Changing proxy server for a specific user

2013-07-11 Thread Angel L. Mateo
in the request with an entry in the user's file? -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información y las Comunicaciones Aplicadas (ATICA) http://www.um.es/atica Tfo: 868889150 Fax: 86337 - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: radwho: No configuration information in radutmp section of radiusd.conf

2012-11-19 Thread Angel L. Mateo
El 19/11/12 09:15, Fajar A. Nugraha escribió: On Mon, Nov 19, 2012 at 2:28 PM, Angel L. Mateo ama...@um.es wrote: accounting { detail unix #radutmp Well, that won't help. You're trying to use radwho, but aren't logging accounting information. That means radwho

Personalizing ldap filters from users file

2012-11-19 Thread Angel L. Mateo
server configuration. What I want to avoid is to define different ldap modules differing just the filter. Any idea? -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información y las Comunicaciones Aplicadas (ATICA) http://www.um.es/atica Tfo: 868889150 Fax

Re: Personalizing ldap filters from users file

2012-11-19 Thread Angel L. Mateo
El 19/11/12 11:17, Phil Mayers escribió: On 11/19/2012 09:48 AM, Angel L. Mateo wrote: ldap { ... filter = ((mail=%{User-Name})(schacUserStatus=urn prefix: %{X-Atica-Service}:enabled)) ... } DEFAULT X-Actica-Service = 'vpn', Auth-Type = LDAP, Realm == um.es User-Name

Re: radwho: No configuration information in radutmp section of radiusd.conf

2012-11-18 Thread Angel L. Mateo
El 16/11/12 17:03, Alan DeKok escribió: Angel L. Mateo wrote: Hello, I have a problem with radwho since I upgraded from 2.1.10 to 2.2.0. The same configuration (I'm trying now the default configuration installed from ubuntu packages) works with version 2.1.10 and not with 2.2.0. The error

radwho: No configuration information in radutmp section of radiusd.conf

2012-11-16 Thread Angel L. Mateo
-proxy { eap } I have tried it enabling and disabling radutmp in accounting section. As I have already said, this same configuration works with 2.1.8 (default ubuntu package) but not with 2.2.0. Any idea? -- Angel L. Mateo Martínez Sección de Telemática Área de

Re: radzap: Nothing to send

2011-11-23 Thread Angel L. Mateo
El 16/11/11 16:54, xgiova escribió: I'm havig the same problem on my Centos server. Can you explain how did you solve? The problem was related with virtual servers. The virtual server assigned to the client running radzap was incorrect. -- Angel L. Mateo Martínez Sección de Telemática Área

Re: radzap: Nothing to send

2011-09-23 Thread Angel L. Mateo
Hello, I have solved my problem. The problem was really related with virtual servers. -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA) / \\ http://www.um.es/atica_(___V Tfo

radzap: Nothing to send

2011-09-20 Thread Angel L. Mateo
config and the new one is that now I'm using virtual servers? Could it be the reason? -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA) / \\ http://www.um.es/atica_(___V Tfo: 868887590 Fax

Re: Freeradius and LDAP keepalive

2011-09-08 Thread Angel L. Mateo
. -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA) / \\ http://www.um.es/atica_(___V Tfo: 868887590 Fax: 86337 - List info/subscribe/unsubscribe? See http://www.freeradius.org/list

Freeradius and LDAP keepalive

2011-09-07 Thread Angel L. Mateo
to configure this keepalive? -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA) / \\ http://www.um.es/atica_(___V Tfo: 868887590 Fax: 86337 - List info/subscribe/unsubscribe? See http

Re: Freeradius and LDAP keepalive

2011-09-07 Thread Angel L. Mateo
El 07/09/11 13:02, Alan DeKok escribió: Angel L. Mateo wrote: I have a freeradius 2.1.10 running in a ubuntu (10.04) server. My users are in a ldap directory. The problem I have is that openldap server has an idle timeout (if there is more than this time with an idle connection

Re: Freeradius not releasing IPs from pool

2011-06-07 Thread Angel L. Mateo
works now perfectly. -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA) / \\ http://www.um.es/atica_(___V Tfo: 868887590 Fax: 86337 - List info/subscribe/unsubscribe? See http

