Re: FreeRadius+AD integration

2007-05-01 Thread shrikant Bhat
Alan, My intention is not argue, since I coudnt understand the debug I posted the messege. On 4/30/07, Alan DeKok [EMAIL PROTECTED] wrote: shrikant Bhat wrote: I dont have the user in Active directory, yet free radius sends a accept packet. I did read the debug output, unlike you. It

Re: Freeradius Auth via LDAP against Active Directory Server 2003

2007-05-01 Thread shrikant Bhat
Jacob, Could you please send the steps you followed to integrate ad with FR?. I am completely lost and confused with the information available on this . thanks, SB On 5/1/07, Jacob Jarick [EMAIL PROTECTED] wrote: Thanks for the Tip ryan but I have been down that road and 2 reasons stopped me:

Help stuck on error: rlm_ldap: LDAP login failed: check identity, password settings in ldap section of radiusd.conf

2007-05-01 Thread shrikant Bhat
How did u resolve this issue? thanks SB - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Howto Freeradius+Authentication, help me.

2007-05-01 Thread vicente barrientos
Hi all, Could you please send the steps you followed to integrate Freeradius+Authentication. thanks very much. From:[EMAIL PROTECTED]Reply-To:freeradius-users@lists.freeradius.orgTo:freeradius-users@lists.freeradius.orgSubject:Freeradius-Users Digest, Vol 25, Issue 2Date:Tue, 01 May 2007

Re: Auth-Type Crypt

2007-05-01 Thread Alan DeKok
Arran Cudbard-Bell wrote: and I noticed the Auth-Type was no longer being set to LDAP, but instead to Crypt... mmm clever auto header function... Saves an ldap bind :) Yup. Just how is Auth-Type Crypt being processed ??? In the server core, unfortunately. That should be fixed, but

Re: No available IP Addresses in the pool ...

2007-05-01 Thread Florin
Hi Thibault, Hi Alan, Thank you very much for coming back to me on this. If not, confirm that the pool module name is defined in the acctounting{} section of radiusd.conf and that your NAS sends accounting Stop messages. The accounting is performed on a different machine (physically) so no

Re: libradius error

2007-05-01 Thread Nicolas Baradakis
Roberto Greiner wrote: I've tried another way, setting 'LD_LIBRARY_PATH=/usr/lib/freeradius/', but now I'm getting a new error: ibatubi:/etc# radwho Wed Apr 25 09:58:08 2007 : Error: Unable to open file /usr/local/etc/raddb/radiusd.conf: No such file or directory radwho: Error reading

problem with Dell connection manager?

2007-05-01 Thread Matt Ashfield
HI All We are running our wireless using FR to authenticate against LDAP. A user can login on a laptop, no problem, but when he then goes to a Dell laptop which uses a Dell Connection Manager program, it fails. The odd thing is is that in both cases there is an Access-Accept packet going out,

Configure freeradius with authentication

2007-05-01 Thread vicente barrientos
Hi all. Somebody Could help me, I need to configure a freeradius with authentication. Thanks very much Visita MSN Latino Entretenimiento: ¡música, cine, chismes, TV y más...! Clic aquí - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Configure freeradius with authentication

2007-05-01 Thread tnt
Server is already configured to use several authentication methods by default. Ivan Kalik Kalik Informatika ISP Dana 1/5/2007, vicente barrientos [EMAIL PROTECTED] piše: Hi all. Somebody Could help me, I need to configure a freeradius with authentication. Thanks very much Visita MSN Latino

Problem with mysql authorization

2007-05-01 Thread Ian Truelsen
I am trying to set up mysql authorization, but am having some problems. I have set up sql.conf which seems to be correct, based on the output: -- Module: Loaded SQL sql: driver = rlm_sql_mysql sql: server = localhost sql: port = sql: login = radius sql: password = sql: radius_db =

Re: Freeradius Auth via LDAP against Active Directory Server 2003

2007-05-01 Thread Ryan Kramer
You can take care of #1 by still doing LDAP to AD for the groups, but using ntlm for the password authentication. This seems counterproductive, unless you are using a backside encryption where you need to do it that way, which is what I ended up having to do. On 4/30/07, Jacob Jarick [EMAIL

Re: Problem with mysql authorization

2007-05-01 Thread tnt
Check that it's not picking up the Auth-Type System from the users file. Comment it out there and it should work. Ivan Kalik Kalik Informatika ISP Dana 1/5/2007, Ian Truelsen [EMAIL PROTECTED] piše: I am trying to set up mysql authorization, but am having some problems. I have set up sql.conf

Re: Different Groups

2007-05-01 Thread Norman Zhang
Norman Zhang wrote: [EMAIL PROTECTED] wrote: Yes. Use NAS-IP-Address as check item. If you need a list of groups and/or users/callerIDs/etc. that are allowed then use a huntgroup. I added the following lines to huntgroup. fw-pixNAS-IP-Address == 10.0.0.1 fw-pix

Default Authentication

2007-05-01 Thread Norman Zhang
I have the following setup for users DEFAULT Auth-Type = System Fall-Through = Yes, cisco-avpair = shell:priv-lvl=1, Service-Type = NAS-Prompt-User DEFAULT Group == router-ro cisco-avpair := shell:priv-lvl=7 DEFAULT Group == router-rw cisco-avpair :=

RE: Default Authentication [SEC=UNCLASSIFIED]

2007-05-01 Thread Ranner, Frank MR
-Original Message- From: [EMAIL PROTECTED] eradius.org [mailto:[EMAIL PROTECTED] ists.freeradius.org] On Behalf Of Norman Zhang Sent: Wednesday, 2 May 2007 13:08 To: freeradius-users@lists.freeradius.org Subject: Default Authentication I have the following setup for users

Re: No available IP Addresses in the pool ...

2007-05-01 Thread Alan DeKok
Florin wrote: If not, confirm that the pool module name is defined in the acctounting{} section of radiusd.conf and that your NAS sends accounting Stop messages. The accounting is performed on a different machine (physically) so no poolname is be defined under the acctounting{} section.