Re: SNMP error

2008-01-10 Thread Kevin Bonner
-AUTH-SERVER-MIB.txt localhost radius same command is working fine on the old machine. i searched for that on google but found nothing . any one can help ?? What does debug mode (-X) show? Are there any errors in your snmpd log file? Kevin Bonner signature.asc Description

Re: FreeRadius V2.0.0 Simultaneous-Use Problems

2008-01-21 Thread Kevin Bonner
command line and see if it gives the desired results for both connected and disconnected users. Kevin Bonner signature.asc Description: This is a digitally signed message part. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: IP Pool defined, but radius does not hand out an IP address.

2008-01-24 Thread Kevin Bonner
On Thursday 24 January 2008 13:10:09 Alan DeKok wrote: And with all of the information you posted, you didn't include the most important, which is requested in the FAQ, README, INSTALL, man page, and daily on this list: radiusd -X. Is there some other place in the documentation where this

Re: pap Cleartext-Password, sql etc...

2008-01-30 Thread Kevin Bonner
and make the same attribute name changes? Kevin Bonner signature.asc Description: This is a digitally signed message part. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Could not link driver rlm_sql_mysql.so

2008-02-15 Thread Kevin Bonner
On Friday 15 February 2008 05:20:21 [EMAIL PROTECTED] wrote: if you run the configure stage through some sanity checking, you get to see all the good stuffeg ./configure --with-blah-blah | grep WARN alan I prefer the following so you can go over all the output, not just the WARN

Re: Goodbye SNMP, hello statistics.

2008-06-24 Thread Kevin Bonner
in SNMP. For more information, see: share/dictionary.freeradius The changes sound great! I'd cutover to this if I were still at the company that used FR and SNMP monitoring stuff... Kevin Bonner signature.asc Description: This is a digitally signed message part. - List info/subscribe

Re: Accounting is not working. Please help.

2007-03-26 Thread Kevin Bonner
On Monday 26 March 2007 16:30:35 alex wrote: Hey guys, i just follow this guide. http://www.frontios.com/freeradius.html and everything looks ok, the users are already working and login without problem. But the accounting is not working, the mysql tables are empty, i checked when i user

Re: use realms to access different mysql tables

2007-03-27 Thread Kevin Bonner
queries necessary to handle a particular realm. realm3 shows how to allow multiple realms to use the same db/SQL queries, so you can easily merge the databases over time and update the users file to reflect the db changes. Kevin Bonner == sql.conf == sql db1 { ... } sql db2 { ... } ... == sql.conf

Re: SNMP support for radius problem

2007-03-28 Thread Kevin Bonner
results when I restrict the public community from accessing that OID. Kevin Bonner pgpgF2PbALtDG.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: SNMP support for radius problem

2007-03-29 Thread Kevin Bonner
On Thursday 29 March 2007 12:47:38 satish patel wrote: Thanks for help i got it and now my freeradius working with snmpd and it is working fine now can u tell me what i monitor through snmpd means can i check how much users login currently and how much failed and what stat i can check throgh

Re: chap rlm_sql authentication problem

2007-03-30 Thread Kevin Bonner
will not match unless you send this particular Service-Type. Looking at the request above, I don't see this attribute being sent in the access-request. Kevin Bonner pgpFB6Yq6Th26.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Freeradius Checkrad Redback

2007-04-03 Thread Kevin Bonner
solution. Lucent probably has SNMP MIBS for the Redback, which should have a way to confirm active sessions. Kevin Bonner pgpMuUVY0TsK7.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Cisco Configuration

2007-04-04 Thread Kevin Bonner
-related info is the mailing list archives. Kevin Bonner [1] http://wiki.freeradius.org/Cisco pgpE4JK3pnVC6.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Reject user without realm

2007-04-09 Thread Kevin Bonner
file at line 36? Kevin Bonner pgpAUsH7FbwDX.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Version 2.0 is a lot closer to reality...

