FreeRadius 2.0.5... canŽt make it work
Jan Strauch
waynel at web.de
Wed Mar 18 16:08:33 CET 2009
Hello world !
I try to set up a new FR-server (v2.0.5). I lost 4 days until now and it still does not work.
It just generates amounts of output without accepting anything:
terminal 1 : radiusd -X gives me :
FreeRADIUS Version 2.0.5, for host i686-pc-linux-gnu, built on Oct 9 2008 at 16:13:43
Copyright (C) 1999-2008 The FreeRADIUS server project and contributors.
There is NO warranty; not even for MERCHANTABILITY or FITNESS FOR A
PARTICULAR PURPOSE.
You may redistribute copies of FreeRADIUS under the terms of the
GNU General Public License v2.
Starting - reading configuration files ...
including configuration file /etc/raddb/radiusd.conf
including configuration file /etc/raddb/proxy.conf
including configuration file /etc/raddb/snmp.conf
including files in directory /etc/raddb/modules/
including configuration file /etc/raddb/modules/passwd
including configuration file /etc/raddb/modules/attr_filter
including configuration file /etc/raddb/modules/detail.log
including configuration file /etc/raddb/modules/etc_group
including configuration file /etc/raddb/modules/policy
including configuration file /etc/raddb/modules/ippool
including configuration file /etc/raddb/modules/smbpasswd
including configuration file /etc/raddb/modules/logintime
including configuration file /etc/raddb/modules/mac2ip
including configuration file /etc/raddb/modules/attr_rewrite
including configuration file /etc/raddb/modules/sradutmp
including configuration file /etc/raddb/modules/expr
including configuration file /etc/raddb/modules/mac2vlan
including configuration file /etc/raddb/modules/sql_log
including configuration file /etc/raddb/modules/preprocess
including configuration file /etc/raddb/modules/ldap
including configuration file /etc/raddb/modules/always
including configuration file /etc/raddb/modules/expiration
including configuration file /etc/raddb/modules/pam
including configuration file /etc/raddb/modules/files
including configuration file /etc/raddb/modules/checkval
including configuration file /etc/raddb/modules/digest
including configuration file /etc/raddb/modules/exec
including configuration file /etc/raddb/modules/realm
including configuration file /etc/raddb/modules/radutmp
including configuration file /etc/raddb/modules/echo
including configuration file /etc/raddb/modules/mschap
including configuration file /etc/raddb/modules/chap
including configuration file /etc/raddb/modules/krb5
including configuration file /etc/raddb/modules/counter
including configuration file /etc/raddb/modules/pap
including configuration file /etc/raddb/modules/acct_unique
including configuration file /etc/raddb/modules/unix
including configuration file /etc/raddb/modules/detail
including configuration file /etc/raddb/eap.conf
including configuration file /etc/raddb/sql.conf
including configuration file /etc/raddb/sql/mysql/dialup.conf
including configuration file /etc/raddb/sql/mysql/counter.conf
including configuration file /etc/raddb/policy.conf
including dictionary file /etc/raddb/dictionary
main {
prefix = "/usr"
localstatedir = "/var"
logdir = "/var/log/radius"
libdir = "/usr/lib/freeradius"
radacctdir = "/var/log/radius/radacct"
hostname_lookups = yes
max_request_time = 30
cleanup_delay = 5
max_requests = 1024
allow_core_dumps = no
pidfile = "/var/run/radiusd/radiusd.pid"
checkrad = "/usr/sbin/checkrad"
debug_level = 0
proxy_requests = no
log {
stripped_names = yes
auth = yes
auth_badpass = yes
auth_goodpass = yes
}
}
radiusd: #### Loading Realms and Home Servers ####
radiusd: #### Instantiating modules ####
instantiate {
Module: Linked to module rlm_exec
Module: Instantiating exec
exec {
wait = no
input_pairs = "request"
shell_escape = yes
}
Module: Linked to module rlm_expr
Module: Instantiating expr
Module: Linked to module rlm_expiration
Module: Instantiating expiration
expiration {
reply-message = "Password Has Expired "
}
Module: Linked to module rlm_logintime
Module: Instantiating logintime
logintime {
reply-message = "You are calling outside your allowed timespan "
minimum-timeout = 60
}
}
radiusd: #### Loading Virtual Servers ####
server {
modules {
}
}
radiusd: #### Opening IP addresses and Ports ####
listen {
type = "auth"
ipaddr = *
port = 1812
}
listen {
type = "acct"
ipaddr = *
port = 0
}
main {
snmp = no
smux_password = ""
snmp_write_access = no
}
Listening on authentication address * port 1812
Listening on accounting address * port 1813
Ready to process requests.
