use of reply-items in acct_users file??

2006-04-04 Thread DilipSimha.N.M
hi, what is the use of reply-items attributes in acct_users file??? where and how can they be used? also what is the way to avoid logging some (not all) accounting users (in radacct directory)?? Basically i don't want to log the accouting packets of some specified users. --DilipSimha - List

Re: conflicts/duplicates need

2006-04-04 Thread Peter Nixon
On Mon 03 Apr 2006 23:08, Duane Cox wrote: List: I've been using free radius for about a month and learning as I go. But I've noticed that I get a period every few hours when freeradius doesn't authenticate. I'm not sure what the problem is, but here is the log as captured in

Re: Install freeradius 1.1.1 get error

2006-04-04 Thread monish ar
On 4/4/06, 杨呈飞 [EMAIL PROTECTED] wrote: After ./configure �Cprefix=/usr/local/freeradius make make install I get: /home/test/freeradius-1.1.1/install-sh -c -c .libs/libradius-1.1.1.so /usr/local/freeradius/libradius-1.1.1.so (cd /usr/local/freeradius rm -f libradius.so ln -s

Error on compile with eap_peap_tls

2006-04-04 Thread Franck
I have the error with the version 1.1.1, and the snapshot-20060604. I have the log available for people who want to have a look. best regards - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Two times authorization and/or both proxying and serving

2006-04-04 Thread Mark Supersonik
Thank you very much for this answer... We will check the domains quota by a query into Mysql table located in proxy's own database Thank you in advance for the help you can give us!!! From: Alan DeKok [EMAIL PROTECTED] Reply-To: FreeRadius users mailing list

Couldn't stop freeradius server!!

2006-04-04 Thread lmyho
Hi All, Installed freeradius 1.1.0-1 on debian system (2.6.15-1-686). The radius server started automatically well each time when the system booting. But I wanted to stop it to do some testing using my modified configuration files. I tried to stop the server using command: 'freeradius stop'

(no subject)

2006-04-04 Thread Bugneac Constantin
Hi! I have Freeradius ver. 1.1.1 running with MySQL and configured for EAP-PEAP to work with Cisco AP1231AG Wi-Fi Access Point. It is used for user authentication and accounting. I configured AP for accounting updates every 1 minute. I observed a strange behavior. This I get when user is logged

Re: Error on compile with eap_peap_tls

2006-04-04 Thread Nicolas Baradakis
Franck wrote: I have the error with the version 1.1.1, and the snapshot-20060604. I have the log available for people who want to have a look. Please copy the log on some website, and post the URL to the list. You should also tell us the operating system you're using. -- Nicolas Baradakis -

Re: Error on compile with eap_peap_tls

2006-04-04 Thread Franck
hi, That's exactly what I was saying myself when I received your mail, how stupid I was not to post the log on the net with a link! here it is: http://acmdb.free.fr/freeradius and I'm using mandriva 2006 (updated) Remarque: I was just able to compile the version 1.1.1, but I haven't any

RedHat Security updates for FR

2006-04-04 Thread Dennis Skinner
RedHat Enterprise (and CentOS) has finally released security updates for their FreeRADIUS rpms: https://rhn.redhat.com/errata/RHSA-2006-0271.html Incase anyone is interested -- Dennis Skinner Systems Administrator BlueFrog Internet http://www.bluefrog.com - List

freeradius 1.1.1

2006-04-04 Thread Wolfram Greinert
Hello, the FreeRadius Wiki say HP/UX is a supported platform :-) I try to compile freeradius 1.1.1 on HP-UX 11i with HP's cc but I have no success :-( My question: have anybody successful compiled freeradius 1.1.1 on HP-UX 11i with the HP compiler and can I use HP's TCB for user authentification

Redundant ldap's bug?

2006-04-04 Thread Paulo Cabrita
Hi! I have freeradius 1.1.0 working and I want to have a redundant/load balancing mecanism but when I use TLS to secure the communication with the ldaps, FR only works with one server (eg: ldapmaster). The log says that it cannot contact the other server (eg: ldapslave). But if I use one

Re: Couldn't stop freeradius server!!

2006-04-04 Thread monish ar
On 4/4/06, lmyho [EMAIL PROTECTED] wrote: Hi All,Installed freeradius 1.1.0-1 on debian system (2.6.15-1-686).The radius serverstarted automatically well each time when the system booting. But I wanted to stop it to do some testing using my modified configuration files. I tried to stop theserver

RE: Implimenting Capping with FreeRadius

2006-04-04 Thread Jaco van Tonder
I have modified the sqlcounter module to not only replying with a Session-Timeout but with another attribute - Recv-Limit in my case as it is supported by my NAS. The counter module then simply does a query on the database during the access request processing and returns the limit allowed for the