2007-04-10 Thread Kevin Bonner
to listen sections to allow type snmp . Arran, http://wiki.freeradius.org/SNMP_HOWTO That page should give some base info on setting up SNMP support. Kevin Bonner pgp4G1jfBRBqQ.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Segmentation fault for SNMP query

2007-04-12 Thread Kevin Bonner
due to the many recent changes. I'll see if I can test the CVS head later today and submit a newer patch. Kevin Bonner pgpktEd5UzlPw.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Segmentation fault for SNMP query

2007-04-12 Thread Kevin Bonner
On Thursday 12 April 2007 10:32:18 Kevin Bonner wrote: On Thursday 12 April 2007 04:40:47 Milan Holub wrote: Radius itself seems to react on radius packets; only snmp is ignored after the snmp-write query. Completely same behaviour is observed when doing reload via HUP signal(using my

Re: SNMP with 1.1.6 and Net-SNMP 5.3

2007-04-13 Thread Kevin Bonner
, Stefan Winter I receive the same broken pipe error when the smuxpeer pass and smux_password aren't the same, though there is probably a more complex cause. Are there any non-standard characters in either config file? Is Net-SNMP configured with ucd-snmp compatibility? Kevin Bonner

Re: SNMP with 1.1.6 and Net-SNMP 5.3

2007-04-16 Thread Kevin Bonner
On Monday 16 April 2007 03:53:52 Stefan Winter wrote: Thanks for the tip. Looking up the net-snmp.spec file of openSUSE 10.2, it appears that ucd-snmp compat should be there... the compile switches --enable-local-smux and --enable-ucd-snmp-compatibility are there. Any other hints? Otherwise,

Re: Segmentation fault for SNMP query

2007-04-17 Thread Kevin Bonner
On Monday 16 April 2007 07:52:43 Alan DeKok wrote: Kevin Bonner wrote: Try http://bugs.freeradius.org/show_bug.cgi?id=150 I doubt that patch will still apply cleanly due to the many recent changes. I'll see if I can test the CVS head later today and submit a newer patch. Please try

Re: Crypt passwords doesn't work

2007-04-18 Thread Kevin Bonner
, Cisco-AVPair = shell:priv-lvl=15 Thanks very much!! Don't set Auth-Type, the server will figure it out. The operator for Crypt-Password should be changed to := as well. Kevin Bonner pgpsPajLfZa7I.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http

Re: Crypt passwords doesn't work

2007-04-18 Thread Kevin Bonner
html I almost ignored your message, as I don't parse HTML well. =) On Wednesday 18 April 2007 18:06:28 Sebastian Firpo wrote: Thank you Kevin, but it didn't work now my entire users file is: sebas   Crypt-Password := (!lGOOlHaBWoQ     Service-Type =

Re: Crypt passwords doesn't work

2007-04-19 Thread Kevin Bonner
is not encrypted. Even if you know what the encryption they use is it would be a big help thanks. Win2k3? Never used it before. Active Directory? Ditto. =-) Maybe [1] or [2] will help push you in the right direction. Kevin Bonner [1] http://wiki.freeradius.org

Re: Proxying by Nas-Ip-Address (was Proxy.conf regex )

2007-05-07 Thread Kevin Bonner
locally. Any clue? Thank you Read what several others have posted to this thread. Proxy-To-Realm is a _check_ item. Make Proxy-To-Realm a check item and both of your solutions should work as expected. Kevin Bonner pgpnSS9BdZQJ2.pgp Description: PGP signature - List info/subscribe/unsubscribe

Re: Server IP changed and FreeRADIUS+MySQL does not work

2007-05-15 Thread Kevin Bonner
, try connecting to MySQL from the command line to confirm that it works. You updated the IPs in mysql.user, but that doesn't affect the MySQL permissions. To apply any changes to the mysql privilege tables, you must either restart the MySQL service or run FLUSH PRIVILEGES. Kevin Bonner

Re: Wiki

2007-05-25 Thread Kevin Bonner
On Friday 25 May 2007 04:11:24 Arran Cudbard-Bell wrote: Now which bloody wiki are you using, so I can look up the formatting rules :) http://wiki.freeradius.org/Special:Version says MediaWiki: 1.8.2. -Kevin pgpd5qhwcXFFw.pgp Description: PGP signature - List info/subscribe/unsubscribe? See

Re: sql question

2007-06-08 Thread Kevin Bonner
On Friday 08 June 2007 13:24:20 [EMAIL PROTECTED] wrote: radgroupreply: | 27 | dialup| Framed-IP-Address | 255.255.255.254 | == | | 28 | dialup| Framed-Compression | Van-Jacobson-TCP-IP | == | | 29 | dialup| Framed-IP-Netmask | 255.255.255.255 | == | | 30 | dialup|

Re: Attribute User-Password is required for authentication

2007-06-18 Thread Kevin Bonner
On Monday 18 June 2007 16:31:37 Cody Jarrett wrote: I found a few topics on this issue but nothing quite informative enough. I'm trying to get freeradius auth working with pam and peap. When I test my config with radtest, I get Access-accept. When I use a windows XP supplicant with a 3com

Re: Simultaneous-Use problem.

