or choose else way.
Thanks
Anton
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
to ? can
freeradius judge it by itself, or
how to judge the user if offline ?
--
Spacelee
--
Spacelee
--
Anton [WARM-RIPE]
Stack ltd division head
tel. 8 (3822) 555-797
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Spacelee fjct...@gmail.com wrote:
sorry, does the radcheck.pl included in freeradius now? does you mean
/usr/sbin/checkrad ?
and i search the keywords Simultaneous mysql radius down , but found no
results i need.
2010/6/1 Anton w...@stack.rumailto:w...@stack.ru
It should be done
% of CPU ?
Supply a pcap file containing the packet, so we can reproduce the
problem, and fix it.
Alan DeKok.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
--
Anton [WARM-RIPE]
Stack ltd division head
tel. 8 (3822) 555-797
dhcp_on_client.dump
}
linelog
ok
}
dhcp {
update reply {
DHCP-Message-Type = DHCP-NAK
}
}
}
passwd mac2ip {
filename = ${confdir}/mac2ip
format = *DHCP-Client-Hardware-Address:=DHCP-Your-IP-Address
delimiter = ,
}
--
Anton [WARM-RIPE]
Stack
-select (###point 1), I do not have to make
another SQL query every time when I use if (SQL-Group == my_pool) .
--
Yours faithfully,
Anton Borisov.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
@lists.freeradius.org]
On Behalf Of Anton Brinyov
Sent: Sunday, August 23, 2009 6:17 PM
To: FreeRadius users mailing list
Subject: Re: rlm_perl / libtool / libltdl problem
Hi,
It means, there isn't solution for this problem now?
Thanks,
Anton
-
List info/subscribe/unsubscribe? See http
Alan DeKok ?:
Anton G. wrote:
get today git/stable and tried - same result.. (
Are you sure you're using *that* version, and that you don't have
multiple versions of the software installed?
Yes, checked it twice..
Alan, can you please provide me some tips to do further debug
Hi,
It means, there isn't solution for this problem now?
Thanks,
Anton
2009/8/18 Garber, Neal neal.gar...@energyeast.com:
Did I mention that I hate libtool and libltdl? They're close to
*causing* more problems than they solve.
Yes, on several occasions that I recall :) I share your
Alan DeKok ?:
Anton G. wrote:
I have a strange problem with CoA-Ack receive
Which version of the software are you using?
git/stable from Aug 13 10:07 GMT
It works for me with the latest git stable tree...
get today git/stable and tried - same result.. (
Alan, can you please
Hi,
I try to move samba's ntlm_auth program and replace it by simple shell script:
#!/bin/sh
echo Test!
But NOTHING CHANGED!
I think, radius don't call ntlm_auth program, but I don't know why.
Thanks,
Anton
2009/8/20 Anton Brinyov anton.brin...@gmail.com:
Here are my sites-enabled/default
Oh!
I notice in /var/log/messages follow line after each auth attempt:
Aug 22 18:28:33 gate1 kernel: pid 78473 (radiusd), uid 133: exited on signal 12
Thanks,
Anton
2009/8/22 Anton Brinyov anton.brin...@gmail.com:
Hi,
I try to move samba's ntlm_auth program and replace it by simple shell
Hmmm...
Problem was solved by recompiling kernel and freeradius.
Thanks,
Anton.
2009/8/22 Anton Brinyov anton.brin...@gmail.com:
Oh!
I notice in /var/log/messages follow line after each auth attempt:
Aug 22 18:28:33 gate1 kernel: pid 78473 (radiusd), uid 133: exited on signal
12
Hello,
I have a strange problem with CoA-Ack receive
I send test Coa packet to nas (juniper erx), the nas sees the packet and do
corresponding action as well, and sends Coa-Ack back
Nothing strange in nas debug or tcpdump
But radclient says:
some# /usr/local/bin/radclient -t20 -r 1 -c 1 -f
Here are my sites-enabled/default and sites-enabled/inner-tunnel files.
Thanks,
Anton
2009/8/19 Alan Buxey a.l.m.bu...@lboro.ac.uk:
Hi,
I have another freeradius host (freeradius 2.1.3) with the same
authentication scheme.
I look at debug output on it:
Found Auth-Type = MSCHAP
,
Anton.
2009/8/18 Anton Brinyov anton.brin...@gmail.com:
2009/8/18 Alan Buxey a.l.m.bu...@lboro.ac.uk:
Hi,
The problem appears in any case - with or without require-membership option.
which version of SAMBA are you running? Latest version is known to have
issues - they've changed things
Here my sites-enabled/default and sites-enabled/inner-tunnel files.
Thanks,
Anton
2009/8/19 Alan Buxey a.l.m.bu...@lboro.ac.uk:
Hi,
I have another freeradius host (freeradius 2.1.3) with the same
authentication scheme.
