dialupadmin and php5

2013-06-07 Thread Sergio Belkin
Hi folks, I'd want to know is anyone is using dialupadmin along with php5.. Thanks in advance! -- -- Sergio Belkin http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com LPIC-2 Certified - http://www.lpi.org - List info/subscribe/unsubscribe? See http://www.freeradius.org/list

Question about radwho/radutmp dates

2013-03-15 Thread Sergio Belkin
Hi folks, How long time does radwho/radutmp store accounting information? Thanks in advance -- -- Sergio Belkin http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com LPIC-2 Certified - http://www.lpi.org - List info/subscribe/unsubscribe? See http://www.freeradius.org/list

About mismatching shared secret

2012-07-16 Thread Sergio Belkin
on command file /usr/local-test/var/run/radiusd/radiusd.sock Listening on status address 127.0.0.1 port 18120 as server status Listening on authentication address 127.0.0.1 port 18121 as server inner-tunnel Ready to process requests. any ideas? -- -- Sergio Belkin http://www.sergiobelkin.com Watch More

Re: radlast output

2012-07-12 Thread Sergio Belkin
2012/7/12 Fajar A. Nugraha l...@fajar.net: On Thu, Jul 12, 2012 at 3:17 AM, Sergio Belkin seb...@gmail.com wrote: Alan, thanks for your advice, always in this mailing list I was willing to learn and to admit when I have to fix something. Mail from Tamás it looked somewhat sarcastic and had

Re: radlast output

2012-07-11 Thread Sergio Belkin
2012/7/11 Tamás Becz tamas.b...@ericsson.com: -Original Message- From: freeradius-users-bounces+tamas.becz=ericsson.com@lists.freerad ius.org [mailto:freeradius-users- bounces+tamas.becz=ericsson@lists.freeradius.org] On Behalf Of Sergio Belkin Sent: Tuesday, July 10, 2012 5

Re: radlast output

2012-07-11 Thread Sergio Belkin
2012/7/11 Alan DeKok al...@deployingradius.com: Sergio Belkin wrote: What a pity, I thought you had something interesting to teach us! Oh I see you are trying to teach us something of social engineering in a open source mailing list! Wow... You're getting upset at people who are trying

Re: radwho with nas-ip-address behind NAT

2012-06-26 Thread Sergio Belkin
doing something wrong... Packet-Src-IP-Address, on the other hand, is whatever the radius sees the packet coming from, which should be the NAS/firewal's public IP address in your case. -- Fajar On Mon, Jun 25, 2012 at 11:13 PM, Sergio Belkin seb...@gmail.com wrote: Hi, I wonder radwho

radwho with nas-ip-address behind NAT

2012-06-25 Thread Sergio Belkin
Hi, I wonder radwho can show the actual Nas-IP-Address os and not the Nat device IP nat. Another interesting option would be NAS-Identifier. Is that feasible? Thanks in advance! -- -- Sergio Belkin  http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com LPIC-2 Certified - http

Re: Problems with Huntgroup

2012-06-07 Thread Sergio Belkin
2012/6/6 Alan DeKok al...@deployingradius.com: Sergio Belkin wrote: Good idea, I've tried appending  %{EAP-Type) that to detail.log  What does that mean? but sending nothing eg: auth-detail-AP-XXX-DEFAULT--20120606 Between - and - is nothing (Neither TTLS nor PEAP appears

Re: Problems with Huntgroup

2012-06-07 Thread Sergio Belkin
2012/6/6 Matthew Newton m...@leicester.ac.uk: On Wed, Jun 06, 2012 at 03:56:54PM -0300, Sergio Belkin wrote: Good idea, I've tried appending  %{EAP-Type) that to detail.log but sending nothing eg: auth-detail-AP-XXX-DEFAULT--20120606 Between - and - is nothing (Neither TTLS nor PEAP

Re: Problems with Huntgroup

2012-06-06 Thread Sergio Belkin
2012/6/5 Matthew Newton m...@leicester.ac.uk: On Mon, Jun 04, 2012 at 11:43:07AM -0300, Sergio Belkin wrote: 2012/6/4 Alan DeKok al...@deployingradius.com:  The debug for the inner-tunnel *clearly* shows NOT using the files module. So, sorry for the stupid questions but how can I do