Re: Freeradius not releasing IPs from pool

2011-06-06 Thread Angel L. Mateo
El 03/06/11 10:33, George Chelidze escribió: On 06/01/2011 04:02 PM, Angel L. Mateo wrote: Hello, I have a problem with my pools in freeradius. The problems is that it is not releasing IPs from the pools. At least, not all of them, so after a while my users can't connect because the pool

Freeradius not releasing IPs from pool

2011-06-01 Thread Angel L. Mateo
. -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA) / \\ http://www.um.es/atica_(___V Tfo: 868887590 Fax: 86337 - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Login access-request results to syslog

2011-05-24 Thread Angel L. Mateo
El 23/05/11 14:30, Alan DeKok escribió: Angel L. Mateo wrote: ... reference = %{%{Packet-Type}:-format} Which is *always* the request packet. Use %{reply:Packet-Type} for the reply. You'll have to find a way to switch the reference based on request or reply. Maybe configure

Login access-request results to syslog

2011-05-23 Thread Angel L. Mateo
seconds. All I want is to log in syslog if the access-request is accepted or rejected for any reason. Any help? -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA) / \\ http://www.um.es/atica

Re: R: freeradius and IP pools

2008-12-14 Thread Angel L. Mateo
If both users are the same, it is better to configure just one user and make checks stripping the realm. -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA) / \\ http://www.um.es/atica

Problem with CPU load

2008-12-03 Thread Angel L. Mateo
be happening? -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA) / \\ http://www.um.es/atica_(___V Tfo: 968367590 Fax: 968398337 - List info/subscribe/unsubscribe? See http

LDAP + groups problem

2007-03-23 Thread Angel L. Mateo
groups. Is there any way to configure taking count of main and secondary groups with this structure? Thanks in advance -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA) / \\ http://www.um.es

Re: Freeradius is logging the passwords

2007-02-22 Thread Angel L. Mateo
the 'suppress' feature for each of the detail logs. this feature was introduced in 1.1.2 eg suppress { User-Password } in your detail stanzas Great! It works. Thank you very much -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la

Re: Freeradius is logging the passwords

2007-02-21 Thread Angel L. Mateo
El mié, 21-02-2007 a las 13:32 +0100, Alan DeKok escribió: In 1.1.4, yes. See radiusd.conf, look at the detail section. But I have 1.1.3 :-(. Is there any way without needing to upgrade? -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información

Re: radwho is not working

2007-02-19 Thread Angel L. Mateo
it, but 1.1.3 is the version provided in debian etch. -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA) / \\ http://www.um.es/atica_(___V Tfo: 968367590 Fax: 968398337 - List info/subscribe

Re: radwho is not working

2007-02-16 Thread Angel L. Mateo
El mar, 13-02-2007 a las 12:14 +0100, Angel L. Mateo escribió: Hello, More info about my problem... In the radius.log file I have a lot of entries of the form: Tue Feb 13 12:12:13 2007 : Error: rlm_radutmp: Logout for NAS ap port 1627, but no Login record Tue Feb 13 12:12:35 2007

Re: radwho is not working

2007-02-13 Thread Angel L. Mateo
Tue Feb 13 12:12:46 2007 : Error: rlm_radutmp: Logout for NAS ap port 8726, but no Login record -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA) / \\ http://www.um.es/atica_(___V Tfo

Re: radwho is not working

2007-02-05 Thread Angel L. Mateo
El sáb, 06-01-2007 a las 00:02 -0500, Alan DeKok escribió: Angel L. Mateo wrote: But, if this was the problem, why freeradius updates the file? (I have checked that the file is modified every time freeradius makes an authentication) Does debugging mode show radutmp returns noop

Re: How to send tome clients to the same detail file

2007-01-17 Thread Angel L. Mateo
El mar, 07-11-2006 a las 18:29 -0500, Alan DeKok escribió: Angel L. Mateo [EMAIL PROTECTED] wrote: But now I want to send all the logs for requests from a group of clients (defined as a huntgroup) to the same files, and the request for all other clients as now (classified with the IP

