RE: Multiple entries for a realm

2006-12-14 Thread Santiago Balaguer García
I try both but without success. I know if freeradius choose one server or another because for each radius we stablish a VPN, so I can see in my Cisco VPN concentrator which radius server my freeradius choosed. For each realm entry my roaming partner and we get up a VPN. Date: Wed, 13 Dec

configuring groups in sql tables

2006-12-14 Thread Alexander Serkin
Sorry, may be my question was not spelled well. Actually i need to move multiple default entries from users file into sql table. Is it possible to create multiple DEFAULT instances in sql tables istead of placing them in users file like this: DEFAULT Huntgroup-Name == MSK, Realm ==

Re: configuring groups in sql tables

2006-12-14 Thread Michael Schwartzkopff
Am Donnerstag, 14. Dezember 2006 09:39 schrieb Alexander Serkin: Sorry, may be my question was not spelled well. Actually i need to move multiple default entries from users file into sql table. Is it possible to create multiple DEFAULT instances in sql tables istead of placing them in users

Re: configuring groups in sql tables

2006-12-14 Thread Alexander Serkin
Michael Schwartzkopff пишет: Perhaps you like to use the SQL-Group test like TestNAS1NAS-IP-Address == xxx.xxx.xxx.xxx SQL-Group == dialup, SQL-Group == adsl in the proxy config. Sorry, Michael. Did not understand this quite well. My multiple DEFAULT

Re: help

2006-12-14 Thread A . L . M . Buxey
Hi, I have experenced the following issues after following your instructures on your webpage: 1.) [EMAIL PROTECTED] ~]# net join -U Administrator Administrator's password: [2006/12/12 12:39:38, 0] utils/net_ads.c:ads_startup(186) ads_connect: Invalid credentials

Re: configuring groups in sql tables

2006-12-14 Thread Michael Schwartzkopff
Am Donnerstag, 14. Dezember 2006 10:23 schrieb Alexander Serkin: Michael Schwartzkopff пишет: Perhaps you like to use the SQL-Group test like TestNAS1NAS-IP-Address == xxx.xxx.xxx.xxx SQL-Group == dialup, SQL-Group == adsl in the proxy config.

meetinghouse supplicant

2006-12-14 Thread Mariano Morano
Hi all, we have a customer who wants to use the Meetinghouse supplicant (now cisco) integrated with Novell client. The customer want to use 802.1x (EAP-TLS / EAP-TTLS) authentication based on username and password stored in eDirectory. Also he wants to use Freeradius. So we want to know:

Re: meetinghouse supplicant

2006-12-14 Thread Michael Schwartzkopff
Am Donnerstag, 14. Dezember 2006 11:58 schrieb Mariano Morano: Hi all, we have a customer who wants to use the Meetinghouse supplicant (now cisco) integrated with Novell client. The customer want to use 802.1x (EAP-TLS / EAP-TTLS) authentication based on username and password stored in

Chap authentication

2006-12-14 Thread fjlagos
Hello: How can i set a basic CHAP authentication? What parameters and files i must set? Can you send me an example? Saludos y Gracias Francisco - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Chap authentication

2006-12-14 Thread Kevin Bonner
On Thursday 14 December 2006 07:12, [EMAIL PROTECTED] wrote: How can i set a basic CHAP authentication? What parameters and files i must set? The default freeradius config supports CHAP, so all you need to supply is a password for the user. According to [1], CHAP requires the cleartext

Re: Session section misconfiguration?

2006-12-14 Thread Alan DeKok
Francesco Cristofori wrote: I'm trying to understand a freeradius 1.0.0 + mysql 3.23.45 installation (solaris8) someone else made some years ago: in radiusd.conf i have this section: You should probably upgrade to 1.1.3. session { radutmp sql } I believe it's not a

Re: meetinghouse supplicant

2006-12-14 Thread Alan DeKok
Mariano Morano wrote: The customer want to use 802.1x (EAP-TLS / EAP-TTLS) authentication based on username and password stored in eDirectory. Also he wants to use Freeradius. EAP-TTLS, with PAP in the SSL tunnel will work. 1) is it possible ? it means ...can we use freeradius and eDir as

Re: Chap authentication

2006-12-14 Thread romero.cl
Hi. You can try my how to eap/peap + mschapv2 (in spanish). If you only want chap, the config is similar (more simple). Take a look and post here any questions. Daniel Romero P. Santiago, Chile. - Original Message - From: [EMAIL PROTECTED] To: freeradius-users@lists.freeradius.org

Re: Proxy-State problem

2006-12-14 Thread Alan DeKok
Cory Robson wrote: Authentication packets are received and the radius daemon passes an auth ok but doesn’t return the proxy-state packet correctly, as a result the user is not authorized. All that is passed seems to be a hex dump and not the same as what is received. Let me guess: you ran

R: Session section misconfiguration?

2006-12-14 Thread Francesco Cristofori
Alan, thanks for quick answering. You should probably upgrade to 1.1.3. It's the next thing in the todo list, after I have understood configuration. :-) Are there any particular caveats on upgrading or best practices I should know? If you're not using it, sure. Hmmm... I need to make a

Accounting data not being properly written to mySQL database.

2006-12-14 Thread Dave Martin
GentlePersons, I'm in the process of converting from flat file to mySQL database for our RADIUS accounting. I've modified the accounting_start_query entry in sql.conf to: accounting_start_query = INSERT into ${acct_table1} \ SET \ AcctSessionId =

Re: R: Session section misconfiguration?

2006-12-14 Thread Alan DeKok
Francesco Cristofori wrote: Are there any particular caveats on upgrading or best practices I should know? Install the new version in a different directory (/opt/freeradius-1.13), but it won't over-write your existing config. Hmmm... I need to make a little investigation on this, but I

FREERADIUS USING IP POOLS

2006-12-14 Thread Tomas Eduardo Lotina Ramos
HOW CAN I USE IP POOLS WITH FREERADIUS, MY NAS is a cisco Linksys WRT54Gnow im working with freeradius 1.1.3 and mysql 5.02in ubuntu drapper and is working fine, i have my users stored in the radcheck table, but iwant to dividethe users in two groups and assing a different range of ip pools to

Re: FREERADIUS USING IP POOLS

2006-12-14 Thread Jan Mulders
Read the documentation in radiusd.conf, and experimental.conf. It's all there. You need two rlm_ippool modules instantiated, and placed in the postauth and accounting sections of the config file. You also need to add Pool-Name := pool1name in radgroupcheck under the name of group 1, and the same

Re: FREERADIUS USING IP POOLS

2006-12-14 Thread Alan DeKok
Tomas Eduardo Lotina Ramos wrote: HOW CAN I USE IP POOLS WITH FREERADIUS, MY NAS is a cisco Linksys WRT54G Which is doing wireless, right? You will need a DHCP server to assign IP addresses. Alan DeKok. -- http://deployingradius.com - The web site of the book