Re: Problems with Huntgroup

2012-06-06 Thread Sergio Belkin
2012/6/6 Matthew Newton m...@leicester.ac.uk: On Wed, Jun 06, 2012 at 10:28:27AM -0300, Sergio Belkin wrote: I've added this files because I like to separate logs when supplicants are using PEAP or TTLS I'd still use just one file, and filter the logs instead. Is there a better way of doing

Re: Problems with Huntgroup

2012-06-04 Thread Sergio Belkin
2012/6/4 Alan DeKok al...@deployingradius.com: Sergio Belkin wrote: I've appended something like to huntgroups file mb NAS-IP-Address == 10.129.189.1 mb NAS-IP-Address == 10.129.84.1 mb Called-Station-Id == 00-1B-7E-DC-AB-1A:UP-PVIII-I And in users files: pruebita  Huntgroup-Name == mb

Re: Problems with Huntgroup

2012-06-04 Thread Sergio Belkin
{ radutmp } post-auth { reply_log Post-Auth-Type REJECT { attr_filter.access_reject } } pre-proxy { } post-proxy { post_proxy_log eap } EOF Thanks in advance! -- -- Sergio Belkin  http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com LPIC-2 Certified - http://www.lpi.org

Re: Only Out-of-tunnel

2012-01-24 Thread Sergio Belkin
/radius/radiusd-inner-tunnel-* log files Please could you explain me? I don't use mac based authentication... Thanks in advance! -- -- Sergio Belkin  http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com LPIC-2 Certified - http://www.lpi.org - List info/subscribe/unsubscribe

Re: Only Out-of-tunnel

2012-01-24 Thread Sergio Belkin
2012/1/17 Sergio Belkin seb...@gmail.com 2012/1/16 Alan Buxey a.l.m.bu...@lboro.ac.uk Where's the log for when this happens?  As MAC auth wouldn't go through EAP tunnel it would suggest that some entry in eg users file is coming into play... alan Alan, I have three logs, I have

Only Out-of-tunnel

2012-01-16 Thread Sergio Belkin
Ready to process requests. -- -- Sergio Belkin http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com LPIC-2 Certified - http://www.lpi.org - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Always Login incorrect: Could not extract EAP-Message from RADIUS message

2011-12-17 Thread Sergio Belkin
Belkin  http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com LPIC-2 Certified - http://www.lpi.org -- -- Sergio Belkin  http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com LPIC-2 Certified - http://www.lpi.org - List info/subscribe/unsubscribe? See http

Re: Always Login incorrect: Could not extract EAP-Message from RADIUS message

2011-12-17 Thread Sergio Belkin
2011/12/17 Alan DeKok al...@deployingradius.com: Sergio Belkin wrote: I have a really weird problem. We have a lot of NAS'es and no one of them had this problem, except only one! It gets always login incorrect.  Throw the NAS in the garbage. If I run eapol_test it complains saying. I've

Re: Always Login incorrect: Could not extract EAP-Message from RADIUS message

2011-12-17 Thread Sergio Belkin
2011/12/17 Alan DeKok al...@deployingradius.com: Sergio Belkin wrote: Ooops, sorry it says could not extract EAP-Message from RADIUS message  That's a message on the NAS.  Ask the NAS manufacturer what it means. Hmmm, so it should something wrong in the network, because I've tried from 2

Re: Always Login incorrect: Could not extract EAP-Message from RADIUS message

2011-12-16 Thread Sergio Belkin
2011/12/16 Sergio Belkin seb...@gmail.com: Hi, I have a really weird problem. We have a lot of NAS'es and no one of them had this problem. It gets always login incorrect. If I run eapol_test it complains saying. I've tried replacing the nas a few times and makes no difference. And it doesnt

Re: Always Login incorrect: Could not extract EAP-Message from RADIUS message

2011-12-16 Thread Sergio Belkin
2011/12/16 Sergio Belkin seb...@gmail.com: 2011/12/16 Sergio Belkin seb...@gmail.com: Hi, I have a really weird problem. We have a lot of NAS'es and no one of them had this problem. It gets always login incorrect. If I run eapol_test it complains saying. I've tried replacing the nas a few

Re: Always Login incorrect: Could not extract EAP-Message from RADIUS message

2011-12-16 Thread Sergio Belkin
Going to the next request - -- Sergio Belkin  http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com LPIC-2 Certified - http://www.lpi.org - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Broken Pipe with ssh

