Re: load balancing radius with F5 devices

2013-10-09 Thread Michael Schwartzkopff
. But I don't think that you can configure this on the BigIPs. The RADIUS protocol is stateless, so there is no criteria in the application that a load balancer could use to balance inside the application. Greetings, -- Mit freundlichen Grüßen, Michael Schwartzkopff -- [*] sys4 AG http://sys4.de

Re: Authentication

2013-09-23 Thread Michael Schwartzkopff
reserved. 802 Limited. Registered in the UK. Company Number. 7962864. -- Mit freundlichen Grüßen, Michael Schwartzkopff -- [*] sys4 AG http://sys4.de, +49 (89) 30 90 46 64, +49 (162) 165 0044 Franziskanerstraße 15, 81669 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263

Re: differentiate authoriztion/ authentication in separate ldap modules

2013-09-03 Thread Michael Schwartzkopff
helper program. http://deployingradius.com/documents/configuration/active_directory.html Greetings, -- Mit freundlichen Grüßen, Michael Schwartzkopff -- [*] sys4 AG http://sys4.de, +49 (89) 30 90 46 64, +49 (162) 165 0044 Franziskanerstraße 15, 81669 München Sitz der Gesellschaft: München

Re: Configuring the DHCP module to forward request to another Radius server.

2013-08-08 Thread Michael Schwartzkopff
the radius protocol, to get authorized, and get the IP address to respond with to the DHCP request. You want to try the DHCP relay agent feature implemented on every better router or layer 3 switch. Greetins, -- Mit freundlichen Grüßen, Michael Schwartzkopff -- [*] sys4 AG http://sys4.de, +49

Re: TLS-Client-Cert-Expiration date format

2013-07-25 Thread Michael Schwartzkopff
..? Zulu time. Equals GMT. It's certainly not seconds since epoch or Jan 01 - 1601 which is seen in certain other operating systems. YYMMDDhhmmssZ -- Mit freundlichen Grüßen, Michael Schwartzkopff -- [*] sys4 AG http://sys4.de, +49 (89) 30 90 46 64, +49 (162) 165 0044 Franziskanerstraße 15

Re: SNMP support for Free Radius

2013-07-18 Thread Michael Schwartzkopff
. FRv1. But you do not want to use that. -- Mit freundlichen Grüßen, Michael Schwartzkopff -- [*] sys4 AG http://sys4.de, +49 (89) 30 90 46 64, +49 (162) 165 0044 Franziskanerstraße 15, 81669 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter

Re: SNMP support for Free Radius

2013-07-18 Thread Michael Schwartzkopff
commands, i.e. radmin, and passes the results as SNMP protocol over the net. And mrtg, cacti or all the other monitoring systems do understand SNMP very well. -- Mit freundlichen Grüßen, Michael Schwartzkopff -- [*] sys4 AG http://sys4.de, +49 (89) 30 90 46 64, +49 (162) 165 0044

Re: Service Provisioning Using AAA (FreeRadius)

2013-06-04 Thread Michael Schwartzkopff
BUT authorization. No. How can you authorize somebody without beeing sure who that user is. Only authentication provides that information. So you need authentication and authorization. -- Mit freundlichen Grüßen, Michael Schwartzkopff -- [*] sys4 AG http://sys4.de, +49 (89) 30 90 46 64

Re: Any One-Time password system.

2013-05-14 Thread Michael Schwartzkopff
smartphone. See: http://sys4.de/en/blog/2013/03/16/otp-freeradius/ -- Mit freundlichen Grüßen, Michael Schwartzkopff -- [*] sys4 AG http://sys4.de, +49 (89) 30 90 46 64 Franziskanerstraße 15, 81669 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben

Re: Any One-Time password system.

