<br>Dear Evgeny,<div><br></div><div>Yes, freeradius is able to monitor and limit usage, for example will reject login after 1 GB of sum ( download+upload), please read info about sql-counter (<a href="http://wiki.freeradius.org/Rlm_sqlcounter">http://wiki.freeradius.org/Rlm_sqlcounter</a>)</div>
<div> </div><div><div class="gmail_quote">On Mon, Jul 25, 2011 at 3:53 PM, <span dir="ltr"><<a href="mailto:freeradius-users-request@lists.freeradius.org">freeradius-users-request@lists.freeradius.org</a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex;">Send Freeradius-Users mailing list submissions to<br>
<a href="mailto:freeradius-users@lists.freeradius.org">freeradius-users@lists.freeradius.org</a><br>
<br>
To subscribe or unsubscribe via the World Wide Web, visit<br>
<a href="http://lists.freeradius.org/mailman/listinfo/freeradius-users" target="_blank">http://lists.freeradius.org/mailman/listinfo/freeradius-users</a><br>
or, via email, send a message with subject or body 'help' to<br>
<a href="mailto:freeradius-users-request@lists.freeradius.org">freeradius-users-request@lists.freeradius.org</a><br>
<br>
You can reach the person managing the list at<br>
<a href="mailto:freeradius-users-owner@lists.freeradius.org">freeradius-users-owner@lists.freeradius.org</a><br>
<br>
When replying, please edit your Subject line so it is more specific<br>
than "Re: Contents of Freeradius-Users digest..."<br>
<br>
<br>
Today's Topics:<br>
<br>
1. Re: Freeradius Ldap mosule is authenticating with wrong<br>
password also (Alan Buxey)<br>
2. Please help me ASAP (Its Me)<br>
3. Re: Please help me ASAP (Harry Hoffman)<br>
4. Accounting - limits (Evgeny Yurchenko)<br>
5. How to allow a user login in a certain time? (Lingfeng Xiong)<br>
6. RE: Accounting - limits (Ryan Williams)<br>
7. Download/Upload Calculation (radiusus)<br>
8. counter daily (Angus JIANG Jian)<br>
<br>
<br>
----------------------------------------------------------------------<br>
<br>
Message: 1<br>
Date: Sun, 24 Jul 2011 12:48:34 +0100<br>
From: Alan Buxey <<a href="mailto:A.L.M.Buxey@lboro.ac.uk">A.L.M.Buxey@lboro.ac.uk</a>><br>
Subject: Re: Freeradius Ldap mosule is authenticating with wrong<br>
password also<br>
To: FreeRadius users mailing list<br>
<<a href="mailto:freeradius-users@lists.freeradius.org">freeradius-users@lists.freeradius.org</a>><br>
Message-ID: <<a href="mailto:20110724114834.GA5422@lboro.ac.uk">20110724114834.GA5422@lboro.ac.uk</a>><br>
Content-Type: text/plain; charset=us-ascii<br>
<br>
Hi,<br>
<br>
> DEFAULT LDAP-Group == "CiscoRWL2Lr", Auth-Type := Accept<br>
> Reply-Message = "Welcome! You have administrative access.",<br>
> Service-Type = NAS-Prompt-User,<br>
> cisco-avpair = "shell:priv-lvl=15"<br>
<br>
as already said, you've configured your RADIUS server to accept<br>
ANYONE who is in the CiscoRW2Lr group - even if their password<br>
is 100% wrong. Auth-Type := Accept opens your box to basically not<br>
caring about authentication.... only authorization.<br>
<br>
remove the auth-type and ensure your authentication is working -<br>
which will need some work for AD<br>
<br>
alan<br>
<br>
<br>
------------------------------<br>
<br>
Message: 2<br>
Date: Sun, 24 Jul 2011 06:29:56 -0700 (PDT)<br>
From: Its Me <<a href="mailto:ktscse@yahoo.com">ktscse@yahoo.com</a>><br>
Subject: Please help me ASAP<br>
To: "<a href="mailto:freeradius-users@lists.freeradius.org">freeradius-users@lists.freeradius.org</a>"<br>
<<a href="mailto:freeradius-users@lists.freeradius.org">freeradius-users@lists.freeradius.org</a>><br>
