(RADIATOR) Dicionary Entries needed for Redback

2003-03-19 Thread Brian Morris
Hi All, I am installing a RedBack SMS and I think I need to get the updated dictionary entries for (vendor 2352) attributes 128-150 Are they in the latest dictionary? I have V3.1 and they dont appear to be on there. Thanks in advance. Brian Morris === Archive at

(RADIATOR) question about Radiator and Orinoco AP-2500

2003-03-19 Thread Primoz Jeroncic
Hi there I was trying to find something about this in mailing list archive but I didn't have to much luck so I hope you won't mind to much if this question was answered already. I have Orinoco (Proxim) AP-2500 which I configured for getting authorization about allowed users from external Radius.

Re: (RADIATOR) Dictionary Entries needed for Redback - FOUND

2003-03-19 Thread Brian Morris
Ignore that - I found them! Sorry to waste bandwidth - it's been a long day. === Archive at http://www.open.com.au/archives/radiator/ Announcements on [EMAIL PROTECTED] To unsubscribe, email '[EMAIL PROTECTED]' with 'unsubscribe radiator' in the body of the message.

(RADIATOR) Freeware EAP TTLS client from Alfa+Ariss

2003-03-19 Thread Mike McCauley
Hello all, Alfa and Ariss have announced the availability of their SecureW2 802.1x EAP-TTLS client as freeware. We thought some of you might be interested in a new good free EAP client We have been involved with extensive testing of this client and we can confirm that it works well, is easy

Re: (RADIATOR) Dicionary Entries needed for Redback

2003-03-19 Thread Hugh Irvine
Hello Brian - These are from the Radiator 3.5 dictionary. VENDORATTR 2352 RB-Acct-Input-Octets-64 128 integer8 VENDORATTR 2352 RB-Acct-Output-Octets-64129 integer8 VENDORATTR 2352 RB-Acct-Input-Packets-64130 integer8 VENDORATTR 2352

(RADIATOR) Wanting to give certain users a static IP on a Cisco VPN

2003-03-19 Thread Troy Holder
We are setting up our VPN so that everyone will use a default group when connecting to the concentrator. I then have my radius server set up to check their password with kerberos (via AuthBy NCSU) and then check their classification via Hesiod ( via AuthBy hesiod) to see what group to put them in

Re: (RADIATOR) question about Radiator and Orinoco AP-2500

2003-03-19 Thread Hugh Irvine
Hello Primoz - You should probably use a packet sniffer (snoop, tcpdump, ethereal...)to check on exactly what radius reply attributes are being sent back by Cisco ACS and then configure Radiator to send the same ones. In general you will need at least the following: Realm DEFAULT AuthBy

Re: (RADIATOR) Wanting to give certain users a static IP on a Cisco VPN

2003-03-19 Thread Hugh Irvine
Hello Troy - You can use cascaded AuthBy clauses for this. -- Client DEFAULT Secret x DupInterval 0 /Client AuthBy GROUP Identifier vpn AuthBy GROUP AuthByPolicy ContinueUntilReject

(RADIATOR) Changing Alive records into stop records

2003-03-19 Thread mhobbs
Hi I would like to be able to change Alive radius records into stop records I'm getting Alive records sent to me every 15 minutes and ideally I would like to change a Alive record once every 4 hrs into a Stop record. How would I go about doing this ? Thanks for any help Matthew === Archive at

Re: (RADIATOR) Changing Alive records into stop records

2003-03-19 Thread Hugh Irvine
Hello Matthew - I would suggest you do this by post-processing the accounting records. I can't think of an easy way to do it inside Radiator. regards Hugh On Thursday, Mar 20, 2003, at 10:02 Australia/Melbourne, mhobbs wrote: Hi I would like to be able to change Alive radius records into

(RADIATOR) How to differentiate PEAP-EAP-CHAPV2 and EAP-TTLS radius packets

2003-03-19 Thread Kawakubo, Ken
All, I would like Radiator to do the following. When Radiator gets PEAP-EAP-CHAPv2 radius packets, Radiator proxies to IAS on Windows 2003 server. When Radiator gets EAP-TTLS-PAP packets, Radiator authenticate via Authby PAM using pam_smb. I have to do this setup because we need to authenticate

Re: (RADIATOR) How to differentiate PEAP-EAP-CHAPV2 and EAP-TTLS radius packets

2003-03-19 Thread Hugh Irvine
Hello Ken - Could you please send me a copy of your configuration file (no secrets) together with a trace 4 debug from Radiator showing what is happening in each case? regards Hugh On Thursday, Mar 20, 2003, at 11:11 Australia/Melbourne, Kawakubo, Ken wrote: All, I would like Radiator to

Re: (RADIATOR) How to differentiate PEAP-EAP-CHAPV2 and EAP-TTLS radius packets

2003-03-19 Thread Hugh Irvine
Hello Ken - On thinking about this a bit more, you should be able to do what you need like this (note the AuthBy RADIUS must be last): # define AuthBy clauses AuthBy PAM Identifier CheckPAM . /AuthBy AuthBy RADIUS Identifier ForwardToIAS . /AuthBy .