Freeradius-Users Digest, Vol 49, Issue 75(Free radius configure as pre-paid billing system)

Sachidananda Sahoo sahoo_sachi at yahoo.com
Mon May 18 15:55:19 CEST 2009


Hi , 
I want to configure for pre-paid billing system in free radius , please let me what are necessary module need to configure. 
 Regards,
Sachidananda Sahoo




________________________________
From: "freeradius-users-request at lists.freeradius.org" <freeradius-users-request at lists.freeradius.org>
To: freeradius-users at lists.freeradius.org
Sent: Monday, May 18, 2009 7:16:30 PM
Subject: Freeradius-Users Digest, Vol 49, Issue 75

Send Freeradius-Users mailing list submissions to
    freeradius-users at lists.freeradius.org

To subscribe or unsubscribe via the World Wide Web, visit
    http://lists.freeradius.org/mailman/listinfo/freeradius-users
or, via email, send a message with subject or body 'help' to
    freeradius-users-request at lists.freeradius.org

You can reach the person managing the list at
    freeradius-users-owner at lists.freeradius.org

When replying, please edit your Subject line so it is more specific
than "Re: Contents of Freeradius-Users digest..."


Today's Topics:

  1. Free radius configure as pre-paid billing system
      (Sachidananda Sahoo)


----------------------------------------------------------------------

Message: 1
Date: Mon, 18 May 2009 06:46:21 -0700 (PDT)
From: Sachidananda Sahoo <sahoo_sachi at yahoo.com>
Subject: Free radius configure as pre-paid billing system
To: freeradius-users at lists.freeradius.org
Message-ID: <858597.78562.qm at web31915.mail.mud.yahoo.com>
Content-Type: text/plain; charset="iso-8859-1"

Hi , 
Send Freeradius-Users mailing list submissions to
??? freeradius-users at lists.freeradius.org

To subscribe or unsubscribe via the World Wide Web, visit
??? http://lists.freeradius.org/mailman/listinfo/freeradius-users
or, via email, send a message with subject or body 'help' to
??? freeradius-users-request at lists.freeradius.org

You can reach the person managing the list at
??? freeradius-users-owner at lists.freeradius.org

When replying, please edit your Subject line so it is more specific
than "Re: Contents of Freeradius-Users digest..."


Today's Topics:

? 1. Re: question about windows users (Alan DeKok)
? 2. Re: Wimax + Freeradius (Alan DeKok)
? 3. Re: Module-Success-Message / Module-Failure-Message (Alan DeKok)
? 4. Re: current RHEL/CentOS pre-built packages (Was: freeRADIUS)
? ? ? (Alan DeKok)
? 5. Re[2]: Wimax + Freeradius (Maxim Vinnichenko)
? 6. Re: Wimax + Freeradius (Alan DeKok)
? 7. FreeRADIUS Server Version 2.1.6 has been released (Alan DeKok)
? 8. RE: Module-Success-Message / Module-Failure-Message
? ? ? (Laar van de, Johan, TNF)
? 9. duplicate Identity received, freeradius behaviour?
? ? ? (Jean F. Mousinho)


----------------------------------------------------------------------

Message: 1
Date: Mon, 18 May 2009 12:57:38 +0200
From: Alan DeKok <aland at deployingradius.com>
Subject: Re: question about windows users
To: FreeRadius users mailing list
??? <freeradius-users at lists.freeradius.org>
Message-ID: <4A113F22.8060006 at deployingradius.com>
Content-Type: text/plain; charset=ISO-8859-1

Bartosz Chodzinski wrote:
> /etc/freeradius/certs/README

? I've never understood why people think it's useful to post
documentation from the server on this list.? Do you think we haven't
seen it?

> and something happend:
> ( I think key information is? ? 
> TLS_accept:error in SSLv3 read client certificate A
> rlm_eap: SSL error error:00000000:lib(0):func(0):reason(0)
> but uncle google find as many diferent answers as peple having this problem)

? It means that you're running a server that is YEARS out of date.? Why
not use a more recent version?

