Re: Cannot login with freeradius 2.0.5



Dear all,

I'm already success for starting freeradius 2.0.5

Thanks

2008/7/23 Asep Samsul <asamsul@gmail.com>:
Dear Ivan,

Sorry .. I see now .

but, i still have a problem with mysql module.

Mysql server is running ok, and library path default on /usr/local/lib.
When first running, libfreeradius cannot founded. so .. i make link to /usr/lib. and running ok.
but .. now the problem like this :


HERE acctsessionid   = '%{Acct-Session-Id}'           AND username          = '%{SQL-User-Name}'           AND nasipaddress      = '%{NAS-IP-Address}'"
        accounting_stop_query_alt = "           INSERT INTO radacct             (acctsessionid, acctuniqueid, username,              realm, nasipaddress, nasportid,              nasporttype, acctstarttime, acctstoptime,              acctsessiontime, acctauthentic, connectinfo_start,              connectinfo_stop, acctinputoctets, acctoutputoctets,              calledstationid, callingstationid, acctterminatecause,              servicetype, framedprotocol, framedipaddress,              acctstartdelay, acctstopdelay)           VALUES             ('%{Acct-Session-Id}', '%{Acct-Unique-Session-Id}',              '%{SQL-User-Name}',              '%{Realm}', '%{NAS-IP-Address}', '%{NAS-Port}',              '%{NAS-Port-Type}',              DATE_SUB('%S',                  INTERVAL (%{%{Acct-Session-Time}:-0} +                  %{%{Acct-Delay-Time}:-0}) SECOND),              '%S', '%{Acct-Session-Time}', '%{Acct-Authentic}', '',              '%{Connect-Info}',              '%{%{Acct-Input-Gigawords}:-0}' << 32 |              '%{%{Acct-Input-Octets}:-0}',              '%{%{Acct-Output-Gigawords}:-0}' << 32 |              '%{%{Acct-Output-Octets}:-0}',              '%{Called-Station-Id}', '%{Calling-Station-Id}',              '%{Acct-Terminate-Cause}',              '%{Service-Type}', '%{Framed-Protocol}', '%{Framed-IP-Address}',              '0', '%{%{Acct-Delay-Time}:-0}')"
        group_membership_query = "SELECT groupname           FROM radusergroup           WHERE username = '%{SQL-User-Name}'           ORDER BY priority"
        connect_failure_retry_delay = 60
        simul_count_query = ""
        simul_verify_query = "SELECT radacctid, acctsessionid, username,                                nasipaddress, nasportid, framedipaddress,                                callingstationid, framedprotocol                                FROM radacct                                WHERE username = '%{SQL-User-Name}'                                AND acctstoptime IS NULL"
        postauth_query = "INSERT INTO radpostauth                           (username, pass, reply, authdate)                           VALUES (                           '%{User-Name}',                           '%{%{User-Password}:-%{Chap-Password}}',                           '%{reply:Packet-Type}', '%S')"
        safe-characters = "@abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ0123456789.-_: /"
  }
rlm_sql (sql): Could not link driver rlm_sql_mysql: rlm_sql_mysql.so: cannot open shared object file: No such file or directory
rlm_sql (sql): Make sure it (and all its dependent libraries!) are in the search path of your system's ld.
/usr/local/etc/raddb/sql.conf[22]: Instantiation failed for module "sql"
/usr/local/etc/raddb/sites-enabled/default[373]: Failed to find module "sql".
/usr/local/etc/raddb/sites-enabled/default[368]: Errors parsing session section.
 }
}
Errors initializing modules


What can I do ?? Thanks

2008/7/23 Ivan Kalik <tnt@kalik.net>:

You are not calling sql (is that where the password is). Uncomment sql
entries in default virtual server.

Ivan Kalik
Kalik Informatika ISP


Dana 22/7/2008, "Asep Samsul" <asamsul@gmail.com> piše:

>Hi,
>
>I'm using freeradius 1.1.7 , and now i want to try for the other machine to
>2.0.5.
>
>I'm sure about configuration, :
>
>- Using Opensuse 10.2
>- Using mysql and freeradius 2.0.5
>- NAS from VPN Mikrotik
>
>Please help me,.... a'm using default configuration from installer.
>
> +- entering group authorize
>++[preprocess] returns ok
>++[chap] returns noop
>  rlm_mschap: Found MS-CHAP attributes.  Setting 'Auth-Type  = mschap'
>++[mschap] returns ok
>    rlm_realm: No '@' in User-Name = "asul", looking up realm NULL
>    rlm_realm: No such realm "NULL"
>++[suffix] returns noop
>  rlm_eap: No EAP-Message, not doing EAP
>++[eap] returns noop
>++[unix] returns updated
>    users: Matched entry DEFAULT at line 175
>++[files] returns ok
>++[expiration] returns noop
>++[logintime] returns noop
>rlm_pap: Found existing Auth-Type, not changing it.
>++[pap] returns noop
>  rad_check_password:  Found Auth-Type mschap
>auth: type "MSCHAP"
>+- entering group MS-CHAP
>  rlm_mschap: No Cleartext-Password configured.  Cannot create LM-Password.
>  rlm_mschap: No Cleartext-Password configured.  Cannot create NT-Password.
>  rlm_mschap: Told to do MS-CHAPv2 for asul with NT-Password
>  rlm_mschap: FAILED: No NT/LM-Password.  Cannot perform authentication.
>  rlm_mschap: FAILED: MS-CHAP2-Response is incorrect
>++[mschap] returns reject
>auth: Failed to validate the user.
>  Found Post-Auth-Type Reject
>+- entering group REJECT
>        expand: %{User-Name} -> asul
> attr_filter: Matched entry DEFAULT at line 11
>++[attr_filter.access_reject] returns updated
>Sending Access-Reject of id 17 to 202.159.24.1 port 1025
>Finished request 3.
>Going to the next request
>
>

-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html




This archive was generated by a fusion of Pipermail (Mailman edition) and MHonArc.