2013-05-14 Thread Michael Schwartzkopff
with consulting ;-) Mit freundlichen Grüßen, Michael Schwartzkopff -- [*] sys4 AG http://sys4.de, +49 (89) 30 90 46 64 Franziskanerstraße 15, 81669 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Axel von der Ohe, Marc Schiffbauer

Re: Config for 802.1x use on network switches

2013-05-08 Thread Michael Schwartzkopff
Am Mittwoch, 8. Mai 2013, 12:29:44 schrieb Nikolaos Milas: On 7/5/2013 2:37 μμ, Michael Schwartzkopff wrote: http://vuksan.com/linux/dot1x/802-1x-LDAP.html Thank you Michael for your valuable feedback, esp. the link above. By the way, I've been pointed to: http://www.packetfence.org

Re: Config for 802.1x use on network switches

2013-05-07 Thread Michael Schwartzkopff
with 120.000 MAC addresses ... -- Mit freundlichen Grüßen, Michael Schwartzkopff -- [*] sys4 AG http://sys4.de, +49 (89) 30 90 46 64 Franziskanerstraße 15, 81669 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick Ben Koetter, Axel von der Ohe, Marc

Re: Cisco av-pair for NX-OS and IOS

2013-02-07 Thread Michael Schwartzkopff
to improve the situation. I am really looking forward when Cisco will implement it. Greetings, -- Michael Schwartzkopff -- [*] sys4 AG http://sys4.de, +49 (89) 30 90 46 64 Franziskanerstraße 15, 81669 München Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263 Vorstand: Patrick

Re: Active Directory + LDAP + groups for dynamic VLAN assignment

2013-01-10 Thread Michael Schwartzkopff
, -- Dr. Michael Schwartzkopff Guardinistr. 63 81375 München Tel: (0163) 172 50 98 Fax: (089) 620 304 13- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Different BaseDN for User/Group Objects in rlm_ldap

2013-01-09 Thread Michael Schwartzkopff
the baseDN in the ldap module configuration of FR to dc=example,dc=org. -- Dr. Michael Schwartzkopff Guardinistr. 63 81375 München Tel: (0163) 172 50 98 Fax: (089) 620 304 13- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Lost user

2012-12-26 Thread Michael Schwartzkopff
you follow the accounting packets with tcpdump on the line? did you try to run your radius server in debug mode? -- Dr. Michael Schwartzkopff Guardinistr. 63 81375 München Tel: (0163) 172 50 98 Fax: (089) 620 304 13- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Problem with freeradius + openldap for AP authentication

2012-11-26 Thread Michael Schwartzkopff
attribute in your Access- Request packet. And according to the protocol compatibility matrix you mentioned, SSHA and *EAP will not work. -- Dr. Michael Schwartzkopff Guardinistr. 63 81375 München Tel: (0163) 172 50 98 Fax: (089) 620 304 13 signature.asc Description: This is a digitally signed

Re: FreeRadius Novice problems

2012-11-19 Thread Michael Schwartzkopff
and Also enable accounting) – how? No. not authenticated - no information in RADIUS. 3. GUI: is there a management GUI for FreeRadius and if so how do I install it? dialupadmin, daloradius. Please see the documentation of these packages. -- Dr. Michael Schwartzkopff Guardinistr. 63 81375

Re: Complex eduroam radius design

2012-11-13 Thread Michael Schwartzkopff
for the central one) EAP tunnel will end on the end system. Attributes from inside the tunnel can be copied to the outside RADIUS protocol. This attributes can be seen from the NAS. So they can react as configured. Greetings, -- Dr. Michael Schwartzkopff Guardinistr. 63 81375 München Tel: (0163) 172 50 98

Re: User authorize with Perl-Script

2012-10-30 Thread Michael Schwartzkopff
. Michael Schwartzkopff Guardinistr. 63 81375 München Tel: (0163) 172 50 98 Fax: (089) 620 304 13 signature.asc Description: This is a digitally signed message part. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: FreeRadius AAA running in fail over mode

2012-10-15 Thread Michael Schwartzkopff
FreeRadius? Install freeradius. Nearly everything works out of the box. -- Dr. Michael Schwartzkopff Guardinistr. 63 81375 München Tel: (0163) 172 50 98 Fax: (089) 620 304 13 signature.asc Description: This is a digitally signed message part. - List info/subscribe/unsubscribe? See http

Re: freeRadius against Active Directory

2012-10-09 Thread Michael Schwartzkopff
, -- Dr. Michael Schwartzkopff Guardinistr. 63 81375 München Tel: (0163) 172 50 98 Fax: (089) 620 304 13 signature.asc Description: This is a digitally signed message part. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Reporting from logs