> log freeradius -X:

> Sending Access-Challenge of id 115 to 192.168.5.206 port 1812
>? ? ? ? EAP-Message =
> 0x010b00350d800000002b1403010001011603010020735b6dedb59fdb27811198c86a86bb2fdf2e96ce8f59031cc76f36b80bf1d04c
>? ? ? ? Message-Authenticator = 0x00000000000000000000000000000000
>? ? ? ? State = 0x9f4e794b784914b1f67ff19696408712
> Finished request 9
> Going to the next request
> Waking up in 5 seconds...
> --- Walking the entire request list ---
> Cleaning up request 5 ID 111 with timestamp 416c8b35

? This is in the FAQ.? Go read it.

? Alan DeKok.


------------------------------

Message: 2
Date: Mon, 18 May 2009 13:03:42 +0200
From: Alan DeKok <aland at deployingradius.com>
Subject: Re: Wimax + Freeradius
To: maxim at babilon-t.tj,??? FreeRadius users mailing list
??? <freeradius-users at lists.freeradius.org>
Message-ID: <4A11408E.6060000 at deployingradius.com>
Content-Type: text/plain; charset=UTF-8

Maxim Vinnichenko wrote:
> Thank you for you answer. I've changed test user and now the server
> sends access-accept but CPE still doesn't connect.

? Some NAS equipment will ignore Access-Accept if it doesn't contain the
right magic.? The exact definition of this magic is usually found buried
in a footnote on page 400 out of 800 of the vendor documentation.

? Go look at the NAS logs, and see if there is any useful messages.? If
not, call the NAS vendor, and tell them that their product is defective.

? FreeRADIUS works with WiMAX equipment from Nokia, Cisco and Motorola.
(That I've seen.)? Other vendors known to have problems include
Alvarion.? They don't seem to care that their equipment doesn't work,
and they haven't answered any of my messages about it.

? The only solution is to point out publicly that Alvarion is *not*
following the WiMAX specs, and therefore people should buy *real* WiMAX
equipment.

? Alan DeKok.


------------------------------

Message: 3
Date: Mon, 18 May 2009 13:04:35 +0200
From: Alan DeKok <aland at deployingradius.com>
Subject: Re: Module-Success-Message / Module-Failure-Message
To: FreeRadius users mailing list
??? <freeradius-users at lists.freeradius.org>
Message-ID: <4A1140C3.5070202 at deployingradius.com>
Content-Type: text/plain; charset=ISO-8859-1

Laar van de, Johan, TNF wrote:
> My Question is, if this is relatively easy, how can I achieve this? 

? The log messages can be changed via source code edits.

? This *could* be made configurable, but that also requires source code
edits.

? Alan DeKok.


------------------------------

Message: 4
Date: Mon, 18 May 2009 13:06:22 +0200
From: Alan DeKok <aland at deployingradius.com>
Subject: Re: current RHEL/CentOS pre-built packages (Was: freeRADIUS)
To: FreeRadius users mailing list
??? <freeradius-users at lists.freeradius.org>
Message-ID: <4A11412E.1030000 at deployingradius.com>
Content-Type: text/plain; charset=ISO-8859-1

John Dennis wrote:
> It is critical to note for RHEL customers the updated RPMS are
> considered "tech preview" and do not come with any official RHEL
> support.

? If they want support for *any* version of the server, it's available.
See http://networkradius.com

? But that's specific to FreeRADIUS, and not to the entire RHEL package.

? Alan DeKok.


------------------------------

Message: 5
Date: Mon, 18 May 2009 16:25:23 +0500
From: Maxim Vinnichenko <maxim at babilon-t.tj>
Subject: Re[2]: Wimax + Freeradius
To: Alan DeKok <aland at deployingradius.com>
Cc: FreeRadius users mailing list
??? <freeradius-users at lists.freeradius.org>
Message-ID: <471893738.20090518162523 at babilon-t.tj>
Content-Type: text/plain; charset=utf-8

Hello Alan,



Monday, May 18, 2009, 4:03:42 PM, you wrote:

> Maxim Vinnichenko wrote:
>> Thank you for you answer. I've changed test user and now the server
>> sends access-accept but CPE still doesn't connect.

>? Some NAS equipment will ignore Access-Accept if it doesn't contain the
> right magic.? The exact definition of this magic is usually found buried
> in a footnote on page 400 out of 800 of the vendor documentation.

>? Go look at the NAS logs, and see if there is any useful messages. If
> not, call the NAS vendor, and tell them that their product is defective.