2007-06-25 Thread Kevin Bonner
is in the wrong place. Make it a check item and the session section should be processed. Kevin Bonner pgpvI8CdFN5pf.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Clear text password not available

2007-06-25 Thread Kevin Bonner
. What check items do you have? If you are using a recent version of freeradius, you should have the Cleartext-Password as a check item. Have you run the server in debug mode? If so, there are probably error messages in the output which may assist you in resolving your problem. Kevin Bonner

Re: Clear text password not available

2007-06-25 Thread Kevin Bonner
of freeradius, you cannot use Cleartext-Password here as it was available in 1.1.5 (I think) and later versions. You can use User-Password, but you should upgrade to a newer version. Kevin Bonner pgpwSTaVHg9Y8.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http

Re: error on start freeradius + jradius

2007-07-13 Thread Kevin Bonner
beaten to death on the users list. 1.1.6 doesn't. Use 1.1.6 or later, then try your tests again. Kevin Bonner signature.asc Description: This is a digitally signed message part. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Configuration doubt

2007-07-16 Thread Kevin Bonner
On Monday 16 July 2007 08:05:15 Alan DeKok wrote: Osvaldohp wrote: This is my users file: mike Auth-Type = System, User-Password == mike Session-Timeout := 3600, What i am doing wrong? You're telling the server to look in /etc/passwd for the users password, and then also

Re: figuration doubt

2007-07-16 Thread Kevin Bonner
HotSpot users? Session-Timeout is a reply item, so it can go into the user or group reply item tables. Kevin Bonner signature.asc Description: This is a digitally signed message part. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: NAS restart without proper client logout on radius (mysql)

2007-07-16 Thread Kevin Bonner
the session is active. Kevin Bonner signature.asc Description: This is a digitally signed message part. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: authentication problem with mysql integration

2007-08-07 Thread Kevin Bonner
On Tuesday 07 August 2007 12:08:07 ram wrote: rad_verify: Received Access-Reject packet from client x.x.x.x port 1812 with invalid signature (err=2)! (Shared secret is incorrect.) ... WARNING: Unprintable characters in the password. ? Double-check the shared secret on the server and the

Re: error on start freeradius + jradius

2007-08-09 Thread Kevin Bonner
? I have no idea what the jradius patch is, but does the build work without that patch? Kevin Bonner signature.asc Description: This is a digitally signed message part. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Sending Cisco AV Pairs per realm

2007-09-17 Thread Kevin Bonner
, but you can add a Hint that can be checked in the users file. Here is a short example that should work for you using the hints file: #hints DEFAULT User-Name =~ @dsl.realm Hint = DSL #/hints #users DEFAULT Hint == DSL Cisco-AVPair += ... #/users Kevin Bonner signature.asc Description

Re: aaa accounting command

2007-10-23 Thread Kevin Bonner
to accomplish this if it's not possible with Radius. TACACS+ Kevin Bonner signature.asc Description: This is a digitally signed message part. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Cisco NAS Password problem

2007-10-25 Thread Kevin Bonner
on startup, so if you make changes to that table, you must restart the daemon for those changes to take effect. Kevin Bonner signature.asc Description: This is a digitally signed message part. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Restricting user by realm

2007-11-08 Thread Kevin Bonner
Cleartext-Password := xxx, Realm == jellico.com ... Or if you want to reject from a specific realm, just use this before your real user entry: lisa Realm == realmY, Auth-Type := Reject Kevin Bonner signature.asc Description: This is a digitally signed message part. - List info

Re: freeradius-1.0.0-pre2 configure problem

2004-06-18 Thread Kevin Bonner
/007092.html That got around the problem on FC1, so it will probably work on suse. Kevin Bonner - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Urgent:two radius running at same time