2011-10-13 Thread Sergio Belkin
-- -- Sergio Belkin  http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com LPIC-2 Certified - http://www.lpi.org - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Broken Pipe with ssh

2011-10-12 Thread Sergio Belkin
Listening on accounting address 192.168.1.5 port 1813 Listening on status address 127.0.0.1 port 18120 as server status Ready to process requests. -- -- Sergio Belkin  http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com LPIC-2 Certified - http://www.lpi.org - List info/subscribe

Invitation to connect on LinkedIn

2011-07-03 Thread Sergio Belkin via LinkedIn
LinkedIn Sergio Belkin requested to add you as a connection on LinkedIn: -- Glen, I'd like to add you to my professional network on LinkedIn. - Sergio Accept invitation from Sergio Belkin http://www.linkedin.com/e/f5ihn8-gpobvdyd

Freeradius + xmpp server

2011-05-27 Thread Sergio Belkin
Hi, I'd want to know if anyone there is using freeradius along with a xmpp server. I'd like to read experiences about it. Thanks in advance! -- -- Sergio Belkin  http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com LPIC-2 Certified - http://www.lpi.org - List info/subscribe

Re: Freeradius + xmpp server

2011-05-27 Thread Sergio Belkin
2011/5/27 Phil Mayers p.may...@imperial.ac.uk: On 27/05/11 16:31, Sergio Belkin wrote: Hi, I'd want to know if anyone there is using freeradius along with a xmpp server. I mean use a xmppserver as a NAS. I think that it provide more flexibility to choose based on what attributes

Re: Freeradius + xmpp server

2011-05-27 Thread Sergio Belkin
2011/5/27 Phil Mayers p.may...@imperial.ac.uk: On 27/05/11 16:58, Sergio Belkin wrote: I mean use a xmppserver  as a NAS. I think that it provide more flexibility to choose based on what attributes is performed the authentication. So, would the idea be that:  * client connects to XMPP

Re: Freeradius + xmpp server

2011-05-27 Thread Sergio Belkin
a radius plugin a bit outdated... Have you tried PAM and pam_radius? - No yet :) -- -- Sergio Belkin  http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com LPIC-2 Certified - http://www.lpi.org - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Invalid signature

2011-05-11 Thread Sergio Belkin
, because the secret on both radius server and NASes are the same! I don't understand the problem! Thanks in advance! -- -- Sergio Belkin  http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com LPIC-2 Certified - http://www.lpi.org - List info/subscribe/unsubscribe? See http

Re: Invalid signature

2011-05-11 Thread Sergio Belkin
. server doesnt lie. check the shared secret for the ACCOUNTING part of the NAS alan Oops, sorry it's my fault. I forget to append append $var acct_server_shared_secret=$secret $N to openwrt NAS. It resulted in an OT but I hope that helps someone using OpenWRT. Thanks again -- -- Sergio Belkin

Authentication based on users and NAS

2011-04-12 Thread Sergio Belkin
per NAS. Is a nicer way to do it? The second one is that I don't know how to do it for Ldap users. Thanks in advance! -- -- Sergio Belkin  http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com LPIC-2 Certified - http://www.lpi.org - List info/subscribe/unsubscribe? See http

Restrict access per NAS

2011-04-08 Thread Sergio Belkin
Hi, Is there a way to restrict an LDAP user to be authorized only from an specific NAS (Access Point)? I'm using FreeRADIUS Version 2.1.1 Thanks in advance! -- -- Sergio Belkin  http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com LPIC-2 Certified - http://www.lpi.org - List

Half OT: Windows XP won't connect

2010-10-05 Thread Sergio Belkin
ARP, Reply 192.168.188.1 is-at 00:25:9c:14:06:6c (oui Unknown), length 28 Thanks in advance! -- -- Sergio Belkin http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

LDAP: Causes of Failed binding

2010-07-08 Thread Sergio Belkin
Hi, How does freeradius consider that Bind as user failed Thanks in advance!! -- -- Sergio Belkin http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Fwd: SSL issues

2010-05-13 Thread Sergio Belkin
address 127.0.0.1 port 18120 as server status Ready to process requests. You can read wireshark dump on: http://pastebin.com/ZH2SfTFq Thanks in advance -- -- Sergio Belkin http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - -- -- Sergio Belkin http

Somewhat OT: Empty SubjectAltName on server certificate (EAP-PEAP)