2012-09-25 Thread Michael Schwartzkopff
to get the interesting figures: http://wiki.freeradius.org/config/Status With a simple script/cronjob you can feed these data into a RRD and generate nice graphs. Greetings, -- Dr. Michael Schwartzkopff Guardinistr. 63 81375 München Tel: (0163) 172 50 98 Fax: (089) 620 304 13 signature.asc

Re: Radius Config and Router

2012-09-12 Thread Michael Schwartzkopff
not created. Thanks to assist According to you log you messed up your config. Please restore the users file with the help of the original file. Then add the correct entries copying the samples from the original file. Greetings, -- Dr. Michael Schwartzkopff Guardinistr. 63 81375 München Tel

Re: Accounting pakets on layer 2

2012-08-24 Thread Michael Schwartzkopff
! Andreas - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html See section Security Settings - WPA-802.1x or section Security Settings - 802.1x of the ALLNET manual. -- Dr. Michael Schwartzkopff Guardinistr. 63 81375 München Tel: (0163) 172 50 98 Fax: (089) 620 304

Re: New FreeRADIUS Deployment

2012-08-16 Thread Michael Schwartzkopff
. Any recommendations to the backup policy? Ordinary backup solution of the SQL database. -- Dr. Michael Schwartzkopff Guardinistr. 63 81375 München Tel: (0163) 172 50 98 Fax: (089) 620 304 13 signature.asc Description: This is a digitally signed message part. - List info/subscribe

Re: dynamic assignment of VLANs from LDAP via freeradius to WLAN-Clients doesn't work properly

2010-05-27 Thread Michael Schwartzkopff
startup-config ? Greetings, -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: mi...@multinet.de web: www.multinet.de Sitz der Gesellschaft: 85630

Re: Looking for an editor for FreeRADIUS documentation

2010-05-18 Thread Michael Schwartzkopff
. Greetings, -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: mi...@multinet.de web: www.multinet.de Sitz der Gesellschaft: 85630 Grasbrunn

Re: VMPS logging

2010-05-09 Thread Michael Schwartzkopff
Am Montag, 3. Mai 2010 16:56:23 schrieb Alan DeKok: Michael Schwartzkopff wrote: Strange. I added a line Access-Accept = Accepted %{User-Name} But I only see entries from the Access-Request part of the linelog module. You have the reference line as Packet-Type? Change

Re: VMPS logging

2010-05-03 Thread Michael Schwartzkopff
Am Montag, 3. Mai 2010 13:29:24 schrieb Alan DeKok: Michael Schwartzkopff wrote: Am Sonntag, 2. Mai 2010 12:22:57 schrieb Jens Link: I also got problems logging Access-Accept details through linelog. Is it possible at all? Yes... what's going wrong? Strange. I added a line Access

Re: VMPS logging

2010-05-02 Thread Michael Schwartzkopff
? rlm_linelog Either I'm to tired or to stupid to get it up an running. Is there an example on how to use it? thanks Jens hi, I also got problems logging Access-Accept details through linelog. Is it possible at all? thanks. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse

Re: vlan and freeradius

2010-03-03 Thread Michael Schwartzkopff
access would be working. ;-) Jens Port authentication also works with mac addresses. You just have to pass back on the correct attributes to the cisco. AND your IOS has to be able to interprete them. Greetings, -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer

Re: vlan and freeradius

2010-03-03 Thread Michael Schwartzkopff
authentication to vlan1 autthentication is based in users file (not mac auth) thanks u (...) Perhaps Cisco IOS can do this. Check it. If not, make a default login that always authenticates but also sends the vlan1 attributes. Be aware that this might be a security risk! Greetings, -- Dr. Michael

Re: question about scalability

2009-11-23 Thread Michael Schwartzkopff
support or if it has any dependency on the hardware. Thanks, Regards, Divya Shah Hi, have you read http://freeradius.org/features/fast.html 400 req/sec seems to be very low. I think you have a large potential for optimization in your setup. Greetings, -- Dr. Michael Schwartzkopff