2004-06-20 Thread Kevin Bonner
server already running on the authentication port UDP 1645. On the RH9 box, run 'netstat -lnp' to find what pid/process has udp port 1645 currently open. At the very least 'killall -9 radiusd' should search destroy any radiusd process still running. Kevin Bonner -BEGIN PGP SIGNATURE

Re: Freeradius Cisco-AVPair

2004-07-18 Thread Kevin Bonner
the ip:addr line rather than assigning an addr-pool and post your results. If that doesn't work, the cisco config may need to be tweaked. Kevin Bonner -BEGIN PGP SIGNATURE- Version: GnuPG v1.2.4 (GNU/Linux) iD8DBQFA+tKl/9i/ml3OBYMRApv5AJ4nTewbE1viOl6wdlyhi4CqtFbe5gCdEhq2 WuJ/cJ5

Re: Freeradius Cisco-AVPair

2004-07-27 Thread Kevin Bonner
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 David, Sorry for no reply. Your previous message must've got lost in the ether... On Monday 26 July 2004 22:31, David Birnbaum wrote: 1. Yes, Virginia, you can do static IP address via RADIUS, Cisco 7206, and PPPoE for DSL-type

Re: freeradius start on boot rc.radiusd

2004-08-10 Thread Kevin Bonner
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On Tuesday 10 August 2004 12:45, Babar Shafiq wrote: If somebody have same problem like me try those steps:- install -m 755 rc.radiusd /etc/rc.d/init.d/radiusd and then chkconfig --add radiusd *error* service radiusd does not support chkconfig

Re: FreeRadius 1.0.0 Compiler error in rlm_krb5.c

2004-08-10 Thread Kevin Bonner
to procede. I would also imagine adding -I /usr/include/et to cflags or the makefile would also work. This is probably the easiest solution for people to do, as it doesn't involve editing the source code. Kevin Bonner -BEGIN PGP SIGNATURE- Version: GnuPG v1.2.4 (GNU/Linux

Re: Simultaneous-Use recovery after NAS crash

2004-08-25 Thread Kevin Bonner
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Fritz, Look at checkrad. It's mentioned several times in doc/Simultaneous-Use. - - Kevin On Wednesday 25 August 2004 07:54, Fritz Reichmann wrote: Hello, I have set up Freeradius to authenticate against LDAP and with a Simultaneous-Use:=1

Segfault in radrelay on FR 1.0.1

2004-09-23 Thread Kevin Bonner
of MP to Ascend-MP allowed radrelay to run again without a problem. Just thought I'd mention it for those people upgrading to version 1.0.1. Kevin Bonner -BEGIN PGP SIGNATURE- Version: GnuPG v1.2.4 (GNU/Linux) iD8DBQFBUxJ7/9i/ml3OBYMRAiSAAJ9qU7H8dQFJmO4IaNvPJPZnIb1V4ACeN5hu QWHoVDKoeZpg

Re: Segfault in radrelay on FR 1.0.1

2004-09-26 Thread Kevin Bonner
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On Friday 24 September 2004 14:33, Alan DeKok wrote: Kevin Bonner [EMAIL PROTECTED] wrote: I sent radrelay a TERM and saw that there were a few records left in the detail file that needed to be pushed. Installed version 1.0.1, and radrelay

Re: listen on freeradius 1.0.1

2004-10-05 Thread Kevin Bonner
, there is no bind_address option. Look at a default radiusd.conf file and see what you're missing Kevin Bonner -BEGIN PGP SIGNATURE- Version: GnuPG v1.2.4 (GNU/Linux) iD8DBQFBYt9S/9i/ml3OBYMRAgMvAJ9o03U6MjgXJ8vsVgnzo2LCbHyb6gCfc3Cy Im5LqolwRjHLPxo8hYY2gDw= =cFH5 -END PGP SIGNATURE

Re: Does freeradius 0.9.1 not support 'readclients = yes' in sql.conf

2004-10-06 Thread Kevin Bonner
at the CVS tree, readclients support was added in rev 1.125 of rlm_sql.c, and the 0.9.1 release had rev 1.116.2.2. Have you tried version 1.0.1? Kevin Bonner -BEGIN PGP SIGNATURE- Version: GnuPG v1.2.4 (GNU/Linux) iD8DBQFBY/LG/9i/ml3OBYMRAmoHAJ4zDiNXXlmbYx3B1jHXvbkpUdKs0gCfZtUG