Message-ID:<br>
<<a href="mailto:1311514196.43660.YahooMailNeo@web110116.mail.gq1.yahoo.com">1311514196.43660.YahooMailNeo@web110116.mail.gq1.yahoo.com</a>><br>
Content-Type: text/plain; charset="iso-8859-1"<br>
<br>
Hi,<br>
I am new user in Linux,I have install freeradius2 rpm in my Linux machine(RHEL-5.5 Server),I m facing problem below detail ,please help me how can i install and setup my radiusd -X output below problem.<br>
<br>
radiusd: #### Opening IP addresses and Ports ####<br>
listen {<br>
??????? type = "auth"<br>
??????? ipaddr = *<br>
??????? port = 0<br>
Failed binding to authentication address * port 1812: Address already in use<br>
/etc/raddb/radiusd.conf[240]: Error binding to port for 0.0.0.0 port 1812<br>
-------------- next part --------------<br>
An HTML attachment was scrubbed...<br>
URL: <<a href="https://lists.freeradius.org/pipermail/freeradius-users/attachments/20110724/876242a3/attachment.html" target="_blank">https://lists.freeradius.org/pipermail/freeradius-users/attachments/20110724/876242a3/attachment.html</a>><br>
<br>
------------------------------<br>
<br>
Message: 3<br>
Date: Sun, 24 Jul 2011 09:41:12 -0400<br>
From: Harry Hoffman <<a href="mailto:hhoffman@ip-solutions.net">hhoffman@ip-solutions.net</a>><br>
Subject: Re: Please help me ASAP<br>
To: Its Me <<a href="mailto:ktscse@yahoo.com">ktscse@yahoo.com</a>>, FreeRadius users mailing list<br>
<<a href="mailto:freeradius-users@lists.freeradius.org">freeradius-users@lists.freeradius.org</a>><br>
Message-ID: <<a href="mailto:4E2C20F8.30704@ip-solutions.net">4E2C20F8.30704@ip-solutions.net</a>><br>
Content-Type: text/plain; charset=ISO-8859-1<br>
<br>
Either a version of freeradius is already running or something else is<br>
running on that port or you are trying to start the program as a<br>
non-root user.<br>
<br>
As root run this command and paste the output:<br>
<br>
lsof -i :1812<br>
<br>
Cheers,<br>
Harry<br>
<br>
On 07/24/2011 09:29 AM, Its Me wrote:<br>
> Hi,<br>
> I am new user in Linux,I have install freeradius2 rpm in my Linux machine(RHEL-5.5 Server),I m facing problem below detail ,please help me how can i install and setup my radiusd -X output below problem.<br>
><br>
> radiusd: #### Opening IP addresses and Ports ####<br>
> listen {<br>
> type = "auth"<br>
> ipaddr = *<br>
> port = 0<br>
> Failed binding to authentication address * port 1812: Address already in use<br>
> /etc/raddb/radiusd.conf[240]: Error binding to port for 0.0.0.0 port 1812<br>
><br>
><br>
><br>
> -<br>
> List info/subscribe/unsubscribe? See <a href="http://www.freeradius.org/list/users.html" target="_blank">http://www.freeradius.org/list/users.html</a><br>
<br>
<br>
------------------------------<br>
<br>
Message: 4<br>
Date: Sun, 24 Jul 2011 10:11:15 -0400<br>
From: Evgeny Yurchenko <<a href="mailto:ey@tm-k.com">ey@tm-k.com</a>><br>
Subject: Accounting - limits<br>
To: <a href="mailto:freeradius-users@lists.freeradius.org">freeradius-users@lists.freeradius.org</a><br>
Message-ID: <<a href="mailto:4E2C2803.9090903@tm-k.com">4E2C2803.9090903@tm-k.com</a>><br>
Content-Type: text/plain; charset=ISO-8859-1; format=flowed<br>
<br>
Hello list!<br>
I am sorry if the question has been asked thousand times, searching archives did not give me anything. -(<br>
Is FreeRADIUS natively capable of data consumption monitoring and limiting on per user basis.<br>
Let's say I want a user to be disabled (no messages to be generated just next authentication fails) after he<br>
downloads/uploads 1GB of data.<br>
