Re: Supported oracle versions

2007-11-09 Thread Alan DeKok
Eurico Giacon wrote: > Where could I find which are the oracle versions supported by freeradius > 1.1.7 ? Could ou please, say me where this type of information is posted > (if there is something like this...) Most versions of Oracle should work. Try it, and see. Alan DeKok. - List info/subs

Re: Problem with MD5 Authentication and PAP

2007-11-09 Thread Alan DeKok
Jonathan Wong wrote: > I am running Freeradius 1.1.4, MySQL, MD5, and PAP. Upgrade to 1.1.7. > Another weird thing is when I have PAP and MD5 set, and I do not have > a radgroupcheck entry for my group, I can get authenticated by putting > the MD5 Hash as my password. For example, if my MD5 ha

Problem with MD5 Authentication and PAP

2007-11-09 Thread Jonathan Wong
ius_xlat: '/var/log/radius/radacct/128.83.135.171/auth-detail-20071109' rlm_detail: /var/log/radius/radacct/%{Client-IP-Address}/auth-detail-%Y%m%d expands to /var/log/radius/radacct/128.83.135.171/auth-detail-20071109 modcall[authorize]: module "auth_log" returns ok for re

Re: freeradius auto-vlan 3com switch 4500G

2007-11-09 Thread Philippe Breton
On Fri, 2007-11-09 at 21:58 +0100, [EMAIL PROTECTED] wrote: > VLAN 2u not 2 has been assigned. Check node entry. Ivan. Thanks. I have corected it, but no luck yet. Someone else has suggested to use a different tunnel-medium-type: Tunnel-Medium-Type = IEEE-802. I checking this lead now. Thanks, Ph

Re: freeradius auto-vlan 3com switch 4500G

2007-11-09 Thread Krzysztof Olędzki
On 2007-11-09 20:52, Philippe Breton wrote: HI, Hi, Has anyone successfully implemented auto-vlan with 3Com switch 4500G? Successfully implemented with 5500G :) I am using the following tunneling attributes: ATTRIBUTETunnel-Type 64integerhas_tag ATTRIBUTETunne

Re: help with ldap/checkitem

2007-11-09 Thread Zoltan Ori
On Friday 09 November 2007 14:26, Joe Vieira wrote: > > DEFAULT VPNGroupName == testing >CVPN3000-IPSec-Split-Tunneling-Policy = 1, >Filter-Id="itsadmin-filter", >CVPN3000-DHCP-Network-Scope = "140.232.2.1", >CVPN3000-IPSec-Split-Tunnel-List ="itsadmin-routes" > > i

Re: freeradius auto-vlan 3com switch 4500G

2007-11-09 Thread tnt
VLAN 2u not 2 has been assigned. Check node entry. Ivan Kalik Kalik Informatika ISP Dana 9/11/2007, "Philippe Breton" <[EMAIL PROTECTED]> piše: >HI, > >Has anyone successfully implemented auto-vlan with 3Com switch 4500G? > >I am using the following tunneling attributes: > >ATTRIBUTETunnel-T

freeradius auto-vlan 3com switch 4500G

2007-11-09 Thread Philippe Breton
HI, Has anyone successfully implemented auto-vlan with 3Com switch 4500G? I am using the following tunneling attributes: ATTRIBUTETunnel-Type 64integerhas_tag ATTRIBUTETunnel-Medium-Type65integerhas_tag ATTRIBUTETunnel-Private-Group-Id 81s

Re: help with ldap/checkitem

2007-11-09 Thread Joe Vieira
so a little more info on this if i change DEFAULT VPNGroupName == testing CVPN3000-IPSec-Split-Tunneling-Policy = 1, Filter-Id="itsadmin-filter", CVPN3000-DHCP-Network-Scope = "140.232.2.1", CVPN3000-IPSec-Split-Tunnel-List ="itsadmin-routes" to DEFAULT VPNGroupName =*

Re: Users outside /etc/raddb/users

2007-11-09 Thread William
Greetings, While this isn't the recommend way to generate such a large suer/password database (Some form of Ldap/SQL is) You can use the $include directive to include a different file for users. Using an older version of freeradius, we do that for a small group that we don't have in our /etc/

Re: Users outside /etc/raddb/users

2007-11-09 Thread tnt
>I want to create more than 400 freeradius users, all of them like this: > >[EMAIL PROTECTED] Auth-Type := Local, User-Password == . > Don't. For last few versions: [EMAIL PROTECTED] Cleartext-Password := ... > >I want to know if there is some way to have this information OUTSIDE the >/et

reply name defaults to session timeout.

