default_eap_type in ttls configuraion in file eap.conf

2010-02-22 Thread ZHANG Gina
Hi! I have a question regarding to the default_eap_type setting for ttls configuration in file eap.conf. From TTLS protocol, it is not necessary to do authentication in the tunnel and it is the user who decides and initiates which eap type to use inside tunnel. What the default_eap_type is used

Authorization through inner identity

2010-02-22 Thread ZHANG Gina
Hi, Is it possible to do authorization through the identity in inner tunnel? Thanks, Gina Zhang - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: Authorization through inner identity

2010-02-22 Thread ZHANG Gina
Alan, Thanks for the quick response! I did look there before I sent the first email. I think that I should add something In authorize section like update request. But I don't know the details. Could you advise? Thanks, Gina -Original Message- From:

RE: Authorization through inner identity

2010-02-22 Thread ZHANG Gina
Alan, All I want to do is to use inner username to lookup the database table to authorize. Thanks, Gina -Original Message- From: freeradius-users-bounces+gina.zhang=alcatel-lucent@lists.freeradius. org [mailto:freeradius-users-bounces+gina.zhang=alcatel-lucent@lists.fre

RE: Authorization through inner identity

2010-02-23 Thread ZHANG Gina
Alan, Thanks for all the help! I need to modify my question. I am using mschapv2 inside ttls tunnel. Upon receipt of the MS-CHAP2-Success AVP, the client is able to authenticate the FR. If the authentication succeeds, the client sends and EAP-TTLS packet to FR containing no data. Only upon

Identity does not match User-Name, setting from EAP Identity

2009-10-01 Thread ZHANG Gina
Hi all, I have a username and identity in EAP attribute with pattern {m=1}x...@. I need to remove {m=1} for both username and identity in EAP attribute. I put some regular expression in default file authorize section to remove {m=1} for username and it works! But I have not found a way to

RE: Identity does not match User-Name, setting from EAP Identity

2009-10-01 Thread ZHANG Gina
Ivan, Thanks a lot for your help! Could you elaborate on proxy.conf change I should make? Is it like the following: realm LOCAL { {m=1 } Thanks, Gina -Original Message- From: freeradius-users-bounces+gina.zhang=alcatel-lucent@lists.freeradius. org

RE: Identity does not match User-Name, setting from EAP Identity

2009-10-02 Thread ZHANG Gina
, October 02, 2009 1:33 AM To: FreeRadius users mailing list Subject: Re: Identity does not match User-Name, setting from EAP Identity ZHANG Gina wrote: Hi all, I have a username and identity in EAP attribute with pattern {m=1}x...@. I need to remove {m=1} for both username and identity

RE: Improving Auth-Rate

2009-10-13 Thread ZHANG Gina
Hi, When you have 100 auths/sec rate, what protocol are you using? Thanks, Gina -Original Message- From: freeradius-users-bounces+gina.zhang=alcatel-lucent@lists.freeradius.org [mailto:freeradius-users-bounces+gina.zhang=alcatel-lucent@lists.freeradius.org] On Behalf Of

RE: raddebug before 2.1.4

2009-10-13 Thread ZHANG Gina
Where to get a copy of raddebug? Thanks, Gina -Original Message- From: freeradius-users-bounces+gina.zhang=alcatel-lucent@lists.freeradius. org [mailto:freeradius-users-bounces+gina.zhang=alcatel-lucent@lists.fre eradius.org] On Behalf Of Alan DeKok Sent: Tuesday, October 13,

RE: raddebug before 2.1.4

2009-10-13 Thread ZHANG Gina
users mailing list Subject: Re: raddebug before 2.1.4 ZHANG Gina wrote: Where to get a copy of raddebug? It's included in all recent versions of the server. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html - List info/subscribe/unsubscribe? See

RE: Freeradius with DHCP

2009-11-10 Thread ZHANG Gina
Alan, Does this DHCP server assigns IP addresses from the ip address pool of radius? Thanks, Gina Zhang -Original Message- From: freeradius-users-bounces+gina.zhang=alcatel-lucent@lists.freeradius. org [mailto:freeradius-users-bounces+gina.zhang=alcatel-lucent@lists.fre

RE: Freeradius with DHCP

2009-11-10 Thread ZHANG Gina
@lists.fre eradius.org] On Behalf Of Alan DeKok Sent: Tuesday, November 10, 2009 1:28 PM To: FreeRadius users mailing list Subject: Re: Freeradius with DHCP ZHANG Gina wrote: Does this DHCP server assigns IP addresses from the ip address pool of radius? No. It requires code updates to allow the SQL

RE: Freeradius with DHCP

2009-11-10 Thread ZHANG Gina
, November 10, 2009 2:23 PM To: FreeRadius users mailing list Subject: Re: Freeradius with DHCP ZHANG Gina wrote: Does version 2.1.3 have this functionality? Where is the document describing the configuration? It's in 2.1.3. The only documentation is in raddb/sites-available/dhcp Alan DeKok

Build error: /lib/libpam.so: could not read symbols: File in wrong format

2010-02-04 Thread ZHANG Gina
Alan, When I tried to build freeRadius, I got this compile error. Could you point out how to fix it? Thanks, Gina - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: Build error: /lib/libpam.so: could not read symbols: File inwrong format

2010-02-04 Thread ZHANG Gina
mailing list Subject: Re: Build error: /lib/libpam.so: could not read symbols: File inwrong format ZHANG Gina wrote: Alan, When I tried to build freeRadius, I got this compile error. Could you point out how to fix it? Make sure your compiler knows how to pick the correct libraries. Alan