terminal 2 : radtest test test localhost 0 test
Sending Access-Request of id 178 to 127.0.0.1 port 1812
User-Name = "test"
User-Password = "test"
NAS-IP-Address = 127.0.0.2
NAS-Port = 0
Sending Access-Request of id 178 to 127.0.0.1 port 1812
User-Name = "test"
User-Password = "test"
NAS-IP-Address = 127.0.0.2
NAS-Port = 0
Sending Access-Request of id 178 to 127.0.0.1 port 1812
User-Name = "test"
User-Password = "test"
NAS-IP-Address = 127.0.0.2
NAS-Port = 0
Sending Access-Request of id 178 to 127.0.0.1 port 1812
User-Name = "test"
User-Password = "test"
NAS-IP-Address = 127.0.0.2
NAS-Port = 0
Sending Access-Request of id 178 to 127.0.0.1 port 1812
User-Name = "test"
User-Password = "test"
NAS-IP-Address = 127.0.0.2
NAS-Port = 0
Sending Access-Request of id 178 to 127.0.0.1 port 1812
User-Name = "test"
User-Password = "test"
NAS-IP-Address = 127.0.0.2
NAS-Port = 0
Sending Access-Request of id 178 to 127.0.0.1 port 1812
User-Name = "test"
User-Password = "test"
NAS-IP-Address = 127.0.0.2
NAS-Port = 0
Sending Access-Request of id 178 to 127.0.0.1 port 1812
User-Name = "test"
User-Password = "test"
NAS-IP-Address = 127.0.0.2
NAS-Port = 0
Sending Access-Request of id 178 to 127.0.0.1 port 1812
User-Name = "test"
User-Password = "test"
NAS-IP-Address = 127.0.0.2
NAS-Port = 0
Sending Access-Request of id 178 to 127.0.0.1 port 1812
User-Name = "test"
User-Password = "test"
NAS-IP-Address = 127.0.0.2
NAS-Port = 0
radclient: no response from server for ID 178 socket 3
Parallel on terminal 1 :
Ignoring request to authentication address * port 1812 from unknown client 127.0.0.1 port 59802
Ready to process requests.
Ignoring request to authentication address * port 1812 from unknown client 127.0.0.1 port 59802
Ready to process requests.
...
... but 127.0.0.1 is not unknown
sql.conf : readclients = yes
clients.conf : completely commented out
mysql> select * from nas order by id desc limit 1;
+----+-----------+-----------+--------+-------+--------+-----------+-------------+
| id | nasname | shortname | type | ports | secret | community | description |
+----+-----------+-----------+--------+-------+--------+-----------+-------------+
| 56 | 127.0.0.1 | localhost | MikTik | NULL | test | NULL | NULL |
+----+-----------+-----------+--------+-------+--------+-----------+-------------+
1 row in set (0.00 sec)
What do I do wrong ?
This thing does not care what I configure, it always does the same, nothing.
I have sqltrace = yes, but after days of trying there is no sqltrace.sql on the server (yes I made updatedb)
there is nearly nothing in the log, but I configured it to log everything (good-auth, bad-auth, etc)
All this worked best with FR 1.x.x.
Please help
thx
_______________________________________________________________________
Aufgepasst: Sind Ihre Daten beim Online-Banking auch optimal geschützt?
Jetzt absichern: https://homebanking.web.de/?mc=mail@footer.hb
More information about the Freeradius-Users
mailing list