2007-11-09 Thread Graeme Crawford
hi All, Im playing around with freeradius ldap and mysql, i built a sql counter and the reply-name is chillispot-max-output-octets but when running a radius -X it returns as session-timeout, which obviously screws me around. all the other reply items come back fine, strange. Anyone had the sa

Users outside /etc/raddb/users

2007-11-09 Thread Rui Meireles
Hi. I have a simple question. I want to create more than 400 freeradius users, all of them like this: [EMAIL PROTECTED] Auth-Type := Local, User-Password == . . I want to know if there is some way to have this information OUTSIDE the /etc/raddb/users file, because it would massivly i

Supported oracle versions

2007-11-09 Thread Eurico Giacon
Hi People, I´m installing freeradius with oracle using RedHat as operating system. Where could I find which are the oracle versions supported by freeradius 1.1.7 ? Could ou please, say me where this type of information is posted (if there is something like this...) Thanks, Eurico. - L

Re: help with ldap/checkitem

2007-11-09 Thread Joe Vieira
I created the attribute, and i don't get any dictionary errors [EMAIL PROTECTED] raddb]# cat dictionary | grep VPN ATTRIBUTE VPNGroupName3001string Joe Vieira UNIX Systems Administrator Clark University - ITS [EMAIL PROTECTED] wrote: Attribute is most likely VPN-Group-N

Re: help with ldap/checkitem

2007-11-09 Thread tnt
Attribute is most likely VPN-Group-Name. Check in the freeradius dictionary. Ivan Kalik Kalik Informatika ISP Dana 9/11/2007, "Joe Vieira" <[EMAIL PROTECTED]> piše: > >Hi, >I am having some confusing trouble with an LDAP check item. >applicable line from ldap attribute file > >--- >checkIte

help with ldap/checkitem

2007-11-09 Thread Joe Vieira
Hi, I am having some confusing trouble with an LDAP check item. applicable line from ldap attribute file --- checkItem VPNGroupNameclarkuVlan Users file. ## VPN USER CONFIG DEFAULT NAS-Port-Type == Virtual, Framed-Protocol ==

Re: Some users can't login after upgrade!

2007-11-09 Thread Alan DeKok
Dean, Barry wrote: > The debug output (private data masked) can be picked up from: > > Version 1.1.4 (Works): http://pcwww.liv.ac.uk/~bvd/radius/114.txt > Version 1.1.7 (Broken): http://pcwww.liv.ac.uk/~bvd/radius/117.txt > > They are reasonably long so I did not want to post them as a long email

Re: cant connect with ntradping

2007-11-09 Thread Murilo Bernardes
I solved the problem, the thing is that my password has a '$' and it was recongnizing it as s command or sth instead a password. i did this radtest root 'my$password' my.ip 0 secretkey with ' ' not " " On 08/11/2007, [EMAIL PROTECTED] <[EMAIL PROTECTED]> wrote: > > This is (only) the server start

Re: dhcp ttls 3com 7760

2007-11-09 Thread Phil Mayers
> Sending Access-Accept of id 34 to 192.168.2.136 port 1067 > Tunnel-Type:0 = VLAN > Tunnel-Medium-Type:0 = IEEE-802 > Tunnel-Private-Group-Id:0 = "88" > Tunnel-Type:0 = VLAN > Tunnel-Medium-Type:0 = IEEE-802 > Tunnel-Private-Group-Id:0 = "88" >

RE: Some users can't login after upgrade!

2007-11-09 Thread Dean, Barry
The debug output (private data masked) can be picked up from: Version 1.1.4 (Works): http://pcwww.liv.ac.uk/~bvd/radius/114.txt Version 1.1.7 (Broken): http://pcwww.liv.ac.uk/~bvd/radius/117.txt They are reasonably long so I did not want to post them as a long email! My reading of them indicates

Re: Freeradius 1.1.7 no DB handles

2007-11-09 Thread A . L . M . Buxey
Hi, > My DB-tables are empty, just accounting should be put into it. I do not need > anything in usergroup for accounting etc, or do I? you are probably running more radius threads than you have DB handles - change the value in sql.conf - and make sure you enable enough max_connections in your m

Re: How to return Reply-Message when user submitted wrong password

2007-11-09 Thread A . L . M . Buxey
hi, nasty. but you could do iteg some in this pseudo code method - just to start you off... perl module sql = your SQL table $password = select password from sql where username = $RADREQUEST{%username} if ($RADREQUEST{%User-Password} != $password) { $RADREPLY = "Your password is incorrec