Any hint in this direction would be highly appreciated.<br>
Thanks,<br>
Evgeny.<br>
<br>
<br>
------------------------------<br>
<br>
Message: 5<br>
Date: Mon, 25 Jul 2011 11:30:06 +0800<br>
From: Lingfeng Xiong <<a href="mailto:jilingshu@gmail.com">jilingshu@gmail.com</a>><br>
Subject: How to allow a user login in a certain time?<br>
To: <a href="mailto:freeradius-users@lists.freeradius.org">freeradius-users@lists.freeradius.org</a><br>
Message-ID:<br>
<CAONV8HUjr8Z-SOAmH7OhqwiFdD=mT9dxO=<a href="mailto:uMgWqvnLG7aEfe0A@mail.gmail.com">uMgWqvnLG7aEfe0A@mail.gmail.com</a>><br>
Content-Type: text/plain; charset="utf-8"<br>
<br>
hi there,<br>
I am writing a authentication system for a public Cisco System laboratory of<br>
a university. This system allow user to subscribe a cisco device in a<br>
certain time and during that time, the subscriber should be able to login<br>
that device. I have already build a FreeRadius server and configure my Cisco<br>
device to authenticate user via Radius. But I have no idea how to configure<br>
FreeRadius to control the login time.<br>
For example, a user subscribe a device named 'Test1' for 'July 30, 2011'<br>
from '10:00 a.m.' to '12:00 p.m.'. He should be able to login 'test1' during<br>
that time, but not before or after.<br>
I know there existed a module named 'rlm_logintime', but it seems like that<br>
module can only supply me with scheduled login plan, not a certain time<br>
period. So could you give me some advice? Thanks.<br>
BTW: I am runing FreeRadius 2.1.11 on a FreeBSD 8.2-RELEASE system. A MySQL<br>
database is also running for FreeRadius.<br>
-------------- next part --------------<br>
An HTML attachment was scrubbed...<br>
URL: <<a href="https://lists.freeradius.org/pipermail/freeradius-users/attachments/20110725/2991ff1a/attachment.html" target="_blank">https://lists.freeradius.org/pipermail/freeradius-users/attachments/20110725/2991ff1a/attachment.html</a>><br>
<br>
------------------------------<br>
<br>
Message: 6<br>
Date: Mon, 25 Jul 2011 16:29:04 +1000<br>
From: "Ryan Williams" <<a href="mailto:ryan@integritynet.com.au">ryan@integritynet.com.au</a>><br>
Subject: RE: Accounting - limits<br>
To: "'FreeRadius users mailing list'"<br>
<<a href="mailto:freeradius-users@lists.freeradius.org">freeradius-users@lists.freeradius.org</a>><br>
Message-ID: <008201cc4a94$2623aff0$726b0fd0$@com.au><br>
Content-Type: text/plain; charset="us-ascii"<br>
<br>
Hello anonymous!<br>
You can write a custom SQL query and include it when authenticating the user<br>
to determine if the user has or has not downloaded in excess of 1GB.<br>
Assuming of course that you're storing the accounting data in an SQL<br>
database.<br>
<br>
Regards,<br>
Ryan Williams<br>
<br>
<br>
<br>
<br>
------------------------------<br>
<br>
Message: 7<br>
Date: Mon, 25 Jul 2011 01:40:09 -0700 (PDT)<br>
From: radiusus <<a href="mailto:alboracle@gmail.com">alboracle@gmail.com</a>><br>
Subject: Download/Upload Calculation<br>
To: <a href="mailto:freeradius-users@lists.freeradius.org">freeradius-users@lists.freeradius.org</a><br>
Message-ID: <<a href="mailto:1311583209349-4630031.post@n5.nabble.com">1311583209349-4630031.post@n5.nabble.com</a>><br>
Content-Type: text/plain; charset=us-ascii<br>
<br>
Hello,<br>
<br>
I am new to radius server and I need some information if possible.<br>
<br>
Can anybody help with any documentation regarding the calculation of<br>
input/output octets on user/daily basis?<br>
I am interested only in reporting and analyzing the traffic of<br>
download/upload.<br>
<br>
