RE: radsniff

2008-08-23 Thread Lemaster, Rob
-- Message: 5 Date: Fri, 22 Aug 2008 20:54:53 -0700 From: Lemaster, Rob [EMAIL PROTECTED] Subject: radsniff To: freeradius-users@lists.freeradius.org Message-ID: [EMAIL PROTECTED] Content-Type: text/plain; charset=iso-8859-1 I found some posts online in the Devel group about

radsniff

2008-08-22 Thread Lemaster, Rob
I found some posts online in the Devel group about 'radsniff'. This sounds like a great idea, but I can't find any more documentation on it in the user groups or in the man pages, other than some complaints about bugs. Is this ready to use yet? I'm not getting anything from it (I'm problably

Re: Failed to open socket

2008-05-05 Thread Lemaster, Rob
Lemaster, Rob wrote: I recently upgraded to 2.0.4, and now I'm seeing the following error when I start FreeRADIUS: ... Sat May 3 20:21:39 2008 : Error: ERROR: Failed to open socket: Sat May 3 20:21:39 2008 : Error: /opt/freeradius-2.0.4/etc/raddb/radiusd.conf[210]: Error binding to port

Failed to open socket

2008-05-04 Thread Lemaster, Rob
I recently upgraded to 2.0.4, and now I'm seeing the following error when I start FreeRADIUS: radiusd -X: /opt/freeradius-2.0.4/etc/raddb/radiusd.conf[210]: Error binding to port for 0.0.0.0 port 1812 radius.log: Sat May 3 20:21:39 2008 : Error: ERROR: Failed to open socket: Sat May 3

Run as non-privileged user

2008-05-04 Thread Lemaster, Rob
FreeRADIUS 2.0.4 Some documentation I've read recommends running FreeRADIUS as user=radius group=radius. It said that you shouldn't use nobody because that is reserved for a special purpose (I think it was the Hassel book). Around line 116 of radiusd.conf, I found the option for user/group,

Re: Dead Proxy Detection?

2008-04-13 Thread Lemaster, Rob
if ALL the remote proxies for that realm are unavailable, until they become available again. Can this be done here? If so, can you give me a syntax example? I could not find that in default, example, or README. Thanks! Lemaster, Rob wrote: Can FreeRADIUS automatically set all subcribers

RADIUS Packet Debugging

2008-04-07 Thread Lemaster, Rob
Does FreeRADIUS have a functionality that allows the administrator to debug RADIUS requests and responses? Something that will show the request and response with attributes, etc.. Thanks! FreeRADIUS: The other white meat. - List info/subscribe/unsubscribe? See

Windows AD Integration

2008-04-07 Thread Lemaster, Rob
Can FreeRADIUS be integrated into Windows Active Directory for user credentials and privelige based on Active Directory group? What is the best way to integrate FreeRADIUS into Windows Active Directory? Thanks! FreeRADIUS: It's what's for dinner. - List info/subscribe/unsubscribe? See

Attribute Mangling

2008-03-26 Thread Lemaster, Rob
Does FR have the ability to modify attributes from proxy servers, eg; a) Apply only local attributes. b) Apply only attributes from remote proxy. c) Merge attributes with local preference. d) Merge attributes with remote preference. Where would I find more documentation on this? Thanks for your

Dead Proxy Detection?

2008-03-15 Thread Lemaster, Rob
Can FreeRADIUS detect and remove dead proxies from the round-robin rotation and then add them back after it detects that the proxy is alive again? Can FreeRADIUS automatically set all subcribers to authenticate all if all proxies are unavailable, and then authenticate normally automatically

Advanced Queuing?

2008-03-15 Thread Lemaster, Rob
Does FreeRADIUS have any advanced queuing abilities? If we restart a BRAS, it will try to authenticate between 30,000 to 60,000 users all at once. This can crash our RADIUS server. Does FreeRADIUS have any advanced queuing functionality that will enable it handle this sudden surge of traffic,

FreeRADIUS MIB

2008-03-15 Thread Lemaster, Rob
I've reviewed the SNMP MIB and I can't find traps for the following events: * Proxy Failure * Database Connection Broken * Restart/HUP Are these traps available? Thanks! - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

FR Unix pws

2008-02-18 Thread Lemaster, Rob
. - Lemaster, Rob wrote: I am using FreeRADIUS v1.0.5 in a non-production lab environment. Well... I suggest upgrading. What hashing algorithm is used to store passwords in passwd? $ man passwd i.e. whatever your system supports. Does FreeRADIUS have an option to read passwords in clear

FR Unix pws

2008-02-13 Thread Lemaster, Rob
I am using FreeRADIUS v1.0.5 in a non-production lab environment. I am using the group and passwd files for RADIUS authentication. I'm not using the standard ones, but copies that I have created just for FreeRADIUS and stored in another directory (so it doesn't interfere with regular systems

FR caching problem

2005-12-27 Thread Lemaster, Rob
FreeRADIUS v.1.0.5 I am trying to enable caching on line 623 in radiusd.conf. When I turn on caching and reload, I get the following error: Info: Reloading configuration files. Info: Using deprecated naslist file. Support for this will go away soon. Info: HASH: Reinitializing hash structures