RE: RedHat Security updates for FR

2006-04-04 Thread Alex M
Do you know bugs that this update fixes applies to any installs o n redhat or only to RPMs? -Original Message- From: [EMAIL PROTECTED] .org [mailto:[EMAIL PROTECTED] eeradius.org] On Behalf Of Dennis Skinner Sent: Tuesday, April 04, 2006 9:13 AM To: FreeRadius users mailing list

Re: freeradius 1.1.1

2006-04-04 Thread Peter Nixon
Hi Wolfram As far as I know none of the core developers use HP/UX so it is in the category of Known to work at some point in the past but possibly not work at present/on all versions of HP/UX. We would of course be happy to accept patches to fix any problems thrown up by HP's cc (as long as

Re: conflicts/duplicates need

2006-04-04 Thread Duane Cox
This must be right, or on the right track because I have 2 radius servers with identical configuration and both share the same database. Both servers experience this outage at the same time... Thanks Duane Cox - Original Message - From: Alan DeKok [EMAIL PROTECTED] To: Duane Cox [EMAIL

Re: post-auth question, prevent exec if attribute == foo

2006-04-04 Thread Duane Cox
change NAS-IP-Address before relayingDoes anyone have any insight to this? - Original Message - From: Duane Cox To: FreeRadius users mailing list Sent: Monday, April 03, 2006 4:44 PM Subject: post-auth question, prevent exec if attribute == foo Hello List: I'm using the post-auth

Re: conflicts/duplicates need

2006-04-04 Thread Duane Cox
Well I believe Alan is correct, that it must be related to the database because I have 2 radius servers both sharing the same database, and they both experience this outage at the exact same time. It lasts for about 45 seconds every several hours. I'm using unixODBC and MSSQL database, the

Re: RedHat Security updates for FR

2006-04-04 Thread Dennis Skinner
Alex M wrote: Do you know bugs that this update fixes applies to any installs o n redhat or only to RPMs? Not sure what you mean. If you installed FR via RPM, this would update it. If you installed it from source (not the source rpm), then you will most likely screw up your FR install by

RE: L2tp and fixed Framed IP Address for ADSL customers

2006-04-04 Thread Adil Bikarbass
Hello All Just to let you know that i finally find the solution to setup a fixed IP into an l2tp tunnel for my DSL subscribers I needed to tell Radius to send the fixed Framed IP address in the access-req packet by adding the following to my cisco config: radius-server attribute 8

module programming

2006-04-04 Thread Mingyur Koblensky
Hi, i would like to develop an authentication method based on EAP... I've look around a bit but didn't find much documentation, is there something I'm missing ? I've also looked in the /doc directory ( coding-methods.txt, module_interface ... ) thank you, kky - List

Re: Error on compile with eap_peap_tls

2006-04-04 Thread Nicolas Baradakis
Franck wrote: here it is: http://acmdb.free.fr/freeradius and I'm using mandriva 2006 (updated) Remarque: I was just able to compile the version 1.1.1, but I haven't any idea why it works now, but the snapshot doesn't compile! There is indeed a typo in rlm_eap_tls.c. Do a cvs update or

L2tp and fixed Framed IP Address for ADSL customers

2006-04-04 Thread Adil Bikarbass
Hello All Just to let you know that i finally find the solution to setup a fixed IP into an l2tp tunnel for my DSL subscribers I needed to tell Radius to send the fixed Framed IP address in the access-req packet by adding the following to my cisco config: radius-server attribute 8

Re: RedHat Security updates for FR

2006-04-04 Thread Alan DeKok
Dennis Skinner [EMAIL PROTECTED] wrote: for questions regarding security related bug fixes and FR. The notice from RedHat says that they backported a couple security fixes to the 1.0.1 version (although their descriptions of the bugs don't match the ones on the FR site as closely as I'd

Re: Redundant ldap's bug?

2006-04-04 Thread Alan DeKok
Paulo Cabrita [EMAIL PROTECTED] wrote: I have freeradius 1.1.0 working and I want to have a redundant/load balancing mecanism but when I use TLS to secure the communication with the ldaps, FR only works with one server (eg: ldapmaster). The log says that it cannot contact the other server

Re: use of reply-items in acct_users file??

2006-04-04 Thread Alan DeKok
DilipSimha.N.M [EMAIL PROTECTED] wrote: what is the use of reply-items attributes in acct_users file??? where and how can they be used? mainly for setting things like Exec-Program. also what is the way to avoid logging some (not all) accounting users (in radacct directory)?? Basically i

Re: Couldn't stop freeradius server!!

2006-04-04 Thread lmyho
--- monish ar [EMAIL PROTECTED] wrote: Instead of using the command to stop the radius daemon, herez another simple way. At the console type ps -ax | grep radiusd , this will give u the list of radius servers currently along with its process IDs. The next thing u do is type kill

Re: Couldn't stop freeradius server!!

