Log IP address (Calling-Station-Id?) of failed authentication attempts

2010-05-09 Thread Matt Hite
Hello. I would like to log the client IP of failed successful authentications to my RADIUS-enabled switches. Right now failed/success show up like this: radiusd[13877]: Login incorrect: [xyzzy] (from client SW-2745-C1.sv4 port 0) radiusd[13877]: Login OK: [plugh] (from client SW-2745-C1.sv4

Re[2]: freenibs

2010-05-09 Thread Коньков Евгений
Hi, Mark. I do not think that freenibs is alive Use this instead http://abills.net.ua/wiki/doku.php/abills:docs_03:install:ru 2010 г., 6:02:01: M Hello list, M I'd like to find out if anyone has had the experience installing M freenibs onto an existing freeradius installation on fedora. The

Re: Re[2]: freenibs

2010-05-09 Thread Mark
ahh. Ok. I'll take a look at it. Thanks! On 09-May-2010, at 2:54 PM, Коньков Евгений wrote: Hi, Mark. I do not think that freenibs is alive Use this instead http://abills.net.ua/wiki/doku.php/abills:docs_03:install:ru 2010 г., 6:02:01: M Hello list, M I'd like to find out if

Re: FreeRADIUS 1.1.7 and exec modules

2010-05-09 Thread Alan DeKok
liran tal wrote: Yep, I'll test this with the latest stable 2.1.8 though for the sake of clarity I wanted to know if it's anything wrong with my setup or a known problem. I don't recall any similar issue. But 1.1.7 was released a long time ago. Alan DeKok. - List

Re: Log IP address (Calling-Station-Id?) of failed authentication attempts

2010-05-09 Thread Alan DeKok
Matt Hite wrote: It looks like I can possibly enable auth_badpass and auth_goodpass in radiusd.conf and then set: msg_goodpass = %{Calling-Station-Id} msg_badpass = %{Calling-Station-Id} Yes. Is this going about it the right way? Yes. Also, I really don't want the failed passwords

Re: VMPS logging

2010-05-09 Thread Michael Schwartzkopff
Am Montag, 3. Mai 2010 16:56:23 schrieb Alan DeKok: Michael Schwartzkopff wrote: Strange. I added a line Access-Accept = Accepted %{User-Name} But I only see entries from the Access-Request part of the linelog module. You have the reference line as Packet-Type? Change it to

Re: The client does not connect _*_*_*_

2010-05-09 Thread hafthanhf
Alan DeKok-2 wrote: Martin Silvero wrote: Thu Sep 25 12:49:16 2008 : Debug: Ignoring request to authentication address * port 1812 from unknown client 10.0.42.250 Well... did you add that IP as a client in raddb/clients.conf? Alan DeKok. - List info/subscribe/unsubscribe? See

Re: Log IP address (Calling-Station-Id?) of failed authentication attempts

2010-05-09 Thread Matt Hite
Was a bit confused with this one. You can't actually use msg_goodpass and/or msg_badpass unless auth_goodpass and/or auth_badpass is set to yes. Doing this DOES force logging of passwords. (Comments in radiusd.conf seem to confirm.) Did a bit more digging (ie. checked out source code and looked