Re: Problem with /usr/sbin/checkrad - it is not used at all

2004-10-27 Thread Kevin Bonner
listed in radutmp (or sql) are still active. Look at the source for checkrad and find the option which works for your equipment. Kevin Bonner -BEGIN PGP SIGNATURE- Version: GnuPG v1.2.4 (GNU/Linux) iD8DBQFBgAat/9i/ml3OBYMRApMpAJ4qfH+H1sDommg2Bzq0BkSV+cYU8QCfa8b9 BjmwvOA7LpUSOneeeWw4zSo

Re: Error Connect Remote backend Database Mysql

2004-11-10 Thread Kevin Bonner
request by server; consider upgrading MySQL client rlm-sql (sql): Failed to connect DB handle #0 Are you connecting to a MySQL 4.1.X server? If yes, then look at the upgrade notes for MySQL 4.0 - 4.1...they say how to resolve this problem. Kevin Bonner -BEGIN PGP SIGNATURE- Version: GnuPG

Re: strip domain name from username

2004-11-11 Thread Kevin Bonner
having no success as I really don't have a clue what I'm doing. Add a realm called domain to proxy.conf which just proxies to LOCAL, then uncomment the ntdomain section in radiusd.conf. Kevin Bonner -BEGIN PGP SIGNATURE- Version: GnuPG v1.2.4 (GNU/Linux) iD8DBQFBlALd/9i

Re: Problem Running Gnugk v2.2!!!

2004-11-14 Thread Kevin Bonner
: No such file or directory Please advise, Alexander Looks like you've taken a wrong turn. This is the FreeRADIUS list, not a Gatekeeper one. You probably want to run over to www.gnugk.org and submit your question on their mailing lists. Kevin Bonner -BEGIN PGP SIGNATURE- Version: GnuPG

Re: Multiple framed-route replies

2004-12-13 Thread Kevin Bonner
in radreply doesnt work. Any ideas/suggestions would be appreciated. Regards - Nikolas Geyer man 5 users and read the section on operators. The operators apply to both the flat users file and the rows in your MySQL table. Kevin Bonner pgp9TrCDUb7e7.pgp

Re: restricting multiple logins by same user

2005-01-19 Thread Kevin Bonner
On Wednesday 19 January 2005 14:40, Sonali Karmarkar wrote: Hi I am using freeradius0.9.3 with mysql. If a user is already logged in and tries to login from diff place, how can I restrict access using radius? In other words, How can I enforce one login session per user ? Thanks. See

Re: Proxy.conf and fail_over

2005-01-19 Thread Kevin Bonner
On Wednesday 19 January 2005 09:12, David wrote: I have tried including the ldflag in my proxy.conf, though I thought this was default behavior. Here is the entry in proxy.conf # Primary Server realm xyz.com { [snip] # Secondary Server realm xyz.com.com { [snip] Am I missing something

Re: configure script nightmare with ucd-snmp

2005-02-01 Thread Kevin Bonner
if they made it into 1.0.2 though. ooo, if you could easily dig those patches out that would be fantastic! Thanks again for your help, Mike This is probably what you're looking for: http://lists.freeradius.org/archives/freeradius-users/2004/10/frm00210.html Kevin Bonner pgpyFAlzI32Az.pgp

Re: Append realm to username but sorted by dnis

2005-02-18 Thread Kevin Bonner
On Tuesday 15 February 2005 08:42, Scott B. Lowe wrote: I use dnis to proxy to several radius servers for various clients. One of our clients would like a realm added to the end of their user's username when it is proxied to them. Basically I need to be able to attach a realm on the end of

Re: Simultaneous-Use

2005-04-13 Thread Kevin Bonner
think your biggest concern is to make sure checkrad supports your equipment. It looks like Antonio Dias added support to checkrad for the Patton 2800, so it might work for the 2960. Kevin Bonner pgpIWKfii34wR.pgp Description: PGP signature