Re: FreeRadius crashed on accounting load tests with 1000 concurrent clients

2009-11-10 Thread Michael Schwartzkopff
database I'm don't found a solution yet What about load balancing the SQL queryies? And make them asynchronous? Greetings, -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49

Re: Improving Auth-Rate

2009-10-13 Thread Michael Schwartzkopff
on? Thanx Hi, somehow your setup is messed up. I have several 100 auths/sec on a quite standard hardware. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75

Re: CPU selection for highest performance

2009-07-23 Thread Michael Schwartzkopff
. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: mi...@multinet.de web: www.multinet.de Sitz der Gesellschaft: 85630 Grasbrunn Registergericht: Amtsgericht

Re: Info regarding Radius and Ipv6

2009-07-16 Thread Michael Schwartzkopff
: http://wiki.freeradius.org/FreeRADIUS_Wiki:FAQ#Does_FreeRADIUS_Support_IPv6.3F RTFM! -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: mi

Re: failover and load balancing

2009-04-22 Thread Michael Schwartzkopff
our lives easier too :) -- Dan Meyers Hi, I never tried it myself, but I know the author. He is quite good. so my advise would be cybercluster. See: http://www.postgresql.at/english/pr_cybercluster_e.html -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7

Re: Howto: Session-Timeout for DTAG (Zwangstrennung)

2009-04-20 Thread Michael Schwartzkopff
behind the scenes even for large providers. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: mi...@multinet.de web: www.multinet.de Sitz der

Re: Poll: Bug reporting system

2009-04-14 Thread Michael Schwartzkopff
are happy. We are very satisfied with it. Take care that you get a quite recent version. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: mi

Re: Poll: Bug reporting system

2009-04-14 Thread Michael Schwartzkopff
Am Dienstag, 14. April 2009 19:51:36 schrieb Michael Schwartzkopff: On Tuesday 14 April 2009 19:42:17 Alan DeKok wrote: Due to a HD loss, bugs.freeradius.org is down, and won't be coming back. Unfortunately, this means a loss of patches, reports, user accounts, etc. Before we put

Re: mrtg module for FreeRADIUS

2009-04-07 Thread Michael Schwartzkopff
. No bandwidth, but something like auth/sec or auth/sec. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: mi...@multinet.de web: www.multinet.de Sitz der

Re: vlan priority query

2009-04-01 Thread Michael Schwartzkopff
attributes in the reply in users file, sql howto etc. Ivan Kalik Kalik Informatika ISP - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html See dictionary.rfc2868. Perhaps it's Tunnel-Preference? MfG, -- Dr. Michael Schwartzkopff MultiNET Services GmbH

Re: Is WLAN IEEE802.1x EAP-TLS authentication with ESSID selection possible?

2009-04-01 Thread Michael Schwartzkopff
understands the Siemens vendor spec attributes. 3) create a unlang (only FR version 2!) config to also check for the new essid attribute and according group membership should do the job. Greetings, -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn

Re: API

2009-03-25 Thread Michael Schwartzkopff
. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: mi...@multinet.de web: www.multinet.de Sitz der Gesellschaft: 85630 Grasbrunn Registergericht

Re: ldap+freeradius

2009-03-24 Thread Michael Schwartzkopff
= testing2 shortname = nas2 } (...) -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: mi...@multinet.de web: www.multinet.de Sitz der

Re: ldap+freeradius

2009-03-24 Thread Michael Schwartzkopff
to process requests. Hi, well, FR ist quit clear where the problem is. It does not know you client 172.30.10.71. Did you enter it in the clients.conf? Did you restart FR? What about the debug output of raduisd -X? -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7

Re: ldap+freeradius

2009-03-24 Thread Michael Schwartzkopff
38509 You don't need to bee Shelok Holms to find out that your client is not defined. Please do not send passwords, when debugging with freeradius -X. Please also change your shared secrets NOW! Greetings, -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630

Re: ldap+freeradius

2009-03-24 Thread Michael Schwartzkopff
you inserted the new NAS and why radiusd doesn't use it. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: mi...@multinet.de web: www.multinet.de Sitz

Re: ldap+freeradius

2009-03-24 Thread Michael Schwartzkopff
are optional, but may be used by # # checkrad.pl for simultaneous usage checks nastype = cisco # login = !root # password= someadminpas } keyword client with a small caps c in the beginning. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse

Re: Windows Authentication and Authorization via LDAP on FreeRadius v 2.1.4 Configuration Help!!!