2010-04-12 Thread Sergio Belkin
Hi, I have a certificate with xpextensions but its SubjectAltName is empty. Is Mandatory or only is wrong when its content doesn't match with FQDN? Thanks in advance! -- -- Sergio Belkin http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe

Re: User enabled for one only NAS

2010-04-06 Thread Sergio Belkin
2010/4/5 Sergio Belkin seb...@gmail.com: Hi, I've enabled on users file  something like that: guest Cleartext-Password := guest How can I limit that user to one only NAS IP Address? Thanks in advance! -- -- Hmmm.. I wonder either if questions is somewhat stupid or freeradius can't do

User enabled for one only NAS

2010-04-05 Thread Sergio Belkin
Hi, I've enabled on users file something like that: guest Cleartext-Password := guest How can I limit that user to one only NAS IP Address? Thanks in advance! -- -- Open Kairos http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe

Somewhat OT: Windows VIsta annoyance: sends local login credentials

2010-03-31 Thread Sergio Belkin
Julien, file /etc/raddb/modules/mschap is as original one. I use no domain, only user+password. Sorry, but I forget the subject before. Thanks in advance! Sergio Belkin wrote: There are a few log entries like as as follows Auth: Login incorrect (rlm_ldap: User not found): [QSARGENTINA

Re: Somewhat OT: Windows VIsta annoyance: sends local login credentials

2010-03-31 Thread Sergio Belkin
2010/3/31 Julien Savoie julien.sav...@usainteanne.ca: Sergio Belkin wrote: and proxy.conf        realm DEFAULT {                strip        } If you only have one domain this will work.  If you have different domains you'll need to setup the individual realms.  Sounds like in your case

freeradius-users@lists.freeradius.org

2010-03-30 Thread Sergio Belkin
Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

dict_addattr: attribute name too long error when running raclient by cron

2010-03-17 Thread Sergio Belkin
Belkin http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: dict_addattr: attribute name too long error when running raclient by cron

2010-03-17 Thread Sergio Belkin
2010/3/17 Sergio Belkin seb...@gmail.com: Hi, I have a simple script as follows: #! /bin/bash echo Message-Authenticator = 0x00, FreeRADIUS-Statistics-Type = 16 | radclient localhost:18120 status YellowSubmarine | tee /var/log/radius/status-$(date -d yesterday +%Y%m%d).log #echo Message

Re: dict_addattr: attribute name too long error when running raclient by cron

2010-03-17 Thread Sergio Belkin
2010/3/17 Alan DeKok al...@deployingradius.com: Sergio Belkin wrote: When I run on the shell do it fine, but when it is launched by root it fails, resulting in: radclient: dict_init: /usr/local/share/freeradius/dictionary.freeradius[47]: dict_addattr: attribute name too long  You have

About FreeRADIUS-Stats-Client-IP-Address

2010-03-16 Thread Sergio Belkin
*only* stats from Client? Thanks in advance! -- -- SB http://www.sergiobelkin.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Question About rlm_sql_log (it was Re: Time connected)

2009-11-03 Thread Sergio Belkin
2009/10/29 Ivan Kalik t...@kalik.net: Sergio Belkin wrote: 2009/10/29 Ivan Kalik t...@kalik.net: Sergio Belkin wrote: Hi, Sorry for the stupid question, but I'd want to get how many time every user is connected, please could you provide some kind of guideliness? Using Version 2.1.1

Re: Question About rlm_sql_log (it was Re: Time connected)

2009-11-03 Thread Sergio Belkin
a time that a user has been connected. Thanks in advance! -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Time connected

2009-10-29 Thread Sergio Belkin
Hi, Sorry for the stupid question, but I'd want to get how many time every user is connected, please could you provide some kind of guideliness? Using Version 2.1.1. Thanks in advance! -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List

Re: Time connected

2009-10-29 Thread Sergio Belkin
2009/10/29 Ivan Kalik t...@kalik.net: Sergio Belkin wrote: Hi, Sorry for the stupid question, but I'd want to get how many time every user is connected, please could you provide some kind of guideliness? Using Version 2.1.1. SELECT Count(*) FROM radacct WHERE UserName='some_username

Status X User

2009-10-23 Thread Sergio Belkin
Hi, Is there a way to get the las time that user got Accept-Accept and Accept-Reject, of course I can parse log files but I wonder if there a radius tool that can do it. Thanks in advance -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin

Re: Status X User

2009-10-23 Thread Sergio Belkin
2009/10/23 Alexander Clouter a...@digriz.org.uk: Sergio Belkin seb...@gmail.com wrote: Is there a way to get the las time that user got Accept-Accept and Accept-Reject, of course I can parse log files but I wonder if there a radius tool that can do it. your data - SQL SELECT * FROM

Re: wpa/wpa2 on logs

2009-10-14 Thread Sergio Belkin
2009/10/14 Arran Cudbard-Bell a.cudbard-b...@sussex.ac.uk: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 13/10/2009 18:53, Sergio Belkin wrote: Hi, Is there a way to log if a supplicant is using either wpa or wpa2? Thanks in advance! No. Information about the security association

wpa/wpa2 on logs

2009-10-13 Thread Sergio Belkin
Hi, Is there a way to log if a supplicant is using either wpa or wpa2? Thanks in advance! -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Weekly and daily logs

2009-10-07 Thread Sergio Belkin
Sorry for the stupid question Is possible on FreeRADIUS Version 2.1.1 create log files both on daily and weekly basis? Thanks in advance! -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http

Re: Out and into tunnel log files

2009-09-03 Thread Sergio Belkin
on default log server, I wonder if what I am doing is right, I mean if I am omitting some OK doing that... Thanks in advance! -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list

Re: Out and into tunnel log files

2009-09-03 Thread Sergio Belkin
2009/9/3 Sergio Belkin seb...@gmail.com: 2009/9/1 Ivan Kalik t...@kalik.net: I have configured three virtual servers: default, inner (uses eap-ttls), inner-peap (uses eap-peap). I guess that out of tunnel attempts go to default server log files. cron performs a daily  task that more or less

Re: Out and into tunnel log files

2009-09-01 Thread Sergio Belkin
2009/8/31 Sergio Belkin seb...@gmail.com: Hi, I have configured three virtual servers: default, inner (uses eap-ttls), inner-peap (uses eap-peap). I guess that out of tunnel attempts go to default server log files. cron performs a daily  task that more or less perform something like

Radius Logs in database (It was Re: rlm_ldap logs)

2009-08-31 Thread Sergio Belkin
2009/8/28 Sergio Belkin seb...@gmail.com: Hi I am using Version 2.1.1 with openldap on Centos 5 I wonder if is feasible dumping to logs when user gets login incorrect if due to non-existance of that uid on Ldap. Thanks in advance! -- -- Shame on me! That's is something that already logs

Out and into tunnel log files

2009-08-31 Thread Sergio Belkin
} Listening on authentication address 192.168.1.5 port 1812 Listening on accounting address 192.168.1.5 port 1813 Ready to process requests. -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http

rlm_ldap logs

2009-08-28 Thread Sergio Belkin
Hi I am using Version 2.1.1 with openldap on Centos 5 I wonder if is feasible dumping to logs when user gets login incorrect if due to non-existance of that uid on Ldap. Thanks in advance! -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin

Prevent uid sharing or hot to allow use uid only once

2009-06-05 Thread Sergio Belkin
that from radius? (please don't tell me to fire John Doe ;) ). Thanks in advance! -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply-message and supplicant

2009-06-05 Thread Sergio Belkin
Hi, Is possible that Reply-message can be seen from laptops running the supplicant? Thanks in advance! -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Reply-message and supplicant

2009-06-05 Thread Sergio Belkin
://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Prevent uid sharing or hot to allow use uid only once

2009-06-05 Thread Sergio Belkin
2009/6/5 John Dennis jden...@redhat.com: Sergio Belkin wrote: Hi, Let's suppose that John Doe comes and login with jdoe uid, then  Joe comes and wants to use wireless network, but he has not entry neither Ldap nor in radius users file, so he ask for jdoe that pass him its uid and password

Re: Reply-message and supplicant

2009-06-05 Thread Sergio Belkin
alan - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html Sorry for the stupid question, what does EAP-Message =* ANY mean? -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See

Re: Prevent uid sharing or hot to allow use uid only once

2009-06-05 Thread Sergio Belkin
://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Still with ldap error

2009-05-22 Thread Sergio Belkin
thank you your help! -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

somewhat ot: Check radius server name on linux supplicant

2009-01-04 Thread Sergio Belkin
tell me if that risk exists and if is wothy of worrying. If it is, how I can do for check radius server name on modern distro Linux? Thanks in advance and happy new year -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe

IP per user

2008-12-17 Thread Sergio Belkin
Hi, I wonder if radius force to a given user eg jdoe that only get from an Access Point always the same IP address? Thanks in advance -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http

Re: IP per user

2008-12-17 Thread Sergio Belkin
2008/12/17 t...@kalik.net: AP uses DHCP not radius to assign IPs. So - no. You can reserve IPs for devices but not users. Ivan Kalik Kalik Informatika ISP Dana 17/12/2008, Sergio Belkin seb...@gmail.com piše: Hi, I wonder if radius force to a given user eg jdoe that only get from

Re: Somewhat OT: Captive portal on acess points instead complex supplicant at level end user?

2008-12-15 Thread Sergio Belkin
, some users find somewhat hard to use. I've tried with no success at this moment use more than one SSID on OpenWRT on Linksys WRT54GL... All in all, you and Paul have provided me interesting info... -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio

Re: Somewhat OT: Captive portal on acess points instead complex?supplicant at level end user?

2008-12-15 Thread Sergio Belkin
2008/12/15 Alexander Clouter a...@digriz.org.uk: Sergio Belkin seb...@gmail.com wrote: Thanks for ideas, In fact, some things you suggest I am using right now :) for example: *Automatized SecureW2 installer (ttls) *Web Page with secondary password for peap But even so, some users find

Re: Slightly OT: Problem with Vista

2008-12-14 Thread Sergio Belkin
://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Somewhat OT: Captive portal on acess points instead complex supplicant at level end user?

2008-12-14 Thread Sergio Belkin
want to know if CoovaAP (or something similar, what?) can perform such task as portal captive installed on APs. I'd be glad to read suggestions Thanks in advance!! -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe

Slightly OT: Problem with Vista

2008-12-11 Thread Sergio Belkin
. 0x0030: 5000 fc59 fb00 0101 00PY. 00:10:40.337119 EAP code=1 id=1 length=0 Please, what could be the problem? Thanks in advance -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe

Re: radius user queries for uid anonymous in ldap

2008-12-05 Thread Sergio Belkin
2008/12/5 Alan DeKok [EMAIL PROTECTED]: Sergio Belkin wrote: That solved it. Now it remains a little problem on radiusd.log: Thu Dec 4 09:07:51 2008 : Error: rlm_ldap: ldap_search() failed: LDAP connection lost. Your LDAP server is likely timeout out the connections. Alan DeKok

Re: radius user queries for uid anonymous in ldap

2008-12-04 Thread Sergio Belkin
2008/12/3 Alan DeKok [EMAIL PROTECTED]: Sergio Belkin wrote: Hi, I use freeradius with EAP-TTLS y EAP-PEAP, below there is ldap log, I wonder why radius bothers to query for anonymous uid and not only for uid into the tunnel Because you configured the ldap module *outside* of the tunnel

radius user queries for uid anonymous in ldap

2008-12-03 Thread Sergio Belkin
? Thanks in advance Thanks in advance! -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Freeradius error: Discarding conflicting packet

2008-11-26 Thread Sergio Belkin
I've upgraded to OpenWRT Kamikaze and problem seems goes away... 2008/11/6 Alan DeKok [EMAIL PROTECTED]: Sergio Belkin wrote: Alan, thanks, That's really a quite convincing answer :) Yup. I'm not just a random loudmouth on this list. Of course I believe you , but please understand me

Somewhat OT: Mac OS self asigned IP issues

2008-11-26 Thread Sergio Belkin
to read suggestions and comments... Thanks in advance -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Framed-User?

2008-11-16 Thread Sergio Belkin
Sorry for the stupid question, what does Framed-User stand for? I hope not to be stoned to death because of such a question :) -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org

User found on DEFAULT server log but not in tunneled virtual server log

2008-11-10 Thread Sergio Belkin
port 1812 Listening on accounting address 111.222.333.5 port 1813 Ready to process requests. Thanks in advance! -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Freeradius error: Discarding conflicting packet

2008-11-06 Thread Sergio Belkin
2008/11/5 aland [EMAIL PROTECTED]: On Wed, Nov 05, 2008 at 12:43:07AM -0200, Sergio Belkin wrote: OK, AP's are broken, now with best regards, how I convince to my boss that he should buy more than 30 new AP's, should I tell him... read the freeradius mailing list? Tell him that I co-wrote