Re: SNMP with net-snmp

2005-04-14 Thread Kevin Bonner
On Thursday 14 April 2005 09:33, Hoppál Felicián wrote: I've just compiled freeradius (--with-snmp=yes), and i'm trying to enable SNMP support (Red Hat AS4). It compiles without any errors. Do you have the net-snmp-devel RPM installed? Kevin Bonner pgplztesgkwc9.pgp Description: PGP

Re: SNMP with net-snmp

2005-04-14 Thread Kevin Bonner
On Thursday 14 April 2005 12:05, Hoppál Felicián wrote: On Thu, 14 Apr 2005, Kevin Bonner wrote: Do you have the net-snmp-devel RPM installed? yes Any messages during the build about snmp? Check the config.log file, or the output from configure. Your debug messages not showing up might

Re: Radrelay error

2005-04-18 Thread Kevin Bonner
, The file holding the secret for radrelay to use must only have that secret in it. Something like this... /usr/bin/radrelay -a /var/log/radius/radacct -d /etc/raddb -S /etc/raddb/secret.localhost -r localhost:1646 detail /etc/raddb/secret.localhost: testing123 Kevin Bonner pgpqHQw94WmSL.pgp

Re: rlm_sql (sql): No matching entry in the database ....

2005-04-26 Thread Kevin Bonner
mode to see what queries are being executed and if they indeed return the proper information? Kevin Bonner pgpAgF0d3ITA7.pgp Description: PGP signature

Re: Privileges problem

2005-04-26 Thread Kevin Bonner
level 15. In TACACS for instance I achieve this with $enab15$ How can this be done with radiusd. Thanks in advance. Alexander Chuzhoy We use the following for our cisco router logins. Just change the priv-lvl and see if it works. Cisco-AVPair := shell:priv-lvl=1 Kevin Bonner pgpVxxvshEx21

Re: [Fwd: rlm_passwd realms]

2005-06-02 Thread Kevin Bonner
On Thursday 02 June 2005 05:08, Edgars wrote: 1)can i make so that each separate proxy.conf realm uses different rlm_passwd file? At the moment it works in a simply way - using one passwd file. Read doc/Autz-Type. It will allow you to do this. Kevin Bonner pgp6EbQYb8IHB.pgp Description

Re: mrtg

2005-06-09 Thread Kevin Bonner
NAS equipment to determine how many users are connected on each device under your control. We use the SNMP support in FreeRADIUS to graph packet/request info for radiusd on each server we have in production. Kevin Bonner pgpyI5DSKzyCv.pgp Description: PGP signature - List info/subscribe

Re: problem with # in username

2005-06-09 Thread Kevin Bonner
in freeradius? Chris See safe-characters in postgresql.conf. Search the list archives for more info, as this has been talked about many times before. Kevin Bonner pgpRIvu12GZBx.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Wildcard Login

2005-06-22 Thread Kevin Bonner
. Kevin Bonner pgpHwEzadvlUQ.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: snmp and freeradius restart

2005-06-23 Thread Kevin Bonner
that the connection is that a new connection is not estanlished after a -HUP signal. tariq bug#150 See if it works and report problems in the bug. Kevin Bonner pgpA5xwNV3vI3.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Listen to multiple ports on a single server?

2005-07-18 Thread Kevin Bonner
.1.0.4 - Erling Paulsen May I ask why do you want to do such a thing? You can have freeradius running on both the old and new ports, then cutover your equipment and external radius clients as you please. The listen directive in raddb.conf can do what you want. Kevin Bonner pgpO87aiuGznk.pgp

Re: Disconnect-Request packet

2005-08-01 Thread Kevin Bonner
devices I've used to send disconnect packets to. Kevin Bonner pgpEQcVf1DXol.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Using a database schema other than the one created by db_mysql.sql

2005-08-02 Thread Kevin Bonner
different than the one created by db_mysql.sql. If you can craft a query to return the proper rows, you shouldn't have a problem with your current schema. Read doc/rlm_sql and the comments in sql.conf as they specify what should be returned by your SQL query. Kevin Bonner pgpdTDNHRRFbd.pgp

Re: Accounting and Cisco devices

2005-10-05 Thread Kevin Bonner
/#N101E5 I haven't tested those config lines yet, but the last two in Listing 9 might be what you're looking for. Good luck, and let us know how it goes. Kevin Bonner pgpd8AZkA3ZaK.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Realm users authentication failure

