RE: load balancing radius with F5 devices

2013-10-09 Thread Vincent, Fabien
Hi, Just to give some infos if I can help (this mailing has helped me a lot !) I have F5 BigIP devices in two 2 DCs. They have each a VirtualServer with a shared IP (not activated in VLANs used to communicate between the 2 DC to avoid IP conflits, a much simple config for NAS - only one IP

Trying to do proxy using realm and 2 VS

2013-03-28 Thread Vincent, Fabien
Hi all, I'm currently working on a fresh FreeRadius 2.x install, in order to separate Radius auth for Administrators (Firewall, Routeurs Switchs administration) and Customers access (VPN SSL / IPSec). My first try was to rewrite all the config into virtual servers (previously, all was

No such virtual server NULL

2011-11-08 Thread Vincent, Fabien
Hi all, I’m using FreeRadius to authenticate admin users on Firewall / Load Balancer webui. Actually my configuration works well, but I just tried to had a new Load Balancer with Radius Auth, but I’ve a strange message : Going to the next request Waking up in 4.9 seconds. rad_recv:

RE: No such virtual server NULL

2011-11-08 Thread Vincent, Fabien
: No such virtual server NULL Vincent, Fabien wrote: What is this message ? No such virtual server NULL Why this works for existing configuration and adding a new NAS to sql database is giving this result ? Because you added the NAS in SQL, with the virtual server column containing the string

RE: NAS in sql and returning specific VSAs

2011-11-08 Thread Vincent, Fabien
mailto:fabien.vinc...@coreye.fr fabien.vinc...@coreye.fr De : Vincent, Fabien Envoyé : lundi 7 novembre 2011 10:36 À : Vincent, Fabien; freeradius-users@lists.freeradius.org Objet : RE: NAS in sql and returning specific VSAs Sorry, CTRL+Enter is not a good keyboard on Monday Morning ;) So, I

RE: NAS in sql and returning specific VSAs

2011-11-08 Thread Vincent, Fabien
For the solution, I did that : authorize { +update request { +FreeRADIUS-Client-NAS-Type = %{sql:SELECT type FROM nas WHERE nasname='%{Packet-Src-IP-Address}'} +} group { LDAP_COMPANY } And in

NAS in sql and returning specific VSAs

2011-11-07 Thread Vincent, Fabien
Hi all, I have one question about Free Radius and NAS in sql database. I return to the NAS some VSAs depending LDAP User-Group like this : Fabien VINCENT Ingénieur Réseaux Sécurité / ASSR Produits Niveau 3 - Infrastructure Produits mailto:fabien.vinc...@coreye.fr

RE: NAS in sql and returning specific VSAs

2011-11-07 Thread Vincent, Fabien
Borne 22, rue Hergé 59650 Villeneuve d'Ascq http://www.pictime.com/ www.pictime.com De : Vincent, Fabien Envoyé : lundi 7 novembre 2011 10:31 À : 'freeradius-users@lists.freeradius.org' Objet : NAS in sql and returning specific VSAs Hi all, I have one question about Free Radius

RE: rlm_perl not working

2011-10-20 Thread Vincent, Fabien
Thanks for your replies. I want to resolve the Invalid Accounting Packet problem, so I start to write a perl function preacct like this : sub preacct { # For debugging purposes only print start preacct ***\n; print Dumper(%RAD_REQUEST);print now update request ***\n;

rlm_perl not working

2011-10-18 Thread Vincent, Fabien
Hi all, As you reply yesterday to my question, I have another one which is very embarrassing : I have the following packages installed on CentOS box : freeradius2.x86_64 freeradius2-mysql.x86_64 freeradius2-ldap.x86_64 freeradius2-perl.x86_64 freeradius2-utils.x86_64 I want to

RE: rlm_perl not working

2011-10-18 Thread Vincent, Fabien
Sorry, fixed, a mistake in my radiusd.conf … (lost in brackets ;) De : freeradius-users-bounces+fabien.vincent=coreye...@lists.freeradius.org [mailto:freeradius-users-bounces+fabien.vincent=coreye.fr@lists.freeradius.o rg] De la part de Vincent, Fabien Envoyé : mardi 18 octobre 2011 15

RE: rlm_perl not working

2011-10-18 Thread Vincent, Fabien
Of course ! But to simplify documentation, I've put all in one file radiusd.conf except sql requests / config Another question with Perl / Accounting : I want to made accounting on my F5 LTM / GTM. But the F5 uses something special, because all Audit logs are forwarded to the Radius using

Problem with F5 BigIP accouting : hexadecimal attribute

2011-10-17 Thread Vincent, Fabien
Dear all, I'm using Radius for authenticating admin users on different network equipments. group authorize {...} works fine with rlm_ldap and group management. But I have some problem for accounting on F5 BigIP LTM / GTM. In fact, my radius accounting server is receiving

RE: Problem with F5 BigIP accouting : hexadecimal attribute

2011-10-17 Thread Vincent, Fabien
of the corresponding F5. I think it's return by the F5 in hexa (as the F5-Attr-14), that's why I request help about this strange behavior . Regards Suman On Mon, Oct 17, 2011 at 4:56 PM, Vincent, Fabien fabien.vinc...@coreye.fr wrote: Dear all, I'm using Radius for authenticating admin users

RE: Problem with F5 BigIP accouting : hexadecimal attribute

2011-10-17 Thread Vincent, Fabien
[mailto:freeradius-users-bounces+fabien.vincent=coreye.fr@lists.freeradius.o rg] De la part de Phil Mayers Envoyé : lundi 17 octobre 2011 16:51 À : freeradius-users@lists.freeradius.org Objet : Re: Problem with F5 BigIP accouting : hexadecimal attribute On 17/10/11 12:26, Vincent, Fabien wrote: F5-Attr-14