2009-03-24 Thread Michael Schwartzkopff
/default)? -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: mi...@multinet.de web: www.multinet.de Sitz der Gesellschaft: 85630 Grasbrunn

Re: ldap+freeradius

2009-03-24 Thread Michael Schwartzkopff
://deployingradius.com/documents/protocols/oracles.html Please read what people write! You also can use google for searching. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343

Re: Windows Authentication and Authorization via LDAP on FreeRadius v2.1.4 Configuration Help!!!

2009-03-24 Thread Michael Schwartzkopff
://wiki.freeradius.org/FreeRADIUS_Active_Directory_Integration_HOWTO -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: mi...@multinet.de web

Re: Version 2.1.4 has been released

2009-03-10 Thread Michael Schwartzkopff
. But the solution is not included in the new version. Greetings, -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: mi...@multinet.de web: www.multinet.de

Re: FreeRADIUS LDAP HOWTO

2009-02-15 Thread Michael Schwartzkopff
... Maybe because it was written 6 years ago, Is someone aare of any up to date one? Feel free to submit an updated one. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html If I have time I will write something. Michael. -- Dr. Michael

Re: FreeRADIUS LDAP HOWTO

2009-02-15 Thread Michael Schwartzkopff
Am Montag, 16. Februar 2009 08:46:17 schrieb Mihamina Rakotomandimby (R12y): Michael Schwartzkopff wrote: http://freeradius.org/radiusd/doc/ldap_howto.txt For some reason it doesn't seem to be linked to on any main website or wiki page - bizarrely including the HOWTO page... Maybe

Re: Dynamic Vlan Allocation based on LDAP Attribute Value

2009-02-13 Thread Michael Schwartzkopff
Am Freitag, 13. Februar 2009 11:00:10 schrieb Paul Dealy: On Fri, Feb 13, 2009 at 6:37 PM, Michael Schwartzkopff mi...@multinet.de wrote: Am Freitag, 13. Februar 2009 07:17:17 schrieb Paul Dealy: I have a working radius server (ver 1.1.3). which I am using for 802.1x authentication

Re: Dynamic Vlan Allocation based on LDAP Attribute Value

2009-02-13 Thread Michael Schwartzkopff
Am Freitag, 13. Februar 2009 11:54:29 schrieb Paul Dealy: On Fri, Feb 13, 2009 at 9:12 PM, Michael Schwartzkopff mi...@multinet.de wrote: Am Freitag, 13. Februar 2009 11:00:10 schrieb Paul Dealy: On Fri, Feb 13, 2009 at 6:37 PM, Michael Schwartzkopff mi...@multinet.de wrote: Am

Re: Dynamic Vlan Allocation based on LDAP Attribute Value

2009-02-13 Thread Michael Schwartzkopff
Am Freitag, 13. Februar 2009 12:36:09 schrieb Paul Dealy: On Fri, Feb 13, 2009 at 10:16 PM, Michael Schwartzkopff mi...@multinet.de wrote: Am Freitag, 13. Februar 2009 11:54:29 schrieb Paul Dealy: On Fri, Feb 13, 2009 at 9:12 PM, Michael Schwartzkopff mi...@multinet.de wrote: Am

Re: Dynamic Vlan Allocation based on LDAP Attribute Value

2009-02-13 Thread Michael Schwartzkopff
Am Freitag, 13. Februar 2009 12:36:09 schrieb Paul Dealy: On Fri, Feb 13, 2009 at 10:16 PM, Michael Schwartzkopff mi...@multinet.de wrote: Am Freitag, 13. Februar 2009 11:54:29 schrieb Paul Dealy: On Fri, Feb 13, 2009 at 9:12 PM, Michael Schwartzkopff mi...@multinet.de wrote: Am