I look at debug output on it:
Found Auth-Type = MSCHAP
+- entering
Oh, sorry.
I tried to get some about ntlm_auth output and forgot to remove changes.
I delete pipe but it did't remove problem.
..now post the debug again
Please, find in attachment. Nothing changed.
radiusd.out.1
Description: Binary data
-
List info/subscribe/unsubscribe? See
--request-nt-key
--require-membership-of=CENTAURA+InternetUsers --username=BAS
--challenge=6b6f49357dccee7c
--nt-response=ce2480f1e35c222a4d3481b83ee78854094394517f29d9ec
NT_KEY: A9B342EC3E218E54A330556C468415CD
What can I do for getting some details about error?
Thanks,
Anton.
-
List info/subscribe
}
And output is the same as in previous case.
Thanks,
Anton
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
(“) just before the last right curly
brace (“}”) at the bottom of the mschap file
Sorry, it's casual noise. It's not a cause of problem.
Thanks,
Anton.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
2009/8/18 Alan DeKok al...@deployingradius.com:
Don't use the pipe. Use ntlm_auth as configured in the mschap module,
without any extra changes.
Oh, sorry.
I tried to get some about ntlm_auth output and forgot to remove changes.
I delete pipe but it did't remove problem.
-
List
Alan DeKok ?:
Anton G. wrote:
/usr/local/etc/raddb/clients.conf[30]: No such home_server or
home_server_pool localhost-coa
some#
What am i missing?
Weird. I guess the code got changed after the feature was tested and
added. Oh well.
I've committed a fix to git. You can grab
Alan DeKok ?:
DILLIOTT Tony wrote:
I still get the following error when I run radiusd -Xx :
/usr/local/etc/raddb/clients.conf[30]: No such home_server or
home_server_pool localhost-coa
I've put a patch into git that should fix the problem. See the
stable branch.
Or, wait a few
Alan DeKok ?:
Anton G. wrote:
It seems that i didn`t understand sites-available/originate-coa right
and miss something in my conf
Could You please clarify it for me?
You need to link it into sites-enabled/originate-coa.
The server reads only sites-enabled, not sites-available
-available/originate-coa right and miss
something in my conf
Could You please clarify it for me?
Anton G.K.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
that INSERT is
supported.
Ivan Kalik
Kalik Informatika ISP
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
--
Yours faithfully,
Anton Borisov.
smime.p7s
Description: S/MIME Cryptographic Signature
-
List info/subscribe/unsubscribe? See http://www.freeradius.org
...) {
ok
}
Alan DeKok.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
--
Yours faithfully,
Anton Borisov.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
/unsubscribe? See http://www.freeradius.org/list/users.html
--
Yours faithfully,
Anton Borisov.
smime.p7s
Description: S/MIME Cryptographic Signature
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
') AND usergroup.GroupName =
radgroupreply.GroupName AND usergroup.GroupName = 'b-group' ORDER BY
usergroup.PRIORITY
GROUPNAME ATTRIBUTE VALUE OP
b-groupReply-Message b-group +=
What do you think?
--
Yours faithfully,
Anton Borisov.
smime.p7s
Description: S/MIME Cryptographic
}
This is working, but more quickly and easily only add Exec-Programm to
acct_users (like in 1.7.7 version)
Would you be so kind and give some examples for acct_usrs in 2.1.1?
Alan DeKok wrote:
Anton Borisov wrote:
I used Start and Stop in accounting for some DNS registrations of my
clients, like
request 1
Tue Dec 23 10:28:56 2008 : Debug: Going to the next request
--
Yours faithfully,
Anton Borisov.
smime.p7s
Description: S/MIME Cryptographic Signature
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Good day!
Thank you! It is working!
Could I ask about key for Solaris OS in future?
Something like --without-SUN_LEN...
Sorry about duplicate, I thought my first message was rejected by
mail-filter.
Alan DeKok wrote:
Anton Borisov wrote:
Good day!
You don't need to post the same
, where I make my mistake?
--
Yours faithfully,
Anton Borisov.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
, where I make my mistake...
--
Yours faithfully,
Anton Borisov.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
If I add to users file this:
When I used exec-program all the attributes I wanted were in the
environment.
And how can I exploit it? I get only this:
--
$ cat /home/engineer/acrad.sh
#!/bin/sh
printenv /tmp/exec-program-wait
--
bob Auth-Type := Local, User-Password == bob
Hi.
If I add to users file this:
bob Auth-Type := Local, User-Password == bob
Reply-Message = Hello, %u,
Exec-Program = /home/engineer/acrad.pl User-Name=%{User-Name}
Service-Type=%{Service-Type} Acct-Status-Type=%{Acct-Status-Type}
Acct-Session-Id=%{Acct-Session-Id}
Nicolas Baradakis пишет:
I don't see libeap.so in the output of ldd. Something is wrong here,
because rlm_eap depends on libeap.
