-Station-Id as the DNIS number sent from
the PRI, so if you didn't configure some kind of translation, it's probabily
mapping DNIS as sent by the PRI provider.
Ing. Paolo Rotela
Jefe Técnico
Blue Telecom
- Original Message -
From: Madhvi Gokool [EMAIL PROTECTED]
To: freeradius-users
I do some post-proccesing for accounting and I do
it through the exec module. I call at the end of accounting section one instance
of the exec module wich calls a script wich does some post-processing, updates
some tables and distinguish processing between Start/Alive/Stop.
-
for the preauth fase on the cisco, and
another for the real auth fase. So you will be seeing two Access-Request
packets from NAS.
Ing. Paolo Rotela
Jefe Técnico
Blue Telecom
- Original Message -
From: Alan DeKok [EMAIL PROTECTED]
To: FreeRadius users mailing list freeradius-users
Yep, but I need some more info. Your sql section in radiusd.conf and your
sql_accounting* definitions in sql.conf. Also the accounting section in
radiusd.conf, in wich it must be a sql instance.
Ing. Paolo Rotela
Jefe Técnico
Blue Telecom
Eng. Paolo Rotela
CTO
Blue Telecom
- Original
RFCs are a little messy about this issue.
Message-Authenticator in Accounting Packets are not well standarized, so
everyone does what they want about this.
Do a search in the list for "FreeRadius Proxying
and Message-Authenticator" for more information.
Eng. Paolo RotelaCTOBlue
Telecom
there, and they are correct.
The sql connection is working, and post auth data gets logged fine, just
not the accouting stuff.
Cheers, Ben
On Wed, 2005-09-28 at 09:11 -0300, Paolo Rotela wrote:
Yep, but I need some more info. Your sql section in radiusd.conf and your
sql_accounting* definitions in sql.conf. Also
One thing I came across when upgrading from 0.9.3 to 1.0.5 is that the
default allowed characters for sql queries changed. I used [ and ] in my
usernames, so the results after upgrade whas that my accounting reccords
where set with the mime-equivalent of [ and ]. I had to add these characters
if the debugging mode tells you
something :)
Cheers, Ben
On Wed, 2005-09-28 at 15:08 -0300, Paolo Rotela wrote:
You should have something like this in your radiusd.conf
$INCLUDE ${confdir}/sql.conf
Then you should have this in sql.conf (or the file pointed to by the
include, my example
Seeing your output, it says that it's failing
because "post-auth" module is failing due to the fail of the "sql" module
invoked. Lookup your radiusd.conf file, and see why you are using sql in
post-auth, and see if this setup is correct.
- Original Message -
From:
Wilson Lie
@@
break;
}
- /* Patch by Martin Arrieta and Paolo Rotela.
-* Ignores Message-Authenticator in Accounting
Response packets
-* Because RFCs doesn't specify how to calculate
From: Alan DeKok [EMAIL PROTECTED]
Paolo Rotela [EMAIL PROTECTED] wrote:
No. *Cisco* created it's own version of RADIUS by adding a
Message-Authenticator to the Accounting-Response.
You are right.. Cisco ALSO created it's own version of RADIUS with this damn
thing.
And it *is* legal
- Original Message -
From: Alan DeKok [EMAIL PROTECTED]
To: FreeRadius users mailing list freeradius-users@lists.freeradius.org
Sent: Thursday, September 15, 2005 2:50 PM
Subject: Re: FreeRadius Proxying and Message-Authenticator
Paolo Rotela [EMAIL PROTECTED] wrote:
...
I don't
]
Subject: Re: FreeRadius Proxying and Message-Authenticator
To: FreeRadius users mailing list
freeradius-users@lists.freeradius.org
Message-ID: [EMAIL PROTECTED]
Paolo Rotela [EMAIL PROTECTED] wrote:
Hi. I've downloaded FR 1.0.5 whch is supposed to have a bugfix for
Message-Authenticator handling
Ing. Paolo Rotela
Jefe Técnico
Blue Telecom
- Original Message -
From: Paolo Rotela [EMAIL PROTECTED]
To: Freeradius Users freeradius-users@lists.freeradius.org
Sent: Wednesday, September 14, 2005 10:20 AM
Subject: Re: FreeRadius Proxying and Message-Authenticator
I wonder
From: Alan DeKok [EMAIL PROTECTED]
Paolo Rotela [EMAIL PROTECTED] wrote:
I wonder if it is correct to discard a packet based on the presence of an
attribute witch use is not defined by any standard.
No. FreeRADIUS doesn't do that.
The Message-Authenticator attribute *is* defined
attribute set. FR receives
it and discards it with error:
Error: Received packet from IP address hidden with invalid
Message-Authenticator! (Shared secret is incorrect.)
I'am missing something?
Any help will be very appreciated.
Eng. Paolo Rotela
CTO
Blue Telecom
-
List info/subscribe
, 19 Aug 2005 15:09:23 -0400
From: Alan DeKok [EMAIL PROTECTED]
Subject: Re: FR with MySQL. Proxying and repeated entries
To: FreeRadius users mailing list
freeradius-users@lists.freeradius.org
Message-ID: [EMAIL PROTECTED]
Paolo Rotela [EMAIL PROTECTED] wrote:
With this one, Access-* packets go OK
Hi. Sorry if this is a dumb thing, but I've searched a lot and din't find
any solution to this problem.
I'm using freeradius (versions 0.9.3, 1.0.0 and 1.0.4) with MySQL 3.23 and
4.1.7 (different mappings between FR and My)
I have some clients to wich I'm proxying requests to some realms.
18 matches
Mail list logo