Re: Dynamic Vlan Allocation based on LDAP Attribute Value

2009-02-13 Thread Michael Schwartzkopff
Am Freitag, 13. Februar 2009 13:39:49 schrieb Paul Dealy: On Fri, Feb 13, 2009 at 11:22 PM, Michael Schwartzkopff mi...@multinet.de wrote: Am Freitag, 13. Februar 2009 12:36:09 schrieb Paul Dealy: On Fri, Feb 13, 2009 at 10:16 PM, Michael Schwartzkopff mi...@multinet.de wrote: Am

Re: Dynamic Vlan Allocation based on LDAP Attribute Value

2009-02-13 Thread Michael Schwartzkopff
Am Freitag, 13. Februar 2009 12:36:09 schrieb Paul Dealy: On Fri, Feb 13, 2009 at 10:16 PM, Michael Schwartzkopff mi...@multinet.de wrote: Am Freitag, 13. Februar 2009 11:54:29 schrieb Paul Dealy: On Fri, Feb 13, 2009 at 9:12 PM, Michael Schwartzkopff mi...@multinet.de wrote: Am

Re: Dynamic Vlan Allocation based on LDAP Attribute Value

2009-02-12 Thread Michael Schwartzkopff
these attributes to the user object in LDAP. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: mi...@multinet.de web: www.multinet.de Sitz der Gesellschaft

Dialup_admin New user page is empty

2009-02-10 Thread Michael Schwartzkopff
Hi, I am trying to get dialup_admin running. I have ldap directory and FR+LDAP works. I have the webserver running, see the start page and Check Server works. When I click New User I see a blank page. Nothing in the /var/log/apache2 files. Any help or hints? Thanks. -- Dr. Michael

Re: Dialup_admin New user page is empty

2009-02-10 Thread Michael Schwartzkopff
Am Dienstag, 10. Februar 2009 13:02:11 schrieb Michael Schwartzkopff: Hi, I am trying to get dialup_admin running. I have ldap directory and FR+LDAP works. I have the webserver running, see the start page and Check Server works. When I click New User I see a blank page. Nothing in the /var

Re: DHCP in FreeRADIUS 2

2009-02-09 Thread Michael Schwartzkopff
Am Dienstag, 10. Februar 2009 08:25:36 schrieb Andrew Rikhlivsky: Hi all. Where I can read information about using DHCP opt. 82 in FreeRADIUS 2 ? - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html raddb/sites-available/dhcp -- Dr. Michael Schwartzkopff

Bug in create-users.pl

2009-02-07 Thread Michael Schwartzkopff
Hi, First of all: Sorry that I post the bug report here and not in bugs.freeradius.org, but that site doen't seem to answer. create-users.pl create a users file of the form: username Cleartext-Password := some string Class=0x0 where Class counts from 0x0 on. When I include

Re: Bug in create-users.pl

2009-02-07 Thread Michael Schwartzkopff
Michael Schwartzkopff schrieb: Hi, First of all: Sorry that I post the bug report here and not in bugs.freeradius.org, but that site doen't seem to answer. create-users.pl create a users file of the form: username Cleartext-Password := some string Class=0x0 where Class counts from

VLAN assignment on PEAP

2009-02-06 Thread Michael Schwartzkopff
help. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: mi...@multinet.de web: www.multinet.de Sitz der Gesellschaft: 85630 Grasbrunn Registergericht

Re: freeradius 2.0 + snmp

2009-01-27 Thread Michael Schwartzkopff
to FreeFRADIUS. For the time beeing: Use the virtual status server (see doc there) and start the snmp-proxy perl script. See scripts/snmp-proxy/README in the source dir for more info. Greetings, -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn

FreeRADIUS and Foxpro

2009-01-02 Thread Michael Schwartzkopff
Hi, is there anybody having Foxpro as a backend database. Is this possible? Thanks for sharing your experiences. Michael Schwartzkopff. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: AW: MAC authentification

2008-10-22 Thread Michael Schwartzkopff
to see, what your NAS (Switch) sends. Greetings, -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: [EMAIL PROTECTED] web: www.multinet.de Sitz der

