RE: framedipaddress

2010-05-12 Thread Santiago Balaguer García
We worked with Meru as Access Point, but not as NAS. If you want to autrhenticate users, then it is not the correct device; use another one. Anyway I think there is other better devices in the market at he same cost. Date: Tue, 11 May 2010 17:16:31 +0200 From: al...@deployingradius.com

RE: How to implement EAP-TLS with freeradius and wpa_supplicant?

2010-05-12 Thread Zheng, Jiajia
Sorry, I forgot the subject. Zheng, Jiajia wrote: Hi, I hope it is the right place to ask questions about EAP-TLS with radius server. I installed freeradius-2.1.6 rpm package on my Fedora 10 system. EAP_PEAP, EAP_TTLS_CHAP, TTLS_MD5, TTLS_MSCHAP, etc. work fine. However, EAP-TLS handshake

Re: framedipaddress

2010-05-12 Thread Alan Buxey
Hi, We worked with Meru as Access Point, but not as NAS. but an Access Point IS a NAS alan - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: freeradius-server-2.1.8

2010-05-12 Thread Alan Buxey
Hi, and ther is nothing ! in the output of radiusd -X nothing at all? or do you mean its quiet after the 'ready to process requests' line? if so, check your firewall on the servermake sure UDP 1812-1824 are allowed in to the daemon! alan - List info/subscribe/unsubscribe? See

RE: framedipaddress

2010-05-12 Thread Paweł Pogorzelski
Listen we've already bought complete meru sytem to eduroam project and there is no turning back. There are many great feature which only meru have. Right now i must find solution for this sytem. -- Pozdrawiam/Best regards Paweł Pogorzelski e-mail: ppogorzel...@gmail.com - List

Re: framedipaddress

2010-05-12 Thread Alan Buxey
Hi, Listen we've already bought complete meru sytem to eduroam project and there is no turning back. There are many great feature which only meru have. Right now i must find solution for this sytem. I'm uncertain to your tone here - but fundamentally, if the hardware doesnt send an attribute

Re: framedipaddress

2010-05-12 Thread Chris Knipe
What are you authenticating? Where is the radius debug logs? Chances are you are more than likely authenticating a Wireless Association to the Access Point - not a PPP type of service where IP addresses are involved. Debug your radius logs a bit and perhaps post a bit more detail 2010/5/12

Re: framedipaddress

2010-05-12 Thread Bruce Nunn
I manage a large Meru instalation. If you want to get an IP address logged with a user name or Mac address like Aruba does you can't do it unless you use the captive portal. And the captive portal only sends this info via syslog as u...@1.2.3.4. For the auditors at our site, we send the auth

Re: How to implement EAP-TLS with freeradius and wpa_supplicant?

2010-05-12 Thread Alan DeKok
Zheng, Jiajia wrote: 11. EAP-TLS failed, see the attached tls.log for the output of radiusd Could you help me out on this issue? Paste the debug output into the self-help form at: http://networkradius.com/freeradius.html Look for red text. Is there anything I did wrong? Let me know if

When to ldap?

2010-05-12 Thread Dean, Barry
I am working on a new radius config and have been trying to avoid the lookup in LDAP I have been seeing for the outer identity. I have moved to 2.1.8 with the inner-tunnel virtual host enabled. I have an authorise section for the relevant virtual server that has: authorize {

Can proxy packet be configured to be resent in case no response from the home server

2010-05-12 Thread Zhang, Ge (Gina)
Hi, Do anyone know whether we can configure to resend proxy packet in case no response is received? Thanks, Gina Zhang - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Configuration trouble (2.1.8 for use with WiMAX)

2010-05-12 Thread Sumedh Sathaye
Dear all, I am trying to use FreeRadius 2.1.8 for AAA in a wimax network. The problem I am facing is that the WiMAX-MSK keys are not generated by FreeRadius. Can someone help me figure out what I am not doing OR doing incorrectly? I have configured the raddb/sites-available/default and

RE: Configuration trouble (2.1.8 for use with WiMAX)

2010-05-12 Thread David Peterson
Which product are you using? Some WiMax NAS do not send the proper keys to Freeradius. I have gotten FR to work with pretty much all of the major brands of WiMax we sell. David From: freeradius-users-bounces+david.peterson=acc-corp@lists.freeradius.org

RE: Configuration trouble (2.1.8 for use with WiMAX)

2010-05-12 Thread Sumedh Sathaye
David, thanks for your reply. I am using a simulated WIMAX ASN gateway from the BOC-WiMAX distribution. It's available at: http://opensource.bolloretelecom.eu/projects/boc-wimax/ Sounds like you have insights into keys that NAS equipment does not send to FreeRadius. Can you share that

RE: Configuration trouble (2.1.8 for use with WiMAX)

2010-05-12 Thread David Peterson
I have looked into BOC-WIMAX and it looks interesting but fairly incomplete. I have not tried to get it working 100% so I have only a little experience. Some of the NAS simply want to talk to FR via EAP-TTLS and receive only a Framed-Filter-Id response. Is there a manufacturer you are

sending Access-request, Access-Reject

2010-05-12 Thread dorra aa
hi can someone help me in that i add a users : abc cleartext-password:=123 and i run freeradius -X after that i do: r...@pfe-laptop:/home/pfe# radtest abc 123 localhost 1812 testing123 Sending Access-Request of id 48 to 127.0.0.1 port 1812 User-Name = abc User-Password = 123

Re: sending Access-request, Access-Reject

2010-05-12 Thread John Dennis
On 05/12/2010 08:01 PM, dorra aa wrote: hi can someone help me in that i add a users : abc cleartext-password:=123 It's right there in the debug output users: Matched entry DEFAULT at line 153 users: Matched entry abc at line 216 modcall[authorize]: module files returns ok for request 0

Re: How to implement EAP-TLS with freeradius and wpa_supplicant?

2010-05-12 Thread sunhualing
检查一下时间系统,要求在证书的有效期内 CA的事情有点难说,你再检查下配置 On Thu, May 13, 2010 at 10:53 AM, Zheng, Jiajia jiajia.zh...@intel.comwrote: Alan DeKok wrote: Zheng, Jiajia wrote: 11. EAP-TLS failed, see the attached tls.log for the output of radiusd Could you help me out on this issue? Paste the debug

Re: Clark Wang has invited you to Dropbox

2010-05-12 Thread sunhualing
Dropbox has been defeated by the GreatFireWall, we are so sorry On Wed, May 5, 2010 at 1:39 PM, Dropbox no-re...@dropbox.com wrote: We're excited to let you know that Clark Wang has invited you to Dropbox! Clark Wang has been using Dropbox to sync and share files online and across