>? FreeRADIUS works with WiMAX equipment from Nokia, Cisco and Motorola.
>? (That I've seen.)? Other vendors known to have problems include
> Alvarion.? They don't seem to care that their equipment doesn't work,
> and they haven't answered any of my messages about it.

>? The only solution is to point out publicly that Alvarion is *not*
> following the WiMAX specs, and therefore people should buy *real* WiMAX
> equipment.

>? Alan DeKok.

Thank You very much. Vendor forces us to buy theirs "unique" TRIAS
server aka radius. :) That costs several hundred thousands.

Anyway thanks to all of you for help.



-- 
?????????? ??????
????? IP ?????????
__________________

??? "Babilon - T", ???????????,
?. ???????, ?-?? ?????? 8.
????:? ? ? (992 44) 600 00 83
?????????:? (992 918) 62 37 22
??. ?????:? maxim at babilon-t.tj




------------------------------

Message: 6
Date: Mon, 18 May 2009 13:42:46 +0200
From: Alan DeKok <aland at deployingradius.com>
Subject: Re: Wimax + Freeradius
To: maxim at babilon-t.tj,??? FreeRadius users mailing list
??? <freeradius-users at lists.freeradius.org>
Message-ID: <4A1149B6.2090402 at deployingradius.com>
Content-Type: text/plain; charset=UTF-8

Maxim Vinnichenko wrote:
> Thank You very much. Vendor forces us to buy theirs "unique" TRIAS
> server aka radius. :) That costs several hundred thousands.

? Dollars?

? Odds are that their product is less functional than FreeRADIUS.? It
would likely be cheaper to figure out what the problem is, and to make
FreeRADIUS inter-operate with the vendor.

? And what the vendor *really* meant is that they do *not* implement the
standards, and they don't care.? Why not buy equipment from a vendor
that is interested in making *useful* products?

? Alan DeKok.


------------------------------

Message: 7
Date: Mon, 18 May 2009 13:59:07 +0200
From: Alan DeKok <aland at deployingradius.com>
Subject: FreeRADIUS Server Version 2.1.6 has been released
To: FreeRadius users mailing list
??? <freeradius-users at lists.freeradius.org>
Message-ID: <4A114D8B.3090203 at deployingradius.com>
Content-Type: text/plain; charset=ISO-8859-1

? The following is the change log.? Thanks to everyone for testing the
pre releases.


FreeRADIUS 2.1.6 Mon May 18 10:00:00 CEST 2009;? , urgency=medium
??? Feature improvements
??? * radclient exits with 0 on successful (accept / ack), and 1
??? ? otherwise (no response / reject)
??? * Added support for %{sql:UPDATE ..}, and insert/delete
??? ? Patch from Arran Cudbard-Bell
??? * Added sample "do not respond" policy.? See raddb/policy.conf
??? ? and raddb/sites-available/do_not_respond
??? * Cleanups to Suse spec file from Norbert Wegener
??? * New VSAs for Juniper from Bjorn Mork
??? * Include more RFC dictionaries in the default install
??? * More documentation for the WiMAX module
??? * Added "chase_referrals" and "rebind" configuration to ??? 
??? ? rlm_ldap.
??? ? This helps with Active Directory.? See raddb/modules/ldap
??? * Don't load pre/post-proxy if proxying is disabled.
??? * Added %{md5:...}, which returns MD5 hash in hex.
??? * Added configurable "retry_interval" and "poll_interval"
??? ? for "detail" listeners.
??? * Added "delete_mppe_keys" configuration option to rlm_wimax.
??? ? Apparently some WiMAX clients misbehave when they see those
??? ? keys.
??? * Added experimental rlm_ruby from
??? ? http://github.com/Antti/freeradius-server/tree/master
??? * Add Tunnel attributes to ldap.attrmap
??? * Enable virtual servers to be reloaded on HUP.? For now, only
??? ? the "authorize", "authenticate", etc. processing sections are
??? ? reloaded.? Clients and "listen" sections are NOT reloaded.
??? * Updated "radwatch" script to be more robust.? See
??? ? scripts/radwatch
??? * Added certificate compatibility notes in raddb/certs/README,
??? ? for compatibility with different operating systems. (i.e.
??? ? Windows)