Re: Freeradius Groups and Linux Users

2008-10-22 Thread Michael Schwartzkopff
or rlm_ldap, or ... 2) I can't make groups, such bob has the rights to log on Linux, Ted on Linux, Unix and Fred on The Switch is it possible? Yes. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89

Re: Freeradius Groups and Linux Users

2008-10-22 Thread Michael Schwartzkopff
/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html RTFM rlm_sql in the doc dir. Please read also the comments in the config files. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45

Re: LDAP integrations

2008-10-15 Thread Michael Schwartzkopff
/Freeradius_802.1X.pdf Greetings, -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: [EMAIL PROTECTED] web: www.multinet.de Sitz der Gesellschaft

Asking freeradius for the status

2008-10-11 Thread Michael Schwartzkopff
. Thanks for any hints. Sincerely, Michael Schwartzkopff. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Problem with freeradius.org website

2008-09-29 Thread Michael Schwartzkopff
. The Wiki is OK, it's just the website at freeradius.org. Regards, K. Works from here. No problem. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail

Re: POP3

2008-07-23 Thread Michael Schwartzkopff
/ -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: [EMAIL PROTECTED] web: www.multinet.de Sitz der Gesellschaft: 85630 Grasbrunn Registergericht

Re: high performance FR installation and unfinished requests

2008-06-18 Thread Michael Schwartzkopff
Am Dienstag, 17. Juni 2008 15:05 schrieb Alan DeKok: Michael Schwartzkopff wrote: we have a FR server (version 1.1.7) on a Redhat machine. We use it for dumping accouting requests into a database. We have about 200 requests per second in average. Once in a while (1 per minute) we see

Strange behaviour of a NAS

2008-06-18 Thread Michael Schwartzkopff
IP xxx.217.246.173.1813 xxx.206.254.10.17188: RADIUS, Accounting Response (5), id: 0x9b length: 20 These two incomming packets are really identical. Even if you look closer with -v option of tcpdump. Same authenticator. --- -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse

high performance FR installation and unfinished requests

2008-06-17 Thread Michael Schwartzkopff
request Does the FR server drop accouting requests? How can we monitor how any requests the RADIUS server gets? Is this anything to worry? Thanks for any help. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45

Re: high performance FR installation and unfinished requests

2008-06-17 Thread Michael Schwartzkopff
Am Dienstag, 17. Juni 2008 15:00 schrieb Ivan Kalik: 200 requests per second is not much for freeradius but it's a lot for the database. It's highly likely that the database can't cope. We check this. DB response 3ms and the DB has 1000 threads. So no problem here. -- Dr. Michael

Re: high performance FR installation and unfinished requests

2008-06-17 Thread Michael Schwartzkopff
in FR to look after the actual performace? Like requests per second, backlog queue, ... Thanks. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail

Re: Deploying Freeradius in a HA environment

2008-06-16 Thread Michael Schwartzkopff
(LVS) and Linux-HA (heartbeat). If you use the localhost feature of LVS this will even work with two machines. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28

Re: Dynamic VLAN and FreeRadius

2008-05-20 Thread Michael Schwartzkopff
William E. Russell schrieb: All, I am trying to get the RADIUS server to not only authenticating the supplicant, but providing the NAS with a VLAN ID. I have tried certain resources and haven't been able to receive the VLAN ID. Can any provide any help in this area? Thanks William

Re: HOWTO PEAP + FreeRadius + XP Client

2008-04-29 Thread Michael Schwartzkopff
George KNIGHT schrieb: Hello everyone, Before I write my question here, I just want to let all of you know that I did lots of searching in both google and this email list. But couldn't find anything to get the answer. My question is I have been looking for a HOWTO paper for a beginner to

Re: FreeBSD, FreeRadius, PPPoE server

2008-04-20 Thread Michael Schwartzkopff
Marinko Tarlac schrieb: Hi to all. I know that this is FR mailing list but I'm looking for some material about pppoe server on freebsd and freeradius as a radius server. So, please send me some links for reading.. Thanks - List info/subscribe/unsubscribe? See