Re: Freeradius error: Discarding conflicting packet

2008-11-04 Thread Sergio Belkin
2008/11/4 Alan DeKok [EMAIL PROTECTED]: Sergio Belkin wrote: I think is worthwhile to remark that that problem exists even using OpewnWRT on Linksys WRT54GL and not using original firmware... Which may be based on similar code to the original firmware. Is there a way to at least

Re: Freeradius error: Discarding conflicting packet

2008-11-04 Thread Sergio Belkin
2008/11/4 Sergio Belkin [EMAIL PROTECTED]: 2008/11/4 Alan DeKok [EMAIL PROTECTED]: Sergio Belkin wrote: I think is worthwhile to remark that that problem exists even using OpewnWRT on Linksys WRT54GL and not using original firmware... Which may be based on similar code to the original

Re: Freeradius error: Discarding conflicting packet

2008-11-04 Thread Sergio Belkin
Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Freeradius error: Discarding conflicting packet

2008-11-03 Thread Sergio Belkin
. Thanks in advance! -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Log partially solved

2008-10-30 Thread Sergio Belkin
2008/10/27 Sergio Belkin [EMAIL PROTECTED]: 2008/10/27 [EMAIL PROTECTED]: detail auth_log { detailfile = ${radacctdir}/requests/%{Client-IP-Address}/auth-detail-%Y%m%d_%{EAP-Type} # detailfile = ${radacctdir}/%{Client-IP-Address}/auth-detail-%Y%m%d .. But still, it says nothing

Log partially solved

2008-10-27 Thread Sergio Belkin
But still, it says nothing if supplicant is using TTLS or PAP which is what I'd like to see as filenames suffixes. Am I missing something? Thanks in advance! -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http

Re: Log partially solved

2008-10-27 Thread Sergio Belkin
://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Status Access from detail authentication log

2008-10-22 Thread Sergio Belkin
-IP-Address = 111.111.111.111 -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: Freeradius error: Discarding conflicting packet

2008-10-04 Thread Sergio Belkin
to know if your problems have been fixed with Asus WL-G330ge. Also, I think that overlapping channels can be causing the error, so I'll change that... Greets- -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See

Problem compiling freeradius-2.1.0 on Centos 5 x86_64

2008-09-12 Thread Sergio Belkin
/src' gmake[1]: *** [common] Error 2 gmake[1]: Leaving directory `/root/freeradius-server-2.1.0' make: *** [all] Error 2 [snip] What's wrong? -- -- Open Kairos http://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http

Re: Problem compiling freeradius-2.1.0 on Centos 5 x86_64

2008-09-12 Thread Sergio Belkin
2008/9/12 Alan DeKok [EMAIL PROTECTED]: Sergio Belkin wrote: I have a freeradius 2.0.2 working fine with no problems on Centos 5 x86_64, I had no problem at compiling time. I want to test version 2.1.0 from freeradius. But it failed as follows: This is a configure script issue that's fixed

Re: EAP-TTLS / LDAP

2008-07-08 Thread Sergio Belkin
://www.openkairos.com Watch More TV http://sebelk.blogspot.com Sergio Belkin - - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: EAP method in logs

2008-06-30 Thread Sergio Belkin
= 0x9919cd335c2d96b125469208dd722a9d Thanks in advance 2008/6/26 Sergio Belkin [EMAIL PROTECTED]: 2008/6/26 Alan DeKok [EMAIL PROTECTED]: Sergio Belkin wrote: What am I doing wrong? You are running auth_log BEFORE eap? Alan DeKok. I have the following in sites-enabled/default : Which has auth_log BEFORE eap, which

Re: EAP method in logs

2008-06-26 Thread Sergio Belkin
2008/6/25 Alan DeKok [EMAIL PROTECTED]: Sergio Belkin wrote: I use freeradius 2.0.2, and people can use either ttls or peap as they want (or can). I'd want to know if it's possible to see what EAP methodare using users through radius logs... The EAP type is available in the EAP-Type

Re: EAP method in logs

2008-06-26 Thread Sergio Belkin
2008/6/26 Alan DeKok [EMAIL PROTECTED]: Sergio Belkin wrote: Alan, Do I need to use rlm_perl anyway? No. The EAP-Type attribute is added by the EAP module. Once the attribute is there, it can be used, edited, updated, etc. just like User-Name, or NAS-IP-Address. Alan DeKok. I edited

  1   2   >