??? Bug fixes
??? * Minor changes to allow building without VQP.
??? * Minor fixes from John Center
??? * Fixed raddebug example
??? * Don't crash when deleting attributes via unlang
??? * Be friendlier to very fast clients
??? * Updated the "detail" listener so that it only polls once,
??? ? and not many times in a row, leaking memory each time...
??? * Update comparison for Packet-Src-IP-Address (etc.) so that
??? ? the operators other than '==' work.
??? * Did autoconf magic to work around weird libtool bug
??? * Make rlm_perl keep tags for tagged attributes in more
??? ? situations
??? * Update UID checking for radmin
??? * Added "include_length" field for TTLS.? It's needed for RFC
??? ? compliance, but not (apparently) for interoperability.


------------------------------

Message: 8
Date: Mon, 18 May 2009 14:38:06 +0200
From: "Laar van de, Johan, TNF" <Johan.van.de.Laar at tnf.nl>
Subject: RE: Module-Success-Message / Module-Failure-Message
To: FreeRadius users mailing list
??? <freeradius-users at lists.freeradius.org>
Message-ID:
??? <1389360D6F590C44A15A626176B599A21069F31B at SR-EXC-006-SON.internal.tnf.nl>
??? 
Content-Type: text/plain; charset="us-ascii"

Ok, but there is no other variable available which can be used within a sql query in the Post-Auth section?

Thanks.

Johan van de Laar


-----Oorspronkelijk bericht-----
Van: freeradius-users-bounces+johan.van.de.laar=tnf.nl at lists.freeradius.org [mailto:freeradius-users-bounces+johan.van.de.laar=tnf.nl at lists.freeradius.org] Namens Alan DeKok
Verzonden: maandag 18 mei 2009 13:05
Aan: FreeRadius users mailing list
Onderwerp: Re: Module-Success-Message / Module-Failure-Message

Laar van de, Johan, TNF wrote:
> My Question is, if this is relatively easy, how can I achieve this? 

? The log messages can be changed via source code edits.

? This *could* be made configurable, but that also requires source code
edits.

? Alan DeKok.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html



------------------------------

Message: 9
Date: Mon, 18 May 2009 14:21:03 +0100
From: "Jean F. Mousinho" <jean.mousinho at ist.utl.pt>
Subject: duplicate Identity received, freeradius behaviour?
To: FreeRadius users mailing list
??? <freeradius-users at lists.freeradius.org>
Message-ID: <1242652863.1410.26.camel at jemos-workd.ist.utl.pt>
Content-Type: text/plain

Hi,

I've noticed that on our radius server logs lots of "EAP state variable
not found", after some packet dump analysis (also -Xf) I've noticed that
one of the cases that this happened was when some EAP Identity packets
are duplicated during parallel authentications (I mean, when at least
one session already began from the same client, and we're receiving
duplicate ).

I've noticed that these duplicate packets come with just a little
difference which is the Proxy-State, the duplicate packets then, in my
opinion could be caused by some bad proxying implementation (client EAP
Identity passing through 2 or more proxies?), or even bad load
balancing.

Also, we did an upgrade of one of the two proxies connected to our home
radius server and somehow noticed that the amount of EAP state errors
was lower in the old version (1.1.7) than in the newer (2.1.3) (although
its hard to confirm that).

I've tried to compare the code from 1.1.7 and 2.1.3 and didn't come to a
clear conclusion if its there any special treatment to duplicate proxied
packets between 1.1.7 and 2.1.3 (while proxying).

Thanks for your time.

Jean F. Mousinho



------------------------------

-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


End of Freeradius-Users Digest, Vol 49, Issue 74
************************************************

I want to configure for pre-paid billing system in free radius , please let me what are necessary module need to configure. 
?Regards,
Sachidananda Sahoo
________________________________
From: "freeradius-users-request at lists.freeradius.org" <freeradius-users-request at lists.freeradius.org>
To: freeradius-users at lists.freeradius.org
Sent: Monday, May 18, 2009 6:55:29 PM
Subject: Freeradius-Users Digest, Vol 49, Issue 74



      
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.freeradius.org/pipermail/freeradius-users/attachments/20090518/9d91823f/attachment.html>

------------------------------

-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


End of Freeradius-Users Digest, Vol 49, Issue 75
************************************************



      
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20090518/1593c53e/attachment.html>


More information about the Freeradius-Users mailing list