Freeradius says it is listening on port 1812, but isn't

2010-03-24 Thread Matt Harlum
Hi, I'm running Freeradius 2.1.6 on MacOSX 10.5.7 on a Dual-G4 867Mhz PowerMac Since march last year I've had 2.1.6 installed however it's been switched off for the last few months. Recently I powered it back on and have run system updates etc and got to the point I am now When I launch

Re: Freeradius says it is listening on port 1812, but isn't

2010-03-24 Thread Nicolas Goutte
Am 24.03.2010 um 09:51 schrieb Matt Harlum: Hi, I'm running Freeradius 2.1.6 on MacOSX 10.5.7 on a Dual-G4 867Mhz PowerMac Since march last year I've had 2.1.6 installed however it's been switched off for the last few months. Recently I powered it back on and have run system updates etc

Re: Freeradius says it is listening on port 1812, but isn't

2010-03-24 Thread Fajar A. Nugraha
On Wed, Mar 24, 2010 at 3:51 PM, Matt Harlum m...@cactuar.net wrote: Hi, I'm running Freeradius 2.1.6 on MacOSX 10.5.7 on a Dual-G4 867Mhz PowerMac Since march last year I've had 2.1.6 installed however it's been switched off for the last few months. Recently I powered it back on and have

Re: Freeradius says it is listening on port 1812, but isn't

2010-03-24 Thread Matt Harlum
On 24/03/2010, at 8:21 PM, Fajar A. Nugraha wrote: On Wed, Mar 24, 2010 at 3:51 PM, Matt Harlum m...@cactuar.net wrote: Hi, I'm running Freeradius 2.1.6 on MacOSX 10.5.7 on a Dual-G4 867Mhz PowerMac Since march last year I've had 2.1.6 installed however it's been switched off for the

Re: Freeradius says it is listening on port 1812, but isn't

2010-03-24 Thread Matt Harlum
Hi, I believe the problem is now resolved The only things I changed was that my hosts file was wrong, the IP for the servers FQDN was incorrect but I'm not sure this is what it was I also turned off ip forwarding with sysctl -w net.inet.ip.forwarding=0 Even though natd, and the firewall have

Multiple radius servers with the same CA

2010-03-24 Thread sphaero
Hi All, I've been searching the archives for a while on some guidance into setting up multiple radius servers using the same CA for use with EAP/TTLS. I've generated a CA which is distributed to all the clients (i.e. SecureW2). I've got 2 radius servers for redundancy. All NAS devices have two

Re: Multiple radius servers with the same CA

2010-03-24 Thread Matt Harlum
Hi, is it possible that make server generated a new CA etc? I'd recommend making a copy of the current CA cert on each machine and doing a diff Regards, Matt Harlum On 24/03/2010, at 9:21 PM, sphaero wrote: Hi All, I've been searching the archives for a while on some guidance into

Re: Multiple radius servers with the same CA

2010-03-24 Thread sphaero
Matt Harlum wrote: Hi, is it possible that make server generated a new CA etc? I'd recommend making a copy of the current CA cert on each machine and doing a diff Regards, Matt Harlum [snip] You're absolutely right. I did a md5sum on the CA.pem on the production radius and

Re: Multiple radius servers with the same CA

2010-03-24 Thread John Dennis
On 03/24/2010 06:21 AM, sphaero wrote: Hi All, I've been searching the archives for a while on some guidance into setting up multiple radius servers using the same CA for use with EAP/TTLS. I've generated a CA which is distributed to all the clients (i.e. SecureW2). I've got 2 radius servers

Re: Multiple radius servers with the same CA

2010-03-24 Thread Matt Harlum
Hi, John covered pretty much everything I was going to say I'd recommend choosing a machine to generate your keys and certs on and sticking with that, otherwise you'll end up with SSL Certs with clashing serial numbers Plus it'll allow you to revoke certificates later if need be Regards,