I have been trying to use some Analytical functions and get somewhere but<br>
still can't be sure as I do not need how to use the Gigawords condition etc.<br>
My cdr's are stored in Oracle DB.<br>
<br>
Some information would be really appreciated.<br>
<br>
Thanks.<br>
<br>
--<br>
View this message in context: <a href="http://freeradius.1045715.n5.nabble.com/Download-Upload-Calculation-tp4630031p4630031.html" target="_blank">http://freeradius.1045715.n5.nabble.com/Download-Upload-Calculation-tp4630031p4630031.html</a><br>
Sent from the FreeRadius - User mailing list archive at Nabble.com.<br>
<br>
<br>
------------------------------<br>
<br>
Message: 8<br>
Date: Mon, 25 Jul 2011 16:53:12 +0800<br>
From: Angus JIANG Jian <<a href="mailto:ajiang@ouhk.edu.hk">ajiang@ouhk.edu.hk</a>><br>
Subject: counter daily<br>
To: FreeRadius users mailing list<br>
<<a href="mailto:freeradius-users@lists.freeradius.org">freeradius-users@lists.freeradius.org</a>><br>
Message-ID:<br>
<<a href="mailto:B0720ABAFE326C44B7E498E5988C0DD33914194958@OUHKCMS.staffdmn.ouhk.edu.hk">B0720ABAFE326C44B7E498E5988C0DD33914194958@OUHKCMS.staffdmn.ouhk.edu.hk</a>><br>
<br>
Content-Type: text/plain; charset="us-ascii"<br>
<br>
Dear all,<br>
<br>
<br>
Can you give me an example of how to set the cache-size ?<br>
This is my config for the counter.<br>
<br>
<br>
counter daily {<br>
filename = ${raddbdir}/db.daily<br>
key = User-Name<br>
count-attribute = Acct-Session-Time<br>
reset = daily<br>
counter-name = Daily-Session-Time<br>
check-name = Max-Daily-Session<br>
allowed-servicetype = Framed-User<br>
cache-size = 5000<br>
<br>
<br>
# The RADIUS request is normally cached internally for a short period<br>
# of time, after the reply is sent to the NAS. The reply packet may be<br>
# lost in the network, and the NAS will not see it. The NAS will then<br>
# re-send the request, and the server will respond quickly with the<br>
# cached reply.<br>
#<br>
# If this value is set too low, then duplicate requests from the NAS<br>
# MAY NOT be detected, and will instead be handled as seperate requests.<br>
#<br>
# If this value is set too high, then the server will cache too many<br>
# requests, and some new requests may get blocked. (See 'max_requests'.)<br>
#<br>
# Useful range of values: 2 to 10<br>
#<br>
cleanup_delay = 5<br>
<br>
Regards<br>
Angus<br>
<br>
<br>
<br>
<br>
<br>
<<Email Disclaimer>><br>
This e-mail and its attachments, if any, are confidential and contain information for an intended recipient. The Open University of Hong Kong (OUHK) disclaims any liability for any loss or damage if this e-mail is received by any person who is not the intended recipient. E-mail transmissions cannot be guaranteed to be completely secure, error or virus free. No responsibility is accepted by the OUHK for any loss or damage arising in any way from receipt or use thereof. Arrangements or statements appearing to bind OUHK are not binding upon OUHK unless made in accordance with OUHK's constitution and duly authorised. OUHK staff are expressly prohibited from breaching applicable law, infringing third party rights, making defamatory statements and committing tortious acts by e-mail communications.<br>
<br>
<br>
<br>
------------------------------<br>
<br>
-<br>
List info/subscribe/unsubscribe? See <a href="http://www.freeradius.org/list/users.html" target="_blank">http://www.freeradius.org/list/users.html</a><br>
<br>
<br>
End of Freeradius-Users Digest, Vol 75, Issue 80<br>
************************************************<br>
</blockquote></div><br></div>