2006-04-04 Thread debik
Try killall radiusd or killall freeradius. I have debian and that commands are allwright. - Original Message - From: lmyho [EMAIL PROTECTED] To: FreeRadius users mailing list freeradius-users@lists.freeradius.org Sent: Tuesday, April 04, 2006 6:19 PM Subject: Re: Couldn't stop

RE: Couldn't stop freeradius server!!

2006-04-04 Thread Alex M
I had the same problem on RedHat (well name was the way it supposed to be) it was caused by some conflict between fr and something with os... still investigating the problem, but in my case kill and reboot, halt command where blocked I think that was cased because SSH connection was lost

rlm_ldap authentication

2006-04-04 Thread monish ar
hi ppl, i'm havin trouble authenticating radius with rlm_ldap module. Could anyone of u mail me the sample configuration files in case ur workin radius for LDAP authenticationthink i'm goin wrong in my config settings but dunno where, i just need a working reference for the configuration if

Worked!- RE: Couldn't stop freeradius server!!

2006-04-04 Thread lmyho
Hi Alex, The command '/etc/init.d/freeradius stop' worked! but 'freeradius stop' won't! Maybe you can try this too? Regards, leo :) --- Alex M [EMAIL PROTECTED] wrote: I had the same problem on RedHat (well name was the way it supposed to be) it was caused by some conflict between fr and

Worked!- Re: Couldn't stop freeradius server!!

2006-04-04 Thread lmyho
Thank you Debik! Command 'etc/init.d/freeradius stop' worked! but 'freeradius stop' won't. Found the problem anyway. Thanks! Regards, leo --- debik [EMAIL PROTECTED] wrote: Try killall radiusd or killall freeradius. I have debian and that commands are allwright. - Original

RE: Worked!- RE: Couldn't stop freeradius server!!

2006-04-04 Thread Seferovic Edvin
Try linking /etc/init.d/freeradius to your /sbin ;) Regards, Edvin -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] g] On Behalf Of lmyho Sent: Dienstag, 04. April 2006 21:04 To: 'FreeRadius users mailing list' Subject: Worked!- RE: Couldn't stop freeradius server!!

Freeradius won't authorize off redundant sql

2006-04-04 Thread Cris Boisvert
Freeradius running using redunant sql scenario. If first sql is not available it falls to secondary.. When FR Start is links correctly to both databases. When the primary stops.. It won't respond at all. Below is the radiusd -X output. Original request is with both primary and secondary sql

rlm_ldap: object not found

2006-04-04 Thread Marc Delisle
Hi, thanks to those who answered me for my previous post. It turned out to be a certificate problem. Now, freeradius binds to LDAP on Netware, but does not find any object: rlm_ldap: waiting for bind result ... rlm_ldap: Bind was successful rlm_ldap: performing search in o=college, with

Re: Freeradius won't authorize off redundant sql

2006-04-04 Thread Alan DeKok
Cris Boisvert [EMAIL PROTECTED] wrote: Freeradius running using redunant sql scenario. If first sql is not available it falls to secondary.. When FR Start is links correctly to both databases. When the primary stops.. It won't respond at all. Below is the radiusd -X output. ...

conditional post-auth ???

2006-04-04 Thread Duane Cox
Is there a way to have a conditional if statement in the post-auth process? For instance, I don't want to log to sql (postauth_query) if the nas-ip-address == foobar Is this possible? TIA Duane Cox - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

How to make FR reset the logs

2006-04-04 Thread Mordor Networks
hiIs it possible to make FR remove all monthly accounting logs from the database mysql? - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: How to make FR reset the logs

2006-04-04 Thread Alan DeKok
Mordor Networks [EMAIL PROTECTED] wrote: Is it possible to make FR remove all monthly accounting logs from the database mysql? No. That's what external cron jobs are for. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Why is the post-auth process result returned by jRadius Module over-written by freeradius?

2006-04-04 Thread Yizhi Lao
Hi all, I am struggling with this issue right now. I have installed a JRadius module on FreeRadius 1.1.0 , and made FreeRadius to call the Jradius module in post-auth section. The Jradius handler is supposed to replace the access-accept packet obtained from prior authentication with a

Re: rlm_ldap: object not found

2006-04-04 Thread monish ar
Hey Mark, I've got the same problem as yours and i've been restlessly trying to fix it. Its been 2 days now and i still cant figure what to do.It seems that rlm_ldap is not able to authenticate to the user credentials that you've specified, is that right? Even I get the successful bind but not

Re: rlm_ldap: object not found

2006-04-04 Thread Sayantan Bhowmick
HI, Change the filter configuration in ldap section of radiusd.conf to the following: filter = (cn=%{Stripped-User-Name:-%{User-Name}}) -Sayantan On Wed, Apr 5, 2006 at 1:53 am, in message [EMAIL PROTECTED], Marc Delisle [EMAIL PROTECTED] wrote: Hi, thanks to those who answered me for