Re: radwho is not working

2007-01-05 Thread Angel L. Mateo
El jue, 04-01-2007 a las 05:16 -0800, Alan DeKok escribió: Angel L. Mateo wrote: The problem I have is that although radumtp and radwmtp are updated every time time radius authenticate an user, radwho shows an empty list, but radlast shows information. For example, at this moment

radwho is not working

2007-01-04 Thread Angel L. Mateo
) ... as you can see, radlast shows that there are users logged in to teh system, but vulpes2:/etc/freeradius# radwho Login Name What TTY When From Location any idea? -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y

How to send tome clients to the same detail file

2006-11-03 Thread Angel L. Mateo
(classified with the IP address of the client). Is there any way to redefine this files for a set of clients? -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA) / \\ http://www.um.es/atica_(___V

RE: EAP and accounting

2006-10-30 Thread Angel L. Mateo
, I have this attribute set to yes. With this, the reply my freeradius server sent to the client is based in the user inside the EAP tunnel, but the accounting logs are still registered with username anonymous instead the username inside the tunneled request. -- Angel L. Mateo Martínez Sección

EAP and accounting

2006-10-20 Thread Angel L. Mateo
the real username instead of anonymous in the log files. Thanks. -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA) / \\ http://www.um.es/atica_(___V Tfo: 968367590 Fax: 968398337

RE: Source IP address for proxy requests

2006-09-27 Thread Angel L. Mateo
El mar, 26-09-2006 a las 10:00 +0200, Sebastien Cantos escribió: I've you seen my post or are you just ignoring it ? :) I've seen your post. I already know I could reconfigure routes. -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y

Re: Source IP address for proxy requests

2006-09-26 Thread Angel L. Mateo
solved it by telling freeradius to only bind to one IP. Does this config no longer work?? It continues working, but the problem is with connections originated from the radius server, not the answer. Specifically, the problem is with proxy requests sent by the radius server. -- Angel L

Source IP address for proxy requests

2006-09-25 Thread Angel L. Mateo
any configuration option to configure this. Is there any way to do it? -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA) / \\ http://www.um.es/atica_(___V Tfo: 968367590 Fax: 968398337

Re: Source IP address for proxy requests

2006-09-25 Thread Angel L. Mateo
El lun, 25-09-2006 a las 14:46 +0200, Nicolas Baradakis escribió: Angel L. Mateo wrote: Freeradius is working fine with this configuration, except the proxy module. The problema I have is that proxy requests are originated with the IP address of the member, not the IP of the cluster

Different ldap authentications

2006-09-08 Thread Angel L. Mateo
haven't found how to make it use another different ldap configuration, if it is possible. -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA) / \\ http://www.um.es/atica_(___V Tfo: 968367590

A cluster of freeradius servers

2005-08-26 Thread Angel L. Mateo
to one of these servers. It this fail, then it should ask to the other one. If this posible with freeradius? How do I do it? -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA)/ \\ http://www.um.es/atica

Re: Error: Dropping conflicting packet due to unfinished request

2005-05-18 Thread Angel L. Mateo
, I have, not just, to restart it, but also I have to delete the db.ippool and db.ipindex files. If I restart it without deleting these files, radius runs with problem and dies after a little while. -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y

Error: Dropping conflicting packet due to unfinished request

2005-05-17 Thread Angel L. Mateo
. Any idea? -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA)/ \\ http://www.um.es/atica _(___V Tfo: 968367590 Fax: 968398337 - List info/subscribe/unsubscribe? See http

Re: different pools for different realms

2005-04-11 Thread Angel L. Mateo
use there?, because this attribute isn't in http://www.freeradius.org/rfc/attributes.html -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA)/ \\ http://www.um.es/atica _(___V Tfo: 968367590 Fax

different pools for different realms

2005-04-08 Thread Angel L. Mateo
... ... Or there is any other way to do what I want? -- Angel L. Mateo Martínez Sección de Telemática Área de Tecnologías de la Información _o) y las Comunicaciones Aplicadas (ATICA)/ \\ http://www.um.es/atica _(___V Tfo: 968367590 Fax: 968398337 - List info/subscribe