Re: Freeradius says it is listening on port 1812, but isn't

2010-03-24 Thread Gary Gatten
If u really want 2 knw the issue, undo the changes one by one until it breaks again. - Original Message - From: freeradius-users-bounces+ggatten=waddell@lists.freeradius.org freeradius-users-bounces+ggatten=waddell@lists.freeradius.org To: FreeRadius users mailing list

Re: Freeradius says it is listening on port 1812, but isn't

2010-03-24 Thread Matt Harlum
After my previous email I've successfully re-installed my custom config and am able to auth my clients again Regards, Matt Harlum On 25/03/2010, at 12:11 AM, Gary Gatten wrote: If u really want 2 knw the issue, undo the changes one by one until it breaks again. - Original Message

Re: Multiple radius servers with the same CA

2010-03-24 Thread sphaero
Matt Harlum wrote: Hi, John covered pretty much everything I was going to say I'd recommend choosing a machine to generate your keys and certs on and sticking with that, otherwise you'll end up with SSL Certs with clashing serial numbers Plus it'll allow you to revoke certificates

Re: Multiple radius servers with the same CA

2010-03-24 Thread sphaero
sphaero wrote: Hi all, Thanks for these clarifications. So to clear this up I know have one machine to generate the certificates. This machine had it's CA setup according to instructions found in the certs/README distributed with FR 2. Certificates for a second radius server

Re: Multiple radius servers with the same CA

2010-03-24 Thread John Dennis
On 03/24/2010 11:13 AM, sphaero wrote: Matt Harlum wrote: Hi, John covered pretty much everything I was going to say I'd recommend choosing a machine to generate your keys and certs on and sticking with that, otherwise you'll end up with SSL Certs with clashing serial numbers Plus it'll

Re: Multiple radius servers with the same CA

2010-03-24 Thread sphaero
John Dennis wrote: [snip] Did you edit your eap.conf file to point to radius2.pem? Did you set your private_key_password in eap.conf to match $PASSWORD_CA used above? BTW, don't use the same password as in the example ;-) Did you verify the certs as suggested above? Saying

Christopher Abraham

2010-03-24 Thread Benjamin Marvin
http://sp69_0002.w.interia.pl/go.my.friend.htm _ La tua posta e molto altro anche in viaggio. Richiedi gratuitamente Windows Live Hotmail. https://signup.live.com/signup.aspx?id=60969- List

oliver hinz

2010-03-24 Thread Benjamin Marvin
http://www.music-works.de/lndex.html _ Hotmail: posta elettronica attendibile grazie alla protezione avanzata Microsoft dalla posta indesiderata.

Memory Leak on version 2.1.3

2010-03-24 Thread Zhang, Ge (Gina)
Hi, I am using 2.1.3 freeradius server and found memory leak. I use ttls+mschapv2 for authentication. After each authentication, the memory usage increases. Is there a patch fix for this? Thanks, Gina Zhang - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Memory Leak on version 2.1.3

2010-03-24 Thread Gary Gatten
there are at least 3 newer versions. Have you tried the latest and/or read the changelog? - Original Message - From: freeradius-users-bounces+ggatten=waddell@lists.freeradius.org freeradius-users-bounces+ggatten=waddell@lists.freeradius.org To: FreeRadius users mailing list

RE: Memory Leak on version 2.1.3

2010-03-24 Thread Zhang, Ge (Gina)
The server is in production and we won't upgrade for a while. Where to find the changelog? Thanks for your help! Regards, Gina -Original Message- From: freeradius-users-bounces+gina.zhang=alcatel-lucent@lists.freeradius.org

Re: Memory Leak on version 2.1.3

2010-03-24 Thread Matt Harlum
Hi, Even though you're running it in production I'd recommend updating every now and again. IMHO it's worth it, RADIUS is used for Authentication after all. I tend to keep a copy of my last build in case I need to revert anyway. Regards, Matt Harlum On 25/03/2010, at 10:35 AM, Zhang, Ge