Re: SNMP in 2.0.2: segmentation Fault

2008-04-10 Thread Michael Schwartzkopff
Alan DeKok schrieb: Norbert Wegener wrote: I have 2.0.2 running and snmp enabled. When the snmp daemon dies, freeradius follows... When fixing the detail file handling in 2.0.3, I looked at the code handling the SNMP sockets. Ouch. I don't think it works... I tried fixing it,

FR 2.0.3, WinXP, PEAP and mschapv2

2008-04-04 Thread Michael Schwartzkopff
} Auth-Type MS-CHAP { mschapv2 } unix eap } Thanks for any hint. Michael Schwartzkopff - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: 802.1x Authentication

2008-02-01 Thread Michael Schwartzkopff
Am Freitag, 1. Februar 2008 08:29 schrieb Devinder Singh: Hi Does Free Radius has support for 802.1x authentication such as providing Certificate. Can it also integrate with MIcrosoft Active Direcrtory, Regards 2 x Yes. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse

Re: help for radius server in huge DS L service

2007-11-07 Thread Michael Schwartzkopff
thousand DSL service. Do you know what their archecture in radius setting? ls it different radius servers per LNS? Thank you for your help See: http://www.freeradius.org/testimonials.html -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany

Re: Freeradius Clustering

2007-10-15 Thread Michael Schwartzkopff
with an init script. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: [EMAIL PROTECTED] web: www.multinet.de Sitz der Gesellschaft: 85630 Grasbrunn

Re: R: LSB initscript compliance

2007-09-06 Thread Michael Schwartzkopff
Francesco Cristofori schrieb: What isn't compliant? The script /etc/init.d/freeradius is not compliant with these guidelines: http://www.linuxbase.org/spec/refspecs/LSB_3.0.0/LSB-Core-generic/LSB-Co re-generic/iniscrptact.html The script does not implement the "status"

Re: MAC Authentication

2007-05-14 Thread Michael Schwartzkopff
Kevin J schrieb: Does anybody know if FreeRadius supports the MAC Authentication? If so, how? Thanks in advance, Kevin - Building a website is a piece of cake. Yahoo! Small Business gives you all the tools to get online.

Re: FreeRadius + OpenLDAP + VLAN

2007-02-14 Thread Michael Schwartzkopff
-magazine.com/issue/52/Freeradius_802.1X.pdf -- Dr. Michael Schwartzkopff MultiNET Services GmbH Addresse: Bretonischer Ring 7; 85630 Grasbrunn; Germany Tel: +49 - 89 - 45 69 11 0 Fax: +49 - 89 - 45 69 11 21 mob: +49 - 174 - 343 28 75 mail: [EMAIL PROTECTED] web: www.multinet.de Sitz der

Re: configuring groups in sql tables

2006-12-14 Thread Michael Schwartzkopff
file like this: Perhaps you like to use the SQL-Group test like TestNAS1NAS-IP-Address == xxx.xxx.xxx.xxx SQL-Group == dialup, SQL-Group == adsl in the proxy config. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Bretonischer Ring 7 85630 Grasbrunn

Re: configuring groups in sql tables

2006-12-14 Thread Michael Schwartzkopff
Am Donnerstag, 14. Dezember 2006 10:23 schrieb Alexander Serkin: Michael Schwartzkopff пишет: Perhaps you like to use the SQL-Group test like TestNAS1NAS-IP-Address == xxx.xxx.xxx.xxx SQL-Group == dialup, SQL-Group == adsl in the proxy config

Re: meetinghouse supplicant

2006-12-14 Thread Michael Schwartzkopff
installation provide a RADIUS protocol stack? If yes, just configure FR to do proxy. 2) If no: Configure FR do ask eDir via LDAP. OpenLDAP is easy and there are lots of examples on the net. You should be able to transfer it to eDir. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Bretonischer Ring 7

Re: Quarantining a System using Freeradius

2006-11-28 Thread Michael Schwartzkopff
this. But there is another problem: How do you tell FR which system to be put into a quarantaine VLAN? Manually? You would have to install some kind of agent on all machines which test the machine for integrity and tell FR about the result. -- Dr. Michael Schwartzkopff MultiNET Services GmbH Bretonischer Ring 7

  1   2   >