Schwartzkopff wrote:
we have a FR server (version 1.1.7) on a Redhat machine. We use it for
dumping accouting requests into a database. We have about 200 requests
per second in average.
Once in a while (1 per minute) we see
IP xxx.217.246.173.1813 xxx.206.254.10.17188: RADIUS,
Accounting Response (5), id: 0x9b length: 20
These two incomming packets are really identical. Even if you look closer
with -v option of tcpdump. Same authenticator.
---
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse
request
Does the FR server drop accouting requests?
How can we monitor how any requests the RADIUS server gets?
Is this anything to worry?
Thanks for any help.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45
Am Dienstag, 17. Juni 2008 15:00 schrieb Ivan Kalik:
200 requests per second is not much for freeradius but it's a lot for
the database. It's highly likely that the database can't cope.
We check this. DB response 3ms and the DB has 1000 threads. So no problem
here.
--
Dr. Michael
in FR to look after the actual performace? Like requests
per second, backlog queue, ...
Thanks.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail
(LVS) and Linux-HA (heartbeat). If you use the localhost
feature of LVS this will even work with two machines.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28
William E. Russell schrieb:
All,
I am trying to get the RADIUS server to not only authenticating the
supplicant, but providing the NAS with a VLAN ID. I have tried certain
resources and haven't been able to receive the VLAN ID. Can any provide any
help in this area?
Thanks
William
George KNIGHT schrieb:
Hello everyone,
Before I write my question here, I just want to let all of you know that I
did lots of searching in both google and this email list. But couldn't find
anything to get the answer.
My question is I have been looking for a HOWTO paper for a beginner to
Marinko Tarlac schrieb:
Hi to all. I know that this is FR mailing list but I'm looking for some
material about pppoe server on freebsd and freeradius as a radius server.
So, please send me some links for reading..
Thanks
-
List info/subscribe/unsubscribe? See
Alan DeKok schrieb:
Norbert Wegener wrote:
I have 2.0.2 running and snmp enabled.
When the snmp daemon dies, freeradius follows...
When fixing the detail file handling in 2.0.3, I looked at the code
handling the SNMP sockets. Ouch. I don't think it works... I tried
fixing it,
}
Auth-Type MS-CHAP {
mschapv2
}
unix
eap
}
Thanks for any hint.
Michael Schwartzkopff
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Am Freitag, 1. Februar 2008 08:29 schrieb Devinder Singh:
Hi
Does Free Radius has support for 802.1x authentication such as providing
Certificate.
Can it also integrate with MIcrosoft Active Direcrtory,
Regards
2 x Yes.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse
thousand
DSL service. Do you know what their archecture in
radius setting? ls it different radius servers per
LNS?
Thank you for your help
See:
http://www.freeradius.org/testimonials.html
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
with an init script.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: [EMAIL PROTECTED]
web: www.multinet.de
Sitz der Gesellschaft: 85630 Grasbrunn
Francesco Cristofori schrieb:
What isn't compliant?
The script /etc/init.d/freeradius is not compliant with these
guidelines:
http://www.linuxbase.org/spec/refspecs/LSB_3.0.0/LSB-Core-generic/LSB-Co
re-generic/iniscrptact.html
The script does not implement the "status"
Kevin J schrieb:
Does anybody know if FreeRadius supports the MAC Authentication?
If so, how?
Thanks in advance,
Kevin
-
Building a website is a piece of cake.
Yahoo! Small Business gives you all the tools to get online.
-magazine.com/issue/52/Freeradius_802.1X.pdf
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany
Tel: +49 - 89 - 45 69 11 0
Fax: +49 - 89 - 45 69 11 21
mob: +49 - 174 - 343 28 75
mail: [EMAIL PROTECTED]
web: www.multinet.de
Sitz der
file like this:
Perhaps you like to use the SQL-Group test like
TestNAS1NAS-IP-Address == xxx.xxx.xxx.xxx
SQL-Group == dialup,
SQL-Group == adsl
in the proxy config.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Bretonischer Ring 7
85630 Grasbrunn
Am Donnerstag, 14. Dezember 2006 10:23 schrieb Alexander Serkin:
Michael Schwartzkopff пишет:
Perhaps you like to use the SQL-Group test like
TestNAS1NAS-IP-Address == xxx.xxx.xxx.xxx
SQL-Group == dialup,
SQL-Group == adsl
in the proxy config
installation provide a RADIUS protocol stack? If yes, just
configure FR to do proxy.
2) If no: Configure FR do ask eDir via LDAP. OpenLDAP is easy and there are
lots of examples on the net. You should be able to transfer it to eDir.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Bretonischer Ring 7
this.
But there is another problem: How do you tell FR which system to be put into a
quarantaine VLAN? Manually? You would have to install some kind of agent on
all machines which test the machine for integrity and tell FR about the
result.
--
Dr. Michael Schwartzkopff
MultiNET Services GmbH
Bretonischer Ring 7
1 - 100 of 151 matches
Mail list logo