2005-10-19 Thread Kevin Bonner
for request from user [EMAIL PROTECTED] ... Any idea? Run in debug mode. Look at the queries that are being run and try to run them by hand to see what is returned by MySQL. Without more debug output, it is difficult to know what is happening. Kevin Bonner pgpKXtArXpxEL.pgp Description

Re: Denying /dev/null shell accounts

2005-10-25 Thread Kevin Bonner
and found an answer in the first link. #auth required/lib/security/pam_shells.so You still should read PAM docs to determine where to put this line. Kevin Bonner pgp2dpd1XHsbN.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: simultaneous use, checkrad, and MPP attempts

2005-11-09 Thread Kevin Bonner
On Wednesday 09 November 2005 00:35, Christopher Carver wrote: The proxy'ing radius servers and NAS's of the other company from whom we lease equipment are unavailable to checkrad. By default shouldn't it be allowing these people on? I looked at the code and it seemed as though it should. I

Re: huntgroups file, aclip

2005-12-29 Thread Kevin Bonner
/24 or 127.0.0.1-255 instead of the first two lines. the above / and - syntax did not work. is this possible? what doc am i missing? See man 5 users and look at the =~ operator. Match on the first 3 octets of the IP address and it should have the desired effect. Kevin Bonner

Re: FreeRadius in a production environment

2006-01-23 Thread Kevin Bonner
, Susana We use FreeRADIUS for dialup/DSL, NAS ip pool definitions for Ascend Max-TNT, and NAS/router administration access. Our backend data is stored on replicated MySQL servers. After 5+ years of use, we're still pleased with the superb software that has developed over the years. Kevin Bonner

Re: Restricting access to a NAS

2006-01-24 Thread Kevin Bonner
. An example of what we use is below. Kevin Bonner == huntgroups == admin Service-Type == Login-User, NAS-Port-Type == Virtual, Calling-Station-Id == AAA.BBB.CCC.DDD == end huntgroups == == users == DEFAULT Huntgroup-Name == admin Cisco-AVPair := shell:priv-lvl=1, Fall-Through = 1

Re: Realm and users file.

2006-01-24 Thread Kevin Bonner
is happening...have you done this? If you have and can't figure it out, post the debug output of an example where domain2.net auth fails so we can parse the output and hopefully determine what needs changed in your config. Kevin Bonner pgp0viD7DyQSj.pgp Description: PGP signature - List

Re: RADIUSD reloading

2006-02-03 Thread Kevin Bonner
the config files without fully restarting the daemon. You can use the fastusers module to have it re-read changes to a users file. I don't think freeradius can detect changes to other config files and reload automatically at this time. Kevin Bonner pgpxDVnZw8dmX.pgp Description: PGP signature

Re: ascend-data-filters

2006-02-08 Thread Kevin Bonner
should allow that filter to be applied to the connection. The rest of the syntax looks correct. Kevin Bonner pgpVXeVuIl1hV.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: How to kick a logged user

2006-02-08 Thread Kevin Bonner
). If you use tacacs, you can give a special user rights to only do very specific commands which should limit the liability of having the password in the script. For cisco devices, we use the PoD server and radclient to send disconnect packets. Example config and radclient call are below. Kevin

Re: net-snmp issues fix?

2006-03-08 Thread Kevin Bonner
Solaris 10, so feel free to test the changes and report your findings back to the list. Kevin Bonner pgp8GN5U3ewhs.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: some users not authenticating

2006-03-08 Thread Kevin Bonner
That is the correct syntax to override any previous Auth-Type. And yes, attributes in the users file should still be sent with the reply packet. Kevin Bonner pgph6iR7mIc9F.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: == error

2006-03-29 Thread Kevin Bonner
that, there isn't much we can suggest other than search through your configs + MySQL tables for the Suffix attribute and verify the operator being used. Kevin Bonner pgp3798dmYAjk.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Problem with Cisco-AVPair

2006-04-06 Thread Kevin Bonner
On Thursday 06 April 2006 08:24, Antonio Matera wrote: !DOCTYPE html PUBLIC -//W3C//DTD HTML 4.01 Transitional//EN Please stop using HTML when posting your messages. You just might get a few more useful responses from people who don't bother to read html-only messages. Kevin Bonner

Re: SNMP

2006-04-07 Thread Kevin Bonner
version of FreeRADIUS are you running? Did you setup the smuxpeer in your SNMP config file with the same password that is in your raddb/snmp.conf file? Kevin Bonner pgpEMoporvKqR.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: FreeRADIUS and SNMP

2006-04-12 Thread Kevin Bonner
.*) Loading the MIBS from the mibs/ directory in the FR source will allow you to query the actual names instead of OIDs. Kevin Bonner pgpy0cSSrJGE3.pgp Description: PGP signature - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Realm question..