You could try to re-build FreeRADIUS with ./configure --disable-shared.
It is undesirable to use static libraries.
I have found similar problem in the Internet:
Hm...
Warning: Linking the executable radeapclient against the loadable
module
libeap.so is not portable!
[EMAIL PROTECTED] root]# ls /usr/lib/freeradius/libeap.so
/usr/lib/freeradius/libeap.so
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Nicolas Baradakis пишет:
You could try to re-build FreeRADIUS with ./configure --disable-shared.
It is undesirable to use static libraries.
Then you could try to build FreeRADIUS from a CVS snapshot: the build
process of rlm_eap and libeap should work better.
freenibs not build from cvs.
I'v compiled fresh verison FreeRADIUS (Version 1.1.0) from
http://www.freeradius.org/ but i'v got error on program startup:
Module: Loaded eap
eap: default_eap_type = md5
eap: timer_expire = 60
eap: ignore_unknown_eap_types = no
eap: cisco_accounting_username_bug = no
radiusd: symbol lookup
ok = return
updated = return
userlock = return
handled = return
}
}
}
Is it ever possible (even with rlm_exec modification)?
27 2004 21:19 Alan DeKok (a):
Anton Voronin [EMAIL PROTECTED] wrote
Hello there.
I've posted previously before but noone got it as a bug.
I'm using freebsd pptp+ppp+freeradius+mysql.
I've tryed to setup ippool so I can get a dynamic assigned ips from the
radius server. It worked just fine with radtest , I got right answer
with the ip addres and all fine.
But!
on my old system :(
I'll try to look at other modules (rlm_exec for example)
--
Anton Voronin
Intersvyaz JSC
http://www.chelcom.ru
+7 (3512) 655199
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Hello there,
I'm running freeradius on my freebsd box and now I'm trying to configure
it to set dynamic ips, I've configured it and it works just fine with
radtest BUT!
when I try to connect rough my pptp server I got authenitcated but I
don't get an ip addres!!
I've debugged for a while and saw
19 2004 11:11 Anton Voronin (a):
2) I cannot define a custom instance of exec module (for example,
exec_xxx). If I define exec xxx {...} in module configuration section,
I cannot refer it from authenticate{...} or authorize{...} as exec_xxx,
because the server complains ERROR: Cannot find
want to use perl script.
THanks and Regards,
Manh Cuong.
Try the following:
modules {
...
perl {
module = path/to/your/script
}
...
}
--
Anton Voronin
Intersvyaz JSC
http://www.chelcom.ru
+7 (3512) 655199
-
List info/subscribe/unsubscribe? See
Hello to everyone!
I'm pretty new in the radius using, I've made my freeradius to talk with
mysql and it works just fine, but now I want my radius to assign ips ,
because I don't want a static ips for my users, I've looked around and
saw that there is a way, using rlm_ippool.
I'm using freebsd
a lot again!
On Вт , 2004-02-17 at 14:42, [EMAIL PROTECTED] wrote:
On Tue, Feb 17, 2004 at 01:59:58PM +0200, Anton Blajev wrote:
I'm pretty new in the radius using, I've made my freeradius to talk with
mysql and it works just fine, but now I want my radius to assign ips ,
because I don't
Hello all out there,
I'm using FreeBSD as my server machine, I wanted to run radius+mysql
auth for my pptp users.
I got freeradius work just fine, but !
When I've tryed to get it working with mysql I wasn't able :(.
It returnd error freeradius can't load rlm_sql_mysq module.
I've made ls -la
Fraser wrote:
Anton Blajev wrote:
Hello all out there,
I'm using FreeBSD as my server machine, I wanted to run radius+mysql
auth for my pptp users.
I got freeradius work just fine, but !
When I've tryed to get it working with mysql I wasn't able :(.
It returnd error freeradius can't
!= MS_CHAP2_RESPONSE_LEN)
It completely fixes the problem of authenticating with pppd against
freeradius using MSCHAPv2.
I sent this patch to one of the maintainers of the pppd and asked to
commit it to the source tree. Hope fixed pppd will be available for wide
public soon.
Kind regards,
Anton Golubev
-
List info
:
mysql select * from radcheck;
++--+---++---+
| id | UserName | Attribute | op | Value |
++--+---++---+
| 1 | anton| User-Password | == | anton |
++--+---++---+
1 row in set (0.00 sec)
To make
f7624c397cabc2504b37d007f5c3b5e908358fb7d79f0d6ad3b93c7e5e597b38aca7f5e6a23e3ba600,
name = anton]
Jan 5 05:32:00 ahome pppd[27471]: Peer anton failed CHAP authentication
Jan 5 05:32:00 ahome pppd[27471]: sent [CHAP Failure id=0xfa p\3777605\010\010P]
Jan 5 05:32:00 ahome pppd[27471]: sent [LCP TermReq id=0x4
54 matches
Mail list logo