2006-04-25 Thread Kevin Bonner
, that is pretty easy to accomplish. Please read doc/proxy for a better understanding of how realms work with proxying, and also how the 2 special realms work. If you're still stumped, post back with your questions. Kevin Bonner pgpQo5jKw4rh6.pgp Description: PGP signature - List info

Re: SQL and multiple line commands

2004-01-05 Thread Kevin Bonner
, Cisco-AVPair += lcp:interface-config#2=ip unnumbered loop1, Kevin Bonner -BEGIN PGP SIGNATURE- Version: GnuPG v1.0.7 (GNU/Linux) iD8DBQE/+bsj/9i/ml3OBYMRAny2AKCOM75zUpac84nSOA28EkBWoQNqbACfWq/w Y0CfsNrwlDCE1ZKKX0LwYO0= =HTFz -END PGP SIGNATURE- - List info/subscribe

Re: Error Message

2004-02-16 Thread Kevin Bonner
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Mon Feb 16 19:56:52 2004 : Error: ERROR: Realm myrealm.com cannot be load balanced to LOCAL Read the comments in raddb/proxy.conf Kevin Bonner -BEGIN PGP SIGNATURE- Version: GnuPG v1.2.3 (GNU/Linux) iD8DBQFAMXqt/9i

Re: (no subject)

2004-02-25 Thread Kevin Bonner
make sure that all { have a matching } in the file. If that doesn't help, copy your current configuration out of the way, then copy the default radiusd.conf in place and attempt your config changes again. Kevin Bonner -BEGIN PGP SIGNATURE- Version: GnuPG v1.2.3 (GNU/Linux) iD8DBQFAPS94

Re: FreeRADIUS on Cobalt Qube

2004-03-25 Thread Kevin Bonner
FreeRADIUS 0.9.3. Nothing special should be needed in order to install on the Qube. If you run into problems, feel free to send them to the list so we can help resolve. Kevin Bonner -BEGIN PGP SIGNATURE- Version: GnuPG v1.2.3 (GNU/Linux) iD8DBQFAY0N6/9i

Re: Urgent Help !!

2004-03-28 Thread Kevin Bonner
. As long as you can connect using the mysql client from your linux box to the windows/MySQL box, it should work fine. Kevin Bonner -BEGIN PGP SIGNATURE- Version: GnuPG v1.2.3 (GNU/Linux) iD8DBQFAZ1D8/9i/ml3OBYMRAsewAJ4yS+myBz/g9Y67PvTzLc5xWLQf/QCfXPP/ ZikADNO+uX7izo9Y/MYBVT0= =SiL1 -END

Re: Thnkx

2004-03-28 Thread Kevin Bonner
mysql.com. Good luck! Kevin Bonner -BEGIN PGP SIGNATURE- Version: GnuPG v1.2.3 (GNU/Linux) iD8DBQFAZ2B4/9i/ml3OBYMRAtJjAKCb3zucRFzl+pTBby5Y/pomOOdz0wCggtHZ rbW58tjekaGmAh6zdv8pR8A= =4LJO -END PGP SIGNATURE- - List info/subscribe/unsubscribe? See http://www.freeradius.org/list

Re: New listen directive

2004-04-06 Thread Kevin Bonner
if using the listen directives. Other than that, everything else seems to be working so far. Kevin Bonner -BEGIN PGP SIGNATURE- Version: GnuPG v1.2.3 (GNU/Linux) iD8DBQFAc2Co/9i/ml3OBYMRAlTKAJ4qj2UAaTjez+X77t1R8EUnxD5upwCgkbB5 SztbiEN+uoosG1YKNeUICXg= =feeo -END